Extrémne pomalý PC
Napsal: 26 led 2016 13:59
Zdravím,
mám problém s extrémne pomalým PC, využívam Avast Free Antivirus a Malware Bytes Pro(trial). Zostava je síce stará ale odozva PC je napriek tomu extrémne pomalá, dokonca pri písaní tohoto textu musím 10 sekúnd po dopísaní počkať aby naskočil. Po spustení CHKDSK PC nenašiel nič závažné, no potom mi nzačali vyskakovať hlásenia: reader_sl prestal pracovať, windows prieskumník preetal pracovať a teraz keď píšem tento text to zamrzlo asi na minútu a vyhodilo hlásenie že adobe acrobat speed launcher prestal pracovať. Dokonca mi ani neukazuje že beží avast, ccleaner a taktiež som dostal hlásenie že malware bytes prestal pracovať. Log musím rozdeliť keďže sa sem nevôjde celý.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Pali at 2016-01-26 13:26:30
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 65 GB (65%) free of 100 GB
Total RAM: 2046 MB (5% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:27:15, on 26. 1. 2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
P:\Adobe\Reader 8.0\Reader\reader_sl.exe
P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\SysWOW64\WerFault.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Pali.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/?win=211&clid=2100767-003
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - P:\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: (no name) - {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "P:\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [VirtualCloneDrive] "P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "P:\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = P:\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = P:\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDow ... rtScan.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - P:\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - P:\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - P:\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - P:\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9387 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"P:\Malwarebytes Anti-Malware\mbamscheduler.exe"
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\Dwm.exe"
"taskhost.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"P:\Adobe\Reader 8.0\Reader\reader_sl.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-74428caf-a45b-486d-88b4-9b516c1e5d52 -SystemEventPortName:HostProcess-3c76b5f1-ea3d-4f70-898a-aedf90f4878d -IoCancelEventPortName:HostProcess-b248728c-ed87-48a2-8f4a-5c09abcfb4ad -NonStateChangingEventPortName:HostProcess-badd8721-14e7-466f-bd9b-9e04d93d753c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:aa66c89a-b7fe-441e-ad50-a8d616a6d6c4
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"P:\DAEMON Tools Lite\DiscSoftBusService.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Windows\system32\wuauclt.exe"
C:\Windows\SysWOW64\WerFault.exe -u -p 3472 -s 248
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4348.0.199075740\496826764" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,12,23,51,61 --gpu-vendor-id=0x10de --gpu-device-id=0x0402 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4192 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.2.22898259\798402186" --font-cache-shared-handle=2092 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.3.1494559153\843425314" --font-cache-shared-handle=2128 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.4.837251420\1851983158" --font-cache-shared-handle=2272 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.6.1857632900\1626483420" --font-cache-shared-handle=3284 /prefetch:673131151
"C:\Windows\Explorer.EXE"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.11.1008687761\1230786746" --font-cache-shared-handle=1828 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.13.255720585\934421559" --font-cache-shared-handle=2796 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.15.1105263212\755543220" --font-cache-shared-handle=6752 /prefetch:673131151
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Pali\Desktop\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-01-17 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - P:\AVAST Software\Avast\aswWebRepIE64.dll [2016-01-15 885152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2016-01-17 886488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-17 2339032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-01-17 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-01-26 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - P:\AVAST Software\Avast\aswWebRepIE.dll [2016-01-15 664184]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-01-17 710872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-17 1731800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-26 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-02-20 1793736]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-12-18 16408320]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
"DAEMON Tools Lite Automount"=P:\DAEMON Tools Lite\DTAgent.exe [2016-01-15 4177784]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=P:\AVAST Software\Avast\AvastUI.exe [2016-01-15 7021880]
"VirtualCloneDrive"=P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2011-03-07 89456]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-12-22 596528]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - P:\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - P:\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-01-26 13:26:41 ----D---- C:\Program Files\trend micro
2016-01-26 13:26:30 ----D---- C:\rsit
2016-01-26 13:00:47 ----N---- C:\bootsqm.dat
2016-01-26 10:19:53 ----D---- C:\Users\Pali\AppData\Roaming\Sun
2016-01-26 10:19:27 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-01-26 10:18:41 ----D---- C:\ProgramData\Oracle
2016-01-26 10:18:31 ----D---- C:\Program Files (x86)\Java
2016-01-25 09:36:56 ----A---- C:\Windows\system32\wups2.dll
2016-01-25 09:36:56 ----A---- C:\Windows\system32\wucltux.dll
2016-01-25 09:36:56 ----A---- C:\Windows\system32\wuauclt.exe
2016-01-25 09:36:55 ----A---- C:\Windows\system32\wuaueng.dll
2016-01-25 09:36:21 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-01-25 09:36:21 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-01-25 09:36:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-01-25 09:36:21 ----A---- C:\Windows\system32\wups.dll
2016-01-25 09:36:21 ----A---- C:\Windows\system32\wudriver.dll
2016-01-25 09:36:21 ----A---- C:\Windows\system32\wuapi.dll
2016-01-25 09:35:56 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-01-25 09:35:56 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-01-25 09:35:56 ----A---- C:\Windows\system32\wuwebv.dll
2016-01-25 09:35:56 ----A---- C:\Windows\system32\wuapp.exe
2016-01-24 17:32:09 ----D---- C:\Windows\system32\SPReview
2016-01-24 17:31:30 ----D---- C:\Windows\system32\EventProviders
2016-01-24 17:16:03 ----A---- C:\Windows\system32\netfxperf.dll
2016-01-24 17:16:03 ----A---- C:\Windows\system32\dfshim.dll
2016-01-24 17:16:02 ----A---- C:\Windows\system32\mshtml.dll
2016-01-24 17:15:54 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2016-01-24 17:15:49 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-01-24 17:15:49 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2016-01-24 17:15:48 ----A---- C:\Windows\system32\mstscax.dll
2016-01-24 17:15:48 ----A---- C:\Windows\system32\d3d10warp.dll
2016-01-24 17:15:47 ----A---- C:\Windows\system32\ieframe.dll
2016-01-24 17:15:45 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-01-24 17:15:44 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-01-24 17:15:42 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2016-01-24 17:15:42 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2016-01-24 17:15:42 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2016-01-24 17:15:42 ----A---- C:\Windows\system32\tssrvlic.dll
2016-01-24 17:15:42 ----A---- C:\Windows\system32\sysmain.dll
2016-01-24 17:15:42 ----A---- C:\Windows\system32\RDVGHelper.exe
2016-01-24 17:15:42 ----A---- C:\Windows\system32\rdpcorets.dll
2016-01-24 17:15:41 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-01-24 17:15:40 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2016-01-24 17:15:40 ----A---- C:\Windows\system32\XpsPrint.dll
2016-01-24 17:15:39 ----A---- C:\Windows\system32\MSVidCtl.dll
2016-01-24 17:15:38 ----A---- C:\Windows\system32\tquery.dll
2016-01-24 17:15:37 ----A---- C:\Windows\system32\wmp.dll
2016-01-24 17:15:36 ----A---- C:\Windows\system32\mssrch.dll
2016-01-24 17:15:35 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\ntdll.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\mscoree.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\mmcndmgr.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\d2d1.dll
2016-01-24 17:15:34 ----A---- C:\Windows\system32\secproc_isv.dll
2016-01-24 17:15:34 ----A---- C:\Windows\system32\mf.dll
2016-01-24 17:15:33 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2016-01-24 17:15:33 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2016-01-24 17:15:33 ----A---- C:\Windows\system32\xpsservices.dll
2016-01-24 17:15:33 ----A---- C:\Windows\system32\secproc.dll
2016-01-24 17:15:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2016-01-24 17:15:33 ----A---- C:\Windows\system32\RMActivate.exe
2016-01-24 17:15:32 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2016-01-24 17:15:32 ----A---- C:\Windows\system32\jscript.dll
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\secproc.dll
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-01-24 17:15:31 ----A---- C:\Windows\system32\schedsvc.dll
2016-01-24 17:15:31 ----A---- C:\Windows\system32\rpcrt4.dll
2016-01-24 17:15:30 ----A---- C:\Windows\system32\spwizui.dll
2016-01-24 17:15:30 ----A---- C:\Windows\system32\ole32.dll
2016-01-24 17:15:30 ----A---- C:\Windows\system32\iertutil.dll
2016-01-24 17:15:29 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2016-01-24 17:15:29 ----A---- C:\Windows\system32\wininet.dll
2016-01-24 17:15:29 ----A---- C:\Windows\system32\esent.dll
2016-01-24 17:15:29 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-01-24 17:15:28 ----A---- C:\Windows\system32\wevtsvc.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\urlmon.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\taskschd.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\RacEngn.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\diagperf.dll
2016-01-24 17:15:27 ----A---- C:\Windows\SYSWOW64\mf.dll
2016-01-24 17:15:27 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\vssapi.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\msxml3.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2016-01-24 17:15:26 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2016-01-24 17:15:26 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-01-24 17:15:26 ----A---- C:\Windows\system32\UIRibbon.dll
2016-01-24 17:15:26 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2016-01-24 17:15:26 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2016-01-24 17:15:25 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-01-24 17:15:25 ----A---- C:\Windows\explorer.exe
2016-01-24 17:15:24 ----A---- C:\Windows\SYSWOW64\esent.dll
2016-01-24 17:15:24 ----A---- C:\Windows\system32\win32k.sys
2016-01-24 17:15:23 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2016-01-24 17:15:23 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2016-01-24 17:15:23 ----A---- C:\Windows\system32\WsmSvc.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\WMVCORE.DLL
2016-01-24 17:15:23 ----A---- C:\Windows\system32\rdpudd.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\rdpdd.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\PresentationHost.exe
2016-01-24 17:15:23 ----A---- C:\Windows\system32\DWrite.dll
2016-01-24 17:15:22 ----A---- C:\Windows\system32\WinSAT.exe
2016-01-24 17:15:22 ----A---- C:\Windows\system32\spreview.exe
2016-01-24 17:15:22 ----A---- C:\Windows\system32\spinstall.exe
2016-01-24 17:15:22 ----A---- C:\Windows\system32\MPSSVC.dll
2016-01-24 17:15:22 ----A---- C:\Windows\system32\CertEnroll.dll
2016-01-24 17:15:21 ----A---- C:\Windows\SYSWOW64\tquery.dll
2016-01-24 17:15:21 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-01-24 17:15:21 ----A---- C:\Windows\system32\msxml6.dll
2016-01-24 17:15:21 ----A---- C:\Windows\system32\IKEEXT.DLL
2016-01-24 17:15:21 ----A---- C:\Windows\system32\d3d9.dll
2016-01-24 17:15:21 ----A---- C:\Windows\system32\CPFilters.dll
2016-01-24 17:15:20 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2016-01-24 17:15:20 ----A---- C:\Windows\system32\SearchFolder.dll
2016-01-24 17:15:20 ----A---- C:\Windows\system32\kerberos.dll
2016-01-24 17:15:19 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\VSSVC.exe
2016-01-24 17:15:19 ----A---- C:\Windows\system32\kernel32.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\gpsvc.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\FntCache.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\dwmcore.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2016-01-24 17:15:18 ----A---- C:\Windows\system32\mstime.dll
2016-01-24 17:15:18 ----A---- C:\Windows\system32\drivers\http.sys
2016-01-24 17:15:18 ----A---- C:\Windows\system32\dbgeng.dll
2016-01-24 17:15:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-01-24 17:15:17 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2016-01-24 17:15:17 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-01-24 17:15:17 ----A---- C:\Windows\system32\drivers\ndis.sys
2016-01-24 17:15:17 ----A---- C:\Windows\system32\crypt32.dll
2016-01-24 17:15:16 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\TSWorkspace.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\schannel.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\drivers\afd.sys
2016-01-24 17:15:16 ----A---- C:\Windows\system32\audiosrv.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\actxprxy.dll
2016-01-24 17:15:15 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\termsrv.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\sqmapi.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\qmgr.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\mstsc.exe
2016-01-24 17:15:15 ----A---- C:\Windows\system32\lsasrv.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\KernelBase.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\gpprefcl.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-01-24 17:15:15 ----A---- C:\Windows\system32\drivers\srv.sys
2016-01-24 17:15:14 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2016-01-24 17:15:14 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-01-24 17:15:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2016-01-24 17:15:14 ----A---- C:\Windows\system32\netlogon.dll
2016-01-24 17:15:14 ----A---- C:\Windows\system32\imapi2fs.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\winhttp.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\wbengine.exe
2016-01-24 17:15:13 ----A---- C:\Windows\system32\setupapi.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\rpcss.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\QAGENTRT.DLL
2016-01-24 17:15:13 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2016-01-24 17:15:13 ----A---- C:\Windows\system32\propsys.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\d3d11.dll
2016-01-24 17:15:12 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-01-24 17:15:12 ----A---- C:\Windows\system32\werconcpl.dll
2016-01-24 17:15:12 ----A---- C:\Windows\system32\taskeng.exe
2016-01-24 17:15:12 ----A---- C:\Windows\system32\odbc32.dll
2016-01-24 17:15:12 ----A---- C:\Windows\system32\authui.dll
2016-01-24 17:15:11 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2016-01-24 17:15:11 ----A---- C:\Windows\system32\WSDApi.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\user32.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\oleaut32.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\msfeeds.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\drivers\nvstor.sys
2016-01-24 17:15:11 ----A---- C:\Windows\system32\drivers\netio.sys
2016-01-24 17:15:11 ----A---- C:\Windows\system32\dnsapi.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\dhcpcore.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\certmgr.dll
2016-01-24 17:15:10 ----A---- C:\Windows\SYSWOW64\wer.dll
2016-01-24 17:15:10 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-01-24 17:15:10 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\webio.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\vbscript.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\umrdp.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\scavengeui.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\drivers\tdx.sys
2016-01-24 17:15:10 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-01-24 17:15:09 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2016-01-24 17:15:09 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2016-01-24 17:15:09 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\tsmf.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\shlwapi.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\ncsi.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\msdrm.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\localspl.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\drivers\nvraid.sys
2016-01-24 17:15:08 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\umpnpmgr.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\rdpshell.exe
2016-01-24 17:15:08 ----A---- C:\Windows\system32\netshell.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\msdtctm.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\framedynos.dll
2016-01-24 17:15:07 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2016-01-24 17:15:07 ----A---- C:\Windows\SYSWOW64\mstime.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\ws2_32.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\wmicmiplugin.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\winlogon.exe
2016-01-24 17:15:07 ----A---- C:\Windows\system32\usp10.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\quartz.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\nlasvc.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\netcfgx.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\lsm.exe
2016-01-24 17:15:07 ----A---- C:\Windows\system32\dxgi.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-01-24 17:15:07 ----A---- C:\Windows\system32\drivers\cng.sys
2016-01-24 17:15:07 ----A---- C:\Windows\system32\comdlg32.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\appmgr.dll
2016-01-24 17:15:06 ----A---- C:\Windows\SYSWOW64\quartz.dll
2016-01-24 17:15:06 ----A---- C:\Windows\system32\wmpps.dll
2016-01-24 17:15:06 ----A---- C:\Windows\system32\drivers\csc.sys
2016-01-24 17:15:06 ----A---- C:\Windows\system32\drivers\amdsata.sys
2016-01-24 17:15:06 ----A---- C:\Windows\system32\d3d10_1core.dll
2016-01-24 17:15:06 ----A---- C:\Windows\system32\apphelp.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\wpdshext.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\Query.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\QAGENT.DLL
2016-01-24 17:15:05 ----A---- C:\Windows\system32\mswsock.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\drvstore.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2016-01-24 17:15:05 ----A---- C:\Windows\system32\azroles.dll
2016-01-24 17:15:04 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2016-01-24 17:15:04 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2016-01-24 17:15:04 ----A---- C:\Windows\system32\Vault.dll
2016-01-24 17:15:04 ----A---- C:\Windows\system32\samsrv.dll
2016-01-24 17:15:04 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-01-24 17:15:04 ----A---- C:\Windows\system32\cmd.exe
2016-01-24 17:15:04 ----A---- C:\Windows\system32\BFE.DLL
2016-01-24 17:15:03 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2016-01-24 17:15:03 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2016-01-24 17:15:03 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\winload.exe
2016-01-24 17:15:03 ----A---- C:\Windows\system32\win32spl.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\mssvp.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\lpksetup.exe
2016-01-24 17:15:03 ----A---- C:\Windows\system32\EncDec.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\dnsrslvr.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\cscsvc.dll
2016-01-24 17:15:02 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-01-24 17:15:02 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2016-01-24 17:15:02 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-01-24 17:15:02 ----A---- C:\Windows\system32\WebClnt.dll
2016-01-24 17:15:02 ----A---- C:\Windows\system32\sbe.dll
2016-01-24 17:15:02 ----A---- C:\Windows\system32\rdpclip.exe
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\Query.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\Wldap32.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\taskcomp.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\sxs.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\mfds.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\mcbuilder.exe
2016-01-24 17:15:01 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2016-01-24 17:15:01 ----A---- C:\Windows\system32\cscobj.dll
2016-01-24 17:15:00 ----A---- C:\Windows\SYSWOW64\upnp.dll
2016-01-24 17:15:00 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-01-24 17:15:00 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2016-01-24 17:15:00 ----A---- C:\Windows\system32\pnidui.dll
2016-01-24 17:15:00 ----A---- C:\Windows\system32\ipsmsnap.dll
2016-01-24 17:15:00 ----A---- C:\Windows\system32\drivers\storport.sys
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\winresume.exe
2016-01-24 17:14:59 ----A---- C:\Windows\system32\webservices.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\spoolsv.exe
2016-01-24 17:14:59 ----A---- C:\Windows\system32\SessEnv.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\rdpendp.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\hgprint.dll
2016-01-24 17:14:58 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2016-01-24 17:14:58 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2016-01-24 17:14:58 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\winsta.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\sqlsrv32.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\iepeers.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\fveapi.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\dot3api.dll
2016-01-24 17:14:57 ----A---- C:\Windows\SYSWOW64\usp10.dll
2016-01-24 17:14:57 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2016-01-24 17:14:57 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2016-01-24 17:14:57 ----A---- C:\Windows\system32\schtasks.exe
2016-01-24 17:14:57 ----A---- C:\Windows\system32\prncache.dll
2016-01-24 17:14:57 ----A---- C:\Windows\system32\mcmde.dll
2016-01-24 17:14:57 ----A---- C:\Windows\system32\gdi32.dll
2016-01-24 17:14:57 ----A---- C:\Windows\system32\drivers\volsnap.sys
2016-01-24 17:14:57 ----A---- C:\Windows\system32\drivers\msrpc.sys
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\userenv.dll
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\WMNetMgr.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\wlanpref.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\vpnike.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\userenv.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\drivers\rdbss.sys
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\wintrust.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\tspubwmi.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\photowiz.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\evr.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2016-01-24 17:14:54 ----A---- C:\Windows\SYSWOW64\cmd.exe
2016-01-24 17:14:54 ----A---- C:\Windows\system32\wmpmde.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\WMPEncEn.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\wmpeffects.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\SyncCenter.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\sppobjs.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-01-24 17:14:54 ----A---- C:\Windows\system32\FXSSVC.exe
2016-01-24 17:14:54 ----A---- C:\Windows\system32\framedyn.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\AudioSes.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\aepdu.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\tscfgwmi.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\srvsvc.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\shsvcs.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\rdpinit.exe
2016-01-24 17:14:53 ----A---- C:\Windows\system32\mfreadwrite.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\aeinv.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\propsys.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\mfds.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\WinSATAPI.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\vmicsvc.exe
2016-01-24 17:14:52 ----A---- C:\Windows\system32\stobject.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\netdiagfx.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\localsec.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\imapi2.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\fde.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-01-24 17:14:52 ----A---- C:\Windows\system32\credui.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-01-24 17:14:51 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-01-24 17:14:51 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2016-01-24 17:14:51 ----A---- C:\Windows\system32\iphlpsvc.dll
2016-01-24 17:14:51 ----A---- C:\Windows\system32\inetpp.dll
2016-01-24 17:14:51 ----A---- C:\Windows\system32\drivers\vmbus.sys
2016-01-24 17:14:51 ----A---- C:\Windows\system32\drivers\udfs.sys
2016-01-24 17:14:51 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2016-01-24 17:14:51 ----A---- C:\Windows\system32\cdd.dll
2016-01-24 17:14:50 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2016-01-24 17:14:50 ----A---- C:\Windows\SYSWOW64\azroles.dll
2016-01-24 17:14:50 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\tcpipcfg.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\spp.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\QSHVHOST.DLL
2016-01-24 17:14:50 ----A---- C:\Windows\system32\profsvc.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\netid.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\msinfo32.exe
2016-01-24 17:14:50 ----A---- C:\Windows\system32\gameux.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-01-24 17:14:50 ----A---- C:\Windows\system32\davclnt.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\cscui.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\biocpl.dll
2016-01-24 17:14:49 ----A---- C:\Windows\SYSWOW64\themeui.dll
2016-01-24 17:14:49 ----A---- C:\Windows\SYSWOW64\credui.dll
2016-01-24 17:14:49 ----A---- C:\Windows\system32\scansetting.dll
2016-01-24 17:14:49 ----A---- C:\Windows\system32\printui.dll
2016-01-24 17:14:49 ----A---- C:\Windows\system32\mspbda.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\spp.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\wusa.exe
2016-01-24 17:14:48 ----A---- C:\Windows\system32\wiaservc.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\vds.exe
2016-01-24 17:14:48 ----A---- C:\Windows\system32\pla.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2016-01-24 17:14:48 ----A---- C:\Windows\system32\msdri.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2016-01-24 17:14:48 ----A---- C:\Windows\system32\inetcomm.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\drivers\pci.sys
2016-01-24 17:14:48 ----A---- C:\Windows\system32\conhost.exe
2016-01-24 17:14:48 ----A---- C:\Windows\system32\aitagent.exe
2016-01-24 17:14:48 ----A---- C:\Windows\splwow64.exe
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\rpchttp.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\PkgMgr.exe
2016-01-24 17:14:47 ----A---- C:\Windows\system32\mscms.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\cryptsvc.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\AdmTmpl.dll
2016-01-24 17:14:46 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2016-01-24 17:14:46 ----A---- C:\Windows\SYSWOW64\evr.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\XpsRasterService.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\wisptis.exe
2016-01-24 17:14:46 ----A---- C:\Windows\system32\sppwinob.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\ocsetup.exe
2016-01-24 17:14:46 ----A---- C:\Windows\system32\msi.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2016-01-24 17:14:46 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-01-24 17:14:45 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2016-01-24 17:14:45 ----A---- C:\Windows\SYSWOW64\calc.exe
2016-01-24 17:14:45 ----A---- C:\Windows\system32\rdpcore.dll
2016-01-24 17:14:45 ----A---- C:\Windows\system32\ocsetapi.dll
2016-01-24 17:14:45 ----A---- C:\Windows\system32\DXP.dll
2016-01-24 17:14:45 ----A---- C:\Windows\system32\drivers\volmgr.sys
2016-01-24 17:14:45 ----A---- C:\Windows\system32\cfgmgr32.dll
2016-01-24 17:14:44 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2016-01-24 17:14:44 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2016-01-24 17:14:44 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\wpdbusenum.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\wcncsvc.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\upnp.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\Robocopy.exe
2016-01-24 17:14:44 ----A---- C:\Windows\system32\ntshrui.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\mprapi.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\eapphost.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\eapp3hst.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\drivers\msdsm.sys
2016-01-24 17:14:44 ----A---- C:\Windows\system32\ci.dll
2016-01-24 17:14:43 ----A---- C:\Windows\SYSWOW64\sxs.dll
2016-01-24 17:14:43 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2016-01-24 17:14:43 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\thumbcache.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\t2embed.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\hal.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\stobject.dll
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\netshell.dll
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\scecli.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-01-24 17:14:42 ----A---- C:\Windows\system32\DxpTaskSync.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\dwmredir.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-01-24 17:14:42 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-01-24 17:14:42 ----A---- C:\Windows\system32\drivers\fvevol.sys
2016-01-24 17:14:42 ----A---- C:\Windows\system32\atmfd.dll
2016-01-24 17:14:41 ----A---- C:\Windows\SYSWOW64\prncache.dll
2016-01-24 17:14:41 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\themeui.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\sspicli.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\scrptadm.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\puiobj.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\onex.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\nlaapi.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\msasn1.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\iasrad.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2016-01-24 17:14:41 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2016-01-24 17:14:41 ----A---- C:\Windows\system32\drivers\amdxata.sys
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\printui.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\net1.exe
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-01-24 17:14:40 ----A---- C:\Windows\system32\wow64.dll
2016-01-24 17:14:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-01-24 17:14:40 ----A---- C:\Windows\system32\aaclient.dll
2016-01-24 17:14:39 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2016-01-24 17:14:39 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\wdc.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\scesrv.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\rasmans.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\drivers\usbport.sys
2016-01-24 17:14:38 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2016-01-24 17:14:38 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\wlangpui.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\wiadefui.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\VAN.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\sdengin2.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\netcenter.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\msftedit.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\dskquoui.dll
2016-01-24 17:14:37 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2016-01-24 17:14:37 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\wscapi.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\SndVol.exe
2016-01-24 17:14:37 ----A---- C:\Windows\system32\samcli.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\regapi.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\iasacct.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\drivers\termdd.sys
2016-01-24 17:14:37 ----A---- C:\Windows\system32\drivers\partmgr.sys
2016-01-24 17:14:37 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2016-01-24 17:14:36 ----A---- C:\Windows\system32\TabSvc.dll
2016-01-24 17:14:36 ----A---- C:\Windows\system32\srchadmin.dll
2016-01-24 17:14:36 ----A---- C:\Windows\system32\QUTIL.DLL
2016-01-24 17:14:36 ----A---- C:\Windows\system32\consent.exe
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\webservices.dll
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\fde.dll
2016-01-24 17:14:35 ----A---- C:\Windows\system32\WUDFSvc.dll
2016-01-24 17:14:35 ----A---- C:\Windows\system32\setupcl.exe
2016-01-24 17:14:35 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-01-24 17:14:35 ----A---- C:\Windows\system32\drivers\msahci.sys
2016-01-24 17:14:34 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2016-01-24 17:14:34 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2016-01-24 17:14:34 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2016-01-24 17:14:34 ----A---- C:\Windows\system32\wksprt.exe
2016-01-24 17:14:34 ----A---- C:\Windows\system32\taskhost.exe
2016-01-24 17:14:34 ----A---- C:\Windows\system32\rastls.dll
2016-01-24 17:14:34 ----A---- C:\Windows\system32\drivers\acpi.sys
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\pla.dll
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\tapisrv.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\netiohlp.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\msconfig.exe
2016-01-24 17:14:33 ----A---- C:\Windows\system32\mimefilt.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\ListSvc.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\hgcpl.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\drivers\raspptp.sys
2016-01-24 17:14:32 ----A---- C:\Windows\SYSWOW64\winsta.dll
2016-01-24 17:14:32 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2016-01-24 17:14:32 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2016-01-24 17:14:32 ----A---- C:\Windows\system32\lsmproxy.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\fdeploy.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2016-01-24 17:14:32 ----A---- C:\Windows\system32\drivers\ks.sys
2016-01-24 17:14:32 ----A---- C:\Windows\system32\clusapi.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\basecsp.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2016-01-24 17:14:31 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\winsrv.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\WFS.exe
2016-01-24 17:14:31 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\mtxclu.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2016-01-24 17:14:31 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\gameux.dll
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2016-01-24 17:14:30 ----A---- C:\Windows\system32\RpcRtRemote.dll
2016-01-24 17:14:30 ----A---- C:\Windows\system32\riched20.dll
2016-01-24 17:14:30 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-01-24 17:14:30 ----A---- C:\Windows\system32\dnscmmc.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\winmm.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\onex.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\themecpl.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\sharemediacpl.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\powercpl.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\nci.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\logoncli.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\drivers\usbehci.sys
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\autochk.exe
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2016-01-24 17:14:28 ----A---- C:\Windows\system32\SensorsCpl.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\netjoin.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\Narrator.exe
2016-01-24 17:14:28 ----A---- C:\Windows\system32\licmgr10.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\Faultrep.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\eudcedit.exe
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\samcli.dll
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\proquota.exe
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\msutb.dll
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\wkssvc.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\vpnikeapi.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\sppcomapi.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\comctl32.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\cabview.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\autochk.exe
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\sbe.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\regapi.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2016-01-24 17:14:26 ----A---- C:\Windows\system32\wpd_ci.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\shsetup.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\nshipsec.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\fms.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\bcdsrv.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\autofmt.exe
2016-01-24 17:14:26 ----A---- C:\Windows\system32\autoconv.exe
2016-01-24 17:14:26 ----A---- C:\Windows\system32\audiodg.exe
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\wwanconn.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\wlanui.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\sdclt.exe
2016-01-24 17:14:25 ----A---- C:\Windows\system32\prntvpt.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\mscorier.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\drivers\winusb.sys
2016-01-24 17:14:25 ----A---- C:\Windows\system32\drivers\wanarp.sys
2016-01-24 17:14:25 ----A---- C:\Windows\system32\drivers\scsiport.sys
2016-01-24 17:14:24 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2016-01-24 17:14:24 ----A---- C:\Windows\SYSWOW64\netid.dll
2016-01-24 17:14:24 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\SmiEngine.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\rdpsign.exe
2016-01-24 17:14:24 ----A---- C:\Windows\system32\mprddm.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\fontext.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2016-01-24 17:14:24 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2016-01-24 17:14:24 ----A---- C:\Windows\system32\dps.dll
2016-01-24 17:14:23 ----A---- C:\Windows\SYSWOW64\wdc.dll
2016-01-24 17:14:23 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\qedit.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\mblctr.exe
2016-01-24 17:14:23 ----A---- C:\Windows\system32\FXSCOVER.exe
2016-01-24 17:14:23 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2016-01-24 17:14:23 ----A---- C:\Windows\system32\drivers\hidclass.sys
2016-01-24 17:14:23 ----A---- C:\Windows\system32\Display.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\credssp.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\batmeter.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\AxInstSv.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\Vault.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\untfs.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\rastls.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\nci.dll
2016-01-24 17:14:22 ----A---- C:\Windows\system32\wmpsrcwp.dll
2016-01-24 17:14:22 ----A---- C:\Windows\system32\fontsub.dll
2016-01-24 17:14:22 ----A---- C:\Windows\system32\DiagCpl.dll
2016-01-24 17:14:21 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2016-01-24 17:14:21 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2016-01-24 17:14:20 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2016-01-24 17:14:20 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2016-01-24 17:14:20 ----A---- C:\Windows\system32\wpccpl.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\usercpl.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\rtutils.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\provsvc.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\bootres.dll
2016-01-24 17:14:19 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2016-01-24 17:14:19 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2016-01-24 17:14:19 ----A---- C:\Windows\SYSWOW64\Display.dll
2016-01-24 17:14:19 ----A---- C:\Windows\system32\sppsvc.exe
2016-01-24 17:14:19 ----A---- C:\Windows\system32\SndVolSSO.dll
2016-01-24 17:14:19 ----A---- C:\Windows\system32\rasppp.dll
2016-01-24 17:14:19 ----A---- C:\Windows\system32\drivers\winhv.sys
2016-01-24 17:14:19 ----A---- C:\Windows\system32\dot3cfg.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\userinit.exe
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\taskmgr.exe
2016-01-24 17:14:18 ----A---- C:\Windows\system32\shdocvw.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\prnfldr.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\hbaapi.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\dxdiagn.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2016-01-24 17:14:17 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2016-01-24 17:14:17 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2016-01-24 17:14:17 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2016-01-24 17:14:17 ----A---- C:\Windows\system32\proquota.exe
2016-01-24 17:14:17 ----A---- C:\Windows\system32\pdh.dll
2016-01-24 17:14:17 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\cabview.dll
2016-01-24 17:14:16 ----A---- C:\Windows\system32\userinit.exe
2016-01-24 17:14:16 ----A---- C:\Windows\system32\untfs.dll
2016-01-24 17:14:16 ----A---- C:\Windows\system32\rdpcorekmts.dll
2016-01-24 17:14:16 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2016-01-24 17:14:16 ----A---- C:\Windows\system32\drivers\ataport.sys
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2016-01-24 17:14:15 ----A---- C:\Windows\system32\webcheck.dll
2016-01-24 17:14:15 ----A---- C:\Windows\system32\slui.exe
2016-01-24 17:14:15 ----A---- C:\Windows\system32\accessibilitycpl.dll
2016-01-24 17:14:14 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2016-01-24 17:14:14 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2016-01-24 17:14:14 ----A---- C:\Windows\system32\zipfldr.dll
2016-01-24 17:14:14 ----A---- C:\Windows\system32\msieftp.dll
2016-01-24 17:14:14 ----A---- C:\Windows\system32\drivers\storvsc.sys
2016-01-24 17:14:14 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\scecli.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\mscories.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\mscms.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\localsec.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\fontext.dll
2016-01-24 17:14:13 ----A---- C:\Windows\system32\sud.dll
2016-01-24 17:14:13 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-01-24 17:14:13 ----A---- C:\Windows\system32\dot3svc.dll
2016-01-24 17:14:13 ----A---- C:\Windows\system32\DeviceCenter.dll
2016-01-24 17:14:12 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2016-01-24 17:14:12 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\taskbarcpl.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\qdvd.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\networkmap.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\cryptui.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\ActionCenter.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\VAN.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\qedit.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\uxlib.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\twext.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\srcore.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\recovery.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\rdpwsx.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\OobeFldr.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\drivers\usbhub.sys
2016-01-24 17:14:11 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2016-01-24 17:14:11 ----A---- C:\Windows\system32\bcdedit.exe
2016-01-24 17:14:10 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2016-01-24 17:14:10 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2016-01-24 17:14:10 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\tzutil.exe
2016-01-24 17:14:10 ----A---- C:\Windows\system32\sisbkup.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\isoburn.exe
2016-01-24 17:14:10 ----A---- C:\Windows\system32\efscore.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\dsuiext.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-01-24 17:14:10 ----A---- C:\Windows\system32\cca.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\azroleui.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\asycfilt.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\systemcpl.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\syncui.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\shwebsvc.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\sdcpl.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\recdisc.exe
2016-01-24 17:14:09 ----A---- C:\Windows\system32\netplwiz.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\httpapi.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\fvecpl.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\drivers\mpio.sys
2016-01-24 17:14:09 ----A---- C:\Windows\system32\autoplay.dll
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\wusa.exe
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\wlanmsm.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\sysclass.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\sdrsvc.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\ncryptui.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2016-01-24 17:14:08 ----A---- C:\Windows\system32\certcli.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\appinfo.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\sud.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\vdsutil.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\spwizeng.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\msvidc32.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\MFPlay.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\termmgr.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\sethc.exe
2016-01-24 17:14:06 ----A---- C:\Windows\system32\rstrui.exe
2016-01-24 17:14:06 ----A---- C:\Windows\system32\odbccp32.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\msscp.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\mshtmled.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\ftp.exe
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\efscore.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\wwanprotdim.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\tsgqec.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\sqlcese30.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\secur32.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\ReAgent.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\rdpd3d.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\ntlanman.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\iprtrmgr.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2016-01-24 17:14:04 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2016-01-24 17:14:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2016-01-24 17:14:04 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2016-01-24 17:14:04 ----A---- C:\Windows\system32\ssText3d.scr
2016-01-24 17:14:04 ----A---- C:\Windows\system32\odbctrac.dll
2016-01-24 17:14:04 ----A---- C:\Windows\system32\iTVData.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\syncui.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\srvcli.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\slwga.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\iyuv_32.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2016-01-24 17:14:02 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2016-01-24 17:14:02 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\wavemsp.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\ntprint.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\nslookup.exe
2016-01-24 17:14:02 ----A---- C:\Windows\system32\NAPHLPR.DLL
2016-01-24 17:14:02 ----A---- C:\Windows\system32\msiexec.exe
2016-01-24 17:14:02 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\acppage.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\sethc.exe
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\riched20.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2016-01-24 17:14:01 ----A---- C:\Windows\system32\srrstr.dll
2016-01-24 17:14:01 ----A---- C:\Windows\system32\sppnp.dll
2016-01-24 17:14:01 ----A---- C:\Windows\system32\bcdboot.exe
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\migisol.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\fms.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\dpx.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\activeds.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\TSpkg.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\remotepg.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\networkexplorer.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\certprop.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\cabinet.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\wmpdxm.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\wkscli.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\WinSCard.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\PresentationSettings.exe
2016-01-24 17:13:59 ----A---- C:\Windows\system32\ftp.exe
2016-01-24 17:13:59 ----A---- C:\Windows\system32\dfrgui.exe
2016-01-24 17:13:59 ----A---- C:\Windows\system32\cdosys.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wvc.dll
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wsqmcons.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wsnmp32.dll
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wmdrmdev.dll
2016-01-24 17:13:58 ----A---- C:\Windows\system32\WerFaultSecure.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\net1.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\blackbox.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\wvc.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\twext.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\mstask.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-01-24 17:13:57 ----A---- C:\Windows\system32\msyuv.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\mfps.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\mapistub.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\mapi32.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-01-24 17:13:57 ----A---- C:\Windows\system32\Bubbles.scr
2016-01-24 17:13:56 ----A---- C:\Windows\twain_32.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\qcap.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\qasf.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\WUDFPlatform.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\unimdmat.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\OpcServices.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\msrle32.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\iscsium.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\slwga.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\tsbyuv.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\seclogon.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\Ribbons.scr
2016-01-24 17:13:55 ----A---- C:\Windows\system32\Mystify.scr
2016-01-24 17:13:55 ----A---- C:\Windows\system32\ifsutil.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\drivers\umbus.sys
2016-01-24 17:13:55 ----A---- C:\Windows\system32\diskraid.exe
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2016-01-24 17:13:54 ----A---- C:\Windows\system32\wmpshell.dll
2016-01-24 17:13:54 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2016-01-24 17:13:54 ----A---- C:\Windows\system32\rdpencom.dll
2016-01-24 17:13:54 ----A---- C:\Windows\system32\perfmon.exe
mám problém s extrémne pomalým PC, využívam Avast Free Antivirus a Malware Bytes Pro(trial). Zostava je síce stará ale odozva PC je napriek tomu extrémne pomalá, dokonca pri písaní tohoto textu musím 10 sekúnd po dopísaní počkať aby naskočil. Po spustení CHKDSK PC nenašiel nič závažné, no potom mi nzačali vyskakovať hlásenia: reader_sl prestal pracovať, windows prieskumník preetal pracovať a teraz keď píšem tento text to zamrzlo asi na minútu a vyhodilo hlásenie že adobe acrobat speed launcher prestal pracovať. Dokonca mi ani neukazuje že beží avast, ccleaner a taktiež som dostal hlásenie že malware bytes prestal pracovať. Log musím rozdeliť keďže sa sem nevôjde celý.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Pali at 2016-01-26 13:26:30
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 65 GB (65%) free of 100 GB
Total RAM: 2046 MB (5% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:27:15, on 26. 1. 2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
P:\Adobe\Reader 8.0\Reader\reader_sl.exe
P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\SysWOW64\WerFault.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Pali.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/?win=211&clid=2100767-003
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - P:\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: (no name) - {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "P:\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [VirtualCloneDrive] "P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "P:\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = P:\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = P:\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDow ... rtScan.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - P:\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - P:\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - P:\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - P:\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9387 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"P:\Malwarebytes Anti-Malware\mbamscheduler.exe"
C:\Windows\system32\sppsvc.exe
"C:\Windows\system32\Dwm.exe"
"taskhost.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"P:\Adobe\Reader 8.0\Reader\reader_sl.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-74428caf-a45b-486d-88b4-9b516c1e5d52 -SystemEventPortName:HostProcess-3c76b5f1-ea3d-4f70-898a-aedf90f4878d -IoCancelEventPortName:HostProcess-b248728c-ed87-48a2-8f4a-5c09abcfb4ad -NonStateChangingEventPortName:HostProcess-badd8721-14e7-466f-bd9b-9e04d93d753c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:aa66c89a-b7fe-441e-ad50-a8d616a6d6c4
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"P:\DAEMON Tools Lite\DiscSoftBusService.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Windows\system32\wuauclt.exe"
C:\Windows\SysWOW64\WerFault.exe -u -p 3472 -s 248
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4348.0.199075740\496826764" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,12,23,51,61 --gpu-vendor-id=0x10de --gpu-device-id=0x0402 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4192 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.2.22898259\798402186" --font-cache-shared-handle=2092 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.3.1494559153\843425314" --font-cache-shared-handle=2128 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.4.837251420\1851983158" --font-cache-shared-handle=2272 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.6.1857632900\1626483420" --font-cache-shared-handle=3284 /prefetch:673131151
"C:\Windows\Explorer.EXE"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.11.1008687761\1230786746" --font-cache-shared-handle=1828 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.13.255720585\934421559" --font-cache-shared-handle=2796 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=sk --force-fieldtrials=*AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/EnabledFull/*AutomaticTabDiscarding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*DomRel-Enable/enable/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingReportPhishingErrorLink/Enabled/SafeBrowsingSocialEngineeringStrings/Enabled/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes/*SafeBrowsingUpdateFrequency/Default/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="4348.15.1105263212\755543220" --font-cache-shared-handle=6752 /prefetch:673131151
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Users\Pali\Desktop\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-01-17 219304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - P:\AVAST Software\Avast\aswWebRepIE64.dll [2016-01-15 885152]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2016-01-17 886488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-17 2339032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-01-17 153768]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-01-26 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - P:\AVAST Software\Avast\aswWebRepIE.dll [2016-01-15 664184]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-01-17 710872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-17 1731800]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-26 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-02-20 1793736]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-12-18 16408320]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
"DAEMON Tools Lite Automount"=P:\DAEMON Tools Lite\DTAgent.exe [2016-01-15 4177784]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=P:\AVAST Software\Avast\AvastUI.exe [2016-01-15 7021880]
"VirtualCloneDrive"=P:\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2011-03-07 89456]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-12-22 596528]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - P:\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - P:\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-01-26 13:26:41 ----D---- C:\Program Files\trend micro
2016-01-26 13:26:30 ----D---- C:\rsit
2016-01-26 13:00:47 ----N---- C:\bootsqm.dat
2016-01-26 10:19:53 ----D---- C:\Users\Pali\AppData\Roaming\Sun
2016-01-26 10:19:27 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2016-01-26 10:18:41 ----D---- C:\ProgramData\Oracle
2016-01-26 10:18:31 ----D---- C:\Program Files (x86)\Java
2016-01-25 09:36:56 ----A---- C:\Windows\system32\wups2.dll
2016-01-25 09:36:56 ----A---- C:\Windows\system32\wucltux.dll
2016-01-25 09:36:56 ----A---- C:\Windows\system32\wuauclt.exe
2016-01-25 09:36:55 ----A---- C:\Windows\system32\wuaueng.dll
2016-01-25 09:36:21 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-01-25 09:36:21 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-01-25 09:36:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-01-25 09:36:21 ----A---- C:\Windows\system32\wups.dll
2016-01-25 09:36:21 ----A---- C:\Windows\system32\wudriver.dll
2016-01-25 09:36:21 ----A---- C:\Windows\system32\wuapi.dll
2016-01-25 09:35:56 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-01-25 09:35:56 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-01-25 09:35:56 ----A---- C:\Windows\system32\wuwebv.dll
2016-01-25 09:35:56 ----A---- C:\Windows\system32\wuapp.exe
2016-01-24 17:32:09 ----D---- C:\Windows\system32\SPReview
2016-01-24 17:31:30 ----D---- C:\Windows\system32\EventProviders
2016-01-24 17:16:03 ----A---- C:\Windows\system32\netfxperf.dll
2016-01-24 17:16:03 ----A---- C:\Windows\system32\dfshim.dll
2016-01-24 17:16:02 ----A---- C:\Windows\system32\mshtml.dll
2016-01-24 17:15:54 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2016-01-24 17:15:49 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-01-24 17:15:49 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2016-01-24 17:15:48 ----A---- C:\Windows\system32\mstscax.dll
2016-01-24 17:15:48 ----A---- C:\Windows\system32\d3d10warp.dll
2016-01-24 17:15:47 ----A---- C:\Windows\system32\ieframe.dll
2016-01-24 17:15:45 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-01-24 17:15:44 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-01-24 17:15:42 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2016-01-24 17:15:42 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2016-01-24 17:15:42 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2016-01-24 17:15:42 ----A---- C:\Windows\system32\tssrvlic.dll
2016-01-24 17:15:42 ----A---- C:\Windows\system32\sysmain.dll
2016-01-24 17:15:42 ----A---- C:\Windows\system32\RDVGHelper.exe
2016-01-24 17:15:42 ----A---- C:\Windows\system32\rdpcorets.dll
2016-01-24 17:15:41 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-01-24 17:15:40 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2016-01-24 17:15:40 ----A---- C:\Windows\system32\XpsPrint.dll
2016-01-24 17:15:39 ----A---- C:\Windows\system32\MSVidCtl.dll
2016-01-24 17:15:38 ----A---- C:\Windows\system32\tquery.dll
2016-01-24 17:15:37 ----A---- C:\Windows\system32\wmp.dll
2016-01-24 17:15:36 ----A---- C:\Windows\system32\mssrch.dll
2016-01-24 17:15:35 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\ntdll.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\mscoree.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\mmcndmgr.dll
2016-01-24 17:15:35 ----A---- C:\Windows\system32\d2d1.dll
2016-01-24 17:15:34 ----A---- C:\Windows\system32\secproc_isv.dll
2016-01-24 17:15:34 ----A---- C:\Windows\system32\mf.dll
2016-01-24 17:15:33 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2016-01-24 17:15:33 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2016-01-24 17:15:33 ----A---- C:\Windows\system32\xpsservices.dll
2016-01-24 17:15:33 ----A---- C:\Windows\system32\secproc.dll
2016-01-24 17:15:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2016-01-24 17:15:33 ----A---- C:\Windows\system32\RMActivate.exe
2016-01-24 17:15:32 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2016-01-24 17:15:32 ----A---- C:\Windows\system32\jscript.dll
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\secproc.dll
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2016-01-24 17:15:31 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-01-24 17:15:31 ----A---- C:\Windows\system32\schedsvc.dll
2016-01-24 17:15:31 ----A---- C:\Windows\system32\rpcrt4.dll
2016-01-24 17:15:30 ----A---- C:\Windows\system32\spwizui.dll
2016-01-24 17:15:30 ----A---- C:\Windows\system32\ole32.dll
2016-01-24 17:15:30 ----A---- C:\Windows\system32\iertutil.dll
2016-01-24 17:15:29 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2016-01-24 17:15:29 ----A---- C:\Windows\system32\wininet.dll
2016-01-24 17:15:29 ----A---- C:\Windows\system32\esent.dll
2016-01-24 17:15:29 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-01-24 17:15:28 ----A---- C:\Windows\system32\wevtsvc.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\urlmon.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\taskschd.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\RacEngn.dll
2016-01-24 17:15:28 ----A---- C:\Windows\system32\diagperf.dll
2016-01-24 17:15:27 ----A---- C:\Windows\SYSWOW64\mf.dll
2016-01-24 17:15:27 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\vssapi.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\msxml3.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-01-24 17:15:27 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2016-01-24 17:15:26 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2016-01-24 17:15:26 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-01-24 17:15:26 ----A---- C:\Windows\system32\UIRibbon.dll
2016-01-24 17:15:26 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2016-01-24 17:15:26 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2016-01-24 17:15:25 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-01-24 17:15:25 ----A---- C:\Windows\explorer.exe
2016-01-24 17:15:24 ----A---- C:\Windows\SYSWOW64\esent.dll
2016-01-24 17:15:24 ----A---- C:\Windows\system32\win32k.sys
2016-01-24 17:15:23 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2016-01-24 17:15:23 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2016-01-24 17:15:23 ----A---- C:\Windows\system32\WsmSvc.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\WMVCORE.DLL
2016-01-24 17:15:23 ----A---- C:\Windows\system32\rdpudd.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\rdpdd.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2016-01-24 17:15:23 ----A---- C:\Windows\system32\PresentationHost.exe
2016-01-24 17:15:23 ----A---- C:\Windows\system32\DWrite.dll
2016-01-24 17:15:22 ----A---- C:\Windows\system32\WinSAT.exe
2016-01-24 17:15:22 ----A---- C:\Windows\system32\spreview.exe
2016-01-24 17:15:22 ----A---- C:\Windows\system32\spinstall.exe
2016-01-24 17:15:22 ----A---- C:\Windows\system32\MPSSVC.dll
2016-01-24 17:15:22 ----A---- C:\Windows\system32\CertEnroll.dll
2016-01-24 17:15:21 ----A---- C:\Windows\SYSWOW64\tquery.dll
2016-01-24 17:15:21 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-01-24 17:15:21 ----A---- C:\Windows\system32\msxml6.dll
2016-01-24 17:15:21 ----A---- C:\Windows\system32\IKEEXT.DLL
2016-01-24 17:15:21 ----A---- C:\Windows\system32\d3d9.dll
2016-01-24 17:15:21 ----A---- C:\Windows\system32\CPFilters.dll
2016-01-24 17:15:20 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2016-01-24 17:15:20 ----A---- C:\Windows\system32\SearchFolder.dll
2016-01-24 17:15:20 ----A---- C:\Windows\system32\kerberos.dll
2016-01-24 17:15:19 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\VSSVC.exe
2016-01-24 17:15:19 ----A---- C:\Windows\system32\kernel32.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\gpsvc.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\FntCache.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\dwmcore.dll
2016-01-24 17:15:19 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2016-01-24 17:15:18 ----A---- C:\Windows\system32\mstime.dll
2016-01-24 17:15:18 ----A---- C:\Windows\system32\drivers\http.sys
2016-01-24 17:15:18 ----A---- C:\Windows\system32\dbgeng.dll
2016-01-24 17:15:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-01-24 17:15:17 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2016-01-24 17:15:17 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-01-24 17:15:17 ----A---- C:\Windows\system32\drivers\ndis.sys
2016-01-24 17:15:17 ----A---- C:\Windows\system32\crypt32.dll
2016-01-24 17:15:16 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\TSWorkspace.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\schannel.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\drivers\afd.sys
2016-01-24 17:15:16 ----A---- C:\Windows\system32\audiosrv.dll
2016-01-24 17:15:16 ----A---- C:\Windows\system32\actxprxy.dll
2016-01-24 17:15:15 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\termsrv.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\sqmapi.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\qmgr.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\mstsc.exe
2016-01-24 17:15:15 ----A---- C:\Windows\system32\lsasrv.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\KernelBase.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\gpprefcl.dll
2016-01-24 17:15:15 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-01-24 17:15:15 ----A---- C:\Windows\system32\drivers\srv.sys
2016-01-24 17:15:14 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2016-01-24 17:15:14 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-01-24 17:15:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2016-01-24 17:15:14 ----A---- C:\Windows\system32\netlogon.dll
2016-01-24 17:15:14 ----A---- C:\Windows\system32\imapi2fs.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2016-01-24 17:15:13 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\winhttp.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\wbengine.exe
2016-01-24 17:15:13 ----A---- C:\Windows\system32\setupapi.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\rpcss.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\QAGENTRT.DLL
2016-01-24 17:15:13 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2016-01-24 17:15:13 ----A---- C:\Windows\system32\propsys.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-01-24 17:15:13 ----A---- C:\Windows\system32\d3d11.dll
2016-01-24 17:15:12 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-01-24 17:15:12 ----A---- C:\Windows\system32\werconcpl.dll
2016-01-24 17:15:12 ----A---- C:\Windows\system32\taskeng.exe
2016-01-24 17:15:12 ----A---- C:\Windows\system32\odbc32.dll
2016-01-24 17:15:12 ----A---- C:\Windows\system32\authui.dll
2016-01-24 17:15:11 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2016-01-24 17:15:11 ----A---- C:\Windows\system32\WSDApi.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\user32.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\oleaut32.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\msfeeds.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\drivers\nvstor.sys
2016-01-24 17:15:11 ----A---- C:\Windows\system32\drivers\netio.sys
2016-01-24 17:15:11 ----A---- C:\Windows\system32\dnsapi.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\dhcpcore.dll
2016-01-24 17:15:11 ----A---- C:\Windows\system32\certmgr.dll
2016-01-24 17:15:10 ----A---- C:\Windows\SYSWOW64\wer.dll
2016-01-24 17:15:10 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-01-24 17:15:10 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\webio.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\vbscript.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\umrdp.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\scavengeui.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2016-01-24 17:15:10 ----A---- C:\Windows\system32\drivers\tdx.sys
2016-01-24 17:15:10 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-01-24 17:15:09 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2016-01-24 17:15:09 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2016-01-24 17:15:09 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\tsmf.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\shlwapi.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\ncsi.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\msdrm.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\localspl.dll
2016-01-24 17:15:09 ----A---- C:\Windows\system32\drivers\nvraid.sys
2016-01-24 17:15:08 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\umpnpmgr.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\rdpshell.exe
2016-01-24 17:15:08 ----A---- C:\Windows\system32\netshell.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\msdtctm.dll
2016-01-24 17:15:08 ----A---- C:\Windows\system32\framedynos.dll
2016-01-24 17:15:07 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2016-01-24 17:15:07 ----A---- C:\Windows\SYSWOW64\mstime.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\ws2_32.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\wmicmiplugin.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\winlogon.exe
2016-01-24 17:15:07 ----A---- C:\Windows\system32\usp10.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\quartz.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\nlasvc.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\netcfgx.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\lsm.exe
2016-01-24 17:15:07 ----A---- C:\Windows\system32\dxgi.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-01-24 17:15:07 ----A---- C:\Windows\system32\drivers\cng.sys
2016-01-24 17:15:07 ----A---- C:\Windows\system32\comdlg32.dll
2016-01-24 17:15:07 ----A---- C:\Windows\system32\appmgr.dll
2016-01-24 17:15:06 ----A---- C:\Windows\SYSWOW64\quartz.dll
2016-01-24 17:15:06 ----A---- C:\Windows\system32\wmpps.dll
2016-01-24 17:15:06 ----A---- C:\Windows\system32\drivers\csc.sys
2016-01-24 17:15:06 ----A---- C:\Windows\system32\drivers\amdsata.sys
2016-01-24 17:15:06 ----A---- C:\Windows\system32\d3d10_1core.dll
2016-01-24 17:15:06 ----A---- C:\Windows\system32\apphelp.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-01-24 17:15:05 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\wpdshext.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\Query.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\QAGENT.DLL
2016-01-24 17:15:05 ----A---- C:\Windows\system32\mswsock.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\drvstore.dll
2016-01-24 17:15:05 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2016-01-24 17:15:05 ----A---- C:\Windows\system32\azroles.dll
2016-01-24 17:15:04 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2016-01-24 17:15:04 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2016-01-24 17:15:04 ----A---- C:\Windows\system32\Vault.dll
2016-01-24 17:15:04 ----A---- C:\Windows\system32\samsrv.dll
2016-01-24 17:15:04 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-01-24 17:15:04 ----A---- C:\Windows\system32\cmd.exe
2016-01-24 17:15:04 ----A---- C:\Windows\system32\BFE.DLL
2016-01-24 17:15:03 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2016-01-24 17:15:03 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2016-01-24 17:15:03 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\winload.exe
2016-01-24 17:15:03 ----A---- C:\Windows\system32\win32spl.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\mssvp.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\lpksetup.exe
2016-01-24 17:15:03 ----A---- C:\Windows\system32\EncDec.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\dnsrslvr.dll
2016-01-24 17:15:03 ----A---- C:\Windows\system32\cscsvc.dll
2016-01-24 17:15:02 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-01-24 17:15:02 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2016-01-24 17:15:02 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-01-24 17:15:02 ----A---- C:\Windows\system32\WebClnt.dll
2016-01-24 17:15:02 ----A---- C:\Windows\system32\sbe.dll
2016-01-24 17:15:02 ----A---- C:\Windows\system32\rdpclip.exe
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\Query.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2016-01-24 17:15:01 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\Wldap32.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\taskcomp.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\sxs.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\mfds.dll
2016-01-24 17:15:01 ----A---- C:\Windows\system32\mcbuilder.exe
2016-01-24 17:15:01 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2016-01-24 17:15:01 ----A---- C:\Windows\system32\cscobj.dll
2016-01-24 17:15:00 ----A---- C:\Windows\SYSWOW64\upnp.dll
2016-01-24 17:15:00 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-01-24 17:15:00 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2016-01-24 17:15:00 ----A---- C:\Windows\system32\pnidui.dll
2016-01-24 17:15:00 ----A---- C:\Windows\system32\ipsmsnap.dll
2016-01-24 17:15:00 ----A---- C:\Windows\system32\drivers\storport.sys
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2016-01-24 17:14:59 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\winresume.exe
2016-01-24 17:14:59 ----A---- C:\Windows\system32\webservices.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\spoolsv.exe
2016-01-24 17:14:59 ----A---- C:\Windows\system32\SessEnv.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\rdpendp.dll
2016-01-24 17:14:59 ----A---- C:\Windows\system32\hgprint.dll
2016-01-24 17:14:58 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2016-01-24 17:14:58 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2016-01-24 17:14:58 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\winsta.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\sqlsrv32.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\iepeers.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\fveapi.dll
2016-01-24 17:14:58 ----A---- C:\Windows\system32\dot3api.dll
2016-01-24 17:14:57 ----A---- C:\Windows\SYSWOW64\usp10.dll
2016-01-24 17:14:57 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2016-01-24 17:14:57 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2016-01-24 17:14:57 ----A---- C:\Windows\system32\schtasks.exe
2016-01-24 17:14:57 ----A---- C:\Windows\system32\prncache.dll
2016-01-24 17:14:57 ----A---- C:\Windows\system32\mcmde.dll
2016-01-24 17:14:57 ----A---- C:\Windows\system32\gdi32.dll
2016-01-24 17:14:57 ----A---- C:\Windows\system32\drivers\volsnap.sys
2016-01-24 17:14:57 ----A---- C:\Windows\system32\drivers\msrpc.sys
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\userenv.dll
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2016-01-24 17:14:56 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\WMNetMgr.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\wlanpref.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\vpnike.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\userenv.dll
2016-01-24 17:14:56 ----A---- C:\Windows\system32\drivers\rdbss.sys
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2016-01-24 17:14:55 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\wintrust.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\tspubwmi.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\photowiz.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\evr.dll
2016-01-24 17:14:55 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2016-01-24 17:14:54 ----A---- C:\Windows\SYSWOW64\cmd.exe
2016-01-24 17:14:54 ----A---- C:\Windows\system32\wmpmde.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\WMPEncEn.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\wmpeffects.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\SyncCenter.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\sppobjs.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-01-24 17:14:54 ----A---- C:\Windows\system32\FXSSVC.exe
2016-01-24 17:14:54 ----A---- C:\Windows\system32\framedyn.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\AudioSes.dll
2016-01-24 17:14:54 ----A---- C:\Windows\system32\aepdu.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\tscfgwmi.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\srvsvc.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\shsvcs.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\rdpinit.exe
2016-01-24 17:14:53 ----A---- C:\Windows\system32\mfreadwrite.dll
2016-01-24 17:14:53 ----A---- C:\Windows\system32\aeinv.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\propsys.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\mfds.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2016-01-24 17:14:52 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\WinSATAPI.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\vmicsvc.exe
2016-01-24 17:14:52 ----A---- C:\Windows\system32\stobject.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\netdiagfx.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\localsec.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\imapi2.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\fde.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-01-24 17:14:52 ----A---- C:\Windows\system32\credui.dll
2016-01-24 17:14:52 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-01-24 17:14:51 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-01-24 17:14:51 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2016-01-24 17:14:51 ----A---- C:\Windows\system32\iphlpsvc.dll
2016-01-24 17:14:51 ----A---- C:\Windows\system32\inetpp.dll
2016-01-24 17:14:51 ----A---- C:\Windows\system32\drivers\vmbus.sys
2016-01-24 17:14:51 ----A---- C:\Windows\system32\drivers\udfs.sys
2016-01-24 17:14:51 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2016-01-24 17:14:51 ----A---- C:\Windows\system32\cdd.dll
2016-01-24 17:14:50 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2016-01-24 17:14:50 ----A---- C:\Windows\SYSWOW64\azroles.dll
2016-01-24 17:14:50 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\tcpipcfg.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\spp.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\QSHVHOST.DLL
2016-01-24 17:14:50 ----A---- C:\Windows\system32\profsvc.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\netid.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\msinfo32.exe
2016-01-24 17:14:50 ----A---- C:\Windows\system32\gameux.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-01-24 17:14:50 ----A---- C:\Windows\system32\davclnt.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\cscui.dll
2016-01-24 17:14:50 ----A---- C:\Windows\system32\biocpl.dll
2016-01-24 17:14:49 ----A---- C:\Windows\SYSWOW64\themeui.dll
2016-01-24 17:14:49 ----A---- C:\Windows\SYSWOW64\credui.dll
2016-01-24 17:14:49 ----A---- C:\Windows\system32\scansetting.dll
2016-01-24 17:14:49 ----A---- C:\Windows\system32\printui.dll
2016-01-24 17:14:49 ----A---- C:\Windows\system32\mspbda.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\spp.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-01-24 17:14:48 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\wusa.exe
2016-01-24 17:14:48 ----A---- C:\Windows\system32\wiaservc.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\vds.exe
2016-01-24 17:14:48 ----A---- C:\Windows\system32\pla.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2016-01-24 17:14:48 ----A---- C:\Windows\system32\msdri.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2016-01-24 17:14:48 ----A---- C:\Windows\system32\inetcomm.dll
2016-01-24 17:14:48 ----A---- C:\Windows\system32\drivers\pci.sys
2016-01-24 17:14:48 ----A---- C:\Windows\system32\conhost.exe
2016-01-24 17:14:48 ----A---- C:\Windows\system32\aitagent.exe
2016-01-24 17:14:48 ----A---- C:\Windows\splwow64.exe
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2016-01-24 17:14:47 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\rpchttp.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\PkgMgr.exe
2016-01-24 17:14:47 ----A---- C:\Windows\system32\mscms.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\cryptsvc.dll
2016-01-24 17:14:47 ----A---- C:\Windows\system32\AdmTmpl.dll
2016-01-24 17:14:46 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2016-01-24 17:14:46 ----A---- C:\Windows\SYSWOW64\evr.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\XpsRasterService.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\wisptis.exe
2016-01-24 17:14:46 ----A---- C:\Windows\system32\sppwinob.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\ocsetup.exe
2016-01-24 17:14:46 ----A---- C:\Windows\system32\msi.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2016-01-24 17:14:46 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2016-01-24 17:14:46 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-01-24 17:14:45 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2016-01-24 17:14:45 ----A---- C:\Windows\SYSWOW64\calc.exe
2016-01-24 17:14:45 ----A---- C:\Windows\system32\rdpcore.dll
2016-01-24 17:14:45 ----A---- C:\Windows\system32\ocsetapi.dll
2016-01-24 17:14:45 ----A---- C:\Windows\system32\DXP.dll
2016-01-24 17:14:45 ----A---- C:\Windows\system32\drivers\volmgr.sys
2016-01-24 17:14:45 ----A---- C:\Windows\system32\cfgmgr32.dll
2016-01-24 17:14:44 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2016-01-24 17:14:44 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2016-01-24 17:14:44 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\wpdbusenum.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\wcncsvc.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\upnp.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\Robocopy.exe
2016-01-24 17:14:44 ----A---- C:\Windows\system32\ntshrui.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\mprapi.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\eapphost.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\eapp3hst.dll
2016-01-24 17:14:44 ----A---- C:\Windows\system32\drivers\msdsm.sys
2016-01-24 17:14:44 ----A---- C:\Windows\system32\ci.dll
2016-01-24 17:14:43 ----A---- C:\Windows\SYSWOW64\sxs.dll
2016-01-24 17:14:43 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2016-01-24 17:14:43 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\thumbcache.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\t2embed.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\hal.dll
2016-01-24 17:14:43 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\stobject.dll
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\netshell.dll
2016-01-24 17:14:42 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\scecli.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-01-24 17:14:42 ----A---- C:\Windows\system32\DxpTaskSync.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\dwmredir.dll
2016-01-24 17:14:42 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-01-24 17:14:42 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-01-24 17:14:42 ----A---- C:\Windows\system32\drivers\fvevol.sys
2016-01-24 17:14:42 ----A---- C:\Windows\system32\atmfd.dll
2016-01-24 17:14:41 ----A---- C:\Windows\SYSWOW64\prncache.dll
2016-01-24 17:14:41 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\themeui.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\sspicli.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\scrptadm.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\puiobj.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\onex.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\nlaapi.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\msasn1.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\iasrad.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2016-01-24 17:14:41 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2016-01-24 17:14:41 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2016-01-24 17:14:41 ----A---- C:\Windows\system32\drivers\amdxata.sys
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\printui.dll
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\net1.exe
2016-01-24 17:14:40 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-01-24 17:14:40 ----A---- C:\Windows\system32\wow64.dll
2016-01-24 17:14:40 ----A---- C:\Windows\system32\iedkcs32.dll
2016-01-24 17:14:40 ----A---- C:\Windows\system32\aaclient.dll
2016-01-24 17:14:39 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2016-01-24 17:14:39 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\wdc.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\scesrv.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\rasmans.dll
2016-01-24 17:14:39 ----A---- C:\Windows\system32\drivers\usbport.sys
2016-01-24 17:14:38 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2016-01-24 17:14:38 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\wlangpui.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\wiadefui.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\VAN.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\sdengin2.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\netcenter.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\msftedit.dll
2016-01-24 17:14:38 ----A---- C:\Windows\system32\dskquoui.dll
2016-01-24 17:14:37 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2016-01-24 17:14:37 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\wscapi.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\SndVol.exe
2016-01-24 17:14:37 ----A---- C:\Windows\system32\samcli.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\regapi.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\iasacct.dll
2016-01-24 17:14:37 ----A---- C:\Windows\system32\drivers\termdd.sys
2016-01-24 17:14:37 ----A---- C:\Windows\system32\drivers\partmgr.sys
2016-01-24 17:14:37 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2016-01-24 17:14:36 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2016-01-24 17:14:36 ----A---- C:\Windows\system32\TabSvc.dll
2016-01-24 17:14:36 ----A---- C:\Windows\system32\srchadmin.dll
2016-01-24 17:14:36 ----A---- C:\Windows\system32\QUTIL.DLL
2016-01-24 17:14:36 ----A---- C:\Windows\system32\consent.exe
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\webservices.dll
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2016-01-24 17:14:35 ----A---- C:\Windows\SYSWOW64\fde.dll
2016-01-24 17:14:35 ----A---- C:\Windows\system32\WUDFSvc.dll
2016-01-24 17:14:35 ----A---- C:\Windows\system32\setupcl.exe
2016-01-24 17:14:35 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-01-24 17:14:35 ----A---- C:\Windows\system32\drivers\msahci.sys
2016-01-24 17:14:34 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2016-01-24 17:14:34 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2016-01-24 17:14:34 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2016-01-24 17:14:34 ----A---- C:\Windows\system32\wksprt.exe
2016-01-24 17:14:34 ----A---- C:\Windows\system32\taskhost.exe
2016-01-24 17:14:34 ----A---- C:\Windows\system32\rastls.dll
2016-01-24 17:14:34 ----A---- C:\Windows\system32\drivers\acpi.sys
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\pla.dll
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2016-01-24 17:14:33 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\tapisrv.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\netiohlp.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\msconfig.exe
2016-01-24 17:14:33 ----A---- C:\Windows\system32\mimefilt.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\ListSvc.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\hgcpl.dll
2016-01-24 17:14:33 ----A---- C:\Windows\system32\drivers\raspptp.sys
2016-01-24 17:14:32 ----A---- C:\Windows\SYSWOW64\winsta.dll
2016-01-24 17:14:32 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2016-01-24 17:14:32 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2016-01-24 17:14:32 ----A---- C:\Windows\system32\lsmproxy.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\fdeploy.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2016-01-24 17:14:32 ----A---- C:\Windows\system32\drivers\ks.sys
2016-01-24 17:14:32 ----A---- C:\Windows\system32\clusapi.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\basecsp.dll
2016-01-24 17:14:32 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2016-01-24 17:14:31 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\winsrv.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\WFS.exe
2016-01-24 17:14:31 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\mtxclu.dll
2016-01-24 17:14:31 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2016-01-24 17:14:31 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\gameux.dll
2016-01-24 17:14:30 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2016-01-24 17:14:30 ----A---- C:\Windows\system32\RpcRtRemote.dll
2016-01-24 17:14:30 ----A---- C:\Windows\system32\riched20.dll
2016-01-24 17:14:30 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-01-24 17:14:30 ----A---- C:\Windows\system32\dnscmmc.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\winmm.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\onex.dll
2016-01-24 17:14:29 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\themecpl.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\sharemediacpl.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\powercpl.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\nci.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\logoncli.dll
2016-01-24 17:14:29 ----A---- C:\Windows\system32\drivers\usbehci.sys
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\autochk.exe
2016-01-24 17:14:28 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2016-01-24 17:14:28 ----A---- C:\Windows\system32\SensorsCpl.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\netjoin.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\Narrator.exe
2016-01-24 17:14:28 ----A---- C:\Windows\system32\licmgr10.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\Faultrep.dll
2016-01-24 17:14:28 ----A---- C:\Windows\system32\eudcedit.exe
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\samcli.dll
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\proquota.exe
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\msutb.dll
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2016-01-24 17:14:27 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\wkssvc.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\vpnikeapi.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\sppcomapi.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\comctl32.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\cabview.dll
2016-01-24 17:14:27 ----A---- C:\Windows\system32\autochk.exe
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\sbe.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\regapi.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2016-01-24 17:14:26 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2016-01-24 17:14:26 ----A---- C:\Windows\system32\wpd_ci.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\shsetup.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\nshipsec.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\fms.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\bcdsrv.dll
2016-01-24 17:14:26 ----A---- C:\Windows\system32\autofmt.exe
2016-01-24 17:14:26 ----A---- C:\Windows\system32\autoconv.exe
2016-01-24 17:14:26 ----A---- C:\Windows\system32\audiodg.exe
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2016-01-24 17:14:25 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\wwanconn.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\wlanui.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\sdclt.exe
2016-01-24 17:14:25 ----A---- C:\Windows\system32\prntvpt.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\mscorier.dll
2016-01-24 17:14:25 ----A---- C:\Windows\system32\drivers\winusb.sys
2016-01-24 17:14:25 ----A---- C:\Windows\system32\drivers\wanarp.sys
2016-01-24 17:14:25 ----A---- C:\Windows\system32\drivers\scsiport.sys
2016-01-24 17:14:24 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2016-01-24 17:14:24 ----A---- C:\Windows\SYSWOW64\netid.dll
2016-01-24 17:14:24 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\SmiEngine.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\rdpsign.exe
2016-01-24 17:14:24 ----A---- C:\Windows\system32\mprddm.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\fontext.dll
2016-01-24 17:14:24 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2016-01-24 17:14:24 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2016-01-24 17:14:24 ----A---- C:\Windows\system32\dps.dll
2016-01-24 17:14:23 ----A---- C:\Windows\SYSWOW64\wdc.dll
2016-01-24 17:14:23 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\qedit.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\mblctr.exe
2016-01-24 17:14:23 ----A---- C:\Windows\system32\FXSCOVER.exe
2016-01-24 17:14:23 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2016-01-24 17:14:23 ----A---- C:\Windows\system32\drivers\hidclass.sys
2016-01-24 17:14:23 ----A---- C:\Windows\system32\Display.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\credssp.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\batmeter.dll
2016-01-24 17:14:23 ----A---- C:\Windows\system32\AxInstSv.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\Vault.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\untfs.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\rastls.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-01-24 17:14:22 ----A---- C:\Windows\SYSWOW64\nci.dll
2016-01-24 17:14:22 ----A---- C:\Windows\system32\wmpsrcwp.dll
2016-01-24 17:14:22 ----A---- C:\Windows\system32\fontsub.dll
2016-01-24 17:14:22 ----A---- C:\Windows\system32\DiagCpl.dll
2016-01-24 17:14:21 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2016-01-24 17:14:21 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2016-01-24 17:14:20 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2016-01-24 17:14:20 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2016-01-24 17:14:20 ----A---- C:\Windows\system32\wpccpl.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\usercpl.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\rtutils.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\provsvc.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2016-01-24 17:14:20 ----A---- C:\Windows\system32\bootres.dll
2016-01-24 17:14:19 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2016-01-24 17:14:19 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2016-01-24 17:14:19 ----A---- C:\Windows\SYSWOW64\Display.dll
2016-01-24 17:14:19 ----A---- C:\Windows\system32\sppsvc.exe
2016-01-24 17:14:19 ----A---- C:\Windows\system32\SndVolSSO.dll
2016-01-24 17:14:19 ----A---- C:\Windows\system32\rasppp.dll
2016-01-24 17:14:19 ----A---- C:\Windows\system32\drivers\winhv.sys
2016-01-24 17:14:19 ----A---- C:\Windows\system32\dot3cfg.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\userinit.exe
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2016-01-24 17:14:18 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\taskmgr.exe
2016-01-24 17:14:18 ----A---- C:\Windows\system32\shdocvw.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\prnfldr.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\hbaapi.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\dxdiagn.dll
2016-01-24 17:14:18 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2016-01-24 17:14:17 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2016-01-24 17:14:17 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2016-01-24 17:14:17 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2016-01-24 17:14:17 ----A---- C:\Windows\system32\proquota.exe
2016-01-24 17:14:17 ----A---- C:\Windows\system32\pdh.dll
2016-01-24 17:14:17 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2016-01-24 17:14:16 ----A---- C:\Windows\SYSWOW64\cabview.dll
2016-01-24 17:14:16 ----A---- C:\Windows\system32\userinit.exe
2016-01-24 17:14:16 ----A---- C:\Windows\system32\untfs.dll
2016-01-24 17:14:16 ----A---- C:\Windows\system32\rdpcorekmts.dll
2016-01-24 17:14:16 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2016-01-24 17:14:16 ----A---- C:\Windows\system32\drivers\ataport.sys
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2016-01-24 17:14:15 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2016-01-24 17:14:15 ----A---- C:\Windows\system32\webcheck.dll
2016-01-24 17:14:15 ----A---- C:\Windows\system32\slui.exe
2016-01-24 17:14:15 ----A---- C:\Windows\system32\accessibilitycpl.dll
2016-01-24 17:14:14 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2016-01-24 17:14:14 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2016-01-24 17:14:14 ----A---- C:\Windows\system32\zipfldr.dll
2016-01-24 17:14:14 ----A---- C:\Windows\system32\msieftp.dll
2016-01-24 17:14:14 ----A---- C:\Windows\system32\drivers\storvsc.sys
2016-01-24 17:14:14 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\scecli.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\mscories.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\mscms.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\localsec.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2016-01-24 17:14:13 ----A---- C:\Windows\SYSWOW64\fontext.dll
2016-01-24 17:14:13 ----A---- C:\Windows\system32\sud.dll
2016-01-24 17:14:13 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-01-24 17:14:13 ----A---- C:\Windows\system32\dot3svc.dll
2016-01-24 17:14:13 ----A---- C:\Windows\system32\DeviceCenter.dll
2016-01-24 17:14:12 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2016-01-24 17:14:12 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\taskbarcpl.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\qdvd.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\networkmap.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\cryptui.dll
2016-01-24 17:14:12 ----A---- C:\Windows\system32\ActionCenter.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\VAN.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\qedit.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2016-01-24 17:14:11 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\uxlib.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\twext.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\srcore.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\recovery.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\rdpwsx.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\OobeFldr.dll
2016-01-24 17:14:11 ----A---- C:\Windows\system32\drivers\usbhub.sys
2016-01-24 17:14:11 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2016-01-24 17:14:11 ----A---- C:\Windows\system32\bcdedit.exe
2016-01-24 17:14:10 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2016-01-24 17:14:10 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2016-01-24 17:14:10 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\tzutil.exe
2016-01-24 17:14:10 ----A---- C:\Windows\system32\sisbkup.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\isoburn.exe
2016-01-24 17:14:10 ----A---- C:\Windows\system32\efscore.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\dsuiext.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-01-24 17:14:10 ----A---- C:\Windows\system32\cca.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\azroleui.dll
2016-01-24 17:14:10 ----A---- C:\Windows\system32\asycfilt.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2016-01-24 17:14:09 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\systemcpl.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\syncui.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\shwebsvc.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\sdcpl.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\recdisc.exe
2016-01-24 17:14:09 ----A---- C:\Windows\system32\netplwiz.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\httpapi.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\fvecpl.dll
2016-01-24 17:14:09 ----A---- C:\Windows\system32\drivers\mpio.sys
2016-01-24 17:14:09 ----A---- C:\Windows\system32\autoplay.dll
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\wusa.exe
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2016-01-24 17:14:08 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\wlanmsm.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\sysclass.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\sspisrv.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\sdrsvc.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\ncryptui.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2016-01-24 17:14:08 ----A---- C:\Windows\system32\certcli.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\appinfo.dll
2016-01-24 17:14:08 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\sud.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2016-01-24 17:14:07 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\vdsutil.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\spwizeng.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\msvidc32.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\MFPlay.dll
2016-01-24 17:14:07 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2016-01-24 17:14:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\termmgr.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\sethc.exe
2016-01-24 17:14:06 ----A---- C:\Windows\system32\rstrui.exe
2016-01-24 17:14:06 ----A---- C:\Windows\system32\odbccp32.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\msscp.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\mshtmled.dll
2016-01-24 17:14:06 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\ftp.exe
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\efscore.dll
2016-01-24 17:14:05 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\wwanprotdim.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\tsgqec.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\sqlcese30.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\secur32.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\ReAgent.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\rdpd3d.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\ntlanman.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\iprtrmgr.dll
2016-01-24 17:14:05 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2016-01-24 17:14:04 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2016-01-24 17:14:04 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2016-01-24 17:14:04 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2016-01-24 17:14:04 ----A---- C:\Windows\system32\ssText3d.scr
2016-01-24 17:14:04 ----A---- C:\Windows\system32\odbctrac.dll
2016-01-24 17:14:04 ----A---- C:\Windows\system32\iTVData.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\syncui.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2016-01-24 17:14:03 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\srvcli.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\slwga.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\iyuv_32.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2016-01-24 17:14:03 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2016-01-24 17:14:02 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2016-01-24 17:14:02 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\wavemsp.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\ntprint.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\nslookup.exe
2016-01-24 17:14:02 ----A---- C:\Windows\system32\NAPHLPR.DLL
2016-01-24 17:14:02 ----A---- C:\Windows\system32\msiexec.exe
2016-01-24 17:14:02 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2016-01-24 17:14:02 ----A---- C:\Windows\system32\acppage.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\sethc.exe
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\riched20.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2016-01-24 17:14:01 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2016-01-24 17:14:01 ----A---- C:\Windows\system32\srrstr.dll
2016-01-24 17:14:01 ----A---- C:\Windows\system32\sppnp.dll
2016-01-24 17:14:01 ----A---- C:\Windows\system32\bcdboot.exe
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\migisol.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\fms.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\dpx.dll
2016-01-24 17:14:00 ----A---- C:\Windows\SYSWOW64\activeds.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\TSpkg.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\remotepg.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\networkexplorer.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\certprop.dll
2016-01-24 17:14:00 ----A---- C:\Windows\system32\cabinet.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2016-01-24 17:13:59 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\wmpdxm.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\wkscli.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\WinSCard.dll
2016-01-24 17:13:59 ----A---- C:\Windows\system32\PresentationSettings.exe
2016-01-24 17:13:59 ----A---- C:\Windows\system32\ftp.exe
2016-01-24 17:13:59 ----A---- C:\Windows\system32\dfrgui.exe
2016-01-24 17:13:59 ----A---- C:\Windows\system32\cdosys.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2016-01-24 17:13:58 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wvc.dll
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wsqmcons.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wsnmp32.dll
2016-01-24 17:13:58 ----A---- C:\Windows\system32\wmdrmdev.dll
2016-01-24 17:13:58 ----A---- C:\Windows\system32\WerFaultSecure.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\net1.exe
2016-01-24 17:13:58 ----A---- C:\Windows\system32\blackbox.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\wvc.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\twext.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\mstask.dll
2016-01-24 17:13:57 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-01-24 17:13:57 ----A---- C:\Windows\system32\msyuv.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\mfps.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\mapistub.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\mapi32.dll
2016-01-24 17:13:57 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-01-24 17:13:57 ----A---- C:\Windows\system32\Bubbles.scr
2016-01-24 17:13:56 ----A---- C:\Windows\twain_32.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\qcap.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\qasf.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-01-24 17:13:56 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\WUDFPlatform.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\unimdmat.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\OpcServices.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\msrle32.dll
2016-01-24 17:13:56 ----A---- C:\Windows\system32\iscsium.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\slwga.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2016-01-24 17:13:55 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\tsbyuv.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\seclogon.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\Ribbons.scr
2016-01-24 17:13:55 ----A---- C:\Windows\system32\Mystify.scr
2016-01-24 17:13:55 ----A---- C:\Windows\system32\ifsutil.dll
2016-01-24 17:13:55 ----A---- C:\Windows\system32\drivers\umbus.sys
2016-01-24 17:13:55 ----A---- C:\Windows\system32\diskraid.exe
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2016-01-24 17:13:54 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2016-01-24 17:13:54 ----A---- C:\Windows\system32\wmpshell.dll
2016-01-24 17:13:54 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2016-01-24 17:13:54 ----A---- C:\Windows\system32\rdpencom.dll
2016-01-24 17:13:54 ----A---- C:\Windows\system32\perfmon.exe