Notebook se seká, nejde vypnout
Napsal: 22 črc 2016 16:11
Dobrý den, poslední dny mě zlobí notebook. Již po třetí se mi stalo že nešel vypnout, uspat, odhlásit, prostě to zamrzlo. Složky jdou normálně otevřít, pak jsem ale chtěla zavřít prohlížeč a taky to nešlo, ani minimalizovat.
Předem děkuji za pomoc.
Lg z RSIT :
Logfile of random's system information tool 1.10 (written by random/random)
Run by admin at 2016-07-22 17:02:22
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 140 GB (68%) free of 205 GB
Total RAM: 2972 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:02:29, on 22.7.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18377)
Boot mode: Normal
Running processes:
C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\AVG\Av\avuirunnerx.exe
C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files\trend micro\admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\Av\avuirunnerx.exe" C:\Program Files (x86)\AVG\Av\avgui.exe
O4 - HKLM\..\Run: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AvgAMPS - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgamps.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9218 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
c:\PROGRA~2\AVG\Av\avgrsa.exe /boot
C:\Program Files (x86)\AVG\Av\avgcsrva.exe /pipeName=44800c66-0200-0000-6fe4-2c485f630b1b /binaryPath="C:\Program Files (x86)\AVG\Av\\" /logPath=C:\Windows\system32\config\systemprofile\AppData\Local\Avg\log\av16 /logCfgPath=C:\ProgramData\Avg\log\av16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 37268768
\??\C:\Windows\system32\conhost.exe "538607038-13908479421860756085-373155962-421712402-1450989696339405155779916049
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {65A75450-C40C-48B4-B688-B709DD495122}
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\AVG\Av\avgidsagenta.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {4BC800D4-C99D-496D-B69C-D30429BDC3CF}
"C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\AVG\Av\avuirunnerx.exe" C:\Program Files (x86)\AVG\Av\avgui.exe
/TRAYONLY
"C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw
/fmw.trayonly
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"C:\Program Files (x86)\AVG\Av\avgwdsvca.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlservice.exe" /service
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files (x86)\AVG\Av\avgnsa.exe"
"C:\Program Files (x86)\AVG\Av\avgemca.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-16cab821-3cb4-4fba-83ad-705ac66f89c8 -SystemEventPortName:HostProcess-dc2a2a15-8791-4948-a045-0c4040c4bb97 -IoCancelEventPortName:HostProcess-83654099-4da7-4f5b-a03c-7a748d99d2c5 -NonStateChangingEventPortName:HostProcess-f6ef3c5e-4957-4309-98fe-4baeb2ad4c6d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1e7c8bd5-2aa7-4a47-86e9-76543aadece1
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-61953878-1118191327-652955997-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-61953878-1118191327-652955997-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\admin\Desktop\RSITx64.exe"
C:\Windows\System32\mobsync.exe -Embedding
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\c1s7k0a9.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.40.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.40.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\c1s7k0a9.default\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
veggy@veggyAddon.com
zzoomit@zoom.com
{88c6c6e0-465b-71d6-472e-74497a37a0a8}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25 2111616]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-20 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25 1637504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-20 172968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-04-03 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-04-03 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-04-03 439064]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-04-06 2885904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"uTorrent"=C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe [2013-04-12 802136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-01-28 59720]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files (x86)\AVG\Av\avuirunnerx.exe [2016-06-29 32528]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [2016-06-21 186640]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-03-19 434688]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-07-17 00:23:07 ----D---- C:\Program Files (x86)\MSXML 4.0
2016-07-16 10:15:30 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-07-16 10:15:30 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-07-16 10:15:30 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-07-16 10:15:30 ----A---- C:\Windows\system32\iernonce.dll
2016-07-16 10:15:30 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-07-16 10:15:29 ----A---- C:\Windows\system32\inseng.dll
2016-07-16 10:15:29 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-07-16 10:15:29 ----A---- C:\Windows\system32\ie4uinit.exe
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-07-16 10:15:28 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-07-16 10:15:26 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-07-16 10:15:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-07-16 10:15:26 ----A---- C:\Windows\system32\urlmon.dll
2016-07-16 10:15:26 ----A---- C:\Windows\system32\occache.dll
2016-07-16 10:15:26 ----A---- C:\Windows\system32\iedkcs32.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-07-16 10:15:25 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-07-16 10:15:24 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-07-16 10:15:24 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-07-16 10:15:24 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-07-16 10:15:24 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-07-16 10:15:24 ----A---- C:\Windows\system32\msfeeds.dll
2016-07-16 10:15:24 ----A---- C:\Windows\system32\dxtrans.dll
2016-07-16 10:15:23 ----A---- C:\Windows\system32\iesetup.dll
2016-07-16 10:15:23 ----A---- C:\Windows\system32\ieapfltr.dll
2016-07-16 10:15:22 ----A---- C:\Windows\system32\iertutil.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-07-16 10:15:21 ----A---- C:\Windows\system32\vbscript.dll
2016-07-16 10:15:20 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-07-16 10:15:20 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-07-16 10:15:19 ----A---- C:\Windows\system32\ieui.dll
2016-07-16 10:15:19 ----A---- C:\Windows\system32\ieframe.dll
2016-07-16 10:15:19 ----A---- C:\Windows\system32\dxtmsft.dll
2016-07-16 10:15:18 ----A---- C:\Windows\system32\mshtmled.dll
2016-07-16 10:15:17 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-07-16 10:15:17 ----A---- C:\Windows\system32\ieUnatt.exe
2016-07-16 10:15:16 ----A---- C:\Windows\system32\webcheck.dll
2016-07-16 10:15:16 ----A---- C:\Windows\system32\jscript.dll
2016-07-16 10:15:15 ----A---- C:\Windows\system32\jscript9diag.dll
2016-07-16 10:15:14 ----A---- C:\Windows\system32\jscript9.dll
2016-07-16 10:15:13 ----A---- C:\Windows\system32\wininet.dll
2016-07-16 10:15:12 ----A---- C:\Windows\system32\jsproxy.dll
2016-07-16 10:15:09 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-07-16 10:15:08 ----A---- C:\Windows\system32\msrating.dll
2016-07-16 10:15:03 ----A---- C:\Windows\system32\mshtml.dll
2016-07-16 10:13:41 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2016-07-16 10:13:41 ----A---- C:\Windows\system32\d2d1.dll
2016-07-16 10:06:34 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2016-07-16 10:06:34 ----A---- C:\Windows\system32\WMPhoto.dll
2016-07-16 09:28:24 ----A---- C:\Windows\system32\FntCache.dll
2016-07-16 09:28:24 ----A---- C:\Windows\system32\DWrite.dll
2016-07-16 09:28:23 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2016-07-16 09:28:19 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2016-07-16 09:28:18 ----A---- C:\Windows\system32\d3d10warp.dll
2016-07-16 09:28:01 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2016-07-16 09:28:01 ----A---- C:\Windows\system32\d3d10level9.dll
2016-07-16 09:27:38 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-07-16 09:27:37 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2016-07-16 09:26:59 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-07-16 09:26:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-07-16 05:54:41 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-07-16 05:54:41 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-16 05:43:02 ----A---- C:\Windows\system32\IEUDINIT.EXE
2016-07-16 05:19:49 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2016-07-16 05:19:42 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2016-07-16 05:19:42 ----A---- C:\Windows\system32\elshyph.dll
2016-07-16 05:19:41 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2016-07-16 05:19:41 ----A---- C:\Windows\SYSWOW64\msls31.dll
2016-07-16 05:19:36 ----A---- C:\Windows\SYSWOW64\url.dll
2016-07-16 05:19:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2016-07-16 05:19:35 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2016-07-16 05:19:35 ----A---- C:\Windows\SYSWOW64\icardie.dll
2016-07-16 05:19:33 ----A---- C:\Windows\SYSWOW64\wextract.exe
2016-07-16 05:19:33 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2016-07-16 05:19:31 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2016-07-16 05:19:28 ----A---- C:\Windows\SYSWOW64\mshta.exe
2016-07-16 05:19:28 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2016-07-16 05:19:26 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2016-07-16 05:19:26 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2016-07-16 05:19:25 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2016-07-16 05:19:25 ----A---- C:\Windows\system32\jsIntl.dll
2016-07-16 05:19:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2016-07-16 05:19:24 ----A---- C:\Windows\system32\msls31.dll
2016-07-16 05:19:22 ----A---- C:\Windows\system32\msfeedssync.exe
2016-07-16 05:19:22 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-07-16 05:19:22 ----A---- C:\Windows\system32\IEAdvpack.dll
2016-07-16 05:19:21 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2016-07-16 05:19:20 ----A---- C:\Windows\system32\mshtmler.dll
2016-07-16 05:19:20 ----A---- C:\Windows\system32\iesysprep.dll
2016-07-16 05:19:17 ----A---- C:\Windows\system32\ieapfltr.dat
2016-07-16 05:19:16 ----A---- C:\Windows\system32\icardie.dll
2016-07-16 05:19:15 ----A---- C:\Windows\system32\url.dll
2016-07-16 05:19:12 ----A---- C:\Windows\system32\licmgr10.dll
2016-07-16 05:19:11 ----A---- C:\Windows\system32\wextract.exe
2016-07-16 05:19:11 ----A---- C:\Windows\system32\iexpress.exe
2016-07-16 05:19:07 ----A---- C:\Windows\system32\pngfilt.dll
2016-07-16 05:19:06 ----A---- C:\Windows\system32\mshta.exe
2016-07-16 05:19:03 ----A---- C:\Windows\system32\imgutil.dll
2016-07-16 05:19:03 ----A---- C:\Windows\system32\iepeers.dll
2016-07-16 05:14:28 ----A---- C:\Windows\system32\tdh.dll
2016-07-16 05:14:24 ----A---- C:\Windows\SYSWOW64\tdh.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-07-16 05:01:07 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-07-16 05:01:07 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2016-07-16 05:01:07 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2016-07-16 05:01:07 ----A---- C:\Windows\system32\XpsPrint.dll
2016-07-16 05:01:07 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2016-07-16 05:01:05 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2016-07-16 05:01:05 ----A---- C:\Windows\system32\dxgi.dll
2016-07-16 05:01:04 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2016-07-16 05:01:04 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2016-07-16 05:01:04 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2016-07-16 05:01:03 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2016-07-16 05:01:03 ----A---- C:\Windows\system32\d3d10core.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\d3d10_1core.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\d3d10_1.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\d3d10.dll
2016-07-16 05:01:01 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2016-07-16 05:01:01 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-07-16 05:01:01 ----A---- C:\Windows\system32\UIAnimation.dll
2016-07-16 04:56:31 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-07-16 04:56:31 ----A---- C:\Windows\system32\d3d11.dll
2016-07-16 00:44:56 ----A---- C:\Windows\SYSWOW64\wmi.dll
2016-07-16 00:44:56 ----A---- C:\Windows\system32\wmi.dll
2016-07-16 00:44:56 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2016-07-16 00:21:11 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2016-07-16 00:21:11 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2016-07-16 00:21:11 ----A---- C:\Windows\system32\infocardapi.dll
2016-07-16 00:21:11 ----A---- C:\Windows\system32\icardagt.exe
2016-07-16 00:21:10 ----A---- C:\Windows\SYSWOW64\icardres.dll
2016-07-16 00:21:10 ----A---- C:\Windows\system32\icardres.dll
2016-07-16 00:20:58 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2016-07-16 00:20:57 ----A---- C:\Windows\system32\TsWpfWrp.exe
2016-07-15 23:08:28 ----A---- C:\Windows\system32\mapistub.dll
2016-07-15 23:08:28 ----A---- C:\Windows\system32\mapi32.dll
2016-07-15 23:08:27 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2016-07-15 23:08:27 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2016-07-15 23:08:27 ----A---- C:\Windows\SYSWOW64\fixmapi.exe
2016-07-15 23:08:27 ----A---- C:\Windows\system32\fixmapi.exe
2016-07-15 23:08:26 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2016-07-15 23:08:26 ----A---- C:\Windows\system32\cewmdm.dll
2016-07-15 23:08:25 ----A---- C:\Windows\system32\services.exe
2016-07-15 23:08:24 ----A---- C:\Windows\system32\TSWbPrxy.exe
2016-07-15 23:08:15 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2016-07-15 23:08:15 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-07-15 23:08:15 ----A---- C:\Windows\system32\msxml3r.dll
2016-07-15 23:08:15 ----A---- C:\Windows\system32\msxml3.dll
2016-07-15 23:08:12 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-07-15 23:08:12 ----A---- C:\Windows\system32\InkEd.dll
2016-07-15 23:08:02 ----A---- C:\Windows\system32\schedsvc.dll
2016-07-15 23:07:51 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-07-15 23:07:51 ----A---- C:\Windows\system32\ole32.dll
2016-07-15 23:07:30 ----A---- C:\Windows\system32\sysmain.dll
2016-07-15 23:07:29 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2016-07-15 23:07:28 ----A---- C:\Windows\system32\msmmsp.dll
2016-07-15 23:06:57 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-07-15 23:06:57 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2016-07-15 23:06:57 ----A---- C:\Windows\system32\tsgqec.dll
2016-07-15 23:06:57 ----A---- C:\Windows\system32\mstscax.dll
2016-07-15 23:06:56 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2016-07-15 23:06:56 ----A---- C:\Windows\system32\aaclient.dll
2016-07-15 23:06:46 ----A---- C:\Windows\system32\shell32.dll
2016-07-15 23:06:45 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-07-15 23:06:44 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-07-15 23:06:43 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-07-15 23:06:32 ----A---- C:\Windows\SYSWOW64\usp10.dll
2016-07-15 23:06:32 ----A---- C:\Windows\system32\usp10.dll
2016-07-15 23:06:31 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-07-15 23:06:31 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-07-15 23:06:31 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\wpnpinst.exe
2016-07-15 23:06:31 ----A---- C:\Windows\system32\win32spl.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\ntprint.exe
2016-07-15 23:06:31 ----A---- C:\Windows\system32\ntprint.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\localspl.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\inetppui.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\inetpp.dll
2016-07-15 23:06:09 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-07-15 23:06:08 ----A---- C:\Windows\system32\webio.dll
2016-07-15 23:05:59 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2016-07-15 23:05:59 ----A---- C:\Windows\system32\drmv2clt.dll
2016-07-15 23:05:59 ----A---- C:\Windows\system32\blackbox.dll
2016-07-15 23:05:57 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2016-07-15 23:05:52 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2016-07-15 23:05:52 ----A---- C:\Windows\system32\wmdrmsdk.dll
2016-07-15 23:05:51 ----A---- C:\Windows\system32\AUDIOKSE.dll
2016-07-15 23:05:50 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2016-07-15 23:05:50 ----A---- C:\Windows\system32\drmmgrtn.dll
2016-07-15 23:05:50 ----A---- C:\Windows\system32\crypt32.dll
2016-07-15 23:05:49 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-07-15 23:05:49 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2016-07-15 23:05:49 ----A---- C:\Windows\system32\wintrust.dll
2016-07-15 23:05:49 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2016-07-15 23:05:49 ----A---- C:\Windows\system32\cryptsvc.dll
2016-07-15 23:05:48 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-07-15 23:05:48 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-07-15 23:05:48 ----A---- C:\Windows\system32\cryptui.dll
2016-07-15 23:05:48 ----A---- C:\Windows\system32\audiosrv.dll
2016-07-15 23:05:47 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2016-07-15 23:05:47 ----A---- C:\Windows\system32\pcasvc.dll
2016-07-15 23:05:47 ----A---- C:\Windows\system32\cryptnet.dll
2016-07-15 23:05:47 ----A---- C:\Windows\system32\AudioEng.dll
2016-07-15 23:05:46 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2016-07-15 23:05:46 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2016-07-15 23:05:46 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2016-07-15 23:05:46 ----A---- C:\Windows\system32\EncDump.dll
2016-07-15 23:05:46 ----A---- C:\Windows\system32\cryptsp.dll
2016-07-15 23:05:46 ----A---- C:\Windows\system32\AudioSes.dll
2016-07-15 23:05:45 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2016-07-15 23:05:45 ----A---- C:\Windows\system32\msscp.dll
2016-07-15 23:05:44 ----A---- C:\Windows\system32\msnetobj.dll
2016-07-15 23:05:43 ----A---- C:\Windows\SYSWOW64\msscp.dll
2016-07-15 23:05:42 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2016-07-15 23:05:42 ----A---- C:\Windows\system32\pcadm.dll
2016-07-15 23:05:42 ----A---- C:\Windows\system32\audiodg.exe
2016-07-15 23:05:41 ----A---- C:\Windows\system32\pcawrk.exe
2016-07-15 23:05:41 ----A---- C:\Windows\system32\pcalua.exe
2016-07-15 23:05:41 ----A---- C:\Windows\system32\pcaevts.dll
2016-07-15 23:04:52 ----A---- C:\Windows\system32\profsvc.dll
2016-07-15 23:04:49 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-07-15 23:04:49 ----A---- C:\Windows\system32\tzres.dll
2016-07-15 23:04:33 ----A---- C:\Windows\SYSWOW64\mscories.dll
2016-07-15 23:04:33 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2016-07-15 23:04:33 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2016-07-15 23:04:33 ----A---- C:\Windows\system32\mscories.dll
2016-07-15 23:04:33 ----A---- C:\Windows\system32\mscorier.dll
2016-07-15 23:04:33 ----A---- C:\Windows\system32\dfshim.dll
2016-07-15 23:04:30 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-07-15 23:04:17 ----A---- C:\Windows\SYSWOW64\wer.dll
2016-07-15 23:04:17 ----A---- C:\Windows\system32\wer.dll
2016-07-15 23:04:16 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2016-07-15 23:04:16 ----A---- C:\Windows\system32\imagehlp.dll
2016-07-15 23:04:14 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-07-15 23:04:14 ----A---- C:\Windows\system32\drivers\netio.sys
2016-07-15 23:04:14 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-07-15 23:03:54 ----A---- C:\Windows\system32\termsrv.dll
2016-07-15 23:03:17 ----A---- C:\Windows\system32\basesrv.dll
2016-07-15 23:02:55 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2016-07-15 23:02:55 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2016-07-15 23:02:55 ----A---- C:\Windows\system32\nlasvc.dll
2016-07-15 23:02:55 ----A---- C:\Windows\system32\nlaapi.dll
2016-07-15 23:02:55 ----A---- C:\Windows\system32\ncsi.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wucltux.dll
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wuauclt.exe
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wuapp.exe
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wuapi.dll
2016-07-15 23:02:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wuwebv.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wups2.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wups.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wudriver.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wuaueng.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-07-15 23:02:42 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-07-15 23:02:42 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-07-15 23:02:42 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\schannel.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\rpchttp.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\rpcrt4.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\msv1_0.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\lsasrv.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\kerberos.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-07-15 23:02:42 ----A---- C:\Windows\system32\drivers\srv.sys
2016-07-15 23:02:42 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\wdigest.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\TSpkg.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\sspisrv.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\sspicli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\secur32.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\ncrypt.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\msobjs.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\msaudite.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\lsass.exe
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\cng.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\cryptbase.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\credssp.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\certcli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\auditpol.exe
2016-07-15 23:02:41 ----A---- C:\Windows\system32\adtschema.dll
2016-07-15 23:02:29 ----A---- C:\Windows\SYSWOW64\osk.exe
2016-07-15 23:02:29 ----A---- C:\Windows\system32\osk.exe
2016-07-15 23:02:28 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-07-15 23:02:27 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-07-15 23:02:27 ----A---- C:\Windows\system32\cdd.dll
2016-07-15 23:02:21 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2016-07-15 23:02:21 ----A---- C:\Windows\system32\ubpm.dll
2016-07-15 23:02:16 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-07-15 23:02:16 ----A---- C:\Windows\system32\user32.dll
2016-07-15 23:02:13 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2016-07-15 23:02:13 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2016-07-15 23:02:13 ----A---- C:\Windows\system32\WebClnt.dll
2016-07-15 23:02:13 ----A---- C:\Windows\system32\davclnt.dll
2016-07-15 23:02:10 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2016-07-15 23:02:10 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2016-07-15 23:02:10 ----A---- C:\Windows\system32\msxml6r.dll
2016-07-15 23:02:10 ----A---- C:\Windows\system32\msxml6.dll
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbport.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbhub.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbehci.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbd.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2016-07-15 23:02:08 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-07-15 23:02:06 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2016-07-15 23:02:06 ----A---- C:\Windows\system32\comctl32.dll
2016-07-15 23:02:05 ----A---- C:\Windows\system32\drivers\usb8023.sys
2016-07-15 23:02:02 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-07-15 23:02:00 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-07-15 23:02:00 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-07-15 23:02:00 ----A---- C:\Windows\system32\oleaut32.dll
2016-07-15 23:02:00 ----A---- C:\Windows\system32\asycfilt.dll
2016-07-15 23:01:59 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2016-07-15 23:01:59 ----A---- C:\Windows\system32\wshrm.dll
2016-07-15 23:01:59 ----A---- C:\Windows\system32\drivers\rmcast.sys
2016-07-15 23:01:57 ----A---- C:\Windows\system32\Wdfres.dll
2016-07-15 23:01:57 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2016-07-15 23:01:57 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2016-07-15 23:01:56 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2016-07-15 23:01:56 ----A---- C:\Windows\system32\comsvcs.dll
2016-07-15 23:01:56 ----A---- C:\Windows\system32\catsrvut.dll
2016-07-15 23:01:55 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2016-07-15 23:01:55 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2016-07-15 23:01:54 ----A---- C:\Windows\SYSWOW64\mfds.dll
2016-07-15 23:01:54 ----A---- C:\Windows\system32\mfds.dll
2016-07-15 23:01:54 ----A---- C:\Windows\system32\drivers\usbcir.sys
2016-07-15 23:01:52 ----A---- C:\Windows\system32\drivers\hidparse.sys
2016-07-15 23:01:52 ----A---- C:\Windows\system32\drivers\hidclass.sys
2016-07-15 23:01:51 ----A---- C:\Windows\system32\drivers\tdx.sys
2016-07-15 23:01:51 ----A---- C:\Windows\system32\drivers\afd.sys
2016-07-15 23:01:12 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2016-07-15 23:01:12 ----A---- C:\Windows\system32\dpnet.dll
2016-07-15 23:01:07 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-07-15 23:01:07 ----A---- C:\Windows\system32\msi.dll
2016-07-15 23:01:07 ----A---- C:\Windows\system32\authui.dll
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-07-15 23:01:06 ----A---- C:\Windows\system32\msimsg.dll
2016-07-15 23:01:06 ----A---- C:\Windows\system32\msihnd.dll
2016-07-15 23:01:06 ----A---- C:\Windows\system32\msiexec.exe
2016-07-15 23:01:06 ----A---- C:\Windows\system32\consent.exe
2016-07-15 23:01:06 ----A---- C:\Windows\system32\appinfo.dll
2016-07-15 23:00:58 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-07-15 23:00:58 ----A---- C:\Windows\system32\samsrv.dll
2016-07-15 23:00:58 ----A---- C:\Windows\system32\samlib.dll
2016-07-15 23:00:41 ----A---- C:\Windows\system32\objsel.dll
2016-07-15 23:00:40 ----A---- C:\Windows\SYSWOW64\objsel.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\wincredprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\dpapiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\dimsroam.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\cngprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\capiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\adprovider.dll
2016-07-15 23:00:21 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-07-15 23:00:21 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-07-15 23:00:21 ----A---- C:\Windows\system32\atmlib.dll
2016-07-15 23:00:21 ----A---- C:\Windows\system32\atmfd.dll
2016-07-15 23:00:20 ----A---- C:\Windows\SYSWOW64\lpk.dll
2016-07-15 23:00:20 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-07-15 23:00:20 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2016-07-15 23:00:20 ----A---- C:\Windows\system32\lpk.dll
2016-07-15 23:00:20 ----A---- C:\Windows\system32\fontsub.dll
2016-07-15 23:00:20 ----A---- C:\Windows\system32\dciman32.dll
2016-07-15 22:59:53 ----A---- C:\Windows\system32\notepad.exe
2016-07-15 22:59:53 ----A---- C:\Windows\notepad.exe
2016-07-15 22:59:52 ----A---- C:\Windows\SYSWOW64\notepad.exe
2016-07-15 22:59:51 ----A---- C:\Windows\system32\rdpudd.dll
2016-07-15 22:59:51 ----A---- C:\Windows\system32\rdpcorets.dll
2016-07-15 22:59:51 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2016-07-15 22:59:49 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2016-07-15 22:59:49 ----A---- C:\Windows\system32\IMJP10K.DLL
2016-07-15 22:59:15 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-07-15 22:59:15 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-07-15 22:59:13 ----A---- C:\Windows\SYSWOW64\qedit.dll
2016-07-15 22:59:13 ----A---- C:\Windows\system32\qedit.dll
2016-07-15 22:58:33 ----A---- C:\Windows\system32\drivers\partmgr.sys
2016-07-15 22:58:24 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2016-07-15 22:58:24 ----A---- C:\Windows\system32\poqexec.exe
2016-07-15 22:58:17 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2016-07-15 22:58:17 ----A---- C:\Windows\system32\pku2u.dll
2016-07-15 22:58:00 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-07-15 22:57:59 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2016-07-15 22:57:59 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-07-15 22:57:59 ----A---- C:\Windows\system32\mf.dll
2016-07-15 22:57:58 ----A---- C:\Windows\SYSWOW64\msmpeg2adec.dll
2016-07-15 22:57:58 ----A---- C:\Windows\SYSWOW64\mf.dll
2016-07-15 22:57:58 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-07-15 22:57:58 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMADMOE.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\quartz.dll
2016-07-15 22:57:57 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\mcmde.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\quartz.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\evr.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\COLORCNV.DLL
2016-07-15 22:57:56 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-07-15 22:57:56 ----A---- C:\Windows\system32\wmpmde.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\qdvd.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\mfplat.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\evr.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\WMVXENCD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\WMVENCOD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\devenum.dll
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2016-07-15 22:57:55 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\devenum.dll
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\WMVSENCD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\WMSPDMOE.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\qasf.dll
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\MPG4DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\MP43DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\MFWMAAEC.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\SysFxUI.dll
2016-07-15 22:57:54 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\mfvdsp.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\VIDRESZR.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\RESAMPLEDMO.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\MP4SDECD.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\MP3DMOD.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mfvdsp.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mfps.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mferror.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\ksuser.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\rrinstaller.exe
2016-07-15 22:57:53 ----A---- C:\Windows\system32\qasf.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\mfps.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\mfpmp.exe
2016-07-15 22:57:53 ----A---- C:\Windows\system32\mferror.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\ksuser.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-07-15 22:57:53 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-07-15 22:57:53 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-07-15 22:57:43 ----A---- C:\Windows\system32\win32k.sys
2016-07-15 22:57:41 ----A---- C:\Windows\system32\seclogon.dll
2016-07-15 22:57:39 ----A---- C:\Windows\system32\drivers\http.sys
2016-07-15 22:57:32 ----A---- C:\Windows\SYSWOW64\synceng.dll
2016-07-15 22:57:32 ----A---- C:\Windows\system32\synceng.dll
2016-07-15 22:57:23 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2016-07-15 22:57:23 ----A---- C:\Windows\system32\shdocvw.dll
2016-07-15 22:57:15 ----A---- C:\Windows\system32\msctf.dll
2016-07-15 22:57:14 ----A---- C:\Windows\SYSWOW64\msctf.dll
2016-07-15 22:57:13 ----A---- C:\Windows\SYSWOW64\rastls.dll
2016-07-15 22:57:13 ----A---- C:\Windows\system32\rastls.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\ws2_32.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\winhttp.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\mswsock.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-07-15 22:57:11 ----A---- C:\Windows\system32\netbtugc.exe
2016-07-15 22:56:59 ----A---- C:\Windows\system32\EncDec.dll
2016-07-15 22:56:59 ----A---- C:\Windows\system32\CPFilters.dll
2016-07-15 22:56:56 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-07-15 22:56:56 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-07-15 22:56:54 ----A---- C:\Windows\system32\mtxoci.dll
2016-07-15 22:56:53 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-07-15 22:56:53 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\winipsec.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\polstore.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpscript.exe
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpscript.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\FwRemoteSvr.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\winipsec.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\polstore.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpsvc.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpscript.exe
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpscript.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpprefcl.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpapi.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-07-15 22:56:13 ----A---- C:\Windows\system32\taskhost.exe
2016-07-15 22:56:12 ----A---- C:\Windows\system32\wmp.dll
2016-07-15 22:56:10 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-07-15 22:56:09 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2016-07-15 22:56:09 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2016-07-15 22:56:09 ----A---- C:\Windows\system32\spwmp.dll
2016-07-15 22:56:09 ----A---- C:\Windows\system32\dxmasf.dll
2016-07-15 22:56:08 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2016-07-15 22:56:08 ----A---- C:\Windows\system32\wmploc.DLL
2016-07-15 22:56:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-07-15 22:56:04 ----A---- C:\Windows\system32\gdi32.dll
2016-07-15 22:56:02 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2016-07-15 22:56:02 ----A---- C:\Windows\system32\drivers\bthport.sys
2016-07-15 22:55:43 ----A---- C:\Windows\system32\drivers\ndis.sys
2016-07-15 22:55:28 ----A---- C:\Windows\system32\jnwmon.dll
2016-07-15 22:55:22 ----A---- C:\Windows\SYSWOW64\packager.dll
2016-07-15 22:55:22 ----A---- C:\Windows\system32\packager.dll
2016-07-15 22:55:13 ----A---- C:\Windows\system32\winlogon.exe
2016-07-15 22:55:09 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2016-07-15 22:55:09 ----A---- C:\Windows\system32\mstsc.exe
2016-07-15 22:55:08 ----A---- C:\Windows\SYSWOW64\winsta.dll
2016-07-15 22:55:08 ----A---- C:\Windows\system32\winsta.dll
2016-07-15 22:55:08 ----A---- C:\Windows\system32\rdrmemptylst.exe
2016-07-15 22:55:08 ----A---- C:\Windows\system32\rdpcorekmts.dll
2016-07-15 22:55:08 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2016-07-15 22:55:06 ----A---- C:\Windows\system32\rdpwsx.dll
2016-07-15 22:55:06 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-07-15 22:54:53 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2016-07-15 22:54:53 ----A---- C:\Windows\SYSWOW64\browcli.dll
2016-07-15 22:54:53 ----A---- C:\Windows\system32\netapi32.dll
2016-07-15 22:54:53 ----A---- C:\Windows\system32\browser.dll
2016-07-15 22:54:53 ----A---- C:\Windows\system32\browcli.dll
2016-07-15 22:54:19 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2016-07-15 22:54:19 ----A---- C:\Windows\system32\msvcrt.dll
2016-07-15 22:54:17 ----A---- C:\Windows\system32\scesrv.dll
2016-07-15 22:54:16 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2016-07-15 22:54:16 ----A---- C:\Windows\SYSWOW64\els.dll
2016-07-15 22:54:16 ----A---- C:\Windows\system32\els.dll
2016-07-15 22:54:12 ----A---- C:\Windows\system32\certutil.exe
2016-07-15 22:54:11 ----A---- C:\Windows\SYSWOW64\certutil.exe
2016-07-15 22:54:11 ----A---- C:\Windows\SYSWOW64\certenc.dll
2016-07-15 22:54:11 ----A---- C:\Windows\system32\certenc.dll
2016-07-15 22:54:00 ----A---- C:\Windows\SYSWOW64\wscript.exe
2016-07-15 22:54:00 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2016-07-15 22:54:00 ----A---- C:\Windows\SYSWOW64\cscript.exe
2016-07-15 22:54:00 ----A---- C:\Windows\system32\wscript.exe
2016-07-15 22:54:00 ----A---- C:\Windows\system32\scrrun.dll
2016-07-15 22:54:00 ----A---- C:\Windows\system32\cscript.exe
2016-07-15 22:53:30 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-07-15 22:53:29 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-07-15 22:53:29 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-07-15 22:53:29 ----A---- C:\Windows\system32\ntdll.dll
2016-07-15 22:53:28 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-07-15 22:53:28 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-07-15 22:53:28 ----A---- C:\Windows\system32\winresume.exe
2016-07-15 22:53:28 ----A---- C:\Windows\system32\winload.exe
2016-07-15 22:53:28 ----A---- C:\Windows\system32\KernelBase.dll
2016-07-15 22:53:28 ----A---- C:\Windows\system32\kernel32.dll
2016-07-15 22:53:28 ----A---- C:\Windows\system32\advapi32.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\user.exe
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\wow64win.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\wow64cpu.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\wow64.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\winsrv.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\srcore.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\srclient.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\smss.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\rstrui.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\ntvdm64.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\drivers\appid.sys
2016-07-15 22:53:27 ----A---- C:\Windows\system32\csrsrv.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\conhost.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidsvc.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidapi.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\apisetschema.dll
2016-07-15 22:53:09 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2016-07-15 22:53:09 ----A---- C:\Windows\system32\clfsw32.dll
2016-07-15 22:53:09 ----A---- C:\Windows\system32\clfs.sys
2016-07-15 22:52:59 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2016-07-15 22:52:59 ----A---- C:\Windows\system32\cdosys.dll
2016-07-15 22:52:03 ----A---- C:\Windows\system32\ci.dll
2016-07-15 22:51:42 ----A---- C:\Windows\system32\IKEEXT.DLL
2016-07-15 22:51:41 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2016-07-15 22:51:41 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2016-07-15 22:51:41 ----A---- C:\Windows\system32\nshwfp.dll
2016-07-15 22:51:41 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2016-07-15 21:44:37 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2016-07-15 21:44:37 ----A---- C:\Windows\system32\rdpcore.dll
2016-07-15 21:44:36 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2016-07-14 21:56:12 ----D---- C:\Program Files\CCleaner
2016-07-14 13:31:51 ----HD---- C:\$WINDOWS.~BT
2016-07-14 13:23:21 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-07-14 13:15:29 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-07-14 13:06:46 ----A---- C:\Windows\system32\Vestris.ResourceLib.dll
2016-07-14 13:06:45 ----D---- C:\Program Files\KMSpico
======List of files/folders modified in the last 1 month======
2016-07-22 17:02:26 ----D---- C:\Program Files\trend micro
2016-07-22 17:02:20 ----D---- C:\Windows\Temp
2016-07-22 17:01:40 ----D---- C:\Users\admin\AppData\Roaming\uTorrent
2016-07-22 15:21:02 ----D---- C:\ProgramData\MFAData
2016-07-22 06:48:25 ----D---- C:\Windows\system32\config
2016-07-22 06:34:44 ----A---- C:\Windows\SYSWOW64\log.txt
2016-07-19 08:30:23 ----D---- C:\Windows\System32
2016-07-19 08:30:23 ----D---- C:\Windows\inf
2016-07-19 08:30:23 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-07-17 19:35:35 ----D---- C:\Users\admin\AppData\Roaming\PhotoScape
2016-07-17 09:05:42 ----D---- C:\Program Files (x86)\RelevantKnowledge
2016-07-17 07:59:37 ----D---- C:\Windows\winsxs
2016-07-17 07:56:50 ----D---- C:\Program Files\Internet Explorer
2016-07-17 07:56:49 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-07-17 07:56:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-07-17 07:56:48 ----D---- C:\Windows\SYSWOW64\en-US
2016-07-17 07:56:48 ----D---- C:\Windows\SysWOW64
2016-07-17 07:56:45 ----D---- C:\Windows\system32\sk-SK
2016-07-17 07:56:45 ----D---- C:\Windows\system32\cs-CZ
2016-07-17 07:56:45 ----D---- C:\Windows\PolicyDefinitions
2016-07-17 07:56:44 ----D---- C:\Windows\system32\en-US
2016-07-17 07:56:42 ----D---- C:\Program Files (x86)\Internet Explorer
2016-07-17 00:23:46 ----SHD---- C:\Windows\Installer
2016-07-17 00:23:07 ----RD---- C:\Program Files (x86)
2016-07-17 00:18:33 ----SHD---- C:\System Volume Information
2016-07-16 10:12:38 ----D---- C:\Windows\system32\catroot2
2016-07-16 10:05:33 ----D---- C:\Windows\SoftwareDistribution
2016-07-16 09:48:07 ----RSD---- C:\Windows\assembly
2016-07-16 09:48:07 ----D---- C:\Windows\Microsoft.NET
2016-07-16 08:37:31 ----D---- C:\Windows\system32\wdi
2016-07-16 08:36:26 ----D---- C:\Windows
2016-07-16 08:33:05 ----D---- C:\Windows\Panther
2016-07-16 08:29:12 ----D---- C:\Windows\system32\drivers
2016-07-16 08:21:33 ----D---- C:\Windows\ehome
2016-07-16 08:21:18 ----D---- C:\Windows\SYSWOW64\migration
2016-07-16 08:21:09 ----D---- C:\Windows\system32\migration
2016-07-16 08:20:58 ----RSD---- C:\Windows\Fonts
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\zh-HK
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\pt-PT
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\pt-BR
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\nl-NL
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\ko-KR
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\it-IT
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\fr-FR
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\fi-FI
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\el-GR
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\zh-TW
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\tr-TR
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\sv-SE
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\es-ES
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\de-DE
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\zh-CN
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\ru-RU
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\nb-NO
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\ja-JP
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\da-DK
2016-07-16 08:20:53 ----D---- C:\Windows\system32\pt-PT
2016-07-16 08:20:53 ----D---- C:\Windows\system32\pt-BR
2016-07-16 08:20:53 ----D---- C:\Windows\system32\pl-PL
2016-07-16 08:20:53 ----D---- C:\Windows\system32\ko-KR
2016-07-16 08:20:53 ----D---- C:\Windows\system32\it-IT
2016-07-16 08:20:53 ----D---- C:\Windows\system32\hu-HU
2016-07-16 08:20:52 ----D---- C:\Windows\system32\zh-TW
2016-07-16 08:20:52 ----D---- C:\Windows\system32\zh-HK
2016-07-16 08:20:52 ----D---- C:\Windows\system32\tr-TR
2016-07-16 08:20:52 ----D---- C:\Windows\system32\sv-SE
2016-07-16 08:20:52 ----D---- C:\Windows\system32\nl-NL
2016-07-16 08:20:52 ----D---- C:\Windows\system32\fr-FR
2016-07-16 08:20:52 ----D---- C:\Windows\system32\fi-FI
2016-07-16 08:20:52 ----D---- C:\Windows\system32\es-ES
2016-07-16 08:20:52 ----D---- C:\Windows\system32\el-GR
2016-07-16 08:20:51 ----D---- C:\Windows\system32\zh-CN
2016-07-16 08:20:51 ----D---- C:\Windows\system32\ru-RU
2016-07-16 08:20:51 ----D---- C:\Windows\system32\nb-NO
2016-07-16 08:20:51 ----D---- C:\Windows\system32\ja-JP
2016-07-16 08:20:51 ----D---- C:\Windows\system32\de-DE
2016-07-16 08:20:51 ----D---- C:\Windows\system32\da-DK
2016-07-16 08:20:47 ----D---- C:\Windows\system32\drivers\en-US
2016-07-16 08:20:47 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-07-16 08:20:41 ----D---- C:\Windows\SYSWOW64\Dism
2016-07-16 08:20:39 ----D---- C:\Windows\system32\Dism
2016-07-16 08:19:54 ----D---- C:\Program Files\Windows Defender
2016-07-16 08:19:54 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-16 08:19:49 ----D---- C:\Windows\system32\wbem
2016-07-16 08:19:18 ----D---- C:\Windows\AppPatch
2016-07-16 08:19:09 ----D---- C:\Program Files (x86)\Windows Media Player
2016-07-16 08:19:08 ----D---- C:\Program Files\Windows Media Player
2016-07-16 08:18:55 ----D---- C:\Program Files\Windows Journal
2016-07-16 08:18:34 ----D---- C:\Windows\system32\CodeIntegrity
2016-07-16 08:18:34 ----D---- C:\Windows\system32\Boot
2016-07-16 08:17:59 ----D---- C:\Windows\system32\DriverStore
2016-07-16 06:16:40 ----D---- C:\Windows\system32\catroot
2016-07-16 05:43:01 ----D---- C:\Windows\Logs
2016-07-15 13:07:56 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-07-15 11:59:04 ----RD---- C:\Program Files (x86)\Skype
2016-07-14 21:56:20 ----D---- C:\Windows\system32\Tasks
2016-07-14 21:56:12 ----RD---- C:\Program Files
2016-07-14 13:05:37 ----SD---- C:\ProgramData\Microsoft
2016-07-14 12:46:05 ----HD---- C:\ProgramData
2016-07-14 12:46:05 ----D---- C:\Program Files\Common Files
2016-07-14 12:46:05 ----D---- C:\Program Files (x86)\Common Files
2016-07-14 12:29:47 ----HD---- C:\Source
2016-07-13 08:07:26 ----D---- C:\Windows\system32\Macromed
2016-07-13 08:07:19 ----D---- C:\Windows\SYSWOW64\Macromed
2016-07-10 13:26:41 ----D---- C:\Users\admin\AppData\Roaming\Skype
2016-06-28 19:53:42 ----D---- C:\Program Files (x86)\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2016-06-01 261376]
R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2016-02-16 360736]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2016-06-02 249088]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2016-06-01 52992]
R0 Avguniva;AVG Universal Driver; C:\Windows\system32\DRIVERS\avguniva.sys [2016-06-01 76544]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys [2016-05-13 163072]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2016-06-09 310016]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2016-06-01 260352]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2016-06-01 280320]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-04-22 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-10-24 3802112]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-03-19 14745600]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-04-06 60184]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2011-10-28 259688]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-04-06 685160]
R3 SmbDrv;SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver.sys [2012-04-06 21264]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-04-06 425232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-04-03 129752]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-06-11 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [2016-06-29 5251808]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2016-06-21 1080080]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [2016-06-29 712792]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-05-25 1364096]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-05-25 1687680]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-04-06 161560]
R2 RelevantKnowledge;RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [2013-08-17 186136]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2015-08-30 737984]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-15 107848]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-04-06 277784]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-04-06 363800]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-15 270016]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 AvgAMPS;AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [2016-06-29 637944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-04-03 276248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-15 107848]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-06-10 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-12 146888]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-04-10 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Předem děkuji za pomoc.
Lg z RSIT :
Logfile of random's system information tool 1.10 (written by random/random)
Run by admin at 2016-07-22 17:02:22
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 140 GB (68%) free of 205 GB
Total RAM: 2972 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:02:29, on 22.7.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18377)
Boot mode: Normal
Running processes:
C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\AVG\Av\avuirunnerx.exe
C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files\trend micro\admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\Av\avuirunnerx.exe" C:\Program Files (x86)\AVG\Av\avgui.exe
O4 - HKLM\..\Run: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AvgAMPS - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgamps.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: RelevantKnowledge - TMRG, Inc. - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9218 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
c:\PROGRA~2\AVG\Av\avgrsa.exe /boot
C:\Program Files (x86)\AVG\Av\avgcsrva.exe /pipeName=44800c66-0200-0000-6fe4-2c485f630b1b /binaryPath="C:\Program Files (x86)\AVG\Av\\" /logPath=C:\Windows\system32\config\systemprofile\AppData\Local\Avg\log\av16 /logCfgPath=C:\ProgramData\Avg\log\av16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 37268768
\??\C:\Windows\system32\conhost.exe "538607038-13908479421860756085-373155962-421712402-1450989696339405155779916049
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
taskeng.exe {65A75450-C40C-48B4-B688-B709DD495122}
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\AVG\Av\avgidsagenta.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {4BC800D4-C99D-496D-B69C-D30429BDC3CF}
"C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\AVG\Av\avuirunnerx.exe" C:\Program Files (x86)\AVG\Av\avgui.exe
/TRAYONLY
"C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw
/fmw.trayonly
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"C:\Program Files (x86)\AVG\Av\avgwdsvca.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\RelevantKnowledge\rlservice.exe" /service
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files (x86)\AVG\Av\avgnsa.exe"
"C:\Program Files (x86)\AVG\Av\avgemca.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-16cab821-3cb4-4fba-83ad-705ac66f89c8 -SystemEventPortName:HostProcess-dc2a2a15-8791-4948-a045-0c4040c4bb97 -IoCancelEventPortName:HostProcess-83654099-4da7-4f5b-a03c-7a748d99d2c5 -NonStateChangingEventPortName:HostProcess-f6ef3c5e-4957-4309-98fe-4baeb2ad4c6d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1e7c8bd5-2aa7-4a47-86e9-76543aadece1
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-61953878-1118191327-652955997-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-61953878-1118191327-652955997-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\admin\Desktop\RSITx64.exe"
C:\Windows\System32\mobsync.exe -Embedding
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\c1s7k0a9.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.40.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.40.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\c1s7k0a9.default\extensions\
adbhelper@mozilla.org
fxdevtools-adapters@mozilla.org
veggy@veggyAddon.com
zzoomit@zoom.com
{88c6c6e0-465b-71d6-472e-74497a37a0a8}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25 2111616]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-20 460712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25 1637504]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-20 172968]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-04-03 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-04-03 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-04-03 439064]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-04-06 2885904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"uTorrent"=C:\Users\admin\AppData\Roaming\uTorrent\uTorrent.exe [2013-04-12 802136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-01-28 59720]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files (x86)\AVG\Av\avuirunnerx.exe [2016-06-29 32528]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [2016-06-21 186640]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-03-19 434688]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-07-17 00:23:07 ----D---- C:\Program Files (x86)\MSXML 4.0
2016-07-16 10:15:30 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-07-16 10:15:30 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-07-16 10:15:30 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-07-16 10:15:30 ----A---- C:\Windows\system32\iernonce.dll
2016-07-16 10:15:30 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-07-16 10:15:29 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-07-16 10:15:29 ----A---- C:\Windows\system32\inseng.dll
2016-07-16 10:15:29 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-07-16 10:15:29 ----A---- C:\Windows\system32\ie4uinit.exe
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-07-16 10:15:28 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-07-16 10:15:28 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-07-16 10:15:26 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-07-16 10:15:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-07-16 10:15:26 ----A---- C:\Windows\system32\urlmon.dll
2016-07-16 10:15:26 ----A---- C:\Windows\system32\occache.dll
2016-07-16 10:15:26 ----A---- C:\Windows\system32\iedkcs32.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-07-16 10:15:25 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-07-16 10:15:25 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-07-16 10:15:24 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-07-16 10:15:24 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-07-16 10:15:24 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-07-16 10:15:24 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-07-16 10:15:24 ----A---- C:\Windows\system32\msfeeds.dll
2016-07-16 10:15:24 ----A---- C:\Windows\system32\dxtrans.dll
2016-07-16 10:15:23 ----A---- C:\Windows\system32\iesetup.dll
2016-07-16 10:15:23 ----A---- C:\Windows\system32\ieapfltr.dll
2016-07-16 10:15:22 ----A---- C:\Windows\system32\iertutil.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-07-16 10:15:21 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-07-16 10:15:21 ----A---- C:\Windows\system32\vbscript.dll
2016-07-16 10:15:20 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-07-16 10:15:20 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-07-16 10:15:19 ----A---- C:\Windows\system32\ieui.dll
2016-07-16 10:15:19 ----A---- C:\Windows\system32\ieframe.dll
2016-07-16 10:15:19 ----A---- C:\Windows\system32\dxtmsft.dll
2016-07-16 10:15:18 ----A---- C:\Windows\system32\mshtmled.dll
2016-07-16 10:15:17 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-07-16 10:15:17 ----A---- C:\Windows\system32\ieUnatt.exe
2016-07-16 10:15:16 ----A---- C:\Windows\system32\webcheck.dll
2016-07-16 10:15:16 ----A---- C:\Windows\system32\jscript.dll
2016-07-16 10:15:15 ----A---- C:\Windows\system32\jscript9diag.dll
2016-07-16 10:15:14 ----A---- C:\Windows\system32\jscript9.dll
2016-07-16 10:15:13 ----A---- C:\Windows\system32\wininet.dll
2016-07-16 10:15:12 ----A---- C:\Windows\system32\jsproxy.dll
2016-07-16 10:15:09 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-07-16 10:15:08 ----A---- C:\Windows\system32\msrating.dll
2016-07-16 10:15:03 ----A---- C:\Windows\system32\mshtml.dll
2016-07-16 10:13:41 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2016-07-16 10:13:41 ----A---- C:\Windows\system32\d2d1.dll
2016-07-16 10:06:34 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2016-07-16 10:06:34 ----A---- C:\Windows\system32\WMPhoto.dll
2016-07-16 09:28:24 ----A---- C:\Windows\system32\FntCache.dll
2016-07-16 09:28:24 ----A---- C:\Windows\system32\DWrite.dll
2016-07-16 09:28:23 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2016-07-16 09:28:19 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2016-07-16 09:28:18 ----A---- C:\Windows\system32\d3d10warp.dll
2016-07-16 09:28:01 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2016-07-16 09:28:01 ----A---- C:\Windows\system32\d3d10level9.dll
2016-07-16 09:27:38 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2016-07-16 09:27:37 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2016-07-16 09:26:59 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-07-16 09:26:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-07-16 05:54:41 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-07-16 05:54:41 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-16 05:43:02 ----A---- C:\Windows\system32\IEUDINIT.EXE
2016-07-16 05:19:49 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2016-07-16 05:19:42 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2016-07-16 05:19:42 ----A---- C:\Windows\system32\elshyph.dll
2016-07-16 05:19:41 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2016-07-16 05:19:41 ----A---- C:\Windows\SYSWOW64\msls31.dll
2016-07-16 05:19:36 ----A---- C:\Windows\SYSWOW64\url.dll
2016-07-16 05:19:36 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2016-07-16 05:19:35 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2016-07-16 05:19:35 ----A---- C:\Windows\SYSWOW64\icardie.dll
2016-07-16 05:19:33 ----A---- C:\Windows\SYSWOW64\wextract.exe
2016-07-16 05:19:33 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2016-07-16 05:19:31 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2016-07-16 05:19:28 ----A---- C:\Windows\SYSWOW64\mshta.exe
2016-07-16 05:19:28 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2016-07-16 05:19:27 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2016-07-16 05:19:26 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2016-07-16 05:19:26 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2016-07-16 05:19:25 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2016-07-16 05:19:25 ----A---- C:\Windows\system32\jsIntl.dll
2016-07-16 05:19:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2016-07-16 05:19:24 ----A---- C:\Windows\system32\msls31.dll
2016-07-16 05:19:22 ----A---- C:\Windows\system32\msfeedssync.exe
2016-07-16 05:19:22 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-07-16 05:19:22 ----A---- C:\Windows\system32\IEAdvpack.dll
2016-07-16 05:19:21 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2016-07-16 05:19:20 ----A---- C:\Windows\system32\mshtmler.dll
2016-07-16 05:19:20 ----A---- C:\Windows\system32\iesysprep.dll
2016-07-16 05:19:17 ----A---- C:\Windows\system32\ieapfltr.dat
2016-07-16 05:19:16 ----A---- C:\Windows\system32\icardie.dll
2016-07-16 05:19:15 ----A---- C:\Windows\system32\url.dll
2016-07-16 05:19:12 ----A---- C:\Windows\system32\licmgr10.dll
2016-07-16 05:19:11 ----A---- C:\Windows\system32\wextract.exe
2016-07-16 05:19:11 ----A---- C:\Windows\system32\iexpress.exe
2016-07-16 05:19:07 ----A---- C:\Windows\system32\pngfilt.dll
2016-07-16 05:19:06 ----A---- C:\Windows\system32\mshta.exe
2016-07-16 05:19:03 ----A---- C:\Windows\system32\imgutil.dll
2016-07-16 05:19:03 ----A---- C:\Windows\system32\iepeers.dll
2016-07-16 05:14:28 ----A---- C:\Windows\system32\tdh.dll
2016-07-16 05:14:24 ----A---- C:\Windows\SYSWOW64\tdh.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-07-16 05:01:10 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-07-16 05:01:09 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-07-16 05:01:08 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-07-16 05:01:07 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-07-16 05:01:07 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2016-07-16 05:01:07 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2016-07-16 05:01:07 ----A---- C:\Windows\system32\XpsPrint.dll
2016-07-16 05:01:07 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2016-07-16 05:01:05 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2016-07-16 05:01:05 ----A---- C:\Windows\system32\dxgi.dll
2016-07-16 05:01:04 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2016-07-16 05:01:04 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2016-07-16 05:01:04 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2016-07-16 05:01:03 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2016-07-16 05:01:03 ----A---- C:\Windows\system32\d3d10core.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\d3d10_1core.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\d3d10_1.dll
2016-07-16 05:01:02 ----A---- C:\Windows\system32\d3d10.dll
2016-07-16 05:01:01 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2016-07-16 05:01:01 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-07-16 05:01:01 ----A---- C:\Windows\system32\UIAnimation.dll
2016-07-16 04:56:31 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-07-16 04:56:31 ----A---- C:\Windows\system32\d3d11.dll
2016-07-16 00:44:56 ----A---- C:\Windows\SYSWOW64\wmi.dll
2016-07-16 00:44:56 ----A---- C:\Windows\system32\wmi.dll
2016-07-16 00:44:56 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2016-07-16 00:21:11 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2016-07-16 00:21:11 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2016-07-16 00:21:11 ----A---- C:\Windows\system32\infocardapi.dll
2016-07-16 00:21:11 ----A---- C:\Windows\system32\icardagt.exe
2016-07-16 00:21:10 ----A---- C:\Windows\SYSWOW64\icardres.dll
2016-07-16 00:21:10 ----A---- C:\Windows\system32\icardres.dll
2016-07-16 00:20:58 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2016-07-16 00:20:57 ----A---- C:\Windows\system32\TsWpfWrp.exe
2016-07-15 23:08:28 ----A---- C:\Windows\system32\mapistub.dll
2016-07-15 23:08:28 ----A---- C:\Windows\system32\mapi32.dll
2016-07-15 23:08:27 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2016-07-15 23:08:27 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2016-07-15 23:08:27 ----A---- C:\Windows\SYSWOW64\fixmapi.exe
2016-07-15 23:08:27 ----A---- C:\Windows\system32\fixmapi.exe
2016-07-15 23:08:26 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2016-07-15 23:08:26 ----A---- C:\Windows\system32\cewmdm.dll
2016-07-15 23:08:25 ----A---- C:\Windows\system32\services.exe
2016-07-15 23:08:24 ----A---- C:\Windows\system32\TSWbPrxy.exe
2016-07-15 23:08:15 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2016-07-15 23:08:15 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-07-15 23:08:15 ----A---- C:\Windows\system32\msxml3r.dll
2016-07-15 23:08:15 ----A---- C:\Windows\system32\msxml3.dll
2016-07-15 23:08:12 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-07-15 23:08:12 ----A---- C:\Windows\system32\InkEd.dll
2016-07-15 23:08:02 ----A---- C:\Windows\system32\schedsvc.dll
2016-07-15 23:07:51 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-07-15 23:07:51 ----A---- C:\Windows\system32\ole32.dll
2016-07-15 23:07:30 ----A---- C:\Windows\system32\sysmain.dll
2016-07-15 23:07:29 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2016-07-15 23:07:28 ----A---- C:\Windows\system32\msmmsp.dll
2016-07-15 23:06:57 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-07-15 23:06:57 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2016-07-15 23:06:57 ----A---- C:\Windows\system32\tsgqec.dll
2016-07-15 23:06:57 ----A---- C:\Windows\system32\mstscax.dll
2016-07-15 23:06:56 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2016-07-15 23:06:56 ----A---- C:\Windows\system32\aaclient.dll
2016-07-15 23:06:46 ----A---- C:\Windows\system32\shell32.dll
2016-07-15 23:06:45 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-07-15 23:06:44 ----A---- C:\Windows\system32\ExplorerFrame.dll
2016-07-15 23:06:43 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-07-15 23:06:32 ----A---- C:\Windows\SYSWOW64\usp10.dll
2016-07-15 23:06:32 ----A---- C:\Windows\system32\usp10.dll
2016-07-15 23:06:31 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-07-15 23:06:31 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-07-15 23:06:31 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\wpnpinst.exe
2016-07-15 23:06:31 ----A---- C:\Windows\system32\win32spl.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\ntprint.exe
2016-07-15 23:06:31 ----A---- C:\Windows\system32\ntprint.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\localspl.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\inetppui.dll
2016-07-15 23:06:31 ----A---- C:\Windows\system32\inetpp.dll
2016-07-15 23:06:09 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-07-15 23:06:08 ----A---- C:\Windows\system32\webio.dll
2016-07-15 23:05:59 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2016-07-15 23:05:59 ----A---- C:\Windows\system32\drmv2clt.dll
2016-07-15 23:05:59 ----A---- C:\Windows\system32\blackbox.dll
2016-07-15 23:05:57 ----A---- C:\Windows\SYSWOW64\drmv2clt.dll
2016-07-15 23:05:52 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2016-07-15 23:05:52 ----A---- C:\Windows\system32\wmdrmsdk.dll
2016-07-15 23:05:51 ----A---- C:\Windows\system32\AUDIOKSE.dll
2016-07-15 23:05:50 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2016-07-15 23:05:50 ----A---- C:\Windows\system32\drmmgrtn.dll
2016-07-15 23:05:50 ----A---- C:\Windows\system32\crypt32.dll
2016-07-15 23:05:49 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-07-15 23:05:49 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2016-07-15 23:05:49 ----A---- C:\Windows\system32\wintrust.dll
2016-07-15 23:05:49 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2016-07-15 23:05:49 ----A---- C:\Windows\system32\cryptsvc.dll
2016-07-15 23:05:48 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-07-15 23:05:48 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-07-15 23:05:48 ----A---- C:\Windows\system32\cryptui.dll
2016-07-15 23:05:48 ----A---- C:\Windows\system32\audiosrv.dll
2016-07-15 23:05:47 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2016-07-15 23:05:47 ----A---- C:\Windows\system32\pcasvc.dll
2016-07-15 23:05:47 ----A---- C:\Windows\system32\cryptnet.dll
2016-07-15 23:05:47 ----A---- C:\Windows\system32\AudioEng.dll
2016-07-15 23:05:46 ----A---- C:\Windows\SYSWOW64\cryptsp.dll
2016-07-15 23:05:46 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2016-07-15 23:05:46 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2016-07-15 23:05:46 ----A---- C:\Windows\system32\EncDump.dll
2016-07-15 23:05:46 ----A---- C:\Windows\system32\cryptsp.dll
2016-07-15 23:05:46 ----A---- C:\Windows\system32\AudioSes.dll
2016-07-15 23:05:45 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2016-07-15 23:05:45 ----A---- C:\Windows\system32\msscp.dll
2016-07-15 23:05:44 ----A---- C:\Windows\system32\msnetobj.dll
2016-07-15 23:05:43 ----A---- C:\Windows\SYSWOW64\msscp.dll
2016-07-15 23:05:42 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2016-07-15 23:05:42 ----A---- C:\Windows\system32\pcadm.dll
2016-07-15 23:05:42 ----A---- C:\Windows\system32\audiodg.exe
2016-07-15 23:05:41 ----A---- C:\Windows\system32\pcawrk.exe
2016-07-15 23:05:41 ----A---- C:\Windows\system32\pcalua.exe
2016-07-15 23:05:41 ----A---- C:\Windows\system32\pcaevts.dll
2016-07-15 23:04:52 ----A---- C:\Windows\system32\profsvc.dll
2016-07-15 23:04:49 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-07-15 23:04:49 ----A---- C:\Windows\system32\tzres.dll
2016-07-15 23:04:33 ----A---- C:\Windows\SYSWOW64\mscories.dll
2016-07-15 23:04:33 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2016-07-15 23:04:33 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2016-07-15 23:04:33 ----A---- C:\Windows\system32\mscories.dll
2016-07-15 23:04:33 ----A---- C:\Windows\system32\mscorier.dll
2016-07-15 23:04:33 ----A---- C:\Windows\system32\dfshim.dll
2016-07-15 23:04:30 ----A---- C:\Windows\system32\drivers\ntfs.sys
2016-07-15 23:04:17 ----A---- C:\Windows\SYSWOW64\wer.dll
2016-07-15 23:04:17 ----A---- C:\Windows\system32\wer.dll
2016-07-15 23:04:16 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2016-07-15 23:04:16 ----A---- C:\Windows\system32\imagehlp.dll
2016-07-15 23:04:14 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-07-15 23:04:14 ----A---- C:\Windows\system32\drivers\netio.sys
2016-07-15 23:04:14 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-07-15 23:03:54 ----A---- C:\Windows\system32\termsrv.dll
2016-07-15 23:03:17 ----A---- C:\Windows\system32\basesrv.dll
2016-07-15 23:02:55 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2016-07-15 23:02:55 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2016-07-15 23:02:55 ----A---- C:\Windows\system32\nlasvc.dll
2016-07-15 23:02:55 ----A---- C:\Windows\system32\nlaapi.dll
2016-07-15 23:02:55 ----A---- C:\Windows\system32\ncsi.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-07-15 23:02:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wucltux.dll
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wuauclt.exe
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wuapp.exe
2016-07-15 23:02:52 ----A---- C:\Windows\system32\wuapi.dll
2016-07-15 23:02:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wuwebv.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wups2.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wups.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wudriver.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wuaueng.dll
2016-07-15 23:02:51 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-07-15 23:02:42 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-07-15 23:02:42 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-07-15 23:02:42 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\schannel.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\rpchttp.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\rpcrt4.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\msv1_0.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\lsasrv.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\kerberos.dll
2016-07-15 23:02:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-07-15 23:02:42 ----A---- C:\Windows\system32\drivers\srv.sys
2016-07-15 23:02:42 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-07-15 23:02:41 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\wdigest.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\TSpkg.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\sspisrv.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\sspicli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\secur32.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\ncrypt.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\msobjs.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\msaudite.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\lsass.exe
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\drivers\cng.sys
2016-07-15 23:02:41 ----A---- C:\Windows\system32\cryptbase.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\credssp.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\certcli.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-07-15 23:02:41 ----A---- C:\Windows\system32\auditpol.exe
2016-07-15 23:02:41 ----A---- C:\Windows\system32\adtschema.dll
2016-07-15 23:02:29 ----A---- C:\Windows\SYSWOW64\osk.exe
2016-07-15 23:02:29 ----A---- C:\Windows\system32\osk.exe
2016-07-15 23:02:28 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-07-15 23:02:27 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-07-15 23:02:27 ----A---- C:\Windows\system32\cdd.dll
2016-07-15 23:02:21 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2016-07-15 23:02:21 ----A---- C:\Windows\system32\ubpm.dll
2016-07-15 23:02:16 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-07-15 23:02:16 ----A---- C:\Windows\system32\user32.dll
2016-07-15 23:02:13 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2016-07-15 23:02:13 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2016-07-15 23:02:13 ----A---- C:\Windows\system32\WebClnt.dll
2016-07-15 23:02:13 ----A---- C:\Windows\system32\davclnt.dll
2016-07-15 23:02:10 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2016-07-15 23:02:10 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2016-07-15 23:02:10 ----A---- C:\Windows\system32\msxml6r.dll
2016-07-15 23:02:10 ----A---- C:\Windows\system32\msxml6.dll
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbport.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbhub.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbehci.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbd.sys
2016-07-15 23:02:09 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2016-07-15 23:02:08 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2016-07-15 23:02:06 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2016-07-15 23:02:06 ----A---- C:\Windows\system32\comctl32.dll
2016-07-15 23:02:05 ----A---- C:\Windows\system32\drivers\usb8023.sys
2016-07-15 23:02:02 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-07-15 23:02:00 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-07-15 23:02:00 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-07-15 23:02:00 ----A---- C:\Windows\system32\oleaut32.dll
2016-07-15 23:02:00 ----A---- C:\Windows\system32\asycfilt.dll
2016-07-15 23:01:59 ----A---- C:\Windows\SYSWOW64\wshrm.dll
2016-07-15 23:01:59 ----A---- C:\Windows\system32\wshrm.dll
2016-07-15 23:01:59 ----A---- C:\Windows\system32\drivers\rmcast.sys
2016-07-15 23:01:57 ----A---- C:\Windows\system32\Wdfres.dll
2016-07-15 23:01:57 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2016-07-15 23:01:57 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2016-07-15 23:01:56 ----A---- C:\Windows\SYSWOW64\comsvcs.dll
2016-07-15 23:01:56 ----A---- C:\Windows\system32\comsvcs.dll
2016-07-15 23:01:56 ----A---- C:\Windows\system32\catsrvut.dll
2016-07-15 23:01:55 ----A---- C:\Windows\SYSWOW64\catsrvut.dll
2016-07-15 23:01:55 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2016-07-15 23:01:54 ----A---- C:\Windows\SYSWOW64\mfds.dll
2016-07-15 23:01:54 ----A---- C:\Windows\system32\mfds.dll
2016-07-15 23:01:54 ----A---- C:\Windows\system32\drivers\usbcir.sys
2016-07-15 23:01:52 ----A---- C:\Windows\system32\drivers\hidparse.sys
2016-07-15 23:01:52 ----A---- C:\Windows\system32\drivers\hidclass.sys
2016-07-15 23:01:51 ----A---- C:\Windows\system32\drivers\tdx.sys
2016-07-15 23:01:51 ----A---- C:\Windows\system32\drivers\afd.sys
2016-07-15 23:01:12 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2016-07-15 23:01:12 ----A---- C:\Windows\system32\dpnet.dll
2016-07-15 23:01:07 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-07-15 23:01:07 ----A---- C:\Windows\system32\msi.dll
2016-07-15 23:01:07 ----A---- C:\Windows\system32\authui.dll
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2016-07-15 23:01:06 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-07-15 23:01:06 ----A---- C:\Windows\system32\msimsg.dll
2016-07-15 23:01:06 ----A---- C:\Windows\system32\msihnd.dll
2016-07-15 23:01:06 ----A---- C:\Windows\system32\msiexec.exe
2016-07-15 23:01:06 ----A---- C:\Windows\system32\consent.exe
2016-07-15 23:01:06 ----A---- C:\Windows\system32\appinfo.dll
2016-07-15 23:00:58 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-07-15 23:00:58 ----A---- C:\Windows\system32\samsrv.dll
2016-07-15 23:00:58 ----A---- C:\Windows\system32\samlib.dll
2016-07-15 23:00:41 ----A---- C:\Windows\system32\objsel.dll
2016-07-15 23:00:40 ----A---- C:\Windows\SYSWOW64\objsel.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\wincredprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\dpapiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\dimsroam.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\cngprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\capiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\SYSWOW64\adprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\wincredprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\dpapiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\dimsroam.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\cngprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\capiprovider.dll
2016-07-15 23:00:39 ----A---- C:\Windows\system32\adprovider.dll
2016-07-15 23:00:21 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-07-15 23:00:21 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-07-15 23:00:21 ----A---- C:\Windows\system32\atmlib.dll
2016-07-15 23:00:21 ----A---- C:\Windows\system32\atmfd.dll
2016-07-15 23:00:20 ----A---- C:\Windows\SYSWOW64\lpk.dll
2016-07-15 23:00:20 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-07-15 23:00:20 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2016-07-15 23:00:20 ----A---- C:\Windows\system32\lpk.dll
2016-07-15 23:00:20 ----A---- C:\Windows\system32\fontsub.dll
2016-07-15 23:00:20 ----A---- C:\Windows\system32\dciman32.dll
2016-07-15 22:59:53 ----A---- C:\Windows\system32\notepad.exe
2016-07-15 22:59:53 ----A---- C:\Windows\notepad.exe
2016-07-15 22:59:52 ----A---- C:\Windows\SYSWOW64\notepad.exe
2016-07-15 22:59:51 ----A---- C:\Windows\system32\rdpudd.dll
2016-07-15 22:59:51 ----A---- C:\Windows\system32\rdpcorets.dll
2016-07-15 22:59:51 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2016-07-15 22:59:49 ----A---- C:\Windows\SYSWOW64\IMJP10K.DLL
2016-07-15 22:59:49 ----A---- C:\Windows\system32\IMJP10K.DLL
2016-07-15 22:59:15 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-07-15 22:59:15 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-07-15 22:59:13 ----A---- C:\Windows\SYSWOW64\qedit.dll
2016-07-15 22:59:13 ----A---- C:\Windows\system32\qedit.dll
2016-07-15 22:58:33 ----A---- C:\Windows\system32\drivers\partmgr.sys
2016-07-15 22:58:24 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2016-07-15 22:58:24 ----A---- C:\Windows\system32\poqexec.exe
2016-07-15 22:58:17 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2016-07-15 22:58:17 ----A---- C:\Windows\system32\pku2u.dll
2016-07-15 22:58:00 ----A---- C:\Windows\system32\WMVDECOD.DLL
2016-07-15 22:57:59 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2016-07-15 22:57:59 ----A---- C:\Windows\system32\msmpeg2adec.dll
2016-07-15 22:57:59 ----A---- C:\Windows\system32\mf.dll
2016-07-15 22:57:58 ----A---- C:\Windows\SYSWOW64\msmpeg2adec.dll
2016-07-15 22:57:58 ----A---- C:\Windows\SYSWOW64\mf.dll
2016-07-15 22:57:58 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2016-07-15 22:57:58 ----A---- C:\Windows\system32\WMADMOD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMADMOE.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\WMVSDECD.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\WMADMOE.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\quartz.dll
2016-07-15 22:57:57 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2016-07-15 22:57:57 ----A---- C:\Windows\system32\mcmde.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\quartz.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\evr.dll
2016-07-15 22:57:56 ----A---- C:\Windows\SYSWOW64\COLORCNV.DLL
2016-07-15 22:57:56 ----A---- C:\Windows\system32\WMVENCOD.DLL
2016-07-15 22:57:56 ----A---- C:\Windows\system32\wmpmde.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\qdvd.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\mfplat.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\evr.dll
2016-07-15 22:57:56 ----A---- C:\Windows\system32\COLORCNV.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\WMVXENCD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\WMVENCOD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2016-07-15 22:57:55 ----A---- C:\Windows\SYSWOW64\devenum.dll
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMVXENCD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMVSENCD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
2016-07-15 22:57:55 ----A---- C:\Windows\system32\VIDRESZR.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\MP4SDECD.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2016-07-15 22:57:55 ----A---- C:\Windows\system32\devenum.dll
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\WMVSENCD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\WMSPDMOE.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\qasf.dll
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\MPG4DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\MP43DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\SYSWOW64\MFWMAAEC.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\SysFxUI.dll
2016-07-15 22:57:54 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\MPG4DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\MP43DECD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\MP3DMOD.DLL
2016-07-15 22:57:54 ----A---- C:\Windows\system32\mfvdsp.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\VIDRESZR.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\rrinstaller.exe
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\RESAMPLEDMO.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\MP4SDECD.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\MP3DMOD.DLL
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mfvdsp.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mfps.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mfpmp.exe
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\mferror.dll
2016-07-15 22:57:53 ----A---- C:\Windows\SYSWOW64\ksuser.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\rrinstaller.exe
2016-07-15 22:57:53 ----A---- C:\Windows\system32\qasf.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\mfps.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\mfpmp.exe
2016-07-15 22:57:53 ----A---- C:\Windows\system32\mferror.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\ksuser.dll
2016-07-15 22:57:53 ----A---- C:\Windows\system32\drivers\portcls.sys
2016-07-15 22:57:53 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2016-07-15 22:57:53 ----A---- C:\Windows\system32\drivers\drmk.sys
2016-07-15 22:57:43 ----A---- C:\Windows\system32\win32k.sys
2016-07-15 22:57:41 ----A---- C:\Windows\system32\seclogon.dll
2016-07-15 22:57:39 ----A---- C:\Windows\system32\drivers\http.sys
2016-07-15 22:57:32 ----A---- C:\Windows\SYSWOW64\synceng.dll
2016-07-15 22:57:32 ----A---- C:\Windows\system32\synceng.dll
2016-07-15 22:57:23 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2016-07-15 22:57:23 ----A---- C:\Windows\system32\shdocvw.dll
2016-07-15 22:57:15 ----A---- C:\Windows\system32\msctf.dll
2016-07-15 22:57:14 ----A---- C:\Windows\SYSWOW64\msctf.dll
2016-07-15 22:57:13 ----A---- C:\Windows\SYSWOW64\rastls.dll
2016-07-15 22:57:13 ----A---- C:\Windows\system32\rastls.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\ws2_32.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\winhttp.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\mswsock.dll
2016-07-15 22:57:12 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2016-07-15 22:57:11 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-07-15 22:57:11 ----A---- C:\Windows\system32\netbtugc.exe
2016-07-15 22:56:59 ----A---- C:\Windows\system32\EncDec.dll
2016-07-15 22:56:59 ----A---- C:\Windows\system32\CPFilters.dll
2016-07-15 22:56:56 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-07-15 22:56:56 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-07-15 22:56:54 ----A---- C:\Windows\system32\mtxoci.dll
2016-07-15 22:56:53 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-07-15 22:56:53 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\winipsec.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\polstore.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpscript.exe
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpscript.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2016-07-15 22:56:21 ----A---- C:\Windows\SYSWOW64\FwRemoteSvr.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\winipsec.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\polstore.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpsvc.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpscript.exe
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpscript.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpprefcl.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\gpapi.dll
2016-07-15 22:56:21 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-07-15 22:56:13 ----A---- C:\Windows\system32\taskhost.exe
2016-07-15 22:56:12 ----A---- C:\Windows\system32\wmp.dll
2016-07-15 22:56:10 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-07-15 22:56:09 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2016-07-15 22:56:09 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2016-07-15 22:56:09 ----A---- C:\Windows\system32\spwmp.dll
2016-07-15 22:56:09 ----A---- C:\Windows\system32\dxmasf.dll
2016-07-15 22:56:08 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2016-07-15 22:56:08 ----A---- C:\Windows\system32\wmploc.DLL
2016-07-15 22:56:04 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-07-15 22:56:04 ----A---- C:\Windows\system32\gdi32.dll
2016-07-15 22:56:02 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2016-07-15 22:56:02 ----A---- C:\Windows\system32\drivers\bthport.sys
2016-07-15 22:55:43 ----A---- C:\Windows\system32\drivers\ndis.sys
2016-07-15 22:55:28 ----A---- C:\Windows\system32\jnwmon.dll
2016-07-15 22:55:22 ----A---- C:\Windows\SYSWOW64\packager.dll
2016-07-15 22:55:22 ----A---- C:\Windows\system32\packager.dll
2016-07-15 22:55:13 ----A---- C:\Windows\system32\winlogon.exe
2016-07-15 22:55:09 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2016-07-15 22:55:09 ----A---- C:\Windows\system32\mstsc.exe
2016-07-15 22:55:08 ----A---- C:\Windows\SYSWOW64\winsta.dll
2016-07-15 22:55:08 ----A---- C:\Windows\system32\winsta.dll
2016-07-15 22:55:08 ----A---- C:\Windows\system32\rdrmemptylst.exe
2016-07-15 22:55:08 ----A---- C:\Windows\system32\rdpcorekmts.dll
2016-07-15 22:55:08 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2016-07-15 22:55:06 ----A---- C:\Windows\system32\rdpwsx.dll
2016-07-15 22:55:06 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2016-07-15 22:54:53 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2016-07-15 22:54:53 ----A---- C:\Windows\SYSWOW64\browcli.dll
2016-07-15 22:54:53 ----A---- C:\Windows\system32\netapi32.dll
2016-07-15 22:54:53 ----A---- C:\Windows\system32\browser.dll
2016-07-15 22:54:53 ----A---- C:\Windows\system32\browcli.dll
2016-07-15 22:54:19 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2016-07-15 22:54:19 ----A---- C:\Windows\system32\msvcrt.dll
2016-07-15 22:54:17 ----A---- C:\Windows\system32\scesrv.dll
2016-07-15 22:54:16 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2016-07-15 22:54:16 ----A---- C:\Windows\SYSWOW64\els.dll
2016-07-15 22:54:16 ----A---- C:\Windows\system32\els.dll
2016-07-15 22:54:12 ----A---- C:\Windows\system32\certutil.exe
2016-07-15 22:54:11 ----A---- C:\Windows\SYSWOW64\certutil.exe
2016-07-15 22:54:11 ----A---- C:\Windows\SYSWOW64\certenc.dll
2016-07-15 22:54:11 ----A---- C:\Windows\system32\certenc.dll
2016-07-15 22:54:00 ----A---- C:\Windows\SYSWOW64\wscript.exe
2016-07-15 22:54:00 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2016-07-15 22:54:00 ----A---- C:\Windows\SYSWOW64\cscript.exe
2016-07-15 22:54:00 ----A---- C:\Windows\system32\wscript.exe
2016-07-15 22:54:00 ----A---- C:\Windows\system32\scrrun.dll
2016-07-15 22:54:00 ----A---- C:\Windows\system32\cscript.exe
2016-07-15 22:53:30 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-07-15 22:53:29 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-07-15 22:53:29 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-07-15 22:53:29 ----A---- C:\Windows\system32\ntdll.dll
2016-07-15 22:53:28 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-07-15 22:53:28 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-07-15 22:53:28 ----A---- C:\Windows\system32\winresume.exe
2016-07-15 22:53:28 ----A---- C:\Windows\system32\winload.exe
2016-07-15 22:53:28 ----A---- C:\Windows\system32\KernelBase.dll
2016-07-15 22:53:28 ----A---- C:\Windows\system32\kernel32.dll
2016-07-15 22:53:28 ----A---- C:\Windows\system32\advapi32.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-07-15 22:53:27 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\user.exe
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-07-15 22:53:27 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\wow64win.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\wow64cpu.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\wow64.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\winsrv.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\srcore.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\srclient.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\smss.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\rstrui.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\ntvdm64.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\drivers\appid.sys
2016-07-15 22:53:27 ----A---- C:\Windows\system32\csrsrv.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\conhost.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidsvc.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-07-15 22:53:27 ----A---- C:\Windows\system32\appidapi.dll
2016-07-15 22:53:27 ----A---- C:\Windows\system32\apisetschema.dll
2016-07-15 22:53:09 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2016-07-15 22:53:09 ----A---- C:\Windows\system32\clfsw32.dll
2016-07-15 22:53:09 ----A---- C:\Windows\system32\clfs.sys
2016-07-15 22:52:59 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2016-07-15 22:52:59 ----A---- C:\Windows\system32\cdosys.dll
2016-07-15 22:52:03 ----A---- C:\Windows\system32\ci.dll
2016-07-15 22:51:42 ----A---- C:\Windows\system32\IKEEXT.DLL
2016-07-15 22:51:41 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2016-07-15 22:51:41 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2016-07-15 22:51:41 ----A---- C:\Windows\system32\nshwfp.dll
2016-07-15 22:51:41 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2016-07-15 21:44:37 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2016-07-15 21:44:37 ----A---- C:\Windows\system32\rdpcore.dll
2016-07-15 21:44:36 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2016-07-14 21:56:12 ----D---- C:\Program Files\CCleaner
2016-07-14 13:31:51 ----HD---- C:\$WINDOWS.~BT
2016-07-14 13:23:21 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-07-14 13:15:29 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-07-14 13:06:46 ----A---- C:\Windows\system32\Vestris.ResourceLib.dll
2016-07-14 13:06:45 ----D---- C:\Program Files\KMSpico
======List of files/folders modified in the last 1 month======
2016-07-22 17:02:26 ----D---- C:\Program Files\trend micro
2016-07-22 17:02:20 ----D---- C:\Windows\Temp
2016-07-22 17:01:40 ----D---- C:\Users\admin\AppData\Roaming\uTorrent
2016-07-22 15:21:02 ----D---- C:\ProgramData\MFAData
2016-07-22 06:48:25 ----D---- C:\Windows\system32\config
2016-07-22 06:34:44 ----A---- C:\Windows\SYSWOW64\log.txt
2016-07-19 08:30:23 ----D---- C:\Windows\System32
2016-07-19 08:30:23 ----D---- C:\Windows\inf
2016-07-19 08:30:23 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-07-17 19:35:35 ----D---- C:\Users\admin\AppData\Roaming\PhotoScape
2016-07-17 09:05:42 ----D---- C:\Program Files (x86)\RelevantKnowledge
2016-07-17 07:59:37 ----D---- C:\Windows\winsxs
2016-07-17 07:56:50 ----D---- C:\Program Files\Internet Explorer
2016-07-17 07:56:49 ----D---- C:\Windows\SYSWOW64\sk-SK
2016-07-17 07:56:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-07-17 07:56:48 ----D---- C:\Windows\SYSWOW64\en-US
2016-07-17 07:56:48 ----D---- C:\Windows\SysWOW64
2016-07-17 07:56:45 ----D---- C:\Windows\system32\sk-SK
2016-07-17 07:56:45 ----D---- C:\Windows\system32\cs-CZ
2016-07-17 07:56:45 ----D---- C:\Windows\PolicyDefinitions
2016-07-17 07:56:44 ----D---- C:\Windows\system32\en-US
2016-07-17 07:56:42 ----D---- C:\Program Files (x86)\Internet Explorer
2016-07-17 00:23:46 ----SHD---- C:\Windows\Installer
2016-07-17 00:23:07 ----RD---- C:\Program Files (x86)
2016-07-17 00:18:33 ----SHD---- C:\System Volume Information
2016-07-16 10:12:38 ----D---- C:\Windows\system32\catroot2
2016-07-16 10:05:33 ----D---- C:\Windows\SoftwareDistribution
2016-07-16 09:48:07 ----RSD---- C:\Windows\assembly
2016-07-16 09:48:07 ----D---- C:\Windows\Microsoft.NET
2016-07-16 08:37:31 ----D---- C:\Windows\system32\wdi
2016-07-16 08:36:26 ----D---- C:\Windows
2016-07-16 08:33:05 ----D---- C:\Windows\Panther
2016-07-16 08:29:12 ----D---- C:\Windows\system32\drivers
2016-07-16 08:21:33 ----D---- C:\Windows\ehome
2016-07-16 08:21:18 ----D---- C:\Windows\SYSWOW64\migration
2016-07-16 08:21:09 ----D---- C:\Windows\system32\migration
2016-07-16 08:20:58 ----RSD---- C:\Windows\Fonts
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\zh-HK
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\pt-PT
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\pt-BR
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\nl-NL
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\ko-KR
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\it-IT
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\fr-FR
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\fi-FI
2016-07-16 08:20:57 ----D---- C:\Windows\SYSWOW64\el-GR
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\zh-TW
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\tr-TR
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\sv-SE
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\es-ES
2016-07-16 08:20:56 ----D---- C:\Windows\SYSWOW64\de-DE
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\zh-CN
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\ru-RU
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\nb-NO
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\ja-JP
2016-07-16 08:20:55 ----D---- C:\Windows\SYSWOW64\da-DK
2016-07-16 08:20:53 ----D---- C:\Windows\system32\pt-PT
2016-07-16 08:20:53 ----D---- C:\Windows\system32\pt-BR
2016-07-16 08:20:53 ----D---- C:\Windows\system32\pl-PL
2016-07-16 08:20:53 ----D---- C:\Windows\system32\ko-KR
2016-07-16 08:20:53 ----D---- C:\Windows\system32\it-IT
2016-07-16 08:20:53 ----D---- C:\Windows\system32\hu-HU
2016-07-16 08:20:52 ----D---- C:\Windows\system32\zh-TW
2016-07-16 08:20:52 ----D---- C:\Windows\system32\zh-HK
2016-07-16 08:20:52 ----D---- C:\Windows\system32\tr-TR
2016-07-16 08:20:52 ----D---- C:\Windows\system32\sv-SE
2016-07-16 08:20:52 ----D---- C:\Windows\system32\nl-NL
2016-07-16 08:20:52 ----D---- C:\Windows\system32\fr-FR
2016-07-16 08:20:52 ----D---- C:\Windows\system32\fi-FI
2016-07-16 08:20:52 ----D---- C:\Windows\system32\es-ES
2016-07-16 08:20:52 ----D---- C:\Windows\system32\el-GR
2016-07-16 08:20:51 ----D---- C:\Windows\system32\zh-CN
2016-07-16 08:20:51 ----D---- C:\Windows\system32\ru-RU
2016-07-16 08:20:51 ----D---- C:\Windows\system32\nb-NO
2016-07-16 08:20:51 ----D---- C:\Windows\system32\ja-JP
2016-07-16 08:20:51 ----D---- C:\Windows\system32\de-DE
2016-07-16 08:20:51 ----D---- C:\Windows\system32\da-DK
2016-07-16 08:20:47 ----D---- C:\Windows\system32\drivers\en-US
2016-07-16 08:20:47 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-07-16 08:20:41 ----D---- C:\Windows\SYSWOW64\Dism
2016-07-16 08:20:39 ----D---- C:\Windows\system32\Dism
2016-07-16 08:19:54 ----D---- C:\Program Files\Windows Defender
2016-07-16 08:19:54 ----D---- C:\Program Files (x86)\Windows Defender
2016-07-16 08:19:49 ----D---- C:\Windows\system32\wbem
2016-07-16 08:19:18 ----D---- C:\Windows\AppPatch
2016-07-16 08:19:09 ----D---- C:\Program Files (x86)\Windows Media Player
2016-07-16 08:19:08 ----D---- C:\Program Files\Windows Media Player
2016-07-16 08:18:55 ----D---- C:\Program Files\Windows Journal
2016-07-16 08:18:34 ----D---- C:\Windows\system32\CodeIntegrity
2016-07-16 08:18:34 ----D---- C:\Windows\system32\Boot
2016-07-16 08:17:59 ----D---- C:\Windows\system32\DriverStore
2016-07-16 06:16:40 ----D---- C:\Windows\system32\catroot
2016-07-16 05:43:01 ----D---- C:\Windows\Logs
2016-07-15 13:07:56 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-07-15 11:59:04 ----RD---- C:\Program Files (x86)\Skype
2016-07-14 21:56:20 ----D---- C:\Windows\system32\Tasks
2016-07-14 21:56:12 ----RD---- C:\Program Files
2016-07-14 13:05:37 ----SD---- C:\ProgramData\Microsoft
2016-07-14 12:46:05 ----HD---- C:\ProgramData
2016-07-14 12:46:05 ----D---- C:\Program Files\Common Files
2016-07-14 12:46:05 ----D---- C:\Program Files (x86)\Common Files
2016-07-14 12:29:47 ----HD---- C:\Source
2016-07-13 08:07:26 ----D---- C:\Windows\system32\Macromed
2016-07-13 08:07:19 ----D---- C:\Windows\SYSWOW64\Macromed
2016-07-10 13:26:41 ----D---- C:\Users\admin\AppData\Roaming\Skype
2016-06-28 19:53:42 ----D---- C:\Program Files (x86)\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHA;AVGIDSHA; C:\Windows\system32\DRIVERS\avgidsha.sys [2016-06-01 261376]
R0 Avgloga;AVG Logging Driver; C:\Windows\system32\DRIVERS\avgloga.sys [2016-02-16 360736]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2016-06-02 249088]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2016-06-01 52992]
R0 Avguniva;AVG Universal Driver; C:\Windows\system32\DRIVERS\avguniva.sys [2016-06-01 76544]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 Avgdiska;AVG Disk Driver; C:\Windows\system32\DRIVERS\avgdiska.sys [2016-05-13 163072]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdrivera.sys [2016-06-09 310016]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2016-06-01 260352]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2016-06-01 280320]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-04-22 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-10-24 3802112]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-03-19 14745600]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2012-04-06 60184]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2011-10-28 259688]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-04-06 685160]
R3 SmbDrv;SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver.sys [2012-04-06 21264]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-04-06 425232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-04-03 129752]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-06-11 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-21 34816]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [2016-06-29 5251808]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2016-06-21 1080080]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [2016-06-29 712792]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-05-25 1364096]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-05-25 1687680]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-04-06 161560]
R2 RelevantKnowledge;RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [2013-08-17 186136]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2015-08-30 737984]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-15 107848]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-04-06 277784]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-04-06 363800]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-15 270016]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 AvgAMPS;AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [2016-06-29 637944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-04-03 276248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-15 107848]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-06-10 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-12 146888]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-01-15 774144]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2007-03-12 271920]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-04-10 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------