suphpnot.exe
Napsal: 13 čer 2015 17:01
Zdravim, mam podozrenie ze mam vir supHPnot.exe zrejme som ho nainstaloval spolu s unlockerom. Ten som uz odinstaloval ale tohto som sa nezbavil.
vypol som to v spravcovy uloh... tu je log
Logfile of random's system information tool 1.10 (written by random/random)
Run by p at 2015-06-13 17:51:05
Microsoft Windows 8.1 Pro N
System drive C: has 40 GB (55%) free of 72 GB
Total RAM: 8108 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:51:11, on 13.6.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Deluge\deluge.exe
C:\Program Files (x86)\MiuiTab\cmdshell.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\p.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - C:\Program Files (x86)\MiuiTab\SupTab.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: IHProtect Service - XTab system - C:\Program Files (x86)\MiuiTab\ProtectService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) - Nitro PDF Software - C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
O23 - Service: NitroUpdateService - Unknown owner - C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\WINDOWS\SysWOW64\NLSSRV32.EXE
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - DTools LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 7062 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe"
"C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe"
C:\WINDOWS\SysWOW64\NLSSRV32.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
dashost.exe {33e328fb-282d-46a0-a10b1bee5d7597c4}
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
taskhostex.exe
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
ClassicStartMenu.exe -startup
"C:\Program Files (x86)\Deluge\deluge.exe"
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
"C:\Program Files (x86)\MiuiTab\ProtectService.exe"
"C:\Program Files (x86)\MiuiTab\cmdshell.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.istartsurf.com/?type=sc&ts=1 ... XXW3816M8J
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1368.0.68624353\2024333180" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.14.4170 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/BackgroundRendererProcesses/AllowIdleFromBrowser/BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.1.1815845864\733871450" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.2.708523258\1487988479" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.3.1192031878\2074373415" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.4.1574146063\461589877" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.5.1817230750\204840699" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.6.741499038\1111649186" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.7.2095465688\763950555" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.11.1528388627\506053441" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.17.2061133341\278471434" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.18.334628036\1300553773" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Users\p\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]
LuckyTab Class - C:\Program Files (x86)\MiuiTab\SupTab.dll [2015-06-12 544896]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2015-05-16 164112]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-03-19 393480]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe []
"Persistence"=C:\WINDOWS\system32\igfxpers.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-05-28 2754704]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"emptyloopunlockercbfy"= []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-13 17:51:05 ----D---- C:\rsit
2015-06-13 17:51:05 ----D---- C:\Program Files\trend micro
2015-06-13 17:35:22 ----D---- C:\ProgramData\IHProtectUpDate
2015-06-13 17:35:17 ----D---- C:\Program Files (x86)\MiuiTab
2015-06-13 17:35:07 ----D---- C:\ProgramData\WindowsMangerProtect
2015-06-13 17:35:05 ----A---- C:\WINDOWS\prleth.sys
2015-06-13 17:35:05 ----A---- C:\WINDOWS\hgfs.sys
2015-06-13 17:06:10 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-06-12 23:53:27 ----D---- C:\Users\p\AppData\Roaming\Identities
2015-06-12 23:53:15 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-06-12 23:52:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-06-12 23:41:56 ----SD---- C:\WINDOWS\system32\CompatTel
2015-06-12 23:10:23 ----D---- C:\WINDOWS\system32\MRT
2015-06-12 23:10:18 ----A---- C:\WINDOWS\system32\MRT.exe
2015-06-12 22:55:41 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\Display.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlansec.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlanapi.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-06-12 22:35:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\Display.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\cdd.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\gpsvc.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\swenum.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\authui.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\SYSWOW64\psapi.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2015-06-12 22:35:48 ----A---- C:\WINDOWS\system32\uDWM.dll
2015-06-12 22:35:48 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-06-12 22:35:48 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\twinui.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\propsys.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\msxml3.dll
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\defragsvc.dll
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\system32\KernelBase.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-06-12 22:35:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-06-12 22:35:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-06-12 22:35:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2015-06-12 22:35:40 ----A---- C:\WINDOWS\system32\mstscax.dll
2015-06-12 22:35:39 ----A---- C:\WINDOWS\system32\WSService.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\system32\atlthunk.dll
2015-06-12 22:35:36 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2015-06-12 22:35:35 ----A---- C:\WINDOWS\system32\msi.dll
2015-06-12 22:35:35 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-12 22:35:34 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\WpcMon.exe
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\rdpinput.exe
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\rdpcore.dll
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\rdpclip.exe
2015-06-12 22:35:32 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-06-12 22:35:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-06-12 22:35:32 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-06-12 22:35:32 ----A---- C:\WINDOWS\system32\d2d1.dll
2015-06-12 22:35:31 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-06-12 22:35:31 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-12 22:35:30 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2015-06-12 22:35:30 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-06-12 22:35:30 ----A---- C:\WINDOWS\system32\Wpc.dll
2015-06-12 22:35:29 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-06-12 22:35:29 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2015-06-12 22:35:29 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2015-06-12 22:35:29 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-12 22:35:28 ----A---- C:\WINDOWS\system32\msxml6.dll
2015-06-12 22:35:28 ----A---- C:\WINDOWS\system32\dbgeng.dll
2015-06-12 22:35:27 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-06-12 22:35:27 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2015-06-12 22:35:27 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2015-06-12 22:35:26 ----A---- C:\WINDOWS\system32\xpsservices.dll
2015-06-12 22:35:26 ----A---- C:\WINDOWS\system32\esent.dll
2015-06-12 22:35:25 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2015-06-12 22:35:25 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2015-06-12 22:35:25 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-06-12 22:35:24 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2015-06-12 22:35:24 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2015-06-12 22:35:24 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\system32\combase.dll
2015-06-12 22:35:22 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-06-12 22:35:21 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2015-06-12 22:35:21 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-06-12 22:35:20 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2015-06-12 22:35:20 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2015-06-12 22:35:19 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-06-12 22:35:19 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-06-12 22:35:19 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-06-12 22:35:18 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2015-06-12 22:35:18 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2015-06-12 22:35:17 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-06-12 22:35:17 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-06-12 22:35:16 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2015-06-12 22:35:16 ----A---- C:\WINDOWS\system32\OpcServices.dll
2015-06-12 22:35:16 ----A---- C:\WINDOWS\system32\dui70.dll
2015-06-12 22:35:15 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-06-12 22:35:15 ----A---- C:\WINDOWS\system32\ole32.dll
2015-06-12 22:35:15 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2015-06-12 22:35:14 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2015-06-12 22:35:14 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-06-12 22:35:14 ----A---- C:\WINDOWS\system32\SRH.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\system32\taskschd.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\system32\PeerDistSvc.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\system32\PeerDistCacheProvider.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\system32\webservices.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\system32\mispace.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\system32\aclui.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2015-06-12 22:35:09 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\quartz.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\mmc.exe
2015-06-12 22:35:08 ----A---- C:\WINDOWS\system32\diagperf.dll
2015-06-12 22:35:08 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-06-12 22:35:07 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\system32\xpssvcs.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\system32\sbe.dll
2015-06-12 22:35:05 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2015-06-12 22:35:05 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-06-12 22:35:05 ----A---- C:\WINDOWS\system32\rpcss.dll
2015-06-12 22:35:04 ----A---- C:\WINDOWS\system32\WinSAT.exe
2015-06-12 22:35:04 ----A---- C:\WINDOWS\system32\pla.dll
2015-06-12 22:35:03 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2015-06-12 22:35:03 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-06-12 22:35:03 ----A---- C:\WINDOWS\system32\storagewmi.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\sqlceqp40.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2015-06-12 22:35:01 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2015-06-12 22:35:01 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-06-12 22:35:00 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2015-06-12 22:35:00 ----A---- C:\WINDOWS\SYSWOW64\pla.dll
2015-06-12 22:35:00 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2015-06-12 22:35:00 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\termsrv.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\srmclient.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\qmgr.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\msdtctm.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\dbghelp.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\SYSWOW64\osk.exe
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\osk.exe
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-12 22:34:57 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\RacEngn.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\netcfgx.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-12 22:34:55 ----A---- C:\WINDOWS\SYSWOW64\sbe.dll
2015-06-12 22:34:55 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-06-12 22:34:55 ----A---- C:\WINDOWS\system32\cdosys.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\SYSWOW64\sqlceqp40.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\tsgqec.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\ogldrv.dll
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\SYSWOW64\RacEngn.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\system32\mspaint.exe
2015-06-12 22:34:51 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\riched20.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-06-12 22:34:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\odbc32.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\duser.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\dllhost.exe
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-06-12 22:34:49 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2015-06-12 22:34:49 ----A---- C:\WINDOWS\system32\CPFilters.dll
2015-06-12 22:34:42 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\WinSync.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\twinapi.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\SYSWOW64\ogldrv.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\wdc.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\user32.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\fveapi.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\system32\setupapi.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\riched20.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\WavDest.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\qedit.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\provcore.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\cdosys.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\WinTypes.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\samsrv.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2015-06-12 22:34:36 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2015-06-12 22:34:36 ----A---- C:\WINDOWS\system32\clbcatq.dll
2015-06-12 22:34:36 ----A---- C:\WINDOWS\system32\autoconv.exe
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\wbengine.exe
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\perftrack.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\comuid.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\comuid.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\WUDFx.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\MSWB70804.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\MSWB70404.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\MSWB70011.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\MSWB7001E.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-06-12 22:34:32 ----A---- C:\WINDOWS\SYSWOW64\xpssvcs.dll
2015-06-12 22:34:32 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2015-06-12 22:34:32 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2015-06-12 22:34:32 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-06-12 22:34:32 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\SYSWOW64\autoconv.exe
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\sqlcese40.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\SettingSync.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\printui.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\es.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\srmclient.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\printui.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\WUDFx02000.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\wiaservc.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\EncDec.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\psisdecd.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\XpsRasterService.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\usercpl.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\dsound.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\XpsGdiConverter.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\werconcpl.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\msv1_0.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\lpksetup.exe
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\gameux.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\appinfo.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\system32\wlidcli.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\system32\NL7Data0011.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\system32\hgcpl.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\SYSWOW64\clbcatq.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\secproc_isv.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\secproc.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\msihnd.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\certmgr.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\SYSWOW64\sqlcese40.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\tsmf.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\sxs.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\opengl32.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\kernel32.dll
2015-06-12 22:34:23 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2015-06-12 22:34:23 ----A---- C:\WINDOWS\system32\Wldap32.dll
2015-06-12 22:34:23 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\pmcsnap.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\msdrm.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\HelpPane.exe
2015-06-12 22:34:21 ----A---- C:\WINDOWS\SYSWOW64\psisdecd.dll
2015-06-12 22:34:21 ----A---- C:\WINDOWS\system32\untfs.dll
2015-06-12 22:34:21 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-06-12 22:34:20 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-06-12 22:34:20 ----A---- C:\WINDOWS\system32\tpmvsc.dll
2015-06-12 22:34:20 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\es.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\dsound.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\wiaaut.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\vds.exe
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\srmscan.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\SYSWOW64\sxs.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\upnphost.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\SmartCardSimulator.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\calc.exe
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\opengl32.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\certmgr.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\webio.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\netlogon.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\difxapi.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\advapi32.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\SyncCenter.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB70804.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB70404.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB7001E.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB70011.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\wevtapi.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\oleacc.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\netshell.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\msra.exe
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\ddraw.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\certutil.exe
2015-06-12 22:34:15 ----A---- C:\WINDOWS\SYSWOW64\d3d10.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\pcasvc.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0816.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0416.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0414.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData001d.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0010.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\catsrv.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\wvc.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\RMActivate_isv.exe
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\system32\wbemcomn.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\system32\themecpl.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\system32\sdohlp.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\secproc.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\msdrm.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\gpedit.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\system32\winload.exe
2015-06-12 22:34:12 ----A---- C:\WINDOWS\system32\mswsock.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\SYSWOW64\secproc_isv.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\themeui.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\tapi3.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\SYSWOW64\provsvc.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\wlidprov.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\SyncInfrastructure.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\RMActivate.exe
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\rdvvmtransport.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\provsvc.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\ninput.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\fvewiz.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\cscui.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\themeui.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\hnetcfg.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\catsrv.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\system32\wcncsvc.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\system32\rastls.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\upnp.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\NlsData0007.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\imapi2.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\bdesvc.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\WFS.exe
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\NlsData000d.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\cscsvc.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\BCP47Langs.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\SYSWOW64\tapi3.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\winresume.exe
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\StikyNot.exe
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\provcore.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\msls31.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\livessp.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\gpedit.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\azroles.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\wiaaut.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\RMActivate_isv.exe
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\shsvcs.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\NlsData000c.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\NlsData000a.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\DscCore.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\appmgr.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\XpsRasterService.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\XpsGdiConverter.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\wbemcomn.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\AppxApplicabilityEngine.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\wsecedit.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\w32time.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\mstsc.exe
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\d3d10.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\SYSWOW64\upnp.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\SYSWOW64\ninput.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\SYSWOW64\NL7Data0011.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2015-06-12 22:34:01 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\Windows.Networking.Proximity.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\offfilt.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\objsel.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\NL7Data0404.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\apphelp.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\SYSWOW64\RMActivate.exe
2015-06-12 22:34:00 ----A---- C:\WINDOWS\SYSWOW64\ipsmsnap.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\system32\iassdo.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\system32\glmf32.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\wisp.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\swprv.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\SessEnv.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\NL7Data0804.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\winsku.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\msdt.exe
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\azroles.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\rdpencom.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\rasmans.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\qasf.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\mscms.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\gpprefcl.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\AdmTmpl.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\wvc.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\rasdlg.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\d3dim700.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\winsta.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\netprofm.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\azroleui.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2015-06-12 22:33:56 ----A---- C:\WINDOWS\SYSWOW64\msvcrt.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\taskeng.exe
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\msdri.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\FXSCOMPOSE.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-06-12 22:33:55 ----A---- C:\WINDOWS\SYSWOW64\XpsFilt.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\WLanConn.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\TetheringMgr.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\msdelta.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\framedynos.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\filemgmt.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\efscore.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\SYSWOW64\appmgr.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\wmicmiplugin.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\rasgcw.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\PeerDistSh.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\PeerDistCleaner.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\NlsData0024.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\NlsData000f.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\NlsData0002.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\DfpCommon.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\ws2_32.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\winsku.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\taskcomp.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0c1a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData081a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData004b.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData004a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0047.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0046.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0039.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0027.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0026.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0020.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData001b.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData001a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0018.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0003.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\SYSWOW64\SyncInfrastructure.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\SYSWOW64\sdohlp.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\xwizards.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData004e.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData004c.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0049.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0045.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData003e.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData002a.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0022.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0021.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\msvcrt.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\wisp.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\shsvcs.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\qdv.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\xmllite.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\srvsvc.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\msdt.exe
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\diskraid.exe
2015-06-12 22:33:50 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2015-06-12 22:33:50 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2015-06-12 22:33:50 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-12 22:33:50 ----A---- C:\WINDOWS\system32\netdiagfx.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\SYSWOW64\NlsData0007.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\sti.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\msvcp60.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\DxpTaskSync.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\taskcomp.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\prnfldr.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\msls31.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\scrptadm.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\fhcfg.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\offfilt.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\mprapi.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\ipsecsnp.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\filemgmt.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\wlanpref.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\termmgr.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\IasMigPlugin.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\drivers\csc.sys
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\glmf32.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\FXSCOMEX.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\sensrsvc.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\RMActivate_ssp_isv.exe
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\qdv.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\mscandui.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\NlsData000a.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\gpprefcl.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\dmime.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\system32\wincorlib.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\system32\d3d10core.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\system32\d3d10_1core.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.HardwareId.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Proximity.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\netprofm.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\AdmTmpl.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\stobject.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\RMActivate_ssp.exe
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\P2PGraph.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\DXP.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\WinSATAPI.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0816.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0416.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0414.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData001d.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0010.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\system32\usbmon.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\system32\rasppp.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\system32\icsvc.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\qasf.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\msdelta.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\d3dim.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\nettrace.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\energy.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\DisplaySwitch.exe
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\srmscan.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\P2PGraph.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\NlsData000d.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\BCP47Langs.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\WinSATAPI.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\spwizeng.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\SensorsClassExtension.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\rsaenh.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\fhengine.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\comsnap.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\cmd.exe
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\winsta.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\scrptadm.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\objsel.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\system32\shlwapi.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\system32\rpchttp.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\SYSWOW64\wlangpui.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\system32\WlanMM.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\system32\rdpendp.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\SYSWOW64\xmllite.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\SYSWOW64\sti.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\SYSWOW64\ksuser.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\system32\sqlceoledb40.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\SYSWOW64\NlsData000c.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\srmstormod.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\mprapi.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\FirewallControlPanel.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\bdeunlock.exe
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\authfwcfg.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-06-12 22:33:36 ----A---- C:\WINDOWS\SYSWOW64\RMActivate_ssp_isv.exe
2015-06-12 22:33:36 ----A---- C:\WINDOWS\SYSWOW64\RMActivate_ssp.exe
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\scecli.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\dwmredir.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\cryptnet.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\activeds.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\termmgr.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\spwizeng.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\netjoin.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallControlPanel.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\d3d10_1core.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\wlangpui.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\prncache.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\netjoin.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\msutb.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\localsec.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\lltdsvc.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\lltdapi.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\hgprint.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\Dxpserver.exe
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\devmgr.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\xwizards.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\shlwapi.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\devmgr.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\wdscore.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\VAN.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\QAGENTRT.DLL
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\NL7Data001E.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\AppIdPolicyEngineApi.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\scecli.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\DxpTaskSync.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\NL7Data0404.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\DisplaySwitch.exe
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\adsldp.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\wlidcredprov.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\Windows.Media.SpeechSynthesis.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\qdvd.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\LocationApi.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\dmvdsitf.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\wlanpref.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\PeerDistSh.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\NL7Data0804.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\msoeacct.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\diskraid.exe
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\activeds.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\wkssvc.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\thumbcache.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\msoeacct.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\iuilp.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\fhcat.dll
vypol som to v spravcovy uloh... tu je log
Logfile of random's system information tool 1.10 (written by random/random)
Run by p at 2015-06-13 17:51:05
Microsoft Windows 8.1 Pro N
System drive C: has 40 GB (55%) free of 72 GB
Total RAM: 8108 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:51:11, on 13.6.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Deluge\deluge.exe
C:\Program Files (x86)\MiuiTab\cmdshell.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\p.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1 ... XXW3816M8J
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - C:\Program Files (x86)\MiuiTab\SupTab.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: IHProtect Service - XTab system - C:\Program Files (x86)\MiuiTab\ProtectService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) - Nitro PDF Software - C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
O23 - Service: NitroUpdateService - Unknown owner - C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\WINDOWS\SysWOW64\NLSSRV32.EXE
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - DTools LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 7062 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe"
"C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe"
C:\WINDOWS\SysWOW64\NLSSRV32.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
dashost.exe {33e328fb-282d-46a0-a10b1bee5d7597c4}
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
taskhostex.exe
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
ClassicStartMenu.exe -startup
"C:\Program Files (x86)\Deluge\deluge.exe"
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service
"C:\Program Files (x86)\MiuiTab\ProtectService.exe"
"C:\Program Files (x86)\MiuiTab\cmdshell.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.istartsurf.com/?type=sc&ts=1 ... XXW3816M8J
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1368.0.68624353\2024333180" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.14.4170 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/BackgroundRendererProcesses/AllowIdleFromBrowser/BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.1.1815845864\733871450" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.2.708523258\1487988479" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.3.1192031878\2074373415" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.4.1574146063\461589877" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.5.1817230750\204840699" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.6.741499038\1111649186" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.7.2095465688\763950555" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.11.1528388627\506053441" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.17.2061133341\278471434" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=sk --force-fieldtrials="*AffiliationBasedMatching/Enabled/*AutofillEnabled/Default/*BackgroundRendererProcesses/AllowIdleFromBrowser/*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ChromeSuggestions/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*IconNTP/Default/*NewProfileManagement/Enabled/*OmniboxBundledExperimentV1/PP_Ethersuggest_A2_Stable_R9/*PasswordGeneration/Disabled/PasswordLinkInSettings/Disabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Disabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_31/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/*WebRTC-IPv6Default/Enabled/WebRTC-UDPSocketNonBlockingIO/Default/*Win32kLockdown/Enabled/" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=1368 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --channel="1368.18.334628036\1300553773" /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 560 564 572 65536 568
"C:\Users\p\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]
LuckyTab Class - C:\Program Files (x86)\MiuiTab\SupTab.dll [2015-06-12 544896]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2015-05-16 164112]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2015-03-19 393480]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe []
"Persistence"=C:\WINDOWS\system32\igfxpers.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-05-28 2754704]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"emptyloopunlockercbfy"= []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0
"ConsentPromptBehaviorAdmin"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-06-13 17:51:05 ----D---- C:\rsit
2015-06-13 17:51:05 ----D---- C:\Program Files\trend micro
2015-06-13 17:35:22 ----D---- C:\ProgramData\IHProtectUpDate
2015-06-13 17:35:17 ----D---- C:\Program Files (x86)\MiuiTab
2015-06-13 17:35:07 ----D---- C:\ProgramData\WindowsMangerProtect
2015-06-13 17:35:05 ----A---- C:\WINDOWS\prleth.sys
2015-06-13 17:35:05 ----A---- C:\WINDOWS\hgfs.sys
2015-06-13 17:06:10 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-06-12 23:53:27 ----D---- C:\Users\p\AppData\Roaming\Identities
2015-06-12 23:53:15 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-06-12 23:52:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-06-12 23:41:56 ----SD---- C:\WINDOWS\system32\CompatTel
2015-06-12 23:10:23 ----D---- C:\WINDOWS\system32\MRT
2015-06-12 23:10:18 ----A---- C:\WINDOWS\system32\MRT.exe
2015-06-12 22:55:41 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\Display.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlansec.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\wlanapi.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2015-06-12 22:35:52 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-06-12 22:35:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\Display.dll
2015-06-12 22:35:51 ----A---- C:\WINDOWS\system32\cdd.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\gpsvc.dll
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\swenum.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-06-12 22:35:50 ----A---- C:\WINDOWS\system32\authui.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\SYSWOW64\psapi.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2015-06-12 22:35:49 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2015-06-12 22:35:48 ----A---- C:\WINDOWS\system32\uDWM.dll
2015-06-12 22:35:48 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-06-12 22:35:48 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\twinui.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\propsys.dll
2015-06-12 22:35:47 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\msxml3.dll
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\defragsvc.dll
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-06-12 22:35:46 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\system32\KernelBase.dll
2015-06-12 22:35:45 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-06-12 22:35:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-06-12 22:35:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-06-12 22:35:40 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2015-06-12 22:35:40 ----A---- C:\WINDOWS\system32\mstscax.dll
2015-06-12 22:35:39 ----A---- C:\WINDOWS\system32\WSService.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2015-06-12 22:35:38 ----A---- C:\WINDOWS\system32\atlthunk.dll
2015-06-12 22:35:36 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2015-06-12 22:35:35 ----A---- C:\WINDOWS\system32\msi.dll
2015-06-12 22:35:35 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-12 22:35:34 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\WpcMon.exe
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\rdpinput.exe
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\rdpcore.dll
2015-06-12 22:35:34 ----A---- C:\WINDOWS\system32\rdpclip.exe
2015-06-12 22:35:32 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-06-12 22:35:32 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-06-12 22:35:32 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-06-12 22:35:32 ----A---- C:\WINDOWS\system32\d2d1.dll
2015-06-12 22:35:31 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-06-12 22:35:31 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-12 22:35:30 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2015-06-12 22:35:30 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-06-12 22:35:30 ----A---- C:\WINDOWS\system32\Wpc.dll
2015-06-12 22:35:29 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-06-12 22:35:29 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2015-06-12 22:35:29 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2015-06-12 22:35:29 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-12 22:35:28 ----A---- C:\WINDOWS\system32\msxml6.dll
2015-06-12 22:35:28 ----A---- C:\WINDOWS\system32\dbgeng.dll
2015-06-12 22:35:27 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-06-12 22:35:27 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2015-06-12 22:35:27 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2015-06-12 22:35:26 ----A---- C:\WINDOWS\system32\xpsservices.dll
2015-06-12 22:35:26 ----A---- C:\WINDOWS\system32\esent.dll
2015-06-12 22:35:25 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2015-06-12 22:35:25 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2015-06-12 22:35:25 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-06-12 22:35:24 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2015-06-12 22:35:24 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2015-06-12 22:35:24 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2015-06-12 22:35:23 ----A---- C:\WINDOWS\system32\combase.dll
2015-06-12 22:35:22 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-06-12 22:35:21 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2015-06-12 22:35:21 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-06-12 22:35:20 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2015-06-12 22:35:20 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2015-06-12 22:35:19 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-06-12 22:35:19 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-06-12 22:35:19 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-06-12 22:35:18 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2015-06-12 22:35:18 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2015-06-12 22:35:17 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-06-12 22:35:17 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-06-12 22:35:16 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2015-06-12 22:35:16 ----A---- C:\WINDOWS\system32\OpcServices.dll
2015-06-12 22:35:16 ----A---- C:\WINDOWS\system32\dui70.dll
2015-06-12 22:35:15 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-06-12 22:35:15 ----A---- C:\WINDOWS\system32\ole32.dll
2015-06-12 22:35:15 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2015-06-12 22:35:14 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2015-06-12 22:35:14 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-06-12 22:35:14 ----A---- C:\WINDOWS\system32\SRH.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\system32\taskschd.dll
2015-06-12 22:35:13 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\system32\PeerDistSvc.dll
2015-06-12 22:35:12 ----A---- C:\WINDOWS\system32\PeerDistCacheProvider.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\system32\webservices.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\system32\mispace.dll
2015-06-12 22:35:11 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-06-12 22:35:10 ----A---- C:\WINDOWS\system32\aclui.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2015-06-12 22:35:09 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\quartz.dll
2015-06-12 22:35:09 ----A---- C:\WINDOWS\system32\mmc.exe
2015-06-12 22:35:08 ----A---- C:\WINDOWS\system32\diagperf.dll
2015-06-12 22:35:08 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-06-12 22:35:07 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\system32\xpssvcs.dll
2015-06-12 22:35:06 ----A---- C:\WINDOWS\system32\sbe.dll
2015-06-12 22:35:05 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2015-06-12 22:35:05 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-06-12 22:35:05 ----A---- C:\WINDOWS\system32\rpcss.dll
2015-06-12 22:35:04 ----A---- C:\WINDOWS\system32\WinSAT.exe
2015-06-12 22:35:04 ----A---- C:\WINDOWS\system32\pla.dll
2015-06-12 22:35:03 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2015-06-12 22:35:03 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-06-12 22:35:03 ----A---- C:\WINDOWS\system32\storagewmi.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\sqlceqp40.dll
2015-06-12 22:35:02 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2015-06-12 22:35:01 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2015-06-12 22:35:01 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-06-12 22:35:00 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2015-06-12 22:35:00 ----A---- C:\WINDOWS\SYSWOW64\pla.dll
2015-06-12 22:35:00 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2015-06-12 22:35:00 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\termsrv.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\srmclient.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\qmgr.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\msdtctm.dll
2015-06-12 22:34:59 ----A---- C:\WINDOWS\system32\dbghelp.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\SYSWOW64\osk.exe
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\osk.exe
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-12 22:34:58 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-12 22:34:57 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\RacEngn.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\netcfgx.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2015-06-12 22:34:56 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-12 22:34:55 ----A---- C:\WINDOWS\SYSWOW64\sbe.dll
2015-06-12 22:34:55 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-06-12 22:34:55 ----A---- C:\WINDOWS\system32\cdosys.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\SYSWOW64\sqlceqp40.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\tsgqec.dll
2015-06-12 22:34:54 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\ogldrv.dll
2015-06-12 22:34:53 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\SYSWOW64\RacEngn.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2015-06-12 22:34:52 ----A---- C:\WINDOWS\system32\mspaint.exe
2015-06-12 22:34:51 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\riched20.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2015-06-12 22:34:51 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-06-12 22:34:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\odbc32.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\duser.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\dllhost.exe
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-06-12 22:34:50 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-06-12 22:34:49 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2015-06-12 22:34:49 ----A---- C:\WINDOWS\system32\CPFilters.dll
2015-06-12 22:34:42 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\WinSync.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\twinapi.dll
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2015-06-12 22:34:41 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\SYSWOW64\ogldrv.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\wdc.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\user32.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\fveapi.dll
2015-06-12 22:34:40 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\system32\setupapi.dll
2015-06-12 22:34:39 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\riched20.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2015-06-12 22:34:38 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\WavDest.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\qedit.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\provcore.dll
2015-06-12 22:34:38 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2015-06-12 22:34:37 ----A---- C:\WINDOWS\SYSWOW64\cdosys.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\WinTypes.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\samsrv.dll
2015-06-12 22:34:37 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2015-06-12 22:34:36 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2015-06-12 22:34:36 ----A---- C:\WINDOWS\system32\clbcatq.dll
2015-06-12 22:34:36 ----A---- C:\WINDOWS\system32\autoconv.exe
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\wbengine.exe
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\perftrack.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\comuid.dll
2015-06-12 22:34:35 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\SYSWOW64\comuid.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\WUDFx.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\MSWB70804.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\MSWB70404.dll
2015-06-12 22:34:34 ----A---- C:\WINDOWS\system32\MSWB70011.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\MSWB7001E.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2015-06-12 22:34:33 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-06-12 22:34:32 ----A---- C:\WINDOWS\SYSWOW64\xpssvcs.dll
2015-06-12 22:34:32 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2015-06-12 22:34:32 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2015-06-12 22:34:32 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-06-12 22:34:32 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\SYSWOW64\autoconv.exe
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\sqlcese40.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\SettingSync.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\printui.dll
2015-06-12 22:34:31 ----A---- C:\WINDOWS\system32\es.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\srmclient.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\printui.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\WUDFx02000.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\wiaservc.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2015-06-12 22:34:30 ----A---- C:\WINDOWS\system32\EncDec.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\psisdecd.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-06-12 22:34:29 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\XpsRasterService.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\usercpl.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2015-06-12 22:34:28 ----A---- C:\WINDOWS\system32\dsound.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\XpsGdiConverter.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\werconcpl.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\msv1_0.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\lpksetup.exe
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\gameux.dll
2015-06-12 22:34:27 ----A---- C:\WINDOWS\system32\appinfo.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\system32\wlidcli.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\system32\NL7Data0011.dll
2015-06-12 22:34:26 ----A---- C:\WINDOWS\system32\hgcpl.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\SYSWOW64\clbcatq.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\secproc_isv.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\secproc.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\msihnd.dll
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2015-06-12 22:34:25 ----A---- C:\WINDOWS\system32\certmgr.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\SYSWOW64\sqlcese40.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\tsmf.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\sxs.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\opengl32.dll
2015-06-12 22:34:24 ----A---- C:\WINDOWS\system32\kernel32.dll
2015-06-12 22:34:23 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2015-06-12 22:34:23 ----A---- C:\WINDOWS\system32\Wldap32.dll
2015-06-12 22:34:23 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\pmcsnap.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\msdrm.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-06-12 22:34:22 ----A---- C:\WINDOWS\HelpPane.exe
2015-06-12 22:34:21 ----A---- C:\WINDOWS\SYSWOW64\psisdecd.dll
2015-06-12 22:34:21 ----A---- C:\WINDOWS\system32\untfs.dll
2015-06-12 22:34:21 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-06-12 22:34:20 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-06-12 22:34:20 ----A---- C:\WINDOWS\system32\tpmvsc.dll
2015-06-12 22:34:20 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\es.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\SYSWOW64\dsound.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\wiaaut.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\vds.exe
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\srmscan.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-12 22:34:19 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\SYSWOW64\sxs.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\upnphost.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\SmartCardSimulator.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2015-06-12 22:34:18 ----A---- C:\WINDOWS\system32\calc.exe
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\opengl32.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\certmgr.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\webio.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\netlogon.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\difxapi.dll
2015-06-12 22:34:17 ----A---- C:\WINDOWS\system32\advapi32.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\SyncCenter.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB70804.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB70404.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB7001E.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\MSWB70011.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\wevtapi.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\oleacc.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\netshell.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\msra.exe
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\ddraw.dll
2015-06-12 22:34:16 ----A---- C:\WINDOWS\system32\certutil.exe
2015-06-12 22:34:15 ----A---- C:\WINDOWS\SYSWOW64\d3d10.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\pcasvc.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0816.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0416.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0414.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData001d.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\NlsData0010.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\catsrv.dll
2015-06-12 22:34:15 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\wvc.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\RMActivate_isv.exe
2015-06-12 22:34:14 ----A---- C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\system32\wbemcomn.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\system32\themecpl.dll
2015-06-12 22:34:13 ----A---- C:\WINDOWS\system32\sdohlp.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\secproc.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\msdrm.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\SYSWOW64\gpedit.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\system32\winload.exe
2015-06-12 22:34:12 ----A---- C:\WINDOWS\system32\mswsock.dll
2015-06-12 22:34:12 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\SYSWOW64\secproc_isv.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\themeui.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\tapi3.dll
2015-06-12 22:34:11 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\SYSWOW64\provsvc.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\wlidprov.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\SyncInfrastructure.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\RMActivate.exe
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\rdvvmtransport.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\provsvc.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\ninput.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\fvewiz.dll
2015-06-12 22:34:10 ----A---- C:\WINDOWS\system32\cscui.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\themeui.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\hnetcfg.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\SYSWOW64\catsrv.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\system32\wcncsvc.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\system32\rastls.dll
2015-06-12 22:34:09 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\upnp.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\NlsData0007.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\imapi2.dll
2015-06-12 22:34:08 ----A---- C:\WINDOWS\system32\bdesvc.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\WFS.exe
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\NlsData000d.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\cscsvc.dll
2015-06-12 22:34:07 ----A---- C:\WINDOWS\system32\BCP47Langs.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\SYSWOW64\tapi3.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\winresume.exe
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\StikyNot.exe
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2015-06-12 22:34:06 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\provcore.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\msls31.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\livessp.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\gpedit.dll
2015-06-12 22:34:05 ----A---- C:\WINDOWS\system32\azroles.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\wiaaut.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\RMActivate_isv.exe
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\shsvcs.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\NlsData000c.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\NlsData000a.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\DscCore.dll
2015-06-12 22:34:04 ----A---- C:\WINDOWS\system32\appmgr.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\XpsRasterService.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\XpsGdiConverter.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\wbemcomn.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\SYSWOW64\AppxApplicabilityEngine.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\wsecedit.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\w32time.dll
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\mstsc.exe
2015-06-12 22:34:03 ----A---- C:\WINDOWS\system32\d3d10.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\SYSWOW64\upnp.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\SYSWOW64\ninput.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2015-06-12 22:34:02 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\SYSWOW64\NL7Data0011.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2015-06-12 22:34:01 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\Windows.Networking.Proximity.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\offfilt.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\objsel.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\NL7Data0404.dll
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-06-12 22:34:01 ----A---- C:\WINDOWS\system32\apphelp.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\SYSWOW64\RMActivate.exe
2015-06-12 22:34:00 ----A---- C:\WINDOWS\SYSWOW64\ipsmsnap.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\system32\iassdo.dll
2015-06-12 22:34:00 ----A---- C:\WINDOWS\system32\glmf32.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\wisp.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\swprv.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\SessEnv.dll
2015-06-12 22:33:59 ----A---- C:\WINDOWS\system32\NL7Data0804.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\winsku.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\msdt.exe
2015-06-12 22:33:58 ----A---- C:\WINDOWS\SYSWOW64\azroles.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\rdpencom.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\rasmans.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\qasf.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\mscms.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\gpprefcl.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-06-12 22:33:58 ----A---- C:\WINDOWS\system32\AdmTmpl.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\wvc.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\rasdlg.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\SYSWOW64\d3dim700.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\winsta.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\netprofm.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2015-06-12 22:33:57 ----A---- C:\WINDOWS\system32\azroleui.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2015-06-12 22:33:56 ----A---- C:\WINDOWS\SYSWOW64\msvcrt.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\taskeng.exe
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\msdri.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\FXSCOMPOSE.dll
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-06-12 22:33:56 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-06-12 22:33:55 ----A---- C:\WINDOWS\SYSWOW64\XpsFilt.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\WLanConn.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\TetheringMgr.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\msdelta.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\framedynos.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\filemgmt.dll
2015-06-12 22:33:55 ----A---- C:\WINDOWS\system32\efscore.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\SYSWOW64\appmgr.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\wmicmiplugin.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\rasgcw.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\PeerDistSh.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\PeerDistCleaner.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\NlsData0024.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\NlsData000f.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\NlsData0002.dll
2015-06-12 22:33:54 ----A---- C:\WINDOWS\system32\DfpCommon.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\ws2_32.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\winsku.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\taskcomp.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0c1a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData081a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData004b.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData004a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0047.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0046.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0039.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0027.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0026.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0020.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData001b.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData001a.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0018.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\NlsData0003.dll
2015-06-12 22:33:53 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\SYSWOW64\SyncInfrastructure.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\SYSWOW64\sdohlp.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\xwizards.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData004e.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData004c.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0049.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0045.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData003e.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData002a.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0022.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\NlsData0021.dll
2015-06-12 22:33:52 ----A---- C:\WINDOWS\system32\msvcrt.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\wisp.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\shsvcs.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\qdv.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\xmllite.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\srvsvc.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\msdt.exe
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-06-12 22:33:51 ----A---- C:\WINDOWS\system32\diskraid.exe
2015-06-12 22:33:50 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2015-06-12 22:33:50 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2015-06-12 22:33:50 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-12 22:33:50 ----A---- C:\WINDOWS\system32\netdiagfx.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\SYSWOW64\NlsData0007.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\sti.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\msvcp60.dll
2015-06-12 22:33:49 ----A---- C:\WINDOWS\system32\DxpTaskSync.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\taskcomp.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\prnfldr.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\msls31.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\scrptadm.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2015-06-12 22:33:48 ----A---- C:\WINDOWS\system32\fhcfg.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\offfilt.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\mprapi.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\ipsecsnp.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\SYSWOW64\filemgmt.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\wlanpref.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\termmgr.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\IasMigPlugin.dll
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2015-06-12 22:33:47 ----A---- C:\WINDOWS\system32\drivers\csc.sys
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\glmf32.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\FXSCOMEX.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\sensrsvc.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\RMActivate_ssp_isv.exe
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\qdv.dll
2015-06-12 22:33:46 ----A---- C:\WINDOWS\system32\mscandui.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\NlsData000a.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\gpprefcl.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\SYSWOW64\dmime.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\system32\wincorlib.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\system32\d3d10core.dll
2015-06-12 22:33:45 ----A---- C:\WINDOWS\system32\d3d10_1core.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.HardwareId.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Proximity.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\netprofm.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\SYSWOW64\AdmTmpl.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\stobject.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\RMActivate_ssp.exe
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\P2PGraph.dll
2015-06-12 22:33:44 ----A---- C:\WINDOWS\system32\DXP.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\WinSATAPI.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0816.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0416.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0414.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData001d.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\SYSWOW64\NlsData0010.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\system32\usbmon.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\system32\rasppp.dll
2015-06-12 22:33:43 ----A---- C:\WINDOWS\system32\icsvc.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\qasf.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\msdelta.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\SYSWOW64\d3dim.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\nettrace.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\energy.dll
2015-06-12 22:33:42 ----A---- C:\WINDOWS\system32\DisplaySwitch.exe
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\srmscan.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\P2PGraph.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\NlsData000d.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\SYSWOW64\BCP47Langs.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\WinSATAPI.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\spwizeng.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\SensorsClassExtension.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\rsaenh.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\fhengine.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\comsnap.dll
2015-06-12 22:33:41 ----A---- C:\WINDOWS\system32\cmd.exe
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\winsta.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\scrptadm.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\objsel.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\system32\shlwapi.dll
2015-06-12 22:33:40 ----A---- C:\WINDOWS\system32\rpchttp.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\SYSWOW64\wlangpui.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\system32\WlanMM.dll
2015-06-12 22:33:39 ----A---- C:\WINDOWS\system32\rdpendp.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\SYSWOW64\xmllite.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\SYSWOW64\sti.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\SYSWOW64\ksuser.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\system32\sqlceoledb40.dll
2015-06-12 22:33:38 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\SYSWOW64\NlsData000c.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\srmstormod.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\mprapi.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\FirewallControlPanel.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\bdeunlock.exe
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\authfwcfg.dll
2015-06-12 22:33:37 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-06-12 22:33:36 ----A---- C:\WINDOWS\SYSWOW64\RMActivate_ssp_isv.exe
2015-06-12 22:33:36 ----A---- C:\WINDOWS\SYSWOW64\RMActivate_ssp.exe
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\scecli.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\dwmredir.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\cryptnet.dll
2015-06-12 22:33:36 ----A---- C:\WINDOWS\system32\activeds.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\termmgr.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\spwizeng.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\netjoin.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\FirewallControlPanel.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\SYSWOW64\d3d10_1core.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\wlangpui.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\prncache.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\netjoin.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\msutb.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\localsec.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\lltdsvc.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\lltdapi.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\hgprint.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\Dxpserver.exe
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\devmgr.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2015-06-12 22:33:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\xwizards.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\shlwapi.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\devmgr.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\wdscore.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\VAN.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\QAGENTRT.DLL
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\NL7Data001E.dll
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-06-12 22:33:34 ----A---- C:\WINDOWS\system32\AppIdPolicyEngineApi.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\scecli.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2015-06-12 22:33:33 ----A---- C:\WINDOWS\SYSWOW64\DxpTaskSync.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\NL7Data0404.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\DisplaySwitch.exe
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\adsldp.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\wlidcredprov.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\Windows.Media.SpeechSynthesis.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\qdvd.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\LocationApi.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\dmvdsitf.dll
2015-06-12 22:33:32 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\wlanpref.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\PeerDistSh.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\NL7Data0804.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\msoeacct.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\diskraid.exe
2015-06-12 22:33:31 ----A---- C:\WINDOWS\SYSWOW64\activeds.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\wkssvc.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\thumbcache.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\msoeacct.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\iuilp.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2015-06-12 22:33:31 ----A---- C:\WINDOWS\system32\fhcat.dll