1 část:
Logfile of random's system information tool 1.16 (written by random/random)
Run by Lenovo at 2017-03-16 13:49:54
Microsoft Windows 10 Home
System drive C: has 714 GB (75%) free of 952 GB
Total RAM: 3962 MB (32% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:50:02, on 16. 3. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\PPRX\pprx.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.39\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.79\deploy\LoLPatcher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.244\deploy\LolClient.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Lenovo_RSITx64.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID= ... 9A1608483A
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID= ... 9A1608483A
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files (x86)\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrHelp] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN
O4 - HKLM\..\Run: [PPRX] C:\Program Files (x86)\PPRX\start.vbs
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [BlueStacks Agent] C:\Program Files (x86)\Bluestacks\HD-Agent.exe
O4 - HKCU\..\Run: [World of Tanks] "C:\Games\World_of_Tanks\WargamingGameUpdater.exe"
O4 - HKCU\..\Run: [CyberGhost] "C:\Program Files\CyberGhost 6\CyberGhost.exe" /autostart /min
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [script_fcbd] "C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\fcbd.bat" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [script_fcbd] "C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\fcbd.bat" (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.hola.org
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\WINDOWS\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Wireless Controller Service - Unknown owner - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe (file missing)
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 12645 bytes
====== Enumerating Processes ======
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3c6e96d1-4c55-496a-b84d-d5da0b1b1bf7 -SystemEventPortName:HostProcess-78a34c9f-657e-426e-bd64-7dc2d8feb25b -IoCancelEventPortName:HostProcess-68ae3379-6ca6-4efc-9bbd-d4ff30fc1f97 -NonStateChangingEventPortName:HostProcess-45f5aff9-e5a3-47d8-8878-db1028ecd568 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:92117677-20b6-44dc-a76b-6207aa3bf1f0 -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\System32\sihost.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\System32\taskhostw.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\igfxEM.exe
C:\WINDOWS\system32\igfxHK.exe
C:\WINDOWS\system32\igfxTray.exe
"C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe"
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\PPRX\pprx.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\fontdrvhost.exe
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1703.601.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8004.42017.0_x64__8wekyb3d8bbwe\HxMail.exe" -ServerName:microsoft.windowslive.mail.AppX7fgs1v31b27fq9zen50wdw83aappcatm.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8004.42017.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1051_none_7f2bf7ea21d201b2\TiWorker.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x3d4
"C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.39\deploy\LoLLauncher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.79\deploy\LoLPatcher.exe
C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.244\deploy\LolClient.exe
"C:\Windows\System32\GameBarPresenceWriter.exe" -ServerName:Windows.Gaming.GameBar.Internal.PresenceWriterServer
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe8_ Global\UsGthrCtrlFltPipeMssGthrPipe8 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Users\Lenovo\Downloads\RSITx64.exe"
====== Scheduled tasks folder ======
C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe -check pepperplugin
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\Norton Security Scan for Lenovo.job - C:\PROGRA~2\NORTON~2\Engine\430~1.44\Nss.exe /scan-quick /scheduled
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player PPAPI Notifier - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe -check pepperplugin
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\avast! Emergency Update - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\system32\tasks\Game_Booster_AutoUpdate - C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe /AUTORUN
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\Norton Security Scan for Lenovo - C:\PROGRA~2\NORTON~2\Engine\430~1.44\Nss.exe /scan-quick /scheduled
C:\WINDOWS\system32\tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
C:\WINDOWS\system32\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler
C:\WINDOWS\system32\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe
C:\WINDOWS\system32\tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon
C:\WINDOWS\system32\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\ParkControl - "C:\Program Files\ParkControl\parkcontrol.exe" /systray
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1458810699 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\SmartGameBooster SkipUAC (Lenovo) - C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbMain.exe /skipuac
C:\WINDOWS\system32\tasks\SmartGameBooster Update - C:\Program Files (x86)\PCGameBoost\Smart Game Booster\SgbUpdater.exe /auto
C:\WINDOWS\system32\tasks\Synaptics TouchPad Enhancements - \Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{20A12372-07EC-41C4-AA07-7F14AE00C683} - C:\WINDOWS\system32\msfeedssync.exe sync
C:\WINDOWS\system32\tasks\{7224F663-51C1-4CCE-8A74-2E7D965CB2A5} - C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{9312191B-30A5-44E1-8D8D-6936FE06CDE8}\setup.exe" -c -runfromtemp -l0x0005 -removeonly
C:\WINDOWS\system32\tasks\{870B732C-EB19-4D61-B9B5-7D66924564FE} - C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe" -c uninstall=all
C:\WINDOWS\system32\tasks\{CAF7EEAC-1D18-487A-9C1F-5422AAA7AE16} - C:\WINDOWS\system32\pcalua.exe -a D:\FahrenheitAutoRun.exe -d D:\
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join - %SystemRoot%\System32\AutoWorkplace.exe join
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Setup\8.1 auto install ping - %windir%\system32\AutoUpdate.exe /Ping
C:\WINDOWS\system32\tasks\Microsoft\Windows\Setup\8.1 auto install v2 - C:\Windows\System32\AutoUpdate.exe /Auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemovalTools\MRT_HB - C:\Windows\system32\MRT.exe /EHB /Q
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\VisualStudio\VSIX Auto Update 14 - C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe
C:\WINDOWS\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs
=========Mozilla firefox=========
ProfilePath - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default
prefs.js - "browser.search.useDBForOrder" - true
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.121.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.121.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\addons.json
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\extensions.json
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
Avast Online Security - extension - wrc@avast.com - C:\Program Files\AVAST Software\Avast\WebRep\FF
Avast SafePrice - extension - sp@avast.com - C:\Program Files\AVAST Software\Avast\SafePrice\FF
Diagnostics - extension - diagnostics@mozilla.org - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\features\{7aaf085f-be83-40ff-a4ec-6a1edb6b093e}\diagnostics@mozilla.org.xpi
SHA-1 deprecation staged rollout - extension - disableSHA1rollout@mozilla.org - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\features\{7aaf085f-be83-40ff-a4ec-6a1edb6b093e}\disableSHA1rollout@mozilla.org.xpi
Send HSTS Priming Requests - extension - hsts-priming@mozilla.org - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\features\{7aaf085f-be83-40ff-a4ec-6a1edb6b093e}\hsts-priming@mozilla.org.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\features\{7aaf085f-be83-40ff-a4ec-6a1edb6b093e}\aushelper@mozilla.org.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9mkrhv7.default\pluginreg.dat
Plugin - Shockwave Flash - 22.0.0.209 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu
2 část:
=========Google Chrome=========
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension eofcbnmajmjmplflapaojjnihcjkigck 0 Avast SafePrice 12.0.155
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gighmmpiobklfepjocnamgkkbiglidom 1 AdBlock 3.8.4
Extension gomekmidlodglbbmalcneegieacbdmki 0 Avast Online Security 12.0.163
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.1
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5516.1005.0.3
Homepage: http://www.yessearches.com/?mode=nnnb&p ... Bn0tC34rAU..
default_search_provider.search_url:
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}]
"URL"=http://www.bing.com/search?q={searchTer ... DF&pc=MSE1
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-29 64640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-03-11 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-11 186944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2016-02-14 17079376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2016-02-14 191568]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-04-28 500936]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-03 3944136]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2017-02-23 1882168]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-03-14 1518304]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-03-13 3019552]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-06-22 4299968]
"BlueStacks Agent"=C:\Program Files (x86)\Bluestacks\HD-Agent.exe []
"World of Tanks"=C:\Games\World_of_Tanks\WargamingGameUpdater.exe []
"CyberGhost"=C:\Program Files\CyberGhost 6\CyberGhost.exe /autostart /min []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2015-06-12 561672]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-11-17 9080768]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2013-05-14 139264]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2012-12-27 4522496]
"BrHelp"=C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2013-01-18 2009088]
"PPRX"=C:\Program Files (x86)\PPRX\start.vbs [2016-08-22 10881]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2017-03-02 5883912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"DisableCAD"=1
"SoftwareSASGeneration"=1
"SafeModeBlockNonAdmins"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"vidc.tscc"=C:\WINDOWS\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\WINDOWS\SysWOW64\tsc2_codec64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-03-15 20:10:10 ----AD---- C:\Program Files (x86)\rocketleague
2017-03-14 20:00:36 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-03-14 20:00:18 ----A---- C:\WINDOWS\SYSWOW64\WPDShServiceObj.dll
2017-03-14 20:00:17 ----A---- C:\WINDOWS\SYSWOW64\wlanui.dll
2017-03-14 20:00:17 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-03-14 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-03-14 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2017-03-14 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-03-14 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-03-14 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2017-03-14 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2017-03-14 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\RADCUI.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msctfui.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msctfp.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-03-14 20:00:12 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-03-14 20:00:12 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-03-14 20:00:08 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2017-03-14 20:00:08 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2017-03-14 20:00:08 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-03-14 20:00:06 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-03-14 20:00:05 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-03-14 20:00:05 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-03-14 20:00:02 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-03-14 19:59:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2017-03-14 19:59:59 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2017-03-14 19:59:54 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-03-14 19:59:51 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\ddrawex.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2017-03-14 19:59:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-03-14 19:59:46 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-03-14 19:59:43 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2017-03-14 19:59:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2017-03-14 19:59:42 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2017-03-14 19:59:42 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2017-03-14 19:59:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-03-14 19:59:39 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-03-14 19:59:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-03-14 19:59:36 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-03-14 19:59:36 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-03-14 19:59:35 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-03-14 19:59:35 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\GamePanelExternalHook.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-03-14 19:59:31 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-03-14 19:59:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-03-14 19:59:30 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Diagnostics.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\netiohlp.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-03-14 19:59:22 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSetup.exe
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-03-14 19:59:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-14 19:59:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-03-14 19:59:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\MSVP9DEC.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\MCCSEngineShared.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\DavSyncProvider.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\accountaccessor.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2017-03-14 19:59:10 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-03-14 19:59:10 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-03-14 19:59:09 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-03-14 19:59:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-03-14 19:59:08 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-03-14 19:59:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-03-14 19:59:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-03-14 19:59:05 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-03-14 19:59:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-03-14 19:59:04 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2017-03-14 19:59:04 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2017-03-14 19:59:03 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-03-14 19:58:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-03-14 19:58:59 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2017-03-14 19:58:59 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-03-14 19:58:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-03-14 19:58:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-03-14 19:58:52 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\tquery.dll
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssvp.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssphtb.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssph.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\mssitlb.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\XInputUap.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\XblGameSaveExt.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\wlidprov.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-03-14 19:51:26 ----A---- C:\WINDOWS\system32\WinRtTracing.dll
2017-03-14 19:51:26 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-03-14 19:51:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-03-14 19:51:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-03-14 19:51:25 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-03-14 19:51:13 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-03-14 19:51:13 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-03-14 19:51:13 ----A---- C:\WINDOWS\system32\icfupgd.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2017-03-14 19:50:45 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-03-14 19:50:36 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-03-14 19:50:36 ----A---- C:\WINDOWS\system32\GamePanelExternalHook.dll
2017-03-14 19:50:36 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-03-14 19:50:34 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\CspCellularSettings.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-03-14 19:50:31 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-03-14 19:50:31 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-03-14 19:50:31 ----A---- C:\WINDOWS\system32\mispace.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\wlanui.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\winmde.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\WwaApi.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-03-14 19:50:26 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-03-14 19:50:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\wups.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2017-03-14 19:50:22 ----A---- C:\WINDOWS\system32\VSSVC.exe
2017-03-14 19:50:22 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-03-14 19:50:22 ----A---- C:\WINDOWS\system32\vds.exe
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\usoapi.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\Pimstore.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\DuCsps.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\cemapi.dll
2017-03-14 19:50:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-03-14 19:50:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-03-14 19:50:20 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2017-03-14 19:50:16 ----A---- C:\WINDOWS\system32\usocore.dll
2017-03-14 19:50:16 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\UserDataService.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-03-14 19:50:12 ----A---- C:\WINDOWS\system32\Unistore.dll
2017-03-14 19:50:12 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-03-14 19:50:12 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinui.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-03-14 19:50:10 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-03-14 19:50:10 ----A---- C:\WINDOWS\system32\thumbcache.dll
2017-03-14 19:50:10 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\tapi32.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\Tabbtn.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\netiohlp.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\tabcal.exe
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\MultiDigiMon.exe
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\mscandui.dll
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\input.dll
2017-03-14 19:50:07 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-03-14 19:50:07 ----A---- C:\WINDOWS\system32\msutb.dll
2017-03-14 19:50:07 ----A---- C:\WINDOWS\system32\msctf.dll
2017-03-14 19:50:06 ----A---- C:\WINDOWS\system32\RADCUI.dll
2017-03-14 19:50:06 ----A---- C:\WINDOWS\system32\msctfui.dll
2017-03-14 19:50:06 ----A---- C:\WINDOWS\system32\msctfp.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\sud.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\stobject.dll
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-03-14 19:50:03 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\scksp.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\certprop.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\shell32.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SHCore.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\vaultcli.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\tbauth.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\AuthHost.exe
2017-03-14 19:49:58 ----A---- C:\WINDOWS\system32\schannel.dll
2017-03-14 19:49:58 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-03-14 19:49:58 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-03-14 19:49:57 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-14 19:49:57 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\sdshext.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\sdengin2.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-03-14 19:49:55 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-03-14 19:49:55 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-03-14 19:49:53 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-03-14 19:49:52 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-03-14 19:49:52 ----A---- C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2017-03-14 19:49:50 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-03-14 19:49:50 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-03-14 19:49:50 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-03-14 19:49:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-03-14 19:49:46 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-03-14 19:49:44 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-03-14 19:49:44 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-03-14 19:49:43 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-03-14 19:49:43 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-03-14 19:49:43 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\rasgcw.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-03-14 19:49:41 ----A---- C:\WINDOWS\regedit.exe
2017-03-14 19:49:40 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-03-14 19:49:39 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-03-14 19:49:39 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-03-14 19:49:38 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2017-03-14 19:49:36 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\Wpc.dll
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2017-03-14 19:49:33 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-03-14 19:49:32 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-03-14 19:49:31 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-03-14 19:49:31 ----A---- C:\WINDOWS\system32\WpcMon.exe
2017-03-14 19:49:31 ----A---- C:\WINDOWS\system32\localspl.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\puiapi.dll
2017-03-14 19:49:29 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2017-03-14 19:49:28 ----A---- C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2017-03-14 19:49:28 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\oleacc.dll
2017-03-14 19:49:26 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-03-14 19:49:26 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-03-14 19:49:23 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-03-14 19:49:23 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-03-14 19:49:23 ----A---- C:\WINDOWS\system32\netshell.dll
2017-03-14 19:49:22 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-03-14 19:49:22 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2017-03-14 19:49:16 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-03-14 19:49:16 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-03-14 19:49:16 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-03-14 19:49:15 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-03-14 19:49:15 ----A---- C:\WINDOWS\system32\MSVP9DEC.dll
2017-03-14 19:49:14 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-03-14 19:49:14 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-03-14 19:49:11 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-03-14 19:49:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-03-14 19:49:11 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-03-14 19:49:10 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfds.dll
2017-03-14 19:49:06 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-03-14 19:49:06 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-03-14 19:49:06 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-03-14 19:49:05 ----A---- C:\WINDOWS\system32\wmp.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\mf.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\MCCSEngineShared.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\internetmail.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\DavSyncProvider.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\moshost.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\mos.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-03-14 19:49:00 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-03-14 19:48:58 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-03-14 19:48:58 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-03-14 19:48:56 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-03-14 19:48:55 ----A---- C:\WINDOWS\system32\mmc.exe
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-03-14 19:48:53 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-03-14 19:48:53 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-03-14 19:48:52 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-03-14 19:48:52 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2017-03-14 19:48:48 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-03-14 19:48:48 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2017-03-14 19:48:48 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2017-03-14 19:48:46 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-03-14 19:48:46 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-03-14 19:48:46 ----A---- C:\WINDOWS\system32\InputService.dll
2017-03-14 19:48:43 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-14 19:48:42 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-14 19:48:41 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-03-14 19:48:39 ----A---- C:\WINDOWS\system32\icm32.dll
2017-03-14 19:48:39 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-03-14 19:48:37 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-14 19:48:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-14 19:48:28 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-03-14 19:48:20 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-14 19:48:20 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2017-03-14 19:48:18 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-03-14 19:48:17 ----A---- C:\WINDOWS\HelpPane.exe
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\gpapi.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-03-14 19:48:15 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-03-14 19:48:15 ----A---- C:\WINDOWS\system32\gameux.dll
2017-03-14 19:48:15 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-03-14 19:48:14 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-03-14 19:48:14 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-03-14 19:48:10 ----A---- C:\WINDOWS\system32\resutils.dll
2017-03-14 19:48:10 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-03-14 19:48:07 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\werui.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\werconcpl.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\wer.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\explorer.exe
2017-03-14 19:48:03 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-03-14 19:48:03 ----A---- C:\WINDOWS\system32\evr.dll
2017-03-14 19:48:02 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkFoldersGPExt.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-03-14 19:48:00 ----A---- C:\WINDOWS\system32\DXP.dll
2017-03-14 19:47:59 ----A---- C:\WINDOWS\system32\dui70.dll
2017-03-14 19:47:59 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2017-03-14 19:47:59 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\ddrawex.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-03-14 19:47:57 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-03-14 19:47:57 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-03-14 19:47:57 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2017-03-14 19:47:56 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-03-14 19:47:56 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-03-14 19:47:55 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\quartz.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-03-14 19:47:52 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-03-14 19:47:52 ----A---- C:\WINDOWS\system32\dcntel.dll
2017-03-14 19:47:51 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-03-14 19:47:51 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-03-14 19:47:51 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-03-14 19:47:50 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-03-14 19:47:50 ----A---- C:\WINDOWS\system32\uDWM.dll
2017-03-14 19:47:49 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-03-14 19:47:49 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2017-03-14 19:47:49 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-03-14 19:47:46 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-03-14 19:47:46 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-03-14 19:47:46 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-03-14 19:47:45 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-03-14 19:47:43 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-03-14 19:47:43 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-03-14 19:47:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-03-14 19:47:41 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-03-14 19:47:41 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\combase.dll
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\ci.dll
2017-03-14 19:47:38 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-03-14 19:47:38 ----A---- C:\WINDOWS\system32\cdp.dll
2017-03-14 19:47:38 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
2017-03-14 19:47:26 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-03-14 19:47:24 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-03-14 19:47:24 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2017-03-14 19:47:20 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-03-14 19:47:18 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2017-03-14 19:47:17 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-03-14 19:47:12 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2017-03-14 19:47:12 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-03-14 19:47:11 ----A---- C:\WINDOWS\system32\bootux.dll
2017-03-14 19:47:10 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\winresume.exe
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\winload.exe
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\wbengine.exe
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-03-14 19:47:03 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-03-14 19:47:00 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-03-14 19:46:58 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\invagent.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\devinv.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-03-14 19:46:56 ----A---- C:\WINDOWS\system32\authui.dll
2017-03-14 19:46:55 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-03-14 19:46:55 ----A---- C:\WINDOWS\system32\aepic.dll
2017-03-14 19:46:50 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-03-14 19:46:49 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-03-14 19:46:48 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-03-14 19:46:48 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-03-14 19:46:47 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-03-14 19:46:47 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-03-14 19:46:47 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-03-14 19:46:41 ----A---- C:\WINDOWS\system32\drivers\hvsocket.sys
2017-03-14 19:46:40 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-03-14 19:46:40 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2017-03-14 19:46:40 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2017-03-14 19:46:39 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-03-14 19:46:39 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-03-14 19:46:38 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-03-14 19:46:38 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2017-03-14 19:46:37 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-03-14 19:46:11 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2017-03-14 19:46:11 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2017-03-13 18:25:35 ----AD---- C:\Program Files (x86)\LogMeIn Hamachi
2017-03-13 14:31:41 ----D---- C:\Program Files\Epic Games
2017-03-12 14:16:48 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\nvopencl.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\drivers\nvpciflt.sys
2017-03-12 14:16:47 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2017-03-12 14:16:47 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2017-03-12 14:16:47 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2017-03-12 14:16:44 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\system32\nvdispgenco6437878.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvdispco6437878.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvcuda.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2017-03-12 14:16:41 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2017-03-12 14:13:34 ----D---- C:\NVIDIA
2017-03-11 18:15:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2017-03-11 18:14:16 ----D---- C:\Program Files (x86)\Java
2017-03-11 17:54:32 ----D---- C:\Users\Lenovo\AppData\Roaming\.minecraft
2017-02-25 11:33:44 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2017-02-25 11:33:44 ----A---- C:\WINDOWS\system32\drivers\farflt.sys
2017-02-25 11:33:39 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2017-02-25 11:33:35 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2017-02-25 11:33:14 ----A---- C:\WINDOWS\system32\drivers\mbae64.sys
2017-02-25 11:33:03 ----D---- C:\Program Files\Malwarebytes
====== List of files/folders modified in the last 1 month ======
2017-03-16 13:50:01 ----D---- C:\WINDOWS\Prefetch
2017-03-16 13:49:59 ----D---- C:\Program Files\trend micro
2017-03-16 13:19:01 ----D---- C:\WINDOWS\system32\sru
2017-03-16 13:05:05 ----D---- C:\WINDOWS\System32
2017-03-16 13:05:05 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-03-16 13:01:37 ----D---- C:\WINDOWS\Temp
2017-03-16 13:01:37 ----D---- C:\WINDOWS\system32\SleepStudy
2017-03-16 12:50:30 ----D---- C:\WINDOWS\system32\DriverStore
2017-03-16 12:50:25 ----D---- C:\WINDOWS\WinSxS
2017-03-16 12:40:16 ----D---- C:\WINDOWS\system32\catroot2
2017-03-16 12:33:27 ----SHD---- C:\System Volume Information
2017-03-16 12:31:04 ----D---- C:\WINDOWS\system32\config
2017-03-16 12:26:50 ----RD---- C:\WINDOWS\Microsoft.NET
2017-03-16 12:25:43 ----D---- C:\ProgramData\NVIDIA
2017-03-16 12:24:57 ----RSD---- C:\WINDOWS\assembly
2017-03-16 10:22:40 ----D---- C:\WINDOWS\AppReadiness
2017-03-16 10:22:12 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-03-16 10:17:22 ----D---- C:\WINDOWS\INF
2017-03-16 10:16:36 ----AD---- C:\Program Files (x86)\Hi-Rez Studios
2017-03-16 10:16:00 ----A---- C:\HaxLogs.txt
2017-03-16 10:15:27 ----D---- C:\WINDOWS\system32\drivers
2017-03-15 22:49:08 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-03-15 22:49:08 ----AD---- C:\WINDOWS\SysWOW64
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\wbem
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\setup
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\oobe
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\migration
2017-03-15 22:48:50 ----SD---- C:\WINDOWS\system32\F12
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\en-US
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\cs-CZ
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\Boot
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\appraiser
2017-03-15 22:48:36 ----D---- C:\WINDOWS\ShellExperiences
2017-03-15 22:48:35 ----RD---- C:\WINDOWS\PrintDialog
2017-03-15 22:48:34 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-03-15 22:48:32 ----D---- C:\WINDOWS\bcastdvr
2017-03-15 22:48:32 ----D---- C:\WINDOWS\AppPatch
2017-03-15 22:48:32 ----D---- C:\Windows
2017-03-15 22:48:32 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-03-15 22:48:32 ----D---- C:\Program Files (x86)\Windows Mail
2017-03-15 22:48:31 ----RD---- C:\Program Files\Windows Defender
2017-03-15 22:48:31 ----D---- C:\Program Files\Windows Photo Viewer
2017-03-15 22:48:31 ----D---- C:\Program Files\Windows Mail
2017-03-15 22:48:31 ----D---- C:\Program Files\Internet Explorer
2017-03-15 22:48:31 ----D---- C:\Program Files (x86)\Windows Defender
2017-03-15 22:48:31 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-15 20:18:01 ----D---- C:\Users\Lenovo\AppData\Roaming\uTorrent
2017-03-15 20:10:10 ----RD---- C:\Program Files (x86)
2017-03-15 19:46:36 ----A---- C:\WINDOWS\BRRBCOM.INI
2017-03-15 17:42:58 ----HD---- C:\Program Files\WindowsApps
2017-03-14 20:51:23 ----D---- C:\WINDOWS\system32\MRT
2017-03-14 20:48:01 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-03-14 20:47:52 ----D---- C:\WINDOWS\CbsTemp
2017-03-14 18:29:39 ----D---- C:\WINDOWS\Minidump
2017-03-14 18:20:39 ----AD---- C:\Program Files (x86)\Steam
2017-03-14 17:53:29 ----D---- C:\WINDOWS\system32\NDF
2017-03-14 15:56:17 ----A---- C:\WINDOWS\SYSWOW64\EasyAntiCheat.exe
2017-03-14 15:19:39 ----D---- C:\WINDOWS\LiveKernelReports
2017-03-14 12:17:55 ----D---- C:\WINDOWS\system32\Tasks
2017-03-13 18:32:03 ----D---- C:\ProgramData\Origin
2017-03-13 18:30:17 ----SHD---- C:\WINDOWS\Installer
2017-03-13 18:30:15 ----SHD---- C:\Config.Msi
2017-03-13 18:29:35 ----HD---- C:\ProgramData
2017-03-13 18:22:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-03-13 18:22:40 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-03-13 18:21:31 ----D---- C:\WINDOWS\system32\CatRoot
2017-03-13 17:01:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2017-03-13 16:58:38 ----D---- C:\Games
2017-03-13 14:31:41 ----RD---- C:\Program Files
2017-03-13 14:24:43 ----D---- C:\ProgramData\Package Cache
2017-03-12 14:24:24 ----D---- C:\ProgramData\NVIDIA Corporation
2017-03-12 14:21:32 ----D---- C:\Program Files\NVIDIA Corporation
2017-03-12 14:21:31 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-03-12 14:21:07 ----D---- C:\Program Files (x86)\VulkanRT
2017-03-11 18:15:45 ----D---- C:\ProgramData\Oracle
2017-03-11 18:15:27 ----D---- C:\Program Files (x86)\Common Files
2017-03-10 06:17:56 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-03-05 19:16:04 ----D---- C:\Users\Lenovo\AppData\Roaming\TS3Client
2017-03-04 08:09:22 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-02-25 11:38:51 ----D---- C:\Hry
2017-02-23 19:34:04 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-02-23 15:32:00 ----A---- C:\WINDOWS\NvContainerRecovery.bat
2017-02-23 15:30:51 ----A---- C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-02-23 11:32:10 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2017-02-23 11:32:10 ----A---- C:\WINDOWS\system32\nvapi64.dll
2017-02-23 09:28:46 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-02-23 09:28:46 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-02-22 23:34:11 ----SD---- C:\Users\Lenovo\AppData\Roaming\Microsoft
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-09-27 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-10-16 293352]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2016-02-14 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2017-02-24 48696]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-09-27 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-09-27 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-09-27 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-09-27 513632]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2016-03-04 498512]
R1 ESProtectionDriver;Malwarebytes Anti-Exploit; \??\C:\WINDOWS\system32\drivers\mbae64.sys [2017-01-20 77416]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-09-27 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-09-27 163416]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 IntelHaxm;Intel HAXM Service; C:\WINDOWS\system32\DRIVERS\IntelHaxm.sys [2015-11-16 96776]
R3 ACPIVPC;@oem2.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2015-06-04 42328]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw8x.sys [2016-07-16 4233728]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2016-07-13 610336]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-08-20 84992]
R3 CnxtHdAudService;@oem46.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-08-05 1317096]
R3 dtlitescsibus;@oem28.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-03-19 30264]
R3 dtliteusbbus;@oem33.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-03-19 47672]
R3 Hamachi;@oem57.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2016-07-20 45680]
R3 iwdbus;@oem45.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2016-07-16 121344]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_75b768c56d7110e3\nvlddmkm.sys [2017-02-24 14569528]
R3 nvvad_WaveExtensible;@oem32.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2017-01-06 47672]
R3 nvvhci;@oem38.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2017-02-23 59448]
R3 SensorsSimulatorDriver;@oem31.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [2016-07-16 216064]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-06-03 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2016-07-16 12800]
R3 SynTP;@oem16.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-06-03 613576]
R3 tap0901;@oem12.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R3 taphss6;@oem26.inf,%DeviceDescription%;Anchorfree HSS VPN Adapter; C:\WINDOWS\System32\drivers\taphss6.sys [2016-02-17 42064]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S2 ithsgt;ithsgt; C:\WINDOWS\system32\DRIVERS\ithsgt.sys [2016-08-11 207872]
S2 lilsgt;lilsgt; C:\WINDOWS\system32\DRIVERS\lilsgt.sys [2016-08-11 21504]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-09-27 37656]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 cpuz138;cpuz138; \??\C:\Users\Lenovo\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [2017-03-13 27320]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 MBAMFarflt;MBAMFarflt; \??\C:\WINDOWS\system32\drivers\farflt.sys [2017-03-13 110536]
S3 MBAMProtection;MBAMProtection; \??\C:\WINDOWS\system32\drivers\mbam.sys [2017-03-13 43968]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2017-03-13 251848]
S3 MBAMWebProtection;MBAMWebProtection; \??\C:\WINDOWS\system32\drivers\mwac.sys [2017-03-13 91584]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-02-23 29240]
S3 RSUSBVSTOR;@oem13.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-15 315536]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 tap-tb-0901;TunnelBear Adapter V9; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [2015-08-10 38656]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-27 197128]
R2 CDPUserSvc_191f29;CDPUserSvc_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2017-03-02 3416584]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2017-02-24 9728]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2017-02-27 419248]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 464440]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-02-23 462784]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-02-23 427064]
R2 OneSyncSvc_191f29;Hostitel synchronizace_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2016-04-30 131776]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-06-03 249032]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2012-10-26 282112]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 PimIndexMaintenanceSvc_191f29;Data kontaktů_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 NVIDIA Wireless Controller Service;NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe []
S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-06-22 1467072]
S3 EasyAntiCheat;EasyAntiCheat; C:\WINDOWS\syswow64\EasyAntiCheat.exe [2017-03-14 409128]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
S3 MessagingService_191f29;Služba zasílání zpráv_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-08 172488]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 464440]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-03-13 1590560]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll
-----------------EOF-----------------
=========Google Chrome=========
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension eofcbnmajmjmplflapaojjnihcjkigck 0 Avast SafePrice 12.0.155
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gighmmpiobklfepjocnamgkkbiglidom 1 AdBlock 3.8.4
Extension gomekmidlodglbbmalcneegieacbdmki 0 Avast Online Security 12.0.163
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.1
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5516.1005.0.3
Homepage: http://www.yessearches.com/?mode=nnnb&p ... Bn0tC34rAU..
default_search_provider.search_url:
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}]
"URL"=http://www.bing.com/search?q={searchTer ... DF&pc=MSE1
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-09-29 64640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-03-11 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-11 186944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2016-02-14 17079376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2016-02-14 191568]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-04-28 500936]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-03 3944136]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2017-02-23 1882168]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-03-14 1518304]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-03-13 3019552]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-06-22 4299968]
"BlueStacks Agent"=C:\Program Files (x86)\Bluestacks\HD-Agent.exe []
"World of Tanks"=C:\Games\World_of_Tanks\WargamingGameUpdater.exe []
"CyberGhost"=C:\Program Files\CyberGhost 6\CyberGhost.exe /autostart /min []
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2015-06-12 561672]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-11-17 9080768]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2013-05-14 139264]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2012-12-27 4522496]
"BrHelp"=C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2013-01-18 2009088]
"PPRX"=C:\Program Files (x86)\PPRX\start.vbs [2016-08-22 10881]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2017-03-02 5883912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"DisableCAD"=1
"SoftwareSASGeneration"=1
"SafeModeBlockNonAdmins"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FPS1"=frapsv64.dll
"vidc.tscc"=C:\WINDOWS\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\WINDOWS\SysWOW64\tsc2_codec64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-03-15 20:10:10 ----AD---- C:\Program Files (x86)\rocketleague
2017-03-14 20:00:36 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-03-14 20:00:18 ----A---- C:\WINDOWS\SYSWOW64\WPDShServiceObj.dll
2017-03-14 20:00:17 ----A---- C:\WINDOWS\SYSWOW64\wlanui.dll
2017-03-14 20:00:17 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-03-14 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-03-14 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2017-03-14 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-03-14 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-03-14 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2017-03-14 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2017-03-14 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\RADCUI.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msctfui.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msctfp.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-03-14 20:00:13 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-03-14 20:00:12 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-03-14 20:00:12 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-03-14 20:00:08 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2017-03-14 20:00:08 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2017-03-14 20:00:08 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-03-14 20:00:06 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-03-14 20:00:05 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-03-14 20:00:05 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-03-14 20:00:02 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-03-14 19:59:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2017-03-14 19:59:59 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2017-03-14 19:59:54 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-03-14 19:59:51 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-03-14 19:59:48 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\ddrawex.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-03-14 19:59:47 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2017-03-14 19:59:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-03-14 19:59:46 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2017-03-14 19:59:44 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-03-14 19:59:43 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2017-03-14 19:59:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2017-03-14 19:59:42 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2017-03-14 19:59:42 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2017-03-14 19:59:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-03-14 19:59:39 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2017-03-14 19:59:38 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-03-14 19:59:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-03-14 19:59:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-03-14 19:59:36 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-03-14 19:59:36 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-03-14 19:59:35 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-03-14 19:59:35 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\GamePanelExternalHook.dll
2017-03-14 19:59:33 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-03-14 19:59:32 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-03-14 19:59:31 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-03-14 19:59:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-03-14 19:59:30 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Diagnostics.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2017-03-14 19:59:29 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-03-14 19:59:28 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\netiohlp.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-03-14 19:59:27 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-03-14 19:59:26 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-03-14 19:59:25 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-03-14 19:59:24 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2017-03-14 19:59:23 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-03-14 19:59:22 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-03-14 19:59:21 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSetup.exe
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-03-14 19:59:20 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-03-14 19:59:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-14 19:59:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-03-14 19:59:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-03-14 19:59:17 ----A---- C:\WINDOWS\SYSWOW64\MSVP9DEC.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-03-14 19:59:16 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-03-14 19:59:15 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\MCCSEngineShared.dll
2017-03-14 19:59:14 ----A---- C:\WINDOWS\SYSWOW64\DavSyncProvider.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-03-14 19:59:13 ----A---- C:\WINDOWS\SYSWOW64\accountaccessor.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-03-14 19:59:11 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2017-03-14 19:59:10 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-03-14 19:59:10 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-03-14 19:59:09 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-03-14 19:59:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-03-14 19:59:08 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-03-14 19:59:08 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-03-14 19:59:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-03-14 19:59:05 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-03-14 19:59:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-03-14 19:59:04 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2017-03-14 19:59:04 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2017-03-14 19:59:03 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-03-14 19:58:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-03-14 19:58:59 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2017-03-14 19:58:59 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-03-14 19:58:58 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-03-14 19:58:57 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-03-14 19:58:56 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-03-14 19:58:55 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-03-14 19:58:54 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-03-14 19:58:53 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-03-14 19:58:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-03-14 19:58:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-03-14 19:58:52 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-03-14 19:58:51 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\tquery.dll
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-03-14 19:51:30 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssvp.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssphtb.dll
2017-03-14 19:51:29 ----A---- C:\WINDOWS\system32\mssph.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-03-14 19:51:28 ----A---- C:\WINDOWS\system32\mssitlb.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\XInputUap.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\XblGameSaveExt.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\wlidprov.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
2017-03-14 19:51:27 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-03-14 19:51:26 ----A---- C:\WINDOWS\system32\WinRtTracing.dll
2017-03-14 19:51:26 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-03-14 19:51:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-03-14 19:51:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-03-14 19:51:25 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-03-14 19:51:13 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-03-14 19:51:13 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-03-14 19:51:13 ----A---- C:\WINDOWS\system32\icfupgd.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-03-14 19:50:50 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2017-03-14 19:50:45 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-03-14 19:50:36 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-03-14 19:50:36 ----A---- C:\WINDOWS\system32\GamePanelExternalHook.dll
2017-03-14 19:50:36 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-03-14 19:50:34 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\CspCellularSettings.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2017-03-14 19:50:33 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-03-14 19:50:31 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-03-14 19:50:31 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-03-14 19:50:31 ----A---- C:\WINDOWS\system32\mispace.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\wlanui.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-03-14 19:50:29 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\winmde.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-03-14 19:50:28 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\WwaApi.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2017-03-14 19:50:27 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-03-14 19:50:26 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-03-14 19:50:26 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\wups.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-03-14 19:50:24 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-03-14 19:50:23 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2017-03-14 19:50:22 ----A---- C:\WINDOWS\system32\VSSVC.exe
2017-03-14 19:50:22 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-03-14 19:50:22 ----A---- C:\WINDOWS\system32\vds.exe
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\usoapi.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\Pimstore.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\DuCsps.dll
2017-03-14 19:50:21 ----A---- C:\WINDOWS\system32\cemapi.dll
2017-03-14 19:50:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-03-14 19:50:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-03-14 19:50:20 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-03-14 19:50:18 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2017-03-14 19:50:16 ----A---- C:\WINDOWS\system32\usocore.dll
2017-03-14 19:50:16 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\UserDataService.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-03-14 19:50:15 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-03-14 19:50:13 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-03-14 19:50:12 ----A---- C:\WINDOWS\system32\Unistore.dll
2017-03-14 19:50:12 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-03-14 19:50:12 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinui.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-03-14 19:50:11 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-03-14 19:50:10 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-03-14 19:50:10 ----A---- C:\WINDOWS\system32\thumbcache.dll
2017-03-14 19:50:10 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\tapi32.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\Tabbtn.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\netiohlp.dll
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-03-14 19:50:09 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\tabcal.exe
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\MultiDigiMon.exe
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\mscandui.dll
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2017-03-14 19:50:08 ----A---- C:\WINDOWS\system32\input.dll
2017-03-14 19:50:07 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-03-14 19:50:07 ----A---- C:\WINDOWS\system32\msutb.dll
2017-03-14 19:50:07 ----A---- C:\WINDOWS\system32\msctf.dll
2017-03-14 19:50:06 ----A---- C:\WINDOWS\system32\RADCUI.dll
2017-03-14 19:50:06 ----A---- C:\WINDOWS\system32\msctfui.dll
2017-03-14 19:50:06 ----A---- C:\WINDOWS\system32\msctfp.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\sud.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-03-14 19:50:05 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\stobject.dll
2017-03-14 19:50:04 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-03-14 19:50:03 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\scksp.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\certprop.dll
2017-03-14 19:50:02 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\shell32.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SHCore.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-03-14 19:50:01 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-03-14 19:50:00 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\vaultcli.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\tbauth.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-03-14 19:49:59 ----A---- C:\WINDOWS\system32\AuthHost.exe
2017-03-14 19:49:58 ----A---- C:\WINDOWS\system32\schannel.dll
2017-03-14 19:49:58 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-03-14 19:49:58 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-03-14 19:49:57 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-14 19:49:57 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\sdshext.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\sdengin2.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-03-14 19:49:56 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-03-14 19:49:55 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-03-14 19:49:55 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-03-14 19:49:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-03-14 19:49:53 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-03-14 19:49:52 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-03-14 19:49:52 ----A---- C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-03-14 19:49:51 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2017-03-14 19:49:50 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-03-14 19:49:50 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-03-14 19:49:50 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-03-14 19:49:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-03-14 19:49:46 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-03-14 19:49:44 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-03-14 19:49:44 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-03-14 19:49:43 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-03-14 19:49:43 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-03-14 19:49:43 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\rasgcw.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-03-14 19:49:41 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-03-14 19:49:41 ----A---- C:\WINDOWS\regedit.exe
2017-03-14 19:49:40 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-03-14 19:49:39 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-03-14 19:49:39 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-03-14 19:49:38 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-03-14 19:49:37 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2017-03-14 19:49:36 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-03-14 19:49:35 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\Wpc.dll
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-03-14 19:49:34 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2017-03-14 19:49:33 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-03-14 19:49:32 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-03-14 19:49:31 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-03-14 19:49:31 ----A---- C:\WINDOWS\system32\WpcMon.exe
2017-03-14 19:49:31 ----A---- C:\WINDOWS\system32\localspl.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-03-14 19:49:30 ----A---- C:\WINDOWS\system32\puiapi.dll
2017-03-14 19:49:29 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2017-03-14 19:49:28 ----A---- C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2017-03-14 19:49:28 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-03-14 19:49:27 ----A---- C:\WINDOWS\system32\oleacc.dll
2017-03-14 19:49:26 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-03-14 19:49:26 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-03-14 19:49:23 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-03-14 19:49:23 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-03-14 19:49:23 ----A---- C:\WINDOWS\system32\netshell.dll
2017-03-14 19:49:22 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-03-14 19:49:22 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2017-03-14 19:49:21 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2017-03-14 19:49:16 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-03-14 19:49:16 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-03-14 19:49:16 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-03-14 19:49:15 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-03-14 19:49:15 ----A---- C:\WINDOWS\system32\MSVP9DEC.dll
2017-03-14 19:49:14 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-03-14 19:49:14 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-03-14 19:49:11 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-03-14 19:49:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-03-14 19:49:11 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-03-14 19:49:10 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-03-14 19:49:08 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-03-14 19:49:07 ----A---- C:\WINDOWS\system32\mfds.dll
2017-03-14 19:49:06 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-03-14 19:49:06 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-03-14 19:49:06 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-03-14 19:49:05 ----A---- C:\WINDOWS\system32\wmp.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\mf.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\MCCSEngineShared.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\internetmail.dll
2017-03-14 19:49:04 ----A---- C:\WINDOWS\system32\DavSyncProvider.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\moshost.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\mos.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-03-14 19:49:03 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-14 19:49:02 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-03-14 19:49:00 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-03-14 19:48:58 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-03-14 19:48:58 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-03-14 19:48:57 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-03-14 19:48:56 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-03-14 19:48:55 ----A---- C:\WINDOWS\system32\mmc.exe
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-03-14 19:48:54 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-03-14 19:48:53 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-03-14 19:48:53 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-03-14 19:48:52 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-03-14 19:48:52 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2017-03-14 19:48:48 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-03-14 19:48:48 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2017-03-14 19:48:48 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2017-03-14 19:48:46 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-03-14 19:48:46 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-03-14 19:48:46 ----A---- C:\WINDOWS\system32\InputService.dll
2017-03-14 19:48:43 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-14 19:48:42 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-14 19:48:41 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-03-14 19:48:39 ----A---- C:\WINDOWS\system32\icm32.dll
2017-03-14 19:48:39 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-03-14 19:48:37 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-14 19:48:34 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-14 19:48:28 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-03-14 19:48:20 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-14 19:48:20 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2017-03-14 19:48:18 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-03-14 19:48:17 ----A---- C:\WINDOWS\HelpPane.exe
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\gpapi.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-03-14 19:48:16 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-03-14 19:48:15 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-03-14 19:48:15 ----A---- C:\WINDOWS\system32\gameux.dll
2017-03-14 19:48:15 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-03-14 19:48:14 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-03-14 19:48:14 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-03-14 19:48:10 ----A---- C:\WINDOWS\system32\resutils.dll
2017-03-14 19:48:10 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-03-14 19:48:07 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\werui.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\werconcpl.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\wer.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2017-03-14 19:48:04 ----A---- C:\WINDOWS\explorer.exe
2017-03-14 19:48:03 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-03-14 19:48:03 ----A---- C:\WINDOWS\system32\evr.dll
2017-03-14 19:48:02 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkFoldersGPExt.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2017-03-14 19:48:01 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-03-14 19:48:00 ----A---- C:\WINDOWS\system32\DXP.dll
2017-03-14 19:47:59 ----A---- C:\WINDOWS\system32\dui70.dll
2017-03-14 19:47:59 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2017-03-14 19:47:59 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\ddrawex.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-03-14 19:47:58 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-03-14 19:47:57 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-03-14 19:47:57 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-03-14 19:47:57 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2017-03-14 19:47:56 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-03-14 19:47:56 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-03-14 19:47:55 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\quartz.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-03-14 19:47:54 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-03-14 19:47:53 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-03-14 19:47:52 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-03-14 19:47:52 ----A---- C:\WINDOWS\system32\dcntel.dll
2017-03-14 19:47:51 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-03-14 19:47:51 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-03-14 19:47:51 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-03-14 19:47:50 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-03-14 19:47:50 ----A---- C:\WINDOWS\system32\uDWM.dll
2017-03-14 19:47:49 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-03-14 19:47:49 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2017-03-14 19:47:49 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-03-14 19:47:46 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-03-14 19:47:46 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-03-14 19:47:46 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-03-14 19:47:45 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-03-14 19:47:43 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-03-14 19:47:43 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-03-14 19:47:43 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-03-14 19:47:42 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-03-14 19:47:41 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-03-14 19:47:41 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\combase.dll
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-03-14 19:47:40 ----A---- C:\WINDOWS\system32\ci.dll
2017-03-14 19:47:38 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-03-14 19:47:38 ----A---- C:\WINDOWS\system32\cdp.dll
2017-03-14 19:47:38 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
2017-03-14 19:47:26 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-03-14 19:47:24 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-03-14 19:47:24 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2017-03-14 19:47:20 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-03-14 19:47:18 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2017-03-14 19:47:17 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-03-14 19:47:12 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2017-03-14 19:47:12 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-03-14 19:47:11 ----A---- C:\WINDOWS\system32\bootux.dll
2017-03-14 19:47:10 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\winresume.exe
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\winload.exe
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\wbengine.exe
2017-03-14 19:47:09 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-03-14 19:47:03 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-03-14 19:47:01 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-03-14 19:47:00 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-03-14 19:46:58 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\invagent.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\devinv.dll
2017-03-14 19:46:57 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-03-14 19:46:56 ----A---- C:\WINDOWS\system32\authui.dll
2017-03-14 19:46:55 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-03-14 19:46:55 ----A---- C:\WINDOWS\system32\aepic.dll
2017-03-14 19:46:50 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-03-14 19:46:49 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-03-14 19:46:48 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-03-14 19:46:48 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-03-14 19:46:47 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-03-14 19:46:47 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-03-14 19:46:47 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-03-14 19:46:41 ----A---- C:\WINDOWS\system32\drivers\hvsocket.sys
2017-03-14 19:46:40 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-03-14 19:46:40 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2017-03-14 19:46:40 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2017-03-14 19:46:39 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-03-14 19:46:39 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-03-14 19:46:38 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-03-14 19:46:38 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2017-03-14 19:46:37 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-03-14 19:46:11 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2017-03-14 19:46:11 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2017-03-13 18:25:35 ----AD---- C:\Program Files (x86)\LogMeIn Hamachi
2017-03-13 14:31:41 ----D---- C:\Program Files\Epic Games
2017-03-12 14:16:48 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\nvopencl.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2017-03-12 14:16:48 ----A---- C:\WINDOWS\system32\drivers\nvpciflt.sys
2017-03-12 14:16:47 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2017-03-12 14:16:47 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2017-03-12 14:16:47 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2017-03-12 14:16:44 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-03-12 14:16:43 ----A---- C:\WINDOWS\system32\nvdispgenco6437878.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvdispco6437878.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvcuda.dll
2017-03-12 14:16:42 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2017-03-12 14:16:41 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2017-03-12 14:13:34 ----D---- C:\NVIDIA
2017-03-11 18:15:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2017-03-11 18:14:16 ----D---- C:\Program Files (x86)\Java
2017-03-11 17:54:32 ----D---- C:\Users\Lenovo\AppData\Roaming\.minecraft
2017-02-25 11:33:44 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2017-02-25 11:33:44 ----A---- C:\WINDOWS\system32\drivers\farflt.sys
2017-02-25 11:33:39 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2017-02-25 11:33:35 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2017-02-25 11:33:14 ----A---- C:\WINDOWS\system32\drivers\mbae64.sys
2017-02-25 11:33:03 ----D---- C:\Program Files\Malwarebytes
====== List of files/folders modified in the last 1 month ======
2017-03-16 13:50:01 ----D---- C:\WINDOWS\Prefetch
2017-03-16 13:49:59 ----D---- C:\Program Files\trend micro
2017-03-16 13:19:01 ----D---- C:\WINDOWS\system32\sru
2017-03-16 13:05:05 ----D---- C:\WINDOWS\System32
2017-03-16 13:05:05 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-03-16 13:01:37 ----D---- C:\WINDOWS\Temp
2017-03-16 13:01:37 ----D---- C:\WINDOWS\system32\SleepStudy
2017-03-16 12:50:30 ----D---- C:\WINDOWS\system32\DriverStore
2017-03-16 12:50:25 ----D---- C:\WINDOWS\WinSxS
2017-03-16 12:40:16 ----D---- C:\WINDOWS\system32\catroot2
2017-03-16 12:33:27 ----SHD---- C:\System Volume Information
2017-03-16 12:31:04 ----D---- C:\WINDOWS\system32\config
2017-03-16 12:26:50 ----RD---- C:\WINDOWS\Microsoft.NET
2017-03-16 12:25:43 ----D---- C:\ProgramData\NVIDIA
2017-03-16 12:24:57 ----RSD---- C:\WINDOWS\assembly
2017-03-16 10:22:40 ----D---- C:\WINDOWS\AppReadiness
2017-03-16 10:22:12 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-03-16 10:17:22 ----D---- C:\WINDOWS\INF
2017-03-16 10:16:36 ----AD---- C:\Program Files (x86)\Hi-Rez Studios
2017-03-16 10:16:00 ----A---- C:\HaxLogs.txt
2017-03-16 10:15:27 ----D---- C:\WINDOWS\system32\drivers
2017-03-15 22:49:08 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-03-15 22:49:08 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-03-15 22:49:08 ----AD---- C:\WINDOWS\SysWOW64
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\wbem
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\setup
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\oobe
2017-03-15 22:48:51 ----D---- C:\WINDOWS\system32\migration
2017-03-15 22:48:50 ----SD---- C:\WINDOWS\system32\F12
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\en-US
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\cs-CZ
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\Boot
2017-03-15 22:48:50 ----D---- C:\WINDOWS\system32\appraiser
2017-03-15 22:48:36 ----D---- C:\WINDOWS\ShellExperiences
2017-03-15 22:48:35 ----RD---- C:\WINDOWS\PrintDialog
2017-03-15 22:48:34 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-03-15 22:48:32 ----D---- C:\WINDOWS\bcastdvr
2017-03-15 22:48:32 ----D---- C:\WINDOWS\AppPatch
2017-03-15 22:48:32 ----D---- C:\Windows
2017-03-15 22:48:32 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-03-15 22:48:32 ----D---- C:\Program Files (x86)\Windows Mail
2017-03-15 22:48:31 ----RD---- C:\Program Files\Windows Defender
2017-03-15 22:48:31 ----D---- C:\Program Files\Windows Photo Viewer
2017-03-15 22:48:31 ----D---- C:\Program Files\Windows Mail
2017-03-15 22:48:31 ----D---- C:\Program Files\Internet Explorer
2017-03-15 22:48:31 ----D---- C:\Program Files (x86)\Windows Defender
2017-03-15 22:48:31 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-15 20:18:01 ----D---- C:\Users\Lenovo\AppData\Roaming\uTorrent
2017-03-15 20:10:10 ----RD---- C:\Program Files (x86)
2017-03-15 19:46:36 ----A---- C:\WINDOWS\BRRBCOM.INI
2017-03-15 17:42:58 ----HD---- C:\Program Files\WindowsApps
2017-03-14 20:51:23 ----D---- C:\WINDOWS\system32\MRT
2017-03-14 20:48:01 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-03-14 20:47:52 ----D---- C:\WINDOWS\CbsTemp
2017-03-14 18:29:39 ----D---- C:\WINDOWS\Minidump
2017-03-14 18:20:39 ----AD---- C:\Program Files (x86)\Steam
2017-03-14 17:53:29 ----D---- C:\WINDOWS\system32\NDF
2017-03-14 15:56:17 ----A---- C:\WINDOWS\SYSWOW64\EasyAntiCheat.exe
2017-03-14 15:19:39 ----D---- C:\WINDOWS\LiveKernelReports
2017-03-14 12:17:55 ----D---- C:\WINDOWS\system32\Tasks
2017-03-13 18:32:03 ----D---- C:\ProgramData\Origin
2017-03-13 18:30:17 ----SHD---- C:\WINDOWS\Installer
2017-03-13 18:30:15 ----SHD---- C:\Config.Msi
2017-03-13 18:29:35 ----HD---- C:\ProgramData
2017-03-13 18:22:40 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-03-13 18:22:40 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-03-13 18:21:31 ----D---- C:\WINDOWS\system32\CatRoot
2017-03-13 17:01:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2017-03-13 16:58:38 ----D---- C:\Games
2017-03-13 14:31:41 ----RD---- C:\Program Files
2017-03-13 14:24:43 ----D---- C:\ProgramData\Package Cache
2017-03-12 14:24:24 ----D---- C:\ProgramData\NVIDIA Corporation
2017-03-12 14:21:32 ----D---- C:\Program Files\NVIDIA Corporation
2017-03-12 14:21:31 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-03-12 14:21:07 ----D---- C:\Program Files (x86)\VulkanRT
2017-03-11 18:15:45 ----D---- C:\ProgramData\Oracle
2017-03-11 18:15:27 ----D---- C:\Program Files (x86)\Common Files
2017-03-10 06:17:56 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-03-05 19:16:04 ----D---- C:\Users\Lenovo\AppData\Roaming\TS3Client
2017-03-04 08:09:22 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-02-25 11:38:51 ----D---- C:\Hry
2017-02-23 19:34:04 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2017-02-23 19:34:04 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-02-23 15:32:00 ----A---- C:\WINDOWS\NvContainerRecovery.bat
2017-02-23 15:30:51 ----A---- C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-02-23 11:32:10 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2017-02-23 11:32:10 ----A---- C:\WINDOWS\system32\nvapi64.dll
2017-02-23 09:28:46 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-02-23 09:28:46 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-02-23 09:28:37 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-02-22 23:34:11 ----SD---- C:\Users\Lenovo\AppData\Roaming\Microsoft
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-09-27 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-10-16 293352]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2016-02-14 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2017-02-24 48696]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-09-27 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-09-27 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-09-27 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-09-27 513632]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2016-03-04 498512]
R1 ESProtectionDriver;Malwarebytes Anti-Exploit; \??\C:\WINDOWS\system32\drivers\mbae64.sys [2017-01-20 77416]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-09-27 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-09-27 163416]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 IntelHaxm;Intel HAXM Service; C:\WINDOWS\system32\DRIVERS\IntelHaxm.sys [2015-11-16 96776]
R3 ACPIVPC;@oem2.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2015-06-04 42328]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw8x.sys [2016-07-16 4233728]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2016-07-13 610336]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-08-20 84992]
R3 CnxtHdAudService;@oem46.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-08-05 1317096]
R3 dtlitescsibus;@oem28.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-03-19 30264]
R3 dtliteusbbus;@oem33.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-03-19 47672]
R3 Hamachi;@oem57.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2016-07-20 45680]
R3 iwdbus;@oem45.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2016-07-16 121344]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_75b768c56d7110e3\nvlddmkm.sys [2017-02-24 14569528]
R3 nvvad_WaveExtensible;@oem32.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2017-01-06 47672]
R3 nvvhci;@oem38.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2017-02-23 59448]
R3 SensorsSimulatorDriver;@oem31.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [2016-07-16 216064]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-06-03 42696]
R3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2016-07-16 12800]
R3 SynTP;@oem16.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-06-03 613576]
R3 tap0901;@oem12.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\System32\drivers\tap0901.sys [2014-11-05 27136]
R3 taphss6;@oem26.inf,%DeviceDescription%;Anchorfree HSS VPN Adapter; C:\WINDOWS\System32\drivers\taphss6.sys [2016-02-17 42064]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S2 ithsgt;ithsgt; C:\WINDOWS\system32\DRIVERS\ithsgt.sys [2016-08-11 207872]
S2 lilsgt;lilsgt; C:\WINDOWS\system32\DRIVERS\lilsgt.sys [2016-08-11 21504]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-09-27 37656]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 cpuz138;cpuz138; \??\C:\Users\Lenovo\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [2017-03-13 27320]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-20 50240]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 MBAMFarflt;MBAMFarflt; \??\C:\WINDOWS\system32\drivers\farflt.sys [2017-03-13 110536]
S3 MBAMProtection;MBAMProtection; \??\C:\WINDOWS\system32\drivers\mbam.sys [2017-03-13 43968]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2017-03-13 251848]
S3 MBAMWebProtection;MBAMWebProtection; \??\C:\WINDOWS\system32\drivers\mwac.sys [2017-03-13 91584]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-02-23 29240]
S3 RSUSBVSTOR;@oem13.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-15 315536]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 tap-tb-0901;TunnelBear Adapter V9; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [2015-08-10 38656]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-09-27 197128]
R2 CDPUserSvc_191f29;CDPUserSvc_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2017-03-02 3416584]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2017-02-24 9728]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2017-02-27 419248]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 464440]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-02-23 462784]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-02-23 427064]
R2 OneSyncSvc_191f29;Hostitel synchronizace_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2016-04-30 131776]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-06-03 249032]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2012-10-26 282112]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
R3 PimIndexMaintenanceSvc_191f29;Data kontaktů_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 NVIDIA Wireless Controller Service;NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe []
S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-06-22 1467072]
S3 EasyAntiCheat;EasyAntiCheat; C:\WINDOWS\syswow64\EasyAntiCheat.exe [2017-03-14 409128]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
S3 MessagingService_191f29;Služba zasílání zpráv_191f29; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-03-08 172488]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 464440]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-03-13 1590560]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll
-----------------EOF-----------------
Re: Prosím o kontrolu
Zdravím, smaž nepotřebné soubory
pomocí CCleaneru
návod :
Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš
Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)
čištění registru je třeba několikrát zopakovat !
Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém
Stáhni a spusť AdwCleaner,
ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,
objeví se okno kde vlevo nahoře klikni na Scan.
Po dokončení skenu klikni na Clean,
proběhne restart PC kdy dojde ke smazání nepořádku.
Po té mi sem zkopíruj Report.
pomocí CCleaneru
návod :
Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš
Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)
čištění registru je třeba několikrát zopakovat !
Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém
Stáhni a spusť AdwCleaner,
ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,
objeví se okno kde vlevo nahoře klikni na Scan.
Po dokončení skenu klikni na Clean,
proběhne restart PC kdy dojde ke smazání nepořádku.
Po té mi sem zkopíruj Report.
Re: Prosím o kontrolu
# AdwCleaner v6.044 - Log vytvořen 16/03/2017 v 20:28:46
# Aktualizováno dne 28/02/2017 z Malwarebytes
# Databáze : 2017-03-15.2 [Místní]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Lenovo - PC
# Spuštěno z : C:\Users\Lenovo\Desktop\adwcleaner_6.044.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka smazána: C:\WINDOWS\SysWOW64\_tWm
[-] Složka smazána: C:\Users\Lenovo\AppData\Roaming\Firefox
[-] Složka smazána: C:\Users\Lenovo\AppData\Local\Firefox
***** [ Soubory ] *****
[-] Soubor smazán: C:\Users\Public\Documents\report.dat
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\nuesearch.com
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.nuesearch.com
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\nuesearch.com
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.nuesearch.com
[-] Klíč smazán: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\hola.org
[-] Klíč smazán: HKCU\SOFTWARE\Clients\StartMenuInternet\ChromeHTML
***** [ Prohlížeče ] *****
[-] [C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: google
[-] [C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Smazáno: hxxp://www.yessearches.com/?mode=nnnb&ptid=wak ... Bn0tC34rAU..
[-] [C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default] [homepage] Smazáno: hxxp://www.yessearches.com/?mode=nnnb&ptid=wak ... Bn0tC34rAU..
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [8518 Bajty] - [09/09/2016 16:38:10]
C:\AdwCleaner\AdwCleaner[C2].txt - [5403 Bajty] - [16/03/2017 20:28:46]
C:\AdwCleaner\AdwCleaner[S0].txt - [10398 Bajty] - [09/09/2016 16:33:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [5722 Bajty] - [16/03/2017 20:04:26]
C:\AdwCleaner\AdwCleaner[S2].txt - [5797 Bajty] - [16/03/2017 20:06:47]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [5696 Bajty] ##########
# Aktualizováno dne 28/02/2017 z Malwarebytes
# Databáze : 2017-03-15.2 [Místní]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Lenovo - PC
# Spuštěno z : C:\Users\Lenovo\Desktop\adwcleaner_6.044.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka smazána: C:\WINDOWS\SysWOW64\_tWm
[-] Složka smazána: C:\Users\Lenovo\AppData\Roaming\Firefox
[-] Složka smazána: C:\Users\Lenovo\AppData\Local\Firefox
***** [ Soubory ] *****
[-] Soubor smazán: C:\Users\Public\Documents\report.dat
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\nuesearch.com
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.nuesearch.com
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\nuesearch.com
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.akcniceny.cz
[-] Klíč smazán: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\nuesearch.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.akcniceny.cz
[#] Klíč smazán po restartu: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.nuesearch.com
[-] Klíč smazán: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\hola.org
[-] Klíč smazán: HKCU\SOFTWARE\Clients\StartMenuInternet\ChromeHTML
***** [ Prohlížeče ] *****
[-] [C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: google
[-] [C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] Smazáno: hxxp://www.yessearches.com/?mode=nnnb&ptid=wak ... Bn0tC34rAU..
[-] [C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default] [homepage] Smazáno: hxxp://www.yessearches.com/?mode=nnnb&ptid=wak ... Bn0tC34rAU..
*************************
:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [8518 Bajty] - [09/09/2016 16:38:10]
C:\AdwCleaner\AdwCleaner[C2].txt - [5403 Bajty] - [16/03/2017 20:28:46]
C:\AdwCleaner\AdwCleaner[S0].txt - [10398 Bajty] - [09/09/2016 16:33:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [5722 Bajty] - [16/03/2017 20:04:26]
C:\AdwCleaner\AdwCleaner[S2].txt - [5797 Bajty] - [16/03/2017 20:06:47]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [5696 Bajty] ##########