Logfile of random's system information tool 1.10 (written by random/random)
Run by MartinaM at 2015-03-10 12:50:14
Microsoft Windows 8.1
System drive C: has 355 GB (82%) free of 434 GB
Total RAM: 4008 MB (37% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:51:44, on 10. 3. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\MartinaM.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://lenovo13.msn.com/?pc=LCJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://lenovo13.msn.com/?pc=LCJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BackgroundContainerV2] "C:\windows\SysWOW64\Rundll32.exe" "C:\Users\MartinaM\AppData\Local\Tbccint\BackgroundContainer\BackgroundContainer.dll",DllRun
O4 - Global Startup: ISCTSystray.lnk = C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HTCMonitorService - Nero AG - C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Update Manager (iumsvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 11934 bytes
======Listing Processes======
wininit.exe
C:\windows\system32\lsass.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"C:\windows\system32\nvvsvc.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\system32\WLANExt.exe 715714168192
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {3c9f09c9-6abd-4fcb-87dd60086a33b687}
"C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
"C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c133eccc-d6dd-49bb-b308-2fb739227c18 -SystemEventPortName:HostProcess-99d1077b-fc86-48f1-b390-5d29e173a955 -IoCancelEventPortName:HostProcess-34fabf20-77cb-4413-8a89-be0b8c62ae7c -NonStateChangingEventPortName:HostProcess-c1073970-ff73-407f-b3a1-5929fd936c3a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9e339936-b06c-4d5d-95a6-a15cd0d880fa -DeviceGroupId:WudfDefaultDevicePool
ngservice.exe pipeserver
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\WLANExt.exe 715741179872
\??\C:\windows\system32\conhost.exe 0x4
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\windows\system32\WLANExt.exe 715740722576
\??\C:\windows\system32\conhost.exe 0x4
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-e13ac3c3-f5d2-492c-8bcb-ac7932ec91c2 -SystemEventPortName:HostProcess-943499df-89dc-4145-bcc5-a10f80bc1f2b -IoCancelEventPortName:HostProcess-37a23374-7c3b-41e9-aad9-1fc30719f354 -NonStateChangingEventPortName:HostProcess-80215103-9e1d-4325-afba-c65c8c346be6 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:0245541b-1a0b-4b34-8381-9c4052981ed8 -DeviceGroupId:WpdFsGroup
C:\windows\SysWow64\IntelCpHeciSvc.exe
C:\windows\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\windows\system32\nvvsvc.exe -session
C:\windows\Explorer.EXE
taskhostex.exe
C:\Windows\System32\skydrive.exe -Embedding
/QuitInfo:0000000000000DBC;00000000000009B4;
/loadhooks /Parent:0000000000002760
"C:\Windows\System32\igfxtray.exe"
"C:\windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\AVAST Software\Avast\avastui.exe" /sfzonebrowser
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_MICPKEY
"C:\Program Files\Apoint2K\Apoint.exe"
"C:\Windows\RTFTrack.exe"
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Apoint2K\ApMsgFwd.exe" -s{05FA8492-C047-4207-BE65-780D8591C113}
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"Apntex.exe"
\??\C:\windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe"
"C:\Program Files\Apoint2K\HidFind.exe"
"C:\Windows\SysWOW64\rundll32.exe" "C:\Users\MartinaM\AppData\Local\Tbccint\BackgroundContainer\BackgroundContainer.dll",DllRun
"C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="10388.0.934938570\976757546" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,40 --gpu-vendor-id=0x8086 --gpu-device-id=0x0a16 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3379 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.1.1883174228\980129315" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.2.776618291\765049835" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.3.271542487\1240934652" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.5.912531401\1519542807" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.6.969907283\1669484461" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.7.1764585741\1632623615" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.8.1823228350\461931639" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.9.1287094394\1467533851" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.10.1691295309\1772795395" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.11.1332965222\2124932430" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.13.443150722\134935813" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.14.1844945459\1501824298" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.15.521498475\1989831038" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.16.2013786200\366025999" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.19.2009864175\1209746572" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.21.1968220019\1598610390" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.22.2013734315\1145576810" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.23.468917099\1048587782" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.24.1151820715\228973730" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.25.496432444\422209335" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.26.113214318\1271467746" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/CTRequiredForEVTrial/Default/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Enabled/NewProfileManagement/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A6_Stable_R2/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Enabled/RefreshTokenDeviceId/Disabled/RememberCertificateErrorDecisions/Default/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_70/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-50-Percent/group_01/UwSInterstitialStatus/On/VoiceTrigger/Install/WebRTC-IPv6Default/Disabled/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=10388 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="10388.31.1985848016\694220036" /prefetch:673131151
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe169_ Global\UsGthrCtrlFltPipeMssGthrPipe169 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 568 572 580 65536 576
"C:\Users\MartinaM\Downloads\RSITx64.exe"
C:\windows\System32\svchost.exe -k WerSvcGroup
======Scheduled tasks folder======
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-25 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-25 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{31264A33-A653-46C4-AF49-1232C59A7DA5}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2013-12-24 391128]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2013-12-24 771544]
"Persistence"=C:\windows\system32\igfxpers.exe [2013-12-24 770520]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-12-20 13662936]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-11-13 1368792]
"RtHDVBg_LENOVO_MICPKEY"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-11-13 1368792]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2013-08-07 688984]
"RtsFT"=C:\windows\RTFTrack.exe [2013-11-09 6340312]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-03-15 15813616]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-03-15 80880]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-15 499608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BackgroundContainerV2"=C:\windows\SysWOW64\Rundll32.exe [2014-10-29 51200]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-02-25 5227112]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
ISCTSystray.lnk - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2013-12-24 624640]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-03-10 12:50:15 ----D---- C:\Program Files\trend micro
2015-03-10 12:50:14 ----D---- C:\rsit
2015-03-06 10:18:39 ----D---- C:\Users\MartinaM\AppData\Roaming\Identities
2015-03-05 16:33:08 ----SD---- C:\windows\system32\CompatTel
2015-03-04 20:50:08 ----A---- C:\windows\system32\Windows.UI.Xaml.dll
2015-03-04 20:49:56 ----A---- C:\windows\system32\rdpudd.dll
2015-03-04 20:49:55 ----AC---- C:\windows\system32\drivers\swenum.sys
2015-03-04 20:49:52 ----A---- C:\windows\SYSWOW64\msihnd.dll
2015-03-04 20:49:52 ----A---- C:\windows\system32\msihnd.dll
2015-03-04 20:49:48 ----A---- C:\windows\SYSWOW64\packager.dll
2015-03-04 20:49:47 ----A---- C:\windows\SYSWOW64\msxml3.dll
2015-03-04 20:49:43 ----A---- C:\windows\SYSWOW64\msi.dll
2015-03-04 20:49:29 ----A---- C:\windows\system32\packager.dll
2015-03-04 20:49:28 ----A---- C:\windows\system32\wuaueng.dll
2015-03-04 20:49:28 ----A---- C:\windows\system32\msxml3.dll
2015-03-04 20:49:27 ----A---- C:\windows\system32\consent.exe
2015-03-04 20:49:26 ----A---- C:\windows\system32\msi.dll
2015-03-04 20:49:24 ----A---- C:\windows\system32\dpapisrv.dll
2015-03-04 20:49:23 ----A---- C:\windows\system32\shell32.dll
2015-03-04 20:49:21 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.dll
2015-03-04 20:49:20 ----A---- C:\windows\system32\wmp.dll
2015-03-04 20:49:07 ----A---- C:\windows\SYSWOW64\shell32.dll
2015-03-04 20:49:06 ----A---- C:\windows\SYSWOW64\wmp.dll
2015-03-04 20:48:54 ----A---- C:\windows\SYSWOW64\authui.dll
2015-03-04 20:48:54 ----A---- C:\windows\system32\authui.dll
2015-03-04 20:48:53 ----A---- C:\windows\system32\twinui.dll
2015-03-04 20:48:51 ----A---- C:\windows\system32\WSService.dll
2015-03-04 20:48:51 ----A---- C:\windows\system32\Windows.UI.Search.dll
2015-03-04 20:48:49 ----A---- C:\windows\SYSWOW64\twinui.dll
2015-03-04 20:48:47 ----A---- C:\windows\system32\mstscax.dll
2015-03-04 20:48:45 ----A---- C:\windows\system32\glcndFilter.dll
2015-03-04 20:48:45 ----A---- C:\windows\system32\atlthunk.dll
2015-03-04 20:48:44 ----A---- C:\windows\system32\Windows.Data.Pdf.dll
2015-03-04 20:48:42 ----A---- C:\windows\SYSWOW64\Windows.UI.Search.dll
2015-03-04 20:48:41 ----A---- C:\windows\SYSWOW64\mstscax.dll
2015-03-04 20:48:40 ----A---- C:\windows\system32\rdpcorets.dll
2015-03-04 20:48:40 ----A---- C:\windows\system32\msmpeg2vdec.dll
2015-03-04 20:48:38 ----A---- C:\windows\SYSWOW64\glcndFilter.dll
2015-03-04 20:48:37 ----A---- C:\windows\system32\msftedit.dll
2015-03-04 20:48:34 ----A---- C:\windows\SYSWOW64\Windows.Data.Pdf.dll
2015-03-04 20:48:33 ----A---- C:\windows\system32\rdpinput.exe
2015-03-04 20:48:33 ----A---- C:\windows\system32\rdpclip.exe
2015-03-04 20:48:32 ----A---- C:\windows\system32\rdpcore.dll
2015-03-04 20:48:31 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2015-03-04 20:48:31 ----A---- C:\windows\system32\d2d1.dll
2015-03-04 20:48:29 ----A---- C:\windows\system32\UIRibbon.dll
2015-03-04 20:48:28 ----A---- C:\windows\system32\mfcore.dll
2015-03-04 20:48:27 ----A---- C:\windows\system32\tquery.dll
2015-03-04 20:48:26 ----A---- C:\windows\SYSWOW64\msftedit.dll
2015-03-04 20:48:25 ----A---- C:\windows\system32\XpsFilt.dll
2015-03-04 20:48:25 ----A---- C:\windows\system32\msxml6.dll
2015-03-04 20:48:24 ----A---- C:\windows\system32\xpsrchvw.exe
2015-03-04 20:48:24 ----A---- C:\windows\system32\mssrch.dll
2015-03-04 20:48:21 ----A---- C:\windows\SYSWOW64\mfcore.dll
2015-03-04 20:48:20 ----A---- C:\windows\system32\WMVCORE.DLL
2015-03-04 20:48:20 ----A---- C:\windows\system32\dbgeng.dll
2015-03-04 20:48:19 ----A---- C:\windows\SYSWOW64\d2d1.dll
2015-03-04 20:48:18 ----A---- C:\windows\system32\MSVidCtl.dll
2015-03-04 20:48:16 ----A---- C:\windows\SYSWOW64\UIRibbon.dll
2015-03-04 20:48:15 ----A---- C:\windows\system32\esent.dll
2015-03-04 20:48:14 ----A---- C:\windows\system32\XpsPrint.dll
2015-03-04 20:48:13 ----A---- C:\windows\SYSWOW64\esent.dll
2015-03-04 20:48:13 ----A---- C:\windows\system32\xpsservices.dll
2015-03-04 20:48:11 ----A---- C:\windows\SYSWOW64\rdpcore.dll
2015-03-04 20:48:11 ----A---- C:\windows\system32\SettingsHandlers.dll
2015-03-04 20:48:10 ----A---- C:\windows\system32\ExplorerFrame.dll
2015-03-04 20:48:08 ----A---- C:\windows\system32\WsmSvc.dll
2015-03-04 20:48:06 ----A---- C:\windows\system32\MSAudDecMFT.dll
2015-03-04 20:48:05 ----A---- C:\windows\SYSWOW64\WMVCORE.DLL
2015-03-04 20:48:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2015-03-04 20:48:02 ----A---- C:\windows\system32\d3d10warp.dll
2015-03-04 20:48:01 ----A---- C:\windows\SYSWOW64\tquery.dll
2015-03-04 20:48:00 ----A---- C:\windows\SYSWOW64\mssrch.dll
2015-03-04 20:47:57 ----A---- C:\windows\system32\combase.dll
2015-03-04 20:47:56 ----A---- C:\windows\system32\WpcMon.exe
2015-03-04 20:47:55 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2015-03-04 20:47:55 ----A---- C:\windows\system32\Wpc.dll
2015-03-04 20:47:54 ----A---- C:\windows\system32\d3d11.dll
2015-03-04 20:47:53 ----A---- C:\windows\system32\dwmcore.dll
2015-03-04 20:47:53 ----A---- C:\windows\system32\d3d9.dll
2015-03-04 20:47:50 ----A---- C:\windows\SYSWOW64\dbgeng.dll
2015-03-04 20:47:49 ----A---- C:\windows\system32\rfxvmt.dll
2015-03-04 20:47:47 ----A---- C:\windows\system32\WMVDECOD.DLL
2015-03-04 20:47:46 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2015-03-04 20:47:46 ----A---- C:\windows\system32\mmcndmgr.dll
2015-03-04 20:47:45 ----A---- C:\windows\system32\WpcWebSync.dll
2015-03-04 20:47:43 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2015-03-04 20:47:42 ----A---- C:\windows\system32\DWrite.dll
2015-03-04 20:47:40 ----A---- C:\windows\system32\drivers\storport.sys
2015-03-04 20:47:39 ----AC---- C:\windows\system32\drivers\drmkaud.sys
2015-03-04 20:47:38 ----A---- C:\windows\system32\drivers\tcpip.sys
2015-03-04 20:47:37 ----A---- C:\windows\SYSWOW64\WMVDECOD.DLL
2015-03-04 20:47:37 ----A---- C:\windows\system32\ole32.dll
2015-03-04 20:47:36 ----A---- C:\windows\SYSWOW64\wudriver.dll
2015-03-04 20:47:36 ----A---- C:\windows\SYSWOW64\d3d9.dll
2015-03-04 20:47:36 ----A---- C:\windows\system32\wuapp.exe
2015-03-04 20:47:35 ----A---- C:\windows\SYSWOW64\wuapp.exe
2015-03-04 20:47:35 ----A---- C:\windows\system32\wudriver.dll
2015-03-04 20:47:35 ----A---- C:\windows\system32\wuauclt.exe
2015-03-04 20:47:34 ----A---- C:\windows\SYSWOW64\wuwebv.dll
2015-03-04 20:47:34 ----A---- C:\windows\SYSWOW64\wuapi.dll
2015-03-04 20:47:34 ----A---- C:\windows\system32\wuwebv.dll
2015-03-04 20:47:34 ----A---- C:\windows\system32\wuaext.dll
2015-03-04 20:47:33 ----A---- C:\windows\system32\WUSettingsProvider.dll
2015-03-04 20:47:33 ----A---- C:\windows\system32\wucltux.dll
2015-03-04 20:47:33 ----A---- C:\windows\system32\wuapi.dll
2015-03-04 20:47:32 ----A---- C:\windows\system32\SearchFolder.dll
2015-03-04 20:47:32 ----A---- C:\windows\explorer.exe
2015-03-04 20:47:30 ----A---- C:\windows\SYSWOW64\combase.dll
2015-03-04 20:47:30 ----A---- C:\windows\system32\drivers\ntfs.sys
2015-03-04 20:47:28 ----A---- C:\windows\system32\wmpmde.dll
2015-03-04 20:47:27 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2015-03-04 20:47:27 ----A---- C:\windows\system32\winmde.dll
2015-03-04 20:47:26 ----A---- C:\windows\system32\storagewmi.dll
2015-03-04 20:47:26 ----A---- C:\windows\system32\rpcrt4.dll
2015-03-04 20:47:25 ----A---- C:\windows\SYSWOW64\MSAudDecMFT.dll
2015-03-04 20:47:25 ----A---- C:\windows\system32\AppXDeploymentServer.dll
2015-03-04 20:47:24 ----A---- C:\windows\system32\dui70.dll
2015-03-04 20:47:23 ----A---- C:\windows\system32\workfolderssvc.dll
2015-03-04 20:47:23 ----A---- C:\windows\system32\OpcServices.dll
2015-03-04 20:47:21 ----A---- C:\windows\system32\gpsvc.dll
2015-03-04 20:47:20 ----A---- C:\windows\SYSWOW64\d3d11.dll
2015-03-04 20:47:19 ----A---- C:\windows\SYSWOW64\explorer.exe
2015-03-04 20:47:18 ----A---- C:\windows\system32\CertEnroll.dll
2015-03-04 20:47:17 ----A---- C:\windows\system32\mfnetsrc.dll
2015-03-04 20:47:16 ----A---- C:\windows\system32\wlidsvc.dll
2015-03-04 20:47:16 ----A---- C:\windows\system32\mfasfsrcsnk.dll
2015-03-04 20:47:14 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2015-03-04 20:47:14 ----A---- C:\windows\system32\SRH.dll
2015-03-04 20:47:12 ----A---- C:\windows\system32\blackbox.dll
2015-03-04 20:47:08 ----A---- C:\windows\SYSWOW64\GdiPlus.dll
2015-03-04 20:47:03 ----A---- C:\windows\system32\twinui.appcore.dll
2015-03-04 20:47:03 ----A---- C:\windows\system32\taskschd.dll
2015-03-04 20:47:01 ----A---- C:\windows\SYSWOW64\ole32.dll
2015-03-04 20:47:00 ----A---- C:\windows\SYSWOW64\Windows.UI.Immersive.dll
2015-03-04 20:46:59 ----A---- C:\windows\SYSWOW64\dui70.dll
2015-03-04 20:46:59 ----A---- C:\windows\system32\Windows.UI.Immersive.dll
2015-03-04 20:46:58 ----A---- C:\windows\SYSWOW64\mmcndmgr.dll
2015-03-04 20:46:57 ----A---- C:\windows\SYSWOW64\Wpc.dll
2015-03-04 20:46:56 ----A---- C:\windows\system32\WMVENCOD.DLL
2015-03-04 20:46:56 ----A---- C:\windows\system32\msctf.dll
2015-03-04 20:46:53 ----A---- C:\windows\system32\webservices.dll
2015-03-04 20:46:52 ----A---- C:\windows\SYSWOW64\WMVENCOD.DLL
2015-03-04 20:46:52 ----A---- C:\windows\system32\GdiPlus.dll
2015-03-04 20:46:50 ----A---- C:\windows\SYSWOW64\quartz.dll
2015-03-04 20:46:48 ----A---- C:\windows\SYSWOW64\winmde.dll
2015-03-04 20:46:42 ----A---- C:\windows\SYSWOW64\MSVidCtl.dll
2015-03-04 20:46:40 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2015-03-04 20:46:39 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2015-03-04 20:46:39 ----A---- C:\windows\system32\UIAutomationCore.dll
2015-03-04 20:46:36 ----A---- C:\windows\SYSWOW64\xpsrchvw.exe
2015-03-04 20:46:35 ----A---- C:\windows\system32\mmc.exe
2015-03-04 20:46:35 ----A---- C:\windows\system32\IKEEXT.DLL
2015-03-04 20:46:34 ----A---- C:\windows\system32\quartz.dll
2015-03-04 20:46:33 ----A---- C:\windows\SYSWOW64\DWrite.dll
2015-03-04 20:46:33 ----A---- C:\windows\system32\D3DCompiler_47.dll
2015-03-04 20:46:32 ----A---- C:\windows\system32\SystemSettingsAdminFlowUI.dll
2015-03-04 20:46:31 ----A---- C:\windows\system32\wpccpl.dll
2015-03-04 20:46:31 ----A---- C:\windows\system32\Windows.Media.Streaming.dll
2015-03-04 20:46:30 ----A---- C:\windows\SYSWOW64\mfnetsrc.dll
2015-03-04 20:46:30 ----A---- C:\windows\system32\diagperf.dll
2015-03-04 20:46:29 ----A---- C:\windows\system32\MFMediaEngine.dll
2015-03-04 20:46:28 ----A---- C:\windows\system32\Windows.Media.dll
2015-03-04 20:46:27 ----A---- C:\windows\system32\drmv2clt.dll
2015-03-04 20:46:26 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2015-03-04 20:46:25 ----A---- C:\windows\SYSWOW64\mfasfsrcsnk.dll
2015-03-04 20:46:25 ----A---- C:\windows\system32\comsvcs.dll
2015-03-04 20:46:24 ----A---- C:\windows\system32\xpssvcs.dll
2015-03-04 20:46:23 ----A---- C:\windows\SYSWOW64\user32.dll
2015-03-04 20:46:22 ----A---- C:\windows\SYSWOW64\xpsservices.dll
2015-03-04 20:46:22 ----A---- C:\windows\SYSWOW64\msctf.dll
2015-03-04 20:46:22 ----A---- C:\windows\system32\mfsrcsnk.dll
2015-03-04 20:46:20 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2015-03-04 20:46:20 ----A---- C:\windows\system32\sbe.dll
2015-03-04 20:46:19 ----A---- C:\windows\SYSWOW64\blackbox.dll
2015-03-04 20:46:18 ----A---- C:\windows\system32\rpcss.dll
2015-03-04 20:46:17 ----A---- C:\windows\SYSWOW64\webservices.dll
2015-03-04 20:46:16 ----A---- C:\windows\SYSWOW64\SRH.dll
2015-03-04 20:46:16 ----A---- C:\windows\system32\FntCache.dll
2015-03-04 20:46:15 ----A---- C:\windows\system32\WMNetMgr.dll
2015-03-04 20:46:15 ----A---- C:\windows\system32\pla.dll
2015-03-04 20:46:13 ----A---- C:\windows\system32\WinSAT.exe
2015-03-04 20:46:12 ----A---- C:\windows\SYSWOW64\OpcServices.dll
2015-03-04 20:46:12 ----A---- C:\windows\SYSWOW64\D3DCompiler_47.dll
2015-03-04 20:46:11 ----A---- C:\windows\SYSWOW64\UIAutomationCore.dll
2015-03-04 20:46:10 ----A---- C:\windows\system32\MsSpellCheckingFacility.dll
2015-03-04 20:46:10 ----A---- C:\windows\system32\mfmpeg2srcsnk.dll
2015-03-04 20:46:09 ----A---- C:\windows\SYSWOW64\mfsrcsnk.dll
2015-03-04 20:46:09 ----A---- C:\windows\system32\WMPDMC.exe
2015-03-04 20:46:08 ----A---- C:\windows\system32\StructuredQuery.dll
2015-03-04 20:46:08 ----A---- C:\windows\system32\gdi32.dll
2015-03-04 20:46:07 ----A---- C:\windows\system32\propsys.dll
2015-03-04 20:46:06 ----A---- C:\windows\system32\sqlceqp40.dll
2015-03-04 20:46:06 ----A---- C:\windows\system32\mfnetcore.dll
2015-03-04 20:46:05 ----A---- C:\windows\system32\WSShared.dll
2015-03-04 20:46:05 ----A---- C:\windows\system32\termsrv.dll
2015-03-04 20:46:04 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2015-03-04 20:46:02 ----A---- C:\windows\system32\mfplat.dll
2015-03-04 20:46:01 ----A---- C:\windows\system32\localspl.dll
2015-03-04 20:45:59 ----A---- C:\windows\system32\wevtsvc.dll
2015-03-04 20:45:58 ----A---- C:\windows\system32\uxtheme.dll
2015-03-04 20:45:56 ----A---- C:\windows\SYSWOW64\pla.dll
2015-03-04 20:45:55 ----A---- C:\windows\SYSWOW64\drmv2clt.dll
2015-03-04 20:45:53 ----A---- C:\windows\SYSWOW64\psapi.dll
2015-03-04 20:45:53 ----A---- C:\windows\SYSWOW64\mmc.exe
2015-03-04 20:45:53 ----A---- C:\windows\system32\KernelBase.dll
2015-03-04 20:45:52 ----A---- C:\windows\system32\qmgr.dll
2015-03-04 20:45:51 ----A---- C:\windows\system32\wlansvc.dll
2015-03-04 20:45:51 ----A---- C:\windows\system32\VSSVC.exe
2015-03-04 20:45:50 ----A---- C:\windows\system32\WebcamUi.dll
2015-03-04 20:45:50 ----A---- C:\windows\system32\msdtctm.dll
2015-03-04 20:45:50 ----A---- C:\windows\system32\mispace.dll
2015-03-04 20:45:48 ----A---- C:\windows\SYSWOW64\XpsPrint.dll
2015-03-04 20:45:48 ----A---- C:\windows\SYSWOW64\MFMediaEngine.dll
2015-03-04 20:45:47 ----A---- C:\windows\SYSWOW64\Windows.Media.Streaming.dll
2015-03-04 20:45:47 ----A---- C:\windows\system32\NaturalLanguage6.dll
2015-03-04 20:45:44 ----A---- C:\windows\system32\dbghelp.dll
2015-03-04 20:45:42 ----A---- C:\windows\system32\Windows.Web.Http.dll
2015-03-04 20:45:42 ----A---- C:\windows\system32\rdvidcrl.dll
2015-03-04 20:45:41 ----A---- C:\windows\system32\devinv.dll
2015-03-04 20:45:41 ----A---- C:\windows\system32\aepdu.dll
2015-03-04 20:45:40 ----A---- C:\windows\SYSWOW64\Windows.Media.dll
2015-03-04 20:45:38 ----A---- C:\windows\SYSWOW64\comsvcs.dll
2015-03-04 20:45:37 ----A---- C:\windows\system32\SHCore.dll
2015-03-04 20:45:36 ----A---- C:\windows\SYSWOW64\mfmpeg2srcsnk.dll
2015-03-04 20:45:35 ----A---- C:\windows\SYSWOW64\WMPDMC.exe
2015-03-04 20:45:35 ----A---- C:\windows\system32\mf.dll
2015-03-04 20:45:33 ----A---- C:\windows\system32\uDWM.dll
2015-03-04 20:45:33 ----A---- C:\windows\system32\RacEngn.dll
2015-03-04 20:45:33 ----A---- C:\windows\system32\aeinv.dll
2015-03-04 20:45:32 ----A---- C:\windows\system32\winhttp.dll
2015-03-04 20:45:31 ----A---- C:\windows\system32\schedsvc.dll
2015-03-04 20:45:31 ----A---- C:\windows\system32\lsm.dll
2015-03-04 20:45:30 ----A---- C:\windows\SYSWOW64\sbe.dll
2015-03-04 20:45:29 ----A---- C:\windows\SYSWOW64\WMNetMgr.dll
2015-03-04 20:45:29 ----A---- C:\windows\system32\sysmain.dll
2015-03-04 20:45:28 ----A---- C:\windows\SYSWOW64\mfplat.dll
2015-03-04 20:45:28 ----A---- C:\windows\system32\cdosys.dll
2015-03-04 20:45:27 ----A---- C:\windows\SYSWOW64\mfnetcore.dll
2015-03-04 20:45:26 ----A---- C:\windows\system32\WMADMOD.DLL
2015-03-04 20:45:26 ----A---- C:\windows\system32\TSWorkspace.dll
2015-03-04 20:45:23 ----A---- C:\windows\SYSWOW64\mispace.dll
2015-03-04 20:45:22 ----A---- C:\windows\system32\twinapi.dll
2015-03-04 20:45:21 ----A---- C:\windows\SYSWOW64\sqlceqp40.dll
2015-03-04 20:45:21 ----A---- C:\windows\system32\wmdrmdev.dll
2015-03-04 20:45:19 ----A---- C:\windows\system32\ncryptsslp.dll
2015-03-04 20:45:18 ----A---- C:\windows\system32\SearchIndexer.exe
2015-03-04 20:45:17 ----A---- C:\windows\SYSWOW64\propsys.dll
2015-03-04 20:45:17 ----A---- C:\windows\system32\ogldrv.dll
2015-03-04 20:45:16 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2015-03-04 20:45:16 ----A---- C:\windows\system32\mfds.dll
2015-03-04 20:45:15 ----A---- C:\windows\system32\SettingSyncCore.dll
2015-03-04 20:45:13 ----A---- C:\windows\system32\WWAHost.exe
2015-03-04 20:45:13 ----A---- C:\windows\system32\printfilterpipelinesvc.exe
2015-03-04 20:45:12 ----A---- C:\windows\SYSWOW64\WMADMOD.DLL
2015-03-04 20:45:12 ----A---- C:\windows\system32\mspaint.exe
2015-03-04 20:45:11 ----A---- C:\windows\system32\win32spl.dll
2015-03-04 20:45:10 ----A---- C:\windows\SYSWOW64\RacEngn.dll
2015-03-04 20:45:10 ----A---- C:\windows\SYSWOW64\dbghelp.dll
2015-03-04 20:45:09 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2015-03-04 20:45:08 ----A---- C:\windows\system32\riched20.dll
2015-03-04 20:45:04 ----A---- C:\windows\SYSWOW64\NaturalLanguage6.dll
2015-03-04 20:45:04 ----A---- C:\windows\system32\MrmIndexer.dll
2015-03-04 20:45:03 ----A---- C:\windows\system32\drivers\ndis.sys
2015-03-04 20:45:01 ----A---- C:\windows\system32\generaltel.dll
2015-03-04 20:44:57 ----A---- C:\windows\system32\evr.dll
2015-03-04 20:44:57 ----A---- C:\windows\system32\comdlg32.dll
2015-03-04 20:44:56 ----A---- C:\windows\SYSWOW64\WebcamUi.dll
2015-03-04 20:44:55 ----A---- C:\windows\SYSWOW64\mf.dll
2015-03-04 20:44:55 ----A---- C:\windows\system32\spoolsv.exe
2015-03-04 20:44:54 ----A---- C:\windows\system32\odbc32.dll
2015-03-04 20:44:53 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2015-03-04 20:44:53 ----A---- C:\windows\system32\msTextPrediction.dll
2015-03-04 20:44:52 ----A---- C:\windows\SYSWOW64\WWAHost.exe
2015-03-04 20:44:51 ----A---- C:\windows\system32\duser.dll
2015-03-04 20:44:50 ----A---- C:\windows\SYSWOW64\SHCore.dll
2015-03-04 20:44:50 ----A---- C:\windows\system32\CPFilters.dll
2015-03-04 20:44:45 ----A---- C:\windows\SYSWOW64\WSShared.dll
2015-03-04 20:44:44 ----A---- C:\windows\system32\MSMPEG2ENC.DLL
2015-03-04 20:44:43 ----A---- C:\windows\system32\Windows.Security.Authentication.OnlineId.dll
2015-03-04 20:44:43 ----A---- C:\windows\system32\SettingSync.dll
2015-03-04 20:44:42 ----A---- C:\windows\system32\dnsapi.dll
2015-03-04 20:44:40 ----A---- C:\windows\SYSWOW64\taskschd.dll
2015-03-04 20:44:39 ----A---- C:\windows\system32\WinSync.dll
2015-03-04 20:44:38 ----A---- C:\windows\system32\SettingSyncHost.exe
2015-03-04 20:44:37 ----A---- C:\windows\SYSWOW64\gdi32.dll
2015-03-04 20:44:37 ----A---- C:\windows\SYSWOW64\evr.dll
2015-03-04 20:44:34 ----A---- C:\windows\SYSWOW64\winhttp.dll
2015-03-04 20:44:33 ----A---- C:\windows\system32\user32.dll
2015-03-04 20:44:32 ----A---- C:\windows\system32\RecoveryDrive.exe
2015-03-04 20:44:29 ----A---- C:\windows\SYSWOW64\uxtheme.dll
2015-03-04 20:44:28 ----A---- C:\windows\system32\WSDApi.dll
2015-03-04 20:44:27 ----A---- C:\windows\SYSWOW64\comdlg32.dll
2015-03-04 20:44:25 ----A---- C:\windows\SYSWOW64\ogldrv.dll
2015-03-04 20:44:24 ----A---- C:\windows\system32\wdc.dll
2015-03-04 20:44:23 ----A---- C:\windows\SYSWOW64\setupapi.dll
2015-03-04 20:44:22 ----A---- C:\windows\system32\fveapi.dll
2015-03-04 20:44:21 ----A---- C:\windows\SYSWOW64\d3d8.dll
2015-03-04 20:44:21 ----A---- C:\windows\system32\setupapi.dll
2015-03-04 20:44:19 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2015-03-04 20:44:17 ----A---- C:\windows\SYSWOW64\wmdrmdev.dll
2015-03-04 20:44:17 ----A---- C:\windows\system32\mcupdate_GenuineIntel.dll
2015-03-04 20:44:16 ----A---- C:\windows\system32\AppXDeploymentExtensions.dll
2015-03-04 20:44:14 ----A---- C:\windows\system32\PortableDeviceApi.dll
2015-03-04 20:44:13 ----A---- C:\windows\system32\provcore.dll
2015-03-04 20:44:11 ----A---- C:\windows\SYSWOW64\riched20.dll
2015-03-04 20:44:10 ----A---- C:\windows\system32\wpdshext.dll
2015-03-04 20:44:09 ----A---- C:\windows\system32\BFE.DLL
2015-03-04 20:44:08 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2015-03-04 20:44:07 ----A---- C:\windows\system32\WavDest.dll
2015-03-04 20:44:06 ----A---- C:\windows\system32\qedit.dll
2015-03-04 20:44:05 ----A---- C:\windows\SYSWOW64\mspaint.exe
2015-03-04 20:44:03 ----A---- C:\windows\system32\PurchaseWindowsLicense.dll
2015-03-04 20:44:01 ----A---- C:\windows\system32\twinapi.appcore.dll
2015-03-04 20:44:00 ----A---- C:\windows\system32\defragsvc.dll
2015-03-04 20:43:59 ----A---- C:\windows\SYSWOW64\wdc.dll
2015-03-04 20:43:59 ----A---- C:\windows\system32\reseteng.dll
2015-03-04 20:43:57 ----A---- C:\windows\system32\wmdrmnet.dll
2015-03-04 20:43:56 ----A---- C:\windows\system32\samsrv.dll
2015-03-04 20:43:55 ----A---- C:\windows\SYSWOW64\Taskmgr.exe
2015-03-04 20:43:55 ----A---- C:\windows\system32\WinTypes.dll
2015-03-04 20:43:53 ----A---- C:\windows\system32\msdtcprx.dll
2015-03-04 20:43:52 ----A---- C:\windows\system32\vssapi.dll
2015-03-04 20:43:51 ----A---- C:\windows\SYSWOW64\cdosys.dll
2015-03-04 20:43:50 ----A---- C:\windows\SYSWOW64\MSMPEG2ENC.DLL
2015-03-04 20:43:50 ----A---- C:\windows\SYSWOW64\certutil.exe
2015-03-04 20:43:48 ----A---- C:\windows\system32\Taskmgr.exe
2015-03-04 20:43:47 ----A---- C:\windows\system32\wbengine.exe
2015-03-04 20:43:47 ----A---- C:\windows\system32\clbcatq.dll
2015-03-04 20:43:47 ----A---- C:\windows\system32\autoconv.exe
2015-03-04 20:43:45 ----A---- C:\windows\SYSWOW64\SearchIndexer.exe
2015-03-04 20:43:45 ----A---- C:\windows\SYSWOW64\odbc32.dll
2015-03-04 20:43:44 ----A---- C:\windows\SYSWOW64\MrmIndexer.dll
2015-03-04 20:43:44 ----A---- C:\windows\system32\Windows.Networking.dll
2015-03-04 20:43:43 ----A---- C:\windows\SYSWOW64\twinapi.dll
2015-03-04 20:43:43 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2015-03-04 20:43:42 ----A---- C:\windows\system32\perftrack.dll
2015-03-04 20:43:42 ----A---- C:\windows\system32\d3d10level9.dll
2015-03-04 20:43:42 ----A---- C:\windows\system32\AppReadiness.dll
2015-03-04 20:43:41 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2015-03-04 20:43:41 ----A---- C:\windows\system32\comuid.dll
2015-03-04 20:43:40 ----A---- C:\windows\system32\wmdrmsdk.dll
2015-03-04 20:43:39 ----A---- C:\windows\SYSWOW64\Windows.Web.Http.dll
2015-03-04 20:43:39 ----A---- C:\windows\system32\iphlpsvc.dll
2015-03-04 20:43:38 ----A---- C:\windows\system32\netlogon.dll
2015-03-04 20:43:38 ----A---- C:\windows\system32\mfsvr.dll
2015-03-04 20:43:37 ----A---- C:\windows\SYSWOW64\mfds.dll
2015-03-04 20:43:37 ----A---- C:\windows\system32\WUDFx.dll
2015-03-04 20:43:36 ----A---- C:\windows\SYSWOW64\comuid.dll
2015-03-04 20:43:36 ----A---- C:\windows\system32\wpncore.dll
2015-03-04 20:43:35 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2015-03-04 20:43:35 ----A---- C:\windows\SYSWOW64\MsSpellCheckingFacility.dll
2015-03-04 20:43:34 ----A---- C:\windows\SYSWOW64\CPFilters.dll
2015-03-04 20:43:34 ----A---- C:\windows\system32\Windows.Devices.SmartCards.dll
2015-03-04 20:43:34 ----A---- C:\windows\system32\MSWB70804.dll
2015-03-04 20:43:33 ----A---- C:\windows\system32\MSWB70404.dll
2015-03-04 20:43:33 ----A---- C:\windows\system32\MSWB7001E.dll
2015-03-04 20:43:33 ----A---- C:\windows\system32\MSWB70011.dll
2015-03-04 20:43:32 ----A---- C:\windows\SYSWOW64\WSDApi.dll
2015-03-04 20:43:32 ----A---- C:\windows\system32\WMSPDMOD.DLL
2015-03-04 20:43:31 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2015-03-04 20:43:31 ----A---- C:\windows\system32\sqlsrv32.dll
2015-03-04 20:43:31 ----A---- C:\windows\system32\MMDevAPI.dll
2015-03-04 20:43:30 ----A---- C:\windows\SYSWOW64\duser.dll
2015-03-04 20:43:29 ----A---- C:\windows\SYSWOW64\xpssvcs.dll
2015-03-04 20:43:29 ----A---- C:\windows\SYSWOW64\WMADMOE.DLL
2015-03-04 20:43:29 ----A---- C:\windows\SYSWOW64\qedit.dll
2015-03-04 20:43:27 ----A---- C:\windows\SYSWOW64\rdvidcrl.dll
2015-03-04 20:43:25 ----A---- C:\windows\SYSWOW64\WMSPDMOD.DLL
2015-03-04 20:43:25 ----A---- C:\windows\system32\Windows.Devices.Bluetooth.dll
2015-03-04 20:43:25 ----A---- C:\windows\system32\printui.dll
2015-03-04 20:43:24 ----A---- C:\windows\system32\sqlcese40.dll
2015-03-04 20:43:23 ----A---- C:\windows\SYSWOW64\autoconv.exe
2015-03-04 20:43:22 ----A---- C:\windows\SYSWOW64\msdtcprx.dll
2015-03-04 20:43:22 ----A---- C:\windows\SYSWOW64\mfreadwrite.dll
2015-03-04 20:43:22 ----A---- C:\windows\system32\es.dll
2015-03-04 20:43:21 ----A---- C:\windows\SYSWOW64\sqlsrv32.dll
2015-03-04 20:43:21 ----A---- C:\windows\system32\Windows.Graphics.Printing.dll
2015-03-04 20:43:20 ----A---- C:\windows\SYSWOW64\twinapi.appcore.dll
2015-03-04 20:43:20 ----A---- C:\windows\system32\Windows.Networking.Connectivity.dll
2015-03-04 20:43:20 ----A---- C:\windows\system32\EncDec.dll
2015-03-04 20:43:20 ----A---- C:\windows\system32\dxgi.dll
2015-03-04 20:43:19 ----A---- C:\windows\SYSWOW64\wpdshext.dll
2015-03-04 20:43:19 ----A---- C:\windows\system32\WMVSDECD.DLL
2015-03-04 20:43:19 ----A---- C:\windows\system32\imapi2fs.dll
2015-03-04 20:43:18 ----A---- C:\windows\system32\WUDFx02000.dll
2015-03-04 20:43:18 ----A---- C:\windows\system32\mfreadwrite.dll
2015-03-04 20:43:17 ----A---- C:\windows\system32\rasapi32.dll
2015-03-04 20:43:16 ----A---- C:\windows\SYSWOW64\wmdrmnet.dll
2015-03-04 20:43:16 ----A---- C:\windows\system32\wiaservc.dll
2015-03-04 20:43:15 ----A---- C:\windows\SYSWOW64\WinSync.dll
2015-03-04 20:43:15 ----A---- C:\windows\SYSWOW64\vssapi.dll
2015-03-04 20:43:14 ----A---- C:\windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-03-04 20:43:14 ----A---- C:\windows\system32\dcomp.dll
2015-03-04 20:43:13 ----A---- C:\windows\SYSWOW64\wmdrmsdk.dll
2015-03-04 20:43:13 ----A---- C:\windows\system32\psisdecd.dll
2015-03-04 20:43:13 ----A---- C:\windows\system32\GeofenceMonitorService.dll
2015-03-04 20:43:12 ----A---- C:\windows\SYSWOW64\PortableDeviceApi.dll
2015-03-04 20:43:12 ----A---- C:\windows\system32\Windows.Web.dll
2015-03-04 20:43:11 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2015-03-04 20:43:11 ----A---- C:\windows\system32\usercpl.dll
2015-03-04 20:43:11 ----A---- C:\windows\system32\untfs.dll
2015-03-04 20:43:10 ----A---- C:\windows\SYSWOW64\printui.dll
2015-03-04 20:43:10 ----A---- C:\windows\system32\dsound.dll
2015-03-04 20:43:09 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2015-03-04 20:43:08 ----A---- C:\windows\system32\werconcpl.dll
2015-03-04 20:43:08 ----A---- C:\windows\system32\MPSSVC.dll
2015-03-04 20:43:08 ----A---- C:\windows\system32\appinfo.dll
2015-03-04 20:43:07 ----A---- C:\windows\system32\XpsRasterService.dll
2015-03-04 20:43:07 ----A---- C:\windows\system32\gameux.dll
2015-03-04 20:43:06 ----A---- C:\windows\system32\XpsGdiConverter.dll
2015-03-04 20:43:06 ----A---- C:\windows\system32\aclui.dll
2015-03-04 20:43:04 ----A---- C:\windows\system32\Windows.Networking.BackgroundTransfer.dll
2015-03-04 20:43:04 ----A---- C:\windows\system32\vpnike.dll
2015-03-04 20:43:04 ----A---- C:\windows\system32\msv1_0.dll
2015-03-04 20:43:04 ----A---- C:\windows\system32\lpksetup.exe
2015-03-04 20:43:03 ----A---- C:\windows\SYSWOW64\dnsapi.dll
2015-03-04 20:43:03 ----A---- C:\windows\system32\FXSCOMEX.dll
2015-03-04 20:43:02 ----A---- C:\windows\SYSWOW64\netlogon.dll
2015-03-04 20:43:02 ----A---- C:\windows\system32\NL7Data0011.dll
2015-03-04 20:43:02 ----A---- C:\windows\system32\hgcpl.dll
2015-03-04 20:43:01 ----A---- C:\windows\SYSWOW64\untfs.dll
2015-03-04 20:43:01 ----A---- C:\windows\system32\PrintDialogs.dll
2015-03-04 20:43:00 ----A---- C:\windows\SYSWOW64\rasapi32.dll
2015-03-04 20:43:00 ----A---- C:\windows\system32\wlidcli.dll
2015-03-04 20:42:59 ----A---- C:\windows\SYSWOW64\usercpl.dll
2015-03-04 20:42:59 ----A---- C:\windows\SYSWOW64\clbcatq.dll
2015-03-04 20:42:59 ----A---- C:\windows\system32\secproc.dll
2015-03-04 20:42:58 ----A---- C:\windows\system32\wsecedit.dll
2015-03-04 20:42:58 ----A---- C:\windows\system32\secproc_isv.dll
2015-03-04 20:42:58 ----A---- C:\windows\system32\certmgr.dll
2015-03-04 20:42:57 ----A---- C:\windows\system32\tsmf.dll
2015-03-04 20:42:56 ----A---- C:\windows\SYSWOW64\sqlcese40.dll
2015-03-04 20:42:56 ----A---- C:\windows\system32\tdh.dll
2015-03-04 20:42:55 ----A---- C:\windows\SYSWOW64\imapi2fs.dll
2015-03-04 20:42:55 ----A---- C:\windows\system32\sxs.dll
2015-03-04 20:42:55 ----A---- C:\windows\system32\opengl32.dll
2015-03-04 20:42:54 ----A---- C:\windows\SYSWOW64\WMVSDECD.DLL
2015-03-04 20:42:54 ----A---- C:\windows\system32\kernel32.dll
2015-03-04 20:42:53 ----A---- C:\windows\SYSWOW64\mfsvr.dll
2015-03-04 20:42:52 ----A---- C:\windows\system32\WMADMOE.DLL
2015-03-04 20:42:50 ----A---- C:\windows\system32\SyncCenter.dll
2015-03-04 20:42:49 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2015-03-04 20:42:48 ----A---- C:\windows\system32\WorkfoldersControl.dll
2015-03-04 20:42:47 ----A---- C:\windows\SYSWOW64\gameux.dll
2015-03-04 20:42:46 ----A---- C:\windows\system32\msdrm.dll
2015-03-04 20:42:45 ----A---- C:\windows\system32\netprofmsvc.dll
2015-03-04 20:42:44 ----A---- C:\windows\system32\gpedit.dll
2015-03-04 20:42:43 ----A---- C:\windows\SYSWOW64\aclui.dll
2015-03-04 20:42:43 ----A---- C:\windows\system32\services.exe
2015-03-04 20:42:42 ----A---- C:\windows\SYSWOW64\mssph.dll
2015-03-04 20:42:41 ----A---- C:\windows\SYSWOW64\wmpeffects.dll
2015-03-04 20:42:38 ----A---- C:\windows\HelpPane.exe
2015-03-04 20:42:37 ----A---- C:\windows\SYSWOW64\wsecedit.dll
2015-03-04 20:42:36 ----A---- C:\windows\system32\wlidprov.dll
2015-03-04 20:42:34 ----AC---- C:\windows\system32\drivers\acpi.sys
2015-03-04 20:42:33 ----A---- C:\windows\SYSWOW64\psisdecd.dll
2015-03-04 20:42:32 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2015-03-04 20:42:25 ----A---- C:\windows\system32\puiobj.dll
2015-03-04 20:42:24 ----A---- C:\windows\system32\UIAnimation.dll
2015-03-04 20:42:24 ----A---- C:\windows\system32\tpmvsc.dll
2015-03-04 20:42:23 ----A---- C:\windows\SYSWOW64\gpedit.dll
2015-03-04 20:42:23 ----A---- C:\windows\SYSWOW64\EncDec.dll
2015-03-04 20:42:23 ----A---- C:\windows\SYSWOW64\dsound.dll
2015-03-04 20:42:23 ----A---- C:\windows\system32\wiaaut.dll
2015-03-04 20:42:22 ----A---- C:\windows\SYSWOW64\MMDevAPI.dll
2015-03-04 20:42:21 ----A---- C:\windows\system32\MFCaptureEngine.dll
2015-03-04 20:42:20 ----A---- C:\windows\SYSWOW64\dxgi.dll
2015-03-04 20:42:20 ----A---- C:\windows\system32\catsrvut.dll
2015-03-04 20:42:19 ----A---- C:\windows\SYSWOW64\Windows.Networking.dll
2015-03-04 20:42:19 ----A---- C:\windows\SYSWOW64\es.dll
2015-03-04 20:42:19 ----A---- C:\windows\system32\vds.exe
2015-03-04 20:42:18 ----A---- C:\windows\system32\mssph.dll
2015-03-04 20:42:17 ----A---- C:\windows\system32\Windows.UI.dll
2015-03-04 20:42:17 ----A---- C:\windows\system32\upnphost.dll
2015-03-04 20:42:17 ----A---- C:\windows\system32\msscp.dll
2015-03-04 20:42:16 ----A---- C:\windows\SYSWOW64\ddraw.dll
2015-03-04 20:42:16 ----A---- C:\windows\system32\FirewallAPI.dll
2015-03-04 20:42:15 ----A---- C:\windows\system32\Wldap32.dll
2015-03-04 20:42:15 ----A---- C:\windows\system32\SmartCardSimulator.dll
2015-03-04 20:42:14 ----A---- C:\windows\SYSWOW64\sxs.dll
2015-03-04 20:42:14 ----A---- C:\windows\system32\swprv.dll
2015-03-04 20:42:14 ----A---- C:\windows\system32\calc.exe
2015-03-04 20:42:13 ----A---- C:\windows\system32\mswmdm.dll
2015-03-04 20:42:13 ----A---- C:\windows\system32\MDEServer.exe
2015-03-04 20:42:12 ----A---- C:\windows\system32\hnetcfg.dll
2015-03-04 20:42:12 ----A---- C:\windows\system32\drivers\srv2.sys
2015-03-04 20:42:11 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2015-03-04 20:42:11 ----A---- C:\windows\system32\advapi32.dll
2015-03-04 20:42:10 ----A---- C:\windows\system32\MSAC3ENC.DLL
2015-03-04 20:42:09 ----A---- C:\windows\SYSWOW64\advapi32.dll
2015-03-04 20:42:09 ----A---- C:\windows\system32\webio.dll
2015-03-04 20:42:09 ----A---- C:\windows\system32\difxapi.dll
2015-03-04 20:42:08 ----A---- C:\windows\SYSWOW64\certmgr.dll
2015-03-04 20:42:07 ----A---- C:\windows\SYSWOW64\Windows.Web.dll
2015-03-04 20:42:07 ----A---- C:\windows\SYSWOW64\qdvd.dll
2015-03-04 20:42:07 ----A---- C:\windows\SYSWOW64\opengl32.dll
2015-03-04 20:42:06 ----A---- C:\windows\SYSWOW64\netcfgx.dll
2015-03-04 20:42:06 ----A---- C:\windows\SYSWOW64\MSWB70404.dll
2015-03-04 20:42:06 ----A---- C:\windows\SYSWOW64\MSWB7001E.dll
2015-03-04 20:42:06 ----A---- C:\windows\SYSWOW64\MSWB70011.dll
2015-03-04 20:42:05 ----A---- C:\windows\SYSWOW64\MSWB70804.dll
2015-03-04 20:42:05 ----A---- C:\windows\system32\certutil.exe
2015-03-04 20:42:04 ----A---- C:\windows\SYSWOW64\Windows.Networking.Connectivity.dll
2015-03-04 20:42:04 ----A---- C:\windows\system32\msra.exe
2015-03-04 20:42:04 ----A---- C:\windows\system32\Display.dll
2015-03-04 20:42:03 ----A---- C:\windows\system32\netshell.dll
2015-03-04 20:42:03 ----A---- C:\windows\system32\ddraw.dll
2015-03-04 20:42:02 ----A---- C:\windows\SYSWOW64\apphelp.dll
2015-03-04 20:42:01 ----A---- C:\windows\SYSWOW64\Windows.Graphics.Printing.dll
2015-03-04 20:42:01 ----A---- C:\windows\SYSWOW64\SyncCenter.dll
2015-03-04 20:42:01 ----A---- C:\windows\system32\oleacc.dll
2015-03-04 20:42:00 ----A---- C:\windows\system32\wwanconn.dll
2015-03-04 20:42:00 ----A---- C:\windows\system32\wevtapi.dll
2015-03-04 20:42:00 ----A---- C:\windows\system32\DMRServer.exe
2015-03-04 20:42:00 ----A---- C:\windows\system32\aepic.dll
2015-03-04 20:41:59 ----A---- C:\windows\system32\pcasvc.dll
2015-03-04 20:41:59 ----A---- C:\windows\system32\NlsData001d.dll
2015-03-04 20:41:58 ----A---- C:\windows\system32\NlsData0816.dll
2015-03-04 20:41:58 ----A---- C:\windows\system32\NlsData0416.dll
2015-03-04 20:41:57 ----A---- C:\windows\system32\NlsData0414.dll
2015-03-04 20:41:57 ----A---- C:\windows\system32\NlsData0010.dll
2015-03-04 20:41:56 ----A---- C:\windows\SYSWOW64\d3d10.dll
2015-03-04 20:41:56 ----A---- C:\windows\system32\catsrv.dll
2015-03-04 20:41:55 ----A---- C:\windows\system32\Windows.Devices.Usb.dll
2015-03-04 20:41:55 ----A---- C:\windows\system32\netcfgx.dll
2015-03-04 20:41:55 ----A---- C:\windows\system32\CompPkgSup.dll
2015-03-04 20:41:54 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2015-03-04 20:41:54 ----A---- C:\windows\system32\wvc.dll
2015-03-04 20:41:54 ----A---- C:\windows\system32\RMActivate_isv.exe
2015-03-04 20:41:54 ----A---- C:\windows\system32\AppxApplicabilityEngine.dll
2015-03-04 20:41:53 ----A---- C:\windows\system32\wbemcomn.dll
2015-03-04 20:41:53 ----A---- C:\windows\system32\sdohlp.dll
2015-03-04 20:41:52 ----A---- C:\windows\SYSWOW64\msdrm.dll
2015-03-04 20:41:52 ----A---- C:\windows\SYSWOW64\catsrvut.dll
2015-03-04 20:41:52 ----A---- C:\windows\system32\themecpl.dll
2015-03-04 20:41:51 ----A---- C:\windows\system32\mswsock.dll