máme ode dneška problémy, jako řada ostatních - Chrome jednou za čas otevře sám od sebe stránku (reklamu nebo porno atp.), mění vyhledávač či domovskou stránku, přesměrovává v průběhu vyhledávání, atp.
Přikládám log z RSIT a prosím o pomoc.
Stáhl jsem si nějaké programy podle jiných příspěvků, ale nakonec jsem se rozhodl raději počkat na pomoc někoho znalého, ať nenadělám víc škody
Jelikož se mi sem celý log soubor nevejde, jsem nucen ho rozdělit.
1. část:
Logfile of random's system information tool 1.10 (written by random/random)
Run by fibou at 2017-04-09 23:53:34
Microsoft Windows 10 Home
System drive C: has 523 GB (58%) free of 906 GB
Total RAM: 8106 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:53:49, on 09.04.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe
C:\Windows\WebCam\S6000\S6000Mnt.exe
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe
C:\Program Files\trend micro\fibou.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo15.msn.com/?pc=LCTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo15.msn.com/?pc=LCTE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://tech-access.biz/wpad.dat?785f380 ... 6628090532
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\Lenovo\Power2Go\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon
O4 - HKCU\..\Run: [OneDrive] "C:\Users\fibou\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @oem83.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: System Interface Foundation Service (ImControllerService) - Lenovo Group Limited - c:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo Solution Center System Service (LSC.Services.SystemService) - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 10980 bytes
======Listing Processes======
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
winlogon.exe
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e40a3f80-6974-4697-ab70-23a0ae6546cd -SystemEventPortName:HostProcess-3afb9841-9cb0-4f03-a6e0-7073848f4f39 -IoCancelEventPortName:HostProcess-5655c2a9-c106-4eb7-a66d-569e2964c55b -NonStateChangingEventPortName:HostProcess-c2c5a38a-18ec-462a-9747-705198d91600 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4931d537-a48d-46a6-9a49-37dabbbf8a6f -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-0939c0f9-f3e3-478f-b002-d61969b97e25 -SystemEventPortName:HostProcess-2e1c574d-92ba-488d-89ce-7f08d9a31334 -IoCancelEventPortName:HostProcess-0e8d10a3-abe7-4d31-9061-2a420462f45c -NonStateChangingEventPortName:HostProcess-d60e3ea4-513d-4584-b64f-8de17a69f5c3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6479301e-7519-48f7-92d5-06bd75612dd0 -DeviceGroupId:
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\WLANExt.exe 2098004999840
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {d898f9d6-ea80-4996-88697db569d24af0}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\ibtsiva
"c:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
C:\WINDOWS\SysWOW64\SAsrv.exe
C:\WINDOWS\system32\CxAudMsg64.exe
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Origin\OriginWebHelperService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
sihost.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\smartscreen.exe -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
-name 73156774-59c0-4b7f-9514-9bdbe05476ec -runas -pluginName LenovoAudioPlugin -pluginVersion 1.2.163.0
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\Windows Defender\\MpCmdRun.exe" SignatureUpdate -ScheduleJob -RestrictPrivileges -Reinvoke
"C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe"
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\WebCam\S6000\S6000Mnt.exe"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Program Files\Lenovo\LenovoUtility\utility.exe"
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe"
AvastUI.exe /nogui
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe"
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49330" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll','process_input_options.txt' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll','service=yes' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll','pause=60000 working_dir=C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData override_existing_tracing=no limit_output_by_filesize_mb=10' os='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\os_counters.txt' "
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"fontdrvhost.exe"
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\fibou\AppData\Local\Apps\2.0\RXBE5J22.X2G\VXH0QHK8.G7B\lsb...tion_2d7b41b05b24775e_0001.0006_6e55c1acac1ba44a\LSB.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 "--database=C:\Users\fibou\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\fibou\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=57.0.2987.133 --initial-client-data=0x2c8,0x2cc,0x2d0,0x2c4,0x2d4,0x7ffff1d13970,0x7ffff1d13960,0x7ffff1d13980
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=7656 --on-initialized-event-handle=884 --parent-handle=888 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1528 --supports-dual-gpus=false --gpu-driver-bug-workarounds=7,10,19,23,41,61,74 --disable-gl-extensions="GL_KHR_blend_equation_advanced GL_KHR_blend_equation_advanced_coherent" --gpu-vendor-id=0x8086 --gpu-device-id=0x1616 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4531 --gpu-driver-date=9-29-2016 --gpu-secondary-vendor-ids=0x10de --gpu-secondary-device-ids=0x1341 --service-request-channel-token=C09ACB6417CF6D4918B19CE09F85A7D5 --mojo-platform-channel-handle=1540 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --lang=cs --service-request-channel-token=A91239698F40B0199F6DDB6AAA0A192F --mojo-platform-channel-handle=3924 --ignored=" --type=renderer " /prefetch:8
-name 06a1d565-f3f2-4419-899b-88b5f7d41ee1 -runas -pluginName LenovoAppPromotionPlugin -pluginVersion 1.2.88.0
"C:\Program Files\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe" -name 6c2ea844-6f05-4061-9587-b7b153f2cd90 -runas SYSTEM -pluginName LenovoAuthenticationPlugin -pluginVersion 1.2.75.0
"C:\Users\fibou\AppData\Local\Temp\mpam-a73a9db8.exe" /q WD
-name 47f58925-6850-48bd-a74e-a3b31703c653 -runas -pluginName LenovoSettingsAppPlugin -pluginVersion 1.2.92.0
"C:\Program Files\Lenovo\iMController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe" -name 887bd195-a47b-452b-94e3-68f75b791b94 -runas SYSTEM -pluginName LenovoSystemUpdatePlugin -pluginVersion 1.2.78.0
"C:\WINDOWS\SERVIC~2\NETWOR~1\AppData\Local\Temp\mpam-cf8dbf0f.exe" /q WD
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1528 --primordial-pipe-token=05278F8E5B0E698822F0F1718069DF86 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=05278F8E5B0E698822F0F1718069DF86 --renderer-client-id=16 --mojo-platform-channel-handle=5236 /prefetch:1
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe"
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1051_none_7f2bf7ea21d201b2\TiWorker.exe -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x318
"C:\Users\fibou\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"S6000Mnt"=C:\WINDOWS\WebCam\S6000\S6000Mnt.exe [2016-02-24 516608]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"LenovoUtility"=C:\Program Files\Lenovo\LenovoUtility\utility.exe [2015-08-31 791848]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-07-25 36352]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2017-03-22 303928]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-04-05 213824]
"Malwarebytes TrayApp"=C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2017-01-20 2780112]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\fibou\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-09-30 554176]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CLMLServer_For_P2G8"=C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe [2015-07-21 110008]
"CLVirtualDrive"=C:\Program Files (x86)\Lenovo\Power2Go\VirtualDrive.exe [2015-07-21 492472]
"CanonQuickMenu"=C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2012-04-03 1273448]
"kbdsprt"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-04-09 23:53:35 ----D---- C:\Program Files\trend micro
2017-04-09 23:53:34 ----D---- C:\rsit
2017-04-09 23:41:07 ----D---- C:\ProgramData\SWCUTemp
2017-04-09 22:57:19 ----A---- C:\WINDOWS\system32\drivers\MBAMChameleon.sys
2017-04-09 22:57:17 ----A---- C:\WINDOWS\system32\drivers\farflt.sys
2017-04-09 22:57:12 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2017-04-09 22:57:09 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2017-04-09 22:57:03 ----A---- C:\WINDOWS\system32\drivers\mbae64.sys
2017-04-09 22:56:59 ----D---- C:\ProgramData\Malwarebytes
2017-04-09 22:56:59 ----D---- C:\Program Files\Malwarebytes
2017-04-09 22:08:20 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2017-04-09 22:03:59 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-04-09 22:00:34 ----D---- C:\AdwCleaner
2017-04-05 11:30:49 ----A---- C:\WINDOWS\system32\aswBoot.exe
2017-03-31 10:24:00 ----D---- C:\Program Files\iPod
2017-03-31 10:23:59 ----AD---- C:\Program Files\iTunes
2017-03-31 10:21:33 ----AD---- C:\Program Files (x86)\Apple Software Update
2017-03-29 17:49:53 ----D---- C:\Users\fibou\AppData\Roaming\ViberPC
2017-03-14 23:36:34 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\WPDShServiceObj.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\wlanui.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2017-03-14 23:36:28 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-03-14 23:36:27 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2017-03-14 23:36:27 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-03-14 23:36:27 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\RADCUI.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\msctfui.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\msctfp.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-03-14 23:36:26 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-03-14 23:36:25 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-03-14 23:36:22 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2017-03-14 23:36:22 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2017-03-14 23:36:22 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-03-14 23:36:21 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-03-14 23:36:21 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-03-14 23:36:21 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-03-14 23:36:19 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-03-14 23:36:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2017-03-14 23:36:17 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2017-03-14 23:36:13 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-03-14 23:36:10 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-03-14 23:36:07 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-03-14 23:36:07 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-03-14 23:36:07 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-03-14 23:36:07 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-03-14 23:36:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-03-14 23:36:06 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-03-14 23:36:06 ----A---- C:\WINDOWS\SYSWOW64\ddrawex.dll
2017-03-14 23:36:06 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-03-14 23:36:03 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-03-14 23:36:03 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-03-14 23:36:03 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-03-14 23:36:03 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2017-03-14 23:36:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2017-03-14 23:36:00 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2017-03-14 23:36:00 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2017-03-14 23:35:57 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-03-14 23:35:57 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-03-14 23:35:57 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-03-14 23:35:57 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2017-03-14 23:35:56 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2017-03-14 23:35:55 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2017-03-14 23:35:55 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2017-03-14 23:35:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-03-14 23:35:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-03-14 23:35:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-03-14 23:35:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-03-14 23:35:54 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-03-14 23:35:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-03-14 23:35:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-03-14 23:35:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-03-14 23:35:54 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-03-14 23:35:54 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-03-14 23:35:53 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-03-14 23:35:53 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-03-14 23:35:48 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-03-14 23:35:48 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-03-14 23:35:48 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-03-14 23:35:48 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-03-14 23:35:48 ----A---- C:\WINDOWS\SYSWOW64\GamePanelExternalHook.dll
2017-03-14 23:35:48 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-03-14 23:35:47 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-03-14 23:35:46 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-03-14 23:35:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-03-14 23:35:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-03-14 23:35:46 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-03-14 23:35:44 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-03-14 23:35:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Diagnostics.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2017-03-14 23:35:41 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2017-03-14 23:35:40 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-03-14 23:35:39 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-03-14 23:35:38 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-03-14 23:35:37 ----A---- C:\WINDOWS\SYSWOW64\netiohlp.dll
2017-03-14 23:35:37 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-03-14 23:35:36 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-03-14 23:35:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-03-14 23:35:34 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-03-14 23:35:34 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2017-03-14 23:35:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-03-14 23:35:34 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-03-14 23:35:34 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-03-14 23:35:33 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-03-14 23:35:32 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-03-14 23:35:31 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2017-03-14 23:35:31 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-03-14 23:35:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-03-14 23:35:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-03-14 23:35:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-03-14 23:35:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-03-14 23:35:28 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2017-03-14 23:35:28 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-03-14 23:35:28 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-03-14 23:35:28 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-03-14 23:35:27 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-03-14 23:35:27 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2017-03-14 23:35:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-03-14 23:35:27 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-03-14 23:35:26 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-03-14 23:35:26 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2017-03-14 23:35:26 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSetup.exe
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2017-03-14 23:35:25 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-03-14 23:35:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-03-14 23:35:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-03-14 23:35:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-14 23:35:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-03-14 23:35:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-03-14 23:35:18 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-03-14 23:35:18 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-03-14 23:35:18 ----A---- C:\WINDOWS\SYSWOW64\MSVP9DEC.dll
2017-03-14 23:35:17 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-03-14 23:35:17 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-03-14 23:35:17 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-03-14 23:35:16 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-03-14 23:35:16 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-03-14 23:35:16 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-03-14 23:35:16 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-03-14 23:35:15 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\MCCSEngineShared.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\DavSyncProvider.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-03-14 23:35:14 ----A---- C:\WINDOWS\SYSWOW64\accountaccessor.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-03-14 23:35:12 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2017-03-14 23:35:11 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-03-14 23:35:11 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-03-14 23:35:09 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-03-14 23:35:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-03-14 23:35:07 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-03-14 23:35:07 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-03-14 23:35:04 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-03-14 23:35:02 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-03-14 23:35:02 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-03-14 23:35:01 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2017-03-14 23:35:01 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2017-03-14 23:35:00 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-03-14 23:34:52 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-03-14 23:34:51 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2017-03-14 23:34:50 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-03-14 23:34:50 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-03-14 23:34:50 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-03-14 23:34:49 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-03-14 23:34:48 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-03-14 23:34:47 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-03-14 23:34:46 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-03-14 23:34:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-03-14 23:34:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-03-14 23:34:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-03-14 23:34:44 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-03-14 23:34:43 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\tquery.dll
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\mssvp.dll
2017-03-14 23:24:21 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-03-14 23:24:20 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-03-14 23:24:20 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-03-14 23:24:20 ----A---- C:\WINDOWS\system32\mssphtb.dll
2017-03-14 23:24:20 ----A---- C:\WINDOWS\system32\mssph.dll
2017-03-14 23:24:20 ----A---- C:\WINDOWS\system32\mssitlb.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\XblGameSaveExt.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\wlidprov.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-03-14 23:24:18 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-03-14 23:24:17 ----A---- C:\WINDOWS\system32\XInputUap.dll
2017-03-14 23:24:17 ----A---- C:\WINDOWS\system32\WinRtTracing.dll
2017-03-14 23:24:17 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-03-14 23:24:17 ----A---- C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
2017-03-14 23:24:17 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-03-14 23:24:17 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-03-14 23:24:15 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-03-14 23:24:15 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-03-14 23:24:15 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-03-14 23:24:00 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-03-14 23:24:00 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-03-14 23:24:00 ----A---- C:\WINDOWS\system32\icfupgd.dll
2017-03-14 23:23:32 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-03-14 23:23:32 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-03-14 23:23:31 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-03-14 23:23:31 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2017-03-14 23:23:26 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-03-14 23:23:14 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-03-14 23:23:14 ----A---- C:\WINDOWS\system32\GamePanelExternalHook.dll
2017-03-14 23:23:14 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-03-14 23:23:11 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-03-14 23:23:10 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-03-14 23:23:10 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-03-14 23:23:10 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-03-14 23:23:10 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-03-14 23:23:10 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-03-14 23:23:09 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2017-03-14 23:23:09 ----A---- C:\WINDOWS\system32\CspCellularSettings.dll
2017-03-14 23:23:09 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2017-03-14 23:23:07 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-03-14 23:23:07 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-03-14 23:23:07 ----A---- C:\WINDOWS\system32\mispace.dll
2017-03-14 23:23:03 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-03-14 23:23:02 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-03-14 23:23:02 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-03-14 23:23:02 ----A---- C:\WINDOWS\system32\wlanui.dll
2017-03-14 23:23:02 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-03-14 23:23:02 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-03-14 23:23:02 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2017-03-14 23:23:01 ----A---- C:\WINDOWS\system32\winmde.dll
2017-03-14 23:23:01 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-03-14 23:23:01 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-03-14 23:23:01 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-03-14 23:23:01 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-03-14 23:23:01 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-03-14 23:23:00 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-03-14 23:23:00 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-03-14 23:23:00 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\WwaApi.dll
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-03-14 23:22:59 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2017-03-14 23:22:55 ----A---- C:\WINDOWS\system32\wups.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-03-14 23:22:54 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2017-03-14 23:22:53 ----A---- C:\WINDOWS\system32\VSSVC.exe
2017-03-14 23:22:53 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-03-14 23:22:53 ----A---- C:\WINDOWS\system32\vds.exe
2017-03-14 23:22:52 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2017-03-14 23:22:52 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-03-14 23:22:52 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-03-14 23:22:52 ----A---- C:\WINDOWS\system32\Pimstore.dll
2017-03-14 23:22:52 ----A---- C:\WINDOWS\system32\cemapi.dll
2017-03-14 23:22:51 ----A---- C:\WINDOWS\system32\usoapi.dll
2017-03-14 23:22:51 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-03-14 23:22:51 ----A---- C:\WINDOWS\system32\DuCsps.dll
2017-03-14 23:22:50 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-03-14 23:22:50 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-03-14 23:22:50 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-03-14 23:22:50 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2017-03-14 23:22:49 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-03-14 23:22:47 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-03-14 23:22:47 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-03-14 23:22:47 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-03-14 23:22:47 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-03-14 23:22:46 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-03-14 23:22:46 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2017-03-14 23:22:44 ----A---- C:\WINDOWS\system32\usocore.dll
2017-03-14 23:22:44 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-03-14 23:22:44 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-03-14 23:22:44 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-03-14 23:22:44 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-03-14 23:22:43 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-03-14 23:22:43 ----A---- C:\WINDOWS\system32\UserDataService.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-03-14 23:22:41 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-03-14 23:22:40 ----A---- C:\WINDOWS\system32\Unistore.dll
2017-03-14 23:22:40 ----A---- C:\WINDOWS\system32\twinui.dll
2017-03-14 23:22:40 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-03-14 23:22:40 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-03-14 23:22:40 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-03-14 23:22:40 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-03-14 23:22:39 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-03-14 23:22:39 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-03-14 23:22:39 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-03-14 23:22:39 ----A---- C:\WINDOWS\system32\thumbcache.dll
2017-03-14 23:22:38 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-03-14 23:22:38 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-03-14 23:22:38 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-03-14 23:22:37 ----A---- C:\WINDOWS\system32\tapi32.dll
2017-03-14 23:22:37 ----A---- C:\WINDOWS\system32\Tabbtn.dll
2017-03-14 23:22:37 ----A---- C:\WINDOWS\system32\netiohlp.dll
2017-03-14 23:22:37 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-03-14 23:22:37 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2017-03-14 23:22:36 ----A---- C:\WINDOWS\system32\tabcal.exe
2017-03-14 23:22:36 ----A---- C:\WINDOWS\system32\MultiDigiMon.exe
2017-03-14 23:22:36 ----A---- C:\WINDOWS\system32\mscandui.dll
2017-03-14 23:22:35 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-03-14 23:22:35 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2017-03-14 23:22:35 ----A---- C:\WINDOWS\system32\input.dll
2017-03-14 23:22:34 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-03-14 23:22:34 ----A---- C:\WINDOWS\system32\RADCUI.dll
2017-03-14 23:22:34 ----A---- C:\WINDOWS\system32\msutb.dll
2017-03-14 23:22:34 ----A---- C:\WINDOWS\system32\msctfui.dll
2017-03-14 23:22:34 ----A---- C:\WINDOWS\system32\msctf.dll
2017-03-14 23:22:33 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-03-14 23:22:33 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-03-14 23:22:33 ----A---- C:\WINDOWS\system32\msctfp.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\sud.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-03-14 23:22:32 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-03-14 23:22:31 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-03-14 23:22:31 ----A---- C:\WINDOWS\system32\stobject.dll
2017-03-14 23:22:31 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-03-14 23:22:29 ----A---- C:\WINDOWS\system32\scksp.dll
2017-03-14 23:22:29 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-03-14 23:22:29 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-03-14 23:22:29 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-03-14 23:22:29 ----A---- C:\WINDOWS\system32\certprop.dll
2017-03-14 23:22:29 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-03-14 23:22:28 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-03-14 23:22:28 ----A---- C:\WINDOWS\system32\shell32.dll
2017-03-14 23:22:28 ----A---- C:\WINDOWS\system32\SHCore.dll
2017-03-14 23:22:28 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-03-14 23:22:27 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\vaultcli.dll
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-03-14 23:22:26 ----A---- C:\WINDOWS\system32\AuthHost.exe
2017-03-14 23:22:25 ----A---- C:\WINDOWS\system32\tbauth.dll
2017-03-14 23:22:25 ----A---- C:\WINDOWS\system32\schannel.dll
2017-03-14 23:22:25 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-03-14 23:22:24 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\sdshext.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\sdengin2.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-03-14 23:22:23 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-03-14 23:22:22 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-03-14 23:22:21 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-03-14 23:22:21 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-03-14 23:22:21 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-03-14 23:22:21 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-03-14 23:22:21 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-03-14 23:22:19 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-03-14 23:22:19 ----A---- C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
2017-03-14 23:22:18 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-03-14 23:22:18 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-03-14 23:22:18 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-03-14 23:22:18 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-03-14 23:22:18 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2017-03-14 23:22:17 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-03-14 23:22:17 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-03-14 23:22:17 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-03-14 23:22:17 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-03-14 23:22:14 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-03-14 23:22:12 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-03-14 23:22:12 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-03-14 23:22:12 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-03-14 23:22:11 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-03-14 23:22:11 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-03-14 23:22:10 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-03-14 23:22:10 ----A---- C:\WINDOWS\system32\rasgcw.dll
2017-03-14 23:22:10 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-03-14 23:22:10 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-03-14 23:22:10 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-03-14 23:22:10 ----A---- C:\WINDOWS\regedit.exe
2017-03-14 23:22:09 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-03-14 23:22:09 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-03-14 23:22:08 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-03-14 23:22:07 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-03-14 23:22:07 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-03-14 23:22:07 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-03-14 23:22:06 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-03-14 23:22:06 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2017-03-14 23:22:06 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2017-03-14 23:22:06 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-03-14 23:22:05 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-03-14 23:22:05 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-03-14 23:22:05 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-03-14 23:22:05 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-03-14 23:22:05 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2017-03-14 23:22:04 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-03-14 23:22:04 ----A---- C:\WINDOWS\system32\Wpc.dll
2017-03-14 23:22:04 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-03-14 23:22:04 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2017-03-14 23:22:02 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-03-14 23:22:02 ----A---- C:\WINDOWS\system32\WpcMon.exe
2017-03-14 23:22:02 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-03-14 23:22:02 ----A---- C:\WINDOWS\system32\localspl.dll
2017-03-14 23:22:00 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-03-14 23:22:00 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-03-14 23:22:00 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-03-14 23:22:00 ----A---- C:\WINDOWS\system32\puiapi.dll
2017-03-14 23:22:00 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2017-03-14 23:21:59 ----A---- C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2017-03-14 23:21:59 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-03-14 23:21:58 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-03-14 23:21:58 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-03-14 23:21:58 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-03-14 23:21:58 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-03-14 23:21:57 ----A---- C:\WINDOWS\system32\oleacc.dll
2017-03-14 23:21:57 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-03-14 23:21:57 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-03-14 23:21:54 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-03-14 23:21:54 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-03-14 23:21:54 ----A---- C:\WINDOWS\system32\netshell.dll
2017-03-14 23:21:53 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2017-03-14 23:21:52 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-03-14 23:21:52 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-03-14 23:21:52 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-03-14 23:21:52 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-03-14 23:21:52 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2017-03-14 23:21:52 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2017-03-14 23:21:47 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-03-14 23:21:47 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-03-14 23:21:47 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-03-14 23:21:47 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-03-14 23:21:47 ----A---- C:\WINDOWS\system32\MSVP9DEC.dll
2017-03-14 23:21:46 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-03-14 23:21:46 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-03-14 23:21:44 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-03-14 23:21:44 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-03-14 23:21:43 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-03-14 23:21:43 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-03-14 23:21:42 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-03-14 23:21:41 ----A---- C:\WINDOWS\system32\mfds.dll
2017-03-14 23:21:40 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-03-14 23:21:40 ----A---- C:\WINDOWS\system32\wmp.dll
2017-03-14 23:21:40 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-03-14 23:21:40 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-03-14 23:21:40 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-03-14 23:21:40 ----A---- C:\WINDOWS\system32\mf.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\MCCSEngineShared.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\internetmail.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\DavSyncProvider.dll
2017-03-14 23:21:39 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2017-03-14 23:21:38 ----A---- C:\WINDOWS\system32\moshost.dll
2017-03-14 23:21:38 ----A---- C:\WINDOWS\system32\mos.dll
2017-03-14 23:21:38 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-03-14 23:21:38 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-03-14 23:21:38 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-03-14 23:21:37 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-03-14 23:21:37 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-14 23:21:37 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-03-14 23:21:35 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-03-14 23:21:34 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-03-14 23:21:33 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2017-03-14 23:21:33 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-03-14 23:21:33 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-03-14 23:21:32 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2017-03-14 23:21:32 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-03-14 23:21:32 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-03-14 23:21:32 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-03-14 23:21:30 ----A---- C:\WINDOWS\system32\mmc.exe
2017-03-14 23:21:30 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-03-14 23:21:30 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-03-14 23:21:29 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-03-14 23:21:27 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-03-14 23:21:27 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2017-03-14 23:21:23 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-03-14 23:21:23 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2017-03-14 23:21:23 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2017-03-14 23:21:21 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-03-14 23:21:21 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-03-14 23:21:21 ----A---- C:\WINDOWS\system32\InputService.dll
2017-03-14 23:21:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-03-14 23:21:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-03-14 23:21:16 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-03-14 23:21:15 ----A---- C:\WINDOWS\system32\icm32.dll
2017-03-14 23:21:15 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-03-14 23:21:13 ----A---- C:\WINDOWS\system32\wininet.dll
2017-03-14 23:21:12 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-03-14 23:21:05 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-03-14 23:20:57 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-03-14 23:20:57 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2017-03-14 23:20:54 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-03-14 23:20:54 ----A---- C:\WINDOWS\HelpPane.exe
2017-03-14 23:20:53 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-03-14 23:20:53 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-03-14 23:20:53 ----A---- C:\WINDOWS\system32\gpapi.dll
2017-03-14 23:20:53 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-03-14 23:20:53 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-03-14 23:20:53 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-03-14 23:20:52 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-03-14 23:20:52 ----A---- C:\WINDOWS\system32\gameux.dll
2017-03-14 23:20:52 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-03-14 23:20:52 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-03-14 23:20:48 ----A---- C:\WINDOWS\system32\resutils.dll
2017-03-14 23:20:48 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-03-14 23:20:45 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-03-14 23:20:44 ----A---- C:\WINDOWS\explorer.exe
2017-03-14 23:20:43 ----A---- C:\WINDOWS\system32\werui.dll
2017-03-14 23:20:43 ----A---- C:\WINDOWS\system32\werconcpl.dll
2017-03-14 23:20:43 ----A---- C:\WINDOWS\system32\wer.dll
2017-03-14 23:20:43 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-03-14 23:20:43 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2017-03-14 23:20:42 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-03-14 23:20:42 ----A---- C:\WINDOWS\system32\evr.dll
2017-03-14 23:20:41 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2017-03-14 23:20:41 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2017-03-14 23:20:41 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2017-03-14 23:20:41 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2017-03-14 23:20:40 ----A---- C:\WINDOWS\system32\WorkFoldersGPExt.dll
2017-03-14 23:20:40 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-03-14 23:20:40 ----A---- C:\WINDOWS\system32\DXP.dll
2017-03-14 23:20:40 ----A---- C:\WINDOWS\system32\dui70.dll
2017-03-14 23:20:39 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2017-03-14 23:20:39 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-03-14 23:20:39 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-03-14 23:20:39 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-03-14 23:20:38 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-03-14 23:20:38 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-03-14 23:20:38 ----A---- C:\WINDOWS\system32\ddrawex.dll
2017-03-14 23:20:38 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-03-14 23:20:38 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-03-14 23:20:38 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-03-14 23:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-03-14 23:20:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-03-14 23:20:37 ----A---- C:\WINDOWS\system32\quartz.dll
2017-03-14 23:20:37 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-03-14 23:20:36 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-03-14 23:20:35 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-03-14 23:20:35 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-03-14 23:20:35 ----A---- C:\WINDOWS\system32\dcntel.dll
2017-03-14 23:20:34 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-03-14 23:20:34 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-03-14 23:20:34 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-03-14 23:20:33 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-03-14 23:20:33 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-03-14 23:20:33 ----A---- C:\WINDOWS\system32\uDWM.dll
2017-03-14 23:20:33 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-03-14 23:20:31 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-03-14 23:20:31 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-03-14 23:20:31 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-03-14 23:20:29 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-03-14 23:20:28 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-03-14 23:20:28 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-03-14 23:20:28 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-03-14 23:20:28 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-03-14 23:20:28 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-03-14 23:20:28 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-03-14 23:20:27 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-03-14 23:20:27 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-03-14 23:20:27 ----A---- C:\WINDOWS\system32\combase.dll
2017-03-14 23:20:27 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-03-14 23:20:26 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-03-14 23:20:26 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-03-14 23:20:26 ----A---- C:\WINDOWS\system32\ci.dll
2017-03-14 23:20:25 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-03-14 23:20:25 ----A---- C:\WINDOWS\system32\cdp.dll
2017-03-14 23:20:25 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
2017-03-14 23:20:16 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-03-14 23:20:15 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-03-14 23:20:15 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2017-03-14 23:20:11 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-03-14 23:20:10 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2017-03-14 23:20:10 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-03-14 23:20:04 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2017-03-14 23:20:04 ----A---- C:\WINDOWS\system32\bootux.dll
2017-03-14 23:20:04 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-03-14 23:20:03 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-03-14 23:20:02 ----A---- C:\WINDOWS\system32\winresume.exe
2017-03-14 23:20:02 ----A---- C:\WINDOWS\system32\winload.exe
2017-03-14 23:20:02 ----A---- C:\WINDOWS\system32\wbengine.exe
2017-03-14 23:20:02 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-03-14 23:19:57 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2017-03-14 23:19:55 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-03-14 23:19:55 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-03-14 23:19:55 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-03-14 23:19:54 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-03-14 23:19:52 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-03-14 23:19:51 ----A---- C:\WINDOWS\system32\invagent.dll
2017-03-14 23:19:51 ----A---- C:\WINDOWS\system32\devinv.dll
2017-03-14 23:19:51 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-03-14 23:19:50 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-03-14 23:19:50 ----A---- C:\WINDOWS\system32\authui.dll
2017-03-14 23:19:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-03-14 23:19:49 ----A---- C:\WINDOWS\system32\aepic.dll
2017-03-14 23:19:46 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-03-14 23:19:46 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-03-14 23:19:46 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-03-14 23:19:45 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-03-14 23:19:45 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-03-14 23:19:44 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-03-14 23:19:44 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-03-14 23:19:41 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2017-03-14 23:19:41 ----A---- C:\WINDOWS\system32\drivers\hvsocket.sys
2017-03-14 23:19:40 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-03-14 23:19:40 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-03-14 23:19:40 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-03-14 23:19:40 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2017-03-14 23:19:39 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-03-14 23:19:39 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2017-03-14 23:19:38 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-03-14 23:19:10 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2017-03-14 23:19:10 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2017-03-11 22:15:49 ----A---- C:\WINDOWS\system32\drivers\aswbuniva.sys
2017-03-11 22:15:49 ----A---- C:\WINDOWS\system32\drivers\aswbloga.sys
2017-03-11 22:15:49 ----A---- C:\WINDOWS\system32\drivers\aswbidsha.sys
2017-03-11 22:15:48 ----A---- C:\WINDOWS\system32\drivers\aswbidsdrivera.sys
======List of files/folders modified in the last 1 month======
2017-04-09 23:53:49 ----D---- C:\WINDOWS\Prefetch
2017-04-09 23:53:35 ----RD---- C:\Program Files
2017-04-09 23:53:26 ----D---- C:\WINDOWS\Temp
2017-04-09 23:45:51 ----RSD---- C:\WINDOWS\assembly
2017-04-09 23:43:36 ----D---- C:\WINDOWS\System32
2017-04-09 23:43:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-09 23:41:07 ----HD---- C:\ProgramData
2017-04-09 23:40:37 ----D---- C:\WINDOWS\system32\drivers
2017-04-09 23:40:08 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-04-09 23:39:48 ----D---- C:\WINDOWS\system32\sru
2017-04-09 23:39:48 ----D---- C:\ProgramData\NVIDIA
2017-04-09 23:39:29 ----D---- C:\Windows
2017-04-09 23:32:25 ----SHD---- C:\System Volume Information
2017-04-09 23:08:54 ----D---- C:\WINDOWS\system32\Tasks
2017-04-09 22:44:39 ----D---- C:\WINDOWS\system32\SleepStudy
2017-04-09 22:30:55 ----SHDC---- C:\WINDOWS\Installer
2017-04-09 22:26:31 ----RD---- C:\Program Files (x86)
2017-04-09 22:26:24 ----D---- C:\Program Files (x86)\Google
2017-04-09 22:05:18 ----D---- C:\WINDOWS\AppReadiness
2017-04-09 22:03:54 ----D---- C:\WINDOWS\system32\config
2017-04-09 21:56:57 ----D---- C:\WINDOWS\INF
2017-04-09 21:50:14 ----D---- C:\WINDOWS\system32\DriverStore
2017-04-09 21:49:09 ----D---- C:\WINDOWS\Logs
2017-04-09 21:49:09 ----D---- C:\WINDOWS\debug
2017-04-09 21:39:35 ----AD---- C:\Program Files\7-Zip
2017-04-09 21:32:20 ----D---- C:\Program Files (x86)\Steam
2017-04-09 00:33:22 ----RD---- C:\WINDOWS\Microsoft.NET
2017-04-08 14:16:31 ----HD---- C:\Program Files\WindowsApps
2017-03-31 17:11:36 ----D---- C:\Hry
2017-03-31 10:23:37 ----D---- C:\Program Files\Common Files\Apple
2017-03-27 17:17:52 ----D---- C:\WINDOWS\system32\Macromed
2017-03-27 17:17:49 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-03-25 23:05:11 ----D---- C:\Users\fibou\AppData\Roaming\Lenovo
2017-03-25 23:04:38 ----D---- C:\Program Files\Lenovo
2017-03-25 23:03:20 ----D---- C:\WINDOWS\Downloaded Installations
2017-03-23 13:12:51 ----D---- C:\WINDOWS\system32\catroot2
2017-03-18 07:15:44 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-03-17 02:03:22 ----D---- C:\WINDOWS\rescache
2017-03-17 01:41:55 ----D---- C:\ProgramData\AVAST Software
2017-03-16 23:27:55 ----D---- C:\WINDOWS\WinSxS
2017-03-16 19:52:16 ----D---- C:\WINDOWS\CbsTemp
2017-03-16 19:52:14 ----D---- C:\WINDOWS\system32\appraiser
2017-03-15 00:08:35 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-03-15 00:08:35 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-03-15 00:08:35 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-03-15 00:08:35 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-03-15 00:08:35 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-03-15 00:08:35 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-03-15 00:08:35 ----D---- C:\WINDOWS\SysWOW64
2017-03-15 00:08:31 ----SD---- C:\WINDOWS\system32\F12
2017-03-15 00:08:31 ----D---- C:\WINDOWS\system32\wbem
2017-03-15 00:08:31 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-03-15 00:08:31 ----D---- C:\WINDOWS\system32\setup
2017-03-15 00:08:31 ----D---- C:\WINDOWS\system32\oobe
2017-03-15 00:08:31 ----D---- C:\WINDOWS\system32\migration
2017-03-15 00:08:31 ----D---- C:\WINDOWS\system32\en-US
2017-03-15 00:08:30 ----D---- C:\WINDOWS\system32\drivers\en-US
2017-03-15 00:08:30 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-03-15 00:08:30 ----D---- C:\WINDOWS\system32\cs-CZ
2017-03-15 00:08:30 ----D---- C:\WINDOWS\system32\Boot
2017-03-15 00:08:15 ----RD---- C:\WINDOWS\PrintDialog
2017-03-15 00:08:15 ----D---- C:\WINDOWS\ShellExperiences
2017-03-15 00:08:14 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-03-15 00:08:13 ----RD---- C:\Program Files\Windows Defender
2017-03-15 00:08:13 ----D---- C:\WINDOWS\bcastdvr
2017-03-15 00:08:13 ----D---- C:\WINDOWS\AppPatch
2017-03-15 00:08:13 ----D---- C:\Program Files\Windows Photo Viewer
2017-03-15 00:08:13 ----D---- C:\Program Files\Windows Mail
2017-03-15 00:08:13 ----D---- C:\Program Files\Internet Explorer
2017-03-15 00:08:13 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-03-15 00:08:13 ----D---- C:\Program Files (x86)\Windows Mail
2017-03-15 00:08:13 ----D---- C:\Program Files (x86)\Windows Defender
2017-03-15 00:08:13 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-15 00:01:01 ----D---- C:\WINDOWS\system32\MRT
2017-03-14 23:58:26 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-03-12 10:01:14 ----D---- C:\WINDOWS\LiveKernelReports
2017-03-11 22:17:54 ----D---- C:\temp
2017-03-11 13:14:47 ----D---- C:\ProgramData\Lenovo
2017-03-10 07:17:56 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe




Přispějete na provoz fóra?