Zpomalený internet
Napsal: 24 zář 2016 10:15
Zdravím,
můj internet poslední dobou začal být velmi pomalý. Na mobilu jede v pohodě.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Ondra at 2016-09-24 10:12:46
Microsoft Windows 10 Pro
System drive C: has 54 GB (55%) free of 99 GB
Total RAM: 8190 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:13:00, on 24.09.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0589)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\trend micro\Ondra.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem28.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @oem7.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\WINDOWS\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8613 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-8bc276e1-0216-4050-afda-a6cb9f8fbe67 -SystemEventPortName:HostProcess-e0ff290d-3292-4d3b-b1f2-717f567bdbcf -IoCancelEventPortName:HostProcess-60f16c2e-0d6c-4d8f-9c4b-ff656c0192be -NonStateChangingEventPortName:HostProcess-876b349e-9348-4ed1-9a07-f43e1209077c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:429b5134-5c52-4bc2-9a8e-0d89786dbdf8 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\ibtsiva
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\viakaraokesrv.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey 4B455B6F-820F-E5FB-F057-A881959D1382 -Reinvoke
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=53.0.2785.116 --handshake-handle=0x16c
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5044.0.2042211516\1706861344" --mojo-application-channel-token=C46B2BB978D2F422417B84E8E1FCF70F --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=BlockSmallPluginContent<PluginPowerSaverTiny,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-conservative/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Control/PreconnectMore/Default/*QUIC/EnabledAckDecimation/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/ControlGroup/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_56/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,14,18,31,56,70 --gpu-vendor-id=0x10de --gpu-device-id=0x1401 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6839 --gpu-driver-date=6-2-2016 --mojo-platform-channel-handle=1192 --ignored=" --type=renderer " /prefetch:2
"C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" "-cachedir=C:\Users\Ondra\AppData\Local\Steam\htmlcache" "-steampid=4572" "-buildid=1471977975" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=BlockSmallPluginContent<PluginPowerSaverTiny,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-conservative/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Control/*PreconnectMore/Default/*QUIC/EnabledAckDecimation/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/ControlGroup/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_56/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=57B49B62AF893ED79CC7B68FDCA341AF --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=2860CD053E369A6D1B66F737608D3C10 --mojo-application-channel-token=57B49B62AF893ED79CC7B68FDCA341AF --channel="5044.18.1120306940\1269328782" --mojo-platform-channel-handle=6480 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=BlockSmallPluginContent<PluginPowerSaverTiny,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-conservative/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Control/*PreconnectMore/Default/*QUIC/EnabledAckDecimation/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/ControlGroup/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_56/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=4504AC65A32C5B74F493C217B90AB8F8 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=0AF951244BA3F0ECF4CCB0D7DA7B1D86 --mojo-application-channel-token=4504AC65A32C5B74F493C217B90AB8F8 --channel="5044.27.1031928456\684760666" --mojo-platform-channel-handle=7132 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe49_ Global\UsGthrCtrlFltPipeMssGthrPipe49 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Users\Ondra\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SlimCleaner Plus (Scheduled Scan - Ondra).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
=========Mozilla firefox=========
ProfilePath - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\w5qprr98.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.91.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.91.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-12 461888]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-12 173120]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-03 2398776]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-06-03 1767944]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2016-06-11 4700160]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-08-23 633024]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-08-23 2857248]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-06-01 8722136]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-08-17 29538432]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-05-20 595992]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-24 10:12:46 ----D---- C:\rsit
2016-09-24 10:12:46 ----D---- C:\Program Files\trend micro
2016-09-23 14:02:28 ----HD---- C:\$WINDOWS.~BT
2016-09-19 15:53:23 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\WpcMon.exe
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-19 15:53:22 ----A---- C:\WINDOWS\system32\Wpc.dll
2016-09-19 15:53:22 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-19 15:53:21 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-09-19 15:53:21 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\prnntfy.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\mssprxy.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\SYSWOW64\sti.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\wiarpc.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\SmartCardSimulator.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\azroleui.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\rpcss.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\mfps.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\ExecModelClient.dll
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\cscui.dll
2016-09-19 15:53:16 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-09-19 15:53:16 ----A---- C:\WINDOWS\system32\pngfilt.dll
2016-09-19 15:53:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\twinapi.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\sti.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\wiaservc.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\tquery.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\msi.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\combase.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-09-19 15:53:11 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-19 15:53:11 ----A---- C:\WINDOWS\system32\dcomp.dll
2016-09-19 15:53:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\wmdrmdev.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\evr.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\fwcfg.dll
2016-09-19 15:53:07 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-09-19 15:53:07 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\propsys.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-09-19 15:53:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.ps.dll
2016-09-19 15:53:05 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-09-19 15:53:05 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\wmdrmsdk.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\wmdrmdev.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\upnpcont.exe
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\udhisapi.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\WmpDui.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\wbemcomn.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2016-09-19 15:53:01 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2016-09-19 15:53:01 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-09-19 15:53:01 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-09-19 15:53:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-09-19 15:53:00 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-19 15:52:57 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-09-19 15:52:57 ----A---- C:\WINDOWS\SYSWOW64\hnetcfg.dll
2016-09-19 15:52:56 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2016-09-19 15:52:56 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-09-19 15:52:54 ----A---- C:\WINDOWS\system32\msdt.exe
2016-09-19 15:52:54 ----A---- C:\WINDOWS\system32\DiagCpl.dll
2016-09-19 15:52:53 ----A---- C:\WINDOWS\system32\shsetup.dll
2016-09-19 15:52:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-19 15:52:52 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-19 15:52:51 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-09-19 15:52:50 ----A---- C:\WINDOWS\system32\OpcServices.dll
2016-09-19 15:52:50 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-09-19 15:52:49 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-19 15:52:49 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-19 15:52:48 ----A---- C:\WINDOWS\SYSWOW64\winmsipc.dll
2016-09-19 15:52:48 ----A---- C:\WINDOWS\SYSWOW64\winipcsecproc.dll
2016-09-19 15:52:48 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-09-19 15:52:47 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2016-09-19 15:52:47 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2016-09-19 15:52:47 ----A---- C:\WINDOWS\SYSWOW64\XpsDocumentTargetPrint.dll
2016-09-19 15:52:46 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-19 15:52:45 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2016-09-19 15:52:45 ----A---- C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-19 15:52:45 ----A---- C:\WINDOWS\system32\authfwcfg.dll
2016-09-19 15:52:44 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-09-19 15:52:44 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-09-19 15:52:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2016-09-19 15:52:43 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-09-19 15:52:42 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-09-19 15:52:41 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-09-19 15:52:39 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-19 15:52:39 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-19 15:52:37 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-09-19 15:52:37 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-09-19 15:52:37 ----A---- C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-19 15:52:36 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-19 15:52:36 ----A---- C:\WINDOWS\system32\bdechangepin.exe
2016-09-19 15:52:36 ----A---- C:\WINDOWS\system32\authui.dll
2016-09-19 15:52:35 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-09-19 15:52:35 ----A---- C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-09-19 15:52:35 ----A---- C:\WINDOWS\system32\DictationManager.dll
2016-09-19 15:52:34 ----A---- C:\WINDOWS\system32\edputil.dll
2016-09-19 15:52:33 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-19 15:52:33 ----A---- C:\WINDOWS\system32\xpsservices.dll
2016-09-19 15:52:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-09-19 15:52:30 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-19 15:52:30 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-09-19 15:52:29 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-09-19 15:52:29 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-09-19 15:52:24 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-09-19 15:52:22 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-09-19 15:52:22 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-19 15:52:22 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-09-19 15:52:21 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-09-19 15:52:18 ----A---- C:\WINDOWS\system32\mscms.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-09-19 15:52:16 ----A---- C:\WINDOWS\system32\InputService.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\wpnapps.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\wsmprovhost.exe
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmAuto.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmAgent.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\winipcsecproc_ssp.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\shsetup.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\werconcpl.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\localspl.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\mf.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\system32\rasgcw.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\system32\dot3ui.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2016-09-19 15:52:03 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2016-09-19 15:52:03 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2016-09-19 15:52:02 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-09-19 15:52:02 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2016-09-19 15:52:02 ----A---- C:\WINDOWS\system32\das.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\SYSWOW64\syncutil.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\system32\RADCUI.dll
2016-09-19 15:52:00 ----A---- C:\WINDOWS\system32\netcenter.dll
2016-09-19 15:52:00 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-09-19 15:51:58 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-19 15:51:58 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2016-09-19 15:51:58 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-19 15:51:57 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-09-19 15:51:57 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-19 15:51:57 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-09-19 15:51:55 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-19 15:51:55 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Cortana.ProxyStub.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\VoipRT.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\mmcshext.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\PhoneOm.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\fwcfg.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\cic.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\pla.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\authfwcfg.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-09-19 15:51:47 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-09-19 15:51:47 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2016-09-19 15:51:47 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2016-09-19 15:51:46 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-09-19 15:51:46 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-09-19 15:51:46 ----A---- C:\WINDOWS\system32\IconCodecService.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\oemlicense.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\licensingdiag.exe
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\filemgmt.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\certmgr.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\PeerDistSh.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\mmcbase.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\gpedit.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\system32\WcnApi.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\system32\dafWCN.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\wsmprovhost.exe
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\PeerDistSh.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\SYSWOW64\AdmTmpl.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\WmpDui.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\wcncsvc.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-09-19 15:51:40 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\system32\WLanConn.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\system32\fdWCN.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\system32\comuid.dll
2016-09-19 15:51:39 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-19 15:51:39 ----A---- C:\WINDOWS\system32\WsmAuto.dll
2016-09-19 15:51:39 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\wlanui.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\quartz.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\ieui.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\AdmTmpl.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\spcompat.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\WlanMM.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\odbcconf.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\nettrace.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\wdc.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\wbemcomn.dll
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\azroles.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\webservices.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\WalletService.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-09-19 15:51:29 ----A---- C:\WINDOWS\system32\shell32.dll
2016-09-19 15:51:28 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-09-19 15:51:28 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-09-19 15:51:27 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-09-19 15:51:24 ----A---- C:\WINDOWS\SYSWOW64\srmclient.dll
2016-09-19 15:51:24 ----A---- C:\WINDOWS\system32\srmclient.dll
2016-09-19 15:51:23 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-19 15:51:22 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-09-19 15:51:21 ----A---- C:\WINDOWS\system32\srmscan.dll
2016-09-19 15:51:21 ----A---- C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-09-19 15:51:20 ----A---- C:\WINDOWS\SYSWOW64\gpprefcl.dll
2016-09-19 15:51:20 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2016-09-19 15:51:19 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-19 15:51:18 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-09-19 15:51:17 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2016-09-19 15:51:16 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-19 15:51:16 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-19 15:51:15 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2016-09-19 15:51:15 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-19 15:51:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-19 15:51:13 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-09-19 15:51:12 ----A---- C:\WINDOWS\SYSWOW64\CheckNetIsolation.exe
2016-09-19 15:51:12 ----A---- C:\WINDOWS\system32\WsmAgent.dll
2016-09-19 15:51:12 ----A---- C:\WINDOWS\system32\drivers\MTConfig.sys
2016-09-19 15:51:11 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-09-19 15:51:11 ----A---- C:\WINDOWS\system32\usocore.dll
2016-09-19 15:51:11 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-09-19 15:51:11 ----A---- C:\WINDOWS\system32\lsass.exe
2016-09-19 15:51:08 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-09-19 15:51:08 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2016-09-19 15:51:08 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-09-19 15:51:08 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-09-19 15:51:07 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2016-09-19 15:51:07 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-09-19 15:51:05 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\certca.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\azroles.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\tdh.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\netman.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\dot3ui.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\comuid.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\system32\wusa.exe
2016-09-19 15:51:01 ----A---- C:\WINDOWS\system32\netshell.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\usbceip.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\AppLockerCSP.dll
2016-09-19 15:50:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-09-19 15:50:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-09-19 15:50:59 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\system32\setupapi.dll
2016-09-19 15:50:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-09-19 15:50:56 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\SYSWOW64\XpsFilt.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\StikyNot.exe
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\moshost.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-09-19 15:50:53 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-09-19 15:50:53 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\scapi.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\fhsvc.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\eapsvc.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\duser.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\sdengin2.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\SYSWOW64\BCP47Langs.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\d3d9.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\dui70.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-09-19 15:50:47 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-09-19 15:50:47 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-09-19 15:50:47 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-09-19 15:50:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-09-19 15:50:46 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-19 15:50:46 ----A---- C:\WINDOWS\system32\BCP47Langs.dll
2016-09-19 15:50:45 ----A---- C:\WINDOWS\system32\mos.dll
2016-09-19 15:50:44 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-09-19 15:50:42 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-09-19 15:50:41 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\pcasvc.dll
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\kernel32.dll
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\wbengine.exe
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\resutils.dll
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\mcbuilder.exe
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\wlidprov.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\mispace.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\icsvc.dll
2016-09-19 15:50:36 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-19 15:50:36 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-09-19 15:50:36 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\vdsutil.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\upnphost.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\udhisapi.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\fdProxy.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\vss_ps.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\vds.exe
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\termsrv.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\msctf.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\autochk.exe
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\qmgr.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\pla.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\defragsvc.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\wimserv.exe
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-19 15:50:29 ----A---- C:\WINDOWS\system32\mprddm.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\VoipRT.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\PhoneOm.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-09-19 15:50:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-09-19 15:50:27 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-09-19 15:50:26 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-09-19 15:50:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-09-19 15:50:24 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-09-19 15:50:24 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\upnpcont.exe
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\themeui.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\swprv.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\fhcfg.dll
2016-09-19 15:50:22 ----A---- C:\WINDOWS\system32\syncutil.dll
2016-09-19 15:50:21 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-19 15:50:20 ----A---- C:\WINDOWS\system32\APHostService.dll
2016-09-19 15:50:18 ----A---- C:\WINDOWS\system32\diagperf.dll
2016-09-19 15:50:17 ----A---- C:\WINDOWS\system32\msobjs.dll
2016-09-19 15:50:17 ----A---- C:\WINDOWS\system32\adtschema.dll
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-19 15:50:15 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-09-19 15:50:15 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2016-09-19 15:50:15 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-19 15:50:15 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\system32\drvstore.dll
2016-09-19 15:50:13 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-09-19 15:50:13 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-09-19 15:50:13 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-09-19 15:50:13 ----A---- C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-19 15:50:12 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-09-19 15:50:12 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-09-19 15:50:12 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-09-19 15:50:11 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-09-19 15:50:11 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-09-19 15:50:11 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2016-09-19 15:50:09 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-19 15:50:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2016-09-19 15:50:08 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\SYSWOW64\WSSync.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\system32\SRH.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-09-19 15:50:06 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-19 15:50:06 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2016-09-19 15:50:06 ----A---- C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\WUDFx.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\ImplatSetup.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Pimstore.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Geolocation.dll
2016-09-19 15:50:03 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-09-19 15:50:03 ----A---- C:\WINDOWS\system32\gameux.dll
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\twinui.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-09-19 15:49:57 ----A---- C:\WINDOWS\system32\WSSync.dll
2016-09-19 15:49:57 ----A---- C:\WINDOWS\system32\WSService.dll
2016-09-19 15:49:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-19 15:49:55 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-19 15:49:52 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2016-09-19 15:49:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-09-19 15:49:52 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\system32\winipcsecproc.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\system32\winipcfile.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\system32\winmsipc.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\system32\filemgmt.dll
2016-09-19 15:49:49 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2016-09-19 15:49:49 ----A---- C:\WINDOWS\system32\winmde.dll
2016-09-19 15:49:49 ----A---- C:\WINDOWS\system32\mmcshext.dll
můj internet poslední dobou začal být velmi pomalý. Na mobilu jede v pohodě.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Ondra at 2016-09-24 10:12:46
Microsoft Windows 10 Pro
System drive C: has 54 GB (55%) free of 99 GB
Total RAM: 8190 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:13:00, on 24.09.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0589)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files\trend micro\Ondra.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem28.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @oem7.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\WINDOWS\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8613 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-8bc276e1-0216-4050-afda-a6cb9f8fbe67 -SystemEventPortName:HostProcess-e0ff290d-3292-4d3b-b1f2-717f567bdbcf -IoCancelEventPortName:HostProcess-60f16c2e-0d6c-4d8f-9c4b-ff656c0192be -NonStateChangingEventPortName:HostProcess-876b349e-9348-4ed1-9a07-f43e1209077c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:429b5134-5c52-4bc2-9a8e-0d89786dbdf8 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\ibtsiva
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\viakaraokesrv.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey 4B455B6F-820F-E5FB-F057-A881959D1382 -Reinvoke
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=53.0.2785.116 --handshake-handle=0x16c
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5044.0.2042211516\1706861344" --mojo-application-channel-token=C46B2BB978D2F422417B84E8E1FCF70F --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=BlockSmallPluginContent<PluginPowerSaverTiny,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-conservative/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Control/PreconnectMore/Default/*QUIC/EnabledAckDecimation/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/ControlGroup/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_56/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,14,18,31,56,70 --gpu-vendor-id=0x10de --gpu-device-id=0x1401 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6839 --gpu-driver-date=6-2-2016 --mojo-platform-channel-handle=1192 --ignored=" --type=renderer " /prefetch:2
"C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" "-cachedir=C:\Users\Ondra\AppData\Local\Steam\htmlcache" "-steampid=4572" "-buildid=1471977975" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=BlockSmallPluginContent<PluginPowerSaverTiny,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-conservative/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Control/*PreconnectMore/Default/*QUIC/EnabledAckDecimation/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/ControlGroup/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_56/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=57B49B62AF893ED79CC7B68FDCA341AF --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=2860CD053E369A6D1B66F737608D3C10 --mojo-application-channel-token=57B49B62AF893ED79CC7B68FDCA341AF --channel="5044.18.1120306940\1269328782" --mojo-platform-channel-handle=6480 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=BlockSmallPluginContent<PluginPowerSaverTiny,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-conservative/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Control/*PreconnectMore/Default/*QUIC/EnabledAckDecimation/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/ControlGroup/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_56/*UMA-Uniformity-Trial-10-Percent/group_07/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=4504AC65A32C5B74F493C217B90AB8F8 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=0AF951244BA3F0ECF4CCB0D7DA7B1D86 --mojo-application-channel-token=4504AC65A32C5B74F493C217B90AB8F8 --channel="5044.27.1031928456\684760666" --mojo-platform-channel-handle=7132 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe49_ Global\UsGthrCtrlFltPipeMssGthrPipe49 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Users\Ondra\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SlimCleaner Plus (Scheduled Scan - Ondra).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
=========Mozilla firefox=========
ProfilePath - C:\Users\Ondra\AppData\Roaming\Mozilla\Firefox\Profiles\w5qprr98.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.91.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.91.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-12 461888]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-12 173120]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-03 2398776]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-06-03 1767944]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2016-06-11 4700160]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-08-23 633024]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-08-23 2857248]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-06-01 8722136]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-08-17 29538432]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Ondra\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-05-20 595992]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-24 10:12:46 ----D---- C:\rsit
2016-09-24 10:12:46 ----D---- C:\Program Files\trend micro
2016-09-23 14:02:28 ----HD---- C:\$WINDOWS.~BT
2016-09-19 15:53:23 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\WpcMon.exe
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-09-19 15:53:23 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-19 15:53:22 ----A---- C:\WINDOWS\system32\Wpc.dll
2016-09-19 15:53:22 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-19 15:53:21 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-09-19 15:53:21 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\prnntfy.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\mssprxy.dll
2016-09-19 15:53:20 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\SYSWOW64\sti.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\wiarpc.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\SmartCardSimulator.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-09-19 15:53:19 ----A---- C:\WINDOWS\system32\azroleui.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\rpcss.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\mfps.dll
2016-09-19 15:53:18 ----A---- C:\WINDOWS\system32\ExecModelClient.dll
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-09-19 15:53:17 ----A---- C:\WINDOWS\system32\cscui.dll
2016-09-19 15:53:16 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-09-19 15:53:16 ----A---- C:\WINDOWS\system32\pngfilt.dll
2016-09-19 15:53:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\twinapi.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\sti.dll
2016-09-19 15:53:15 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\wiaservc.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-09-19 15:53:14 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\tquery.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\msi.dll
2016-09-19 15:53:13 ----A---- C:\WINDOWS\system32\combase.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-09-19 15:53:12 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-09-19 15:53:11 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-19 15:53:11 ----A---- C:\WINDOWS\system32\dcomp.dll
2016-09-19 15:53:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\wmdrmdev.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-19 15:53:09 ----A---- C:\WINDOWS\system32\evr.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-09-19 15:53:08 ----A---- C:\WINDOWS\system32\fwcfg.dll
2016-09-19 15:53:07 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-09-19 15:53:07 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\propsys.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-09-19 15:53:06 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-09-19 15:53:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.ps.dll
2016-09-19 15:53:05 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-09-19 15:53:05 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\wmdrmsdk.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\wmdrmdev.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\upnpcont.exe
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\udhisapi.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-09-19 15:53:04 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\WmpDui.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-09-19 15:53:03 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\wbemcomn.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2016-09-19 15:53:02 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2016-09-19 15:53:01 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2016-09-19 15:53:01 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-09-19 15:53:01 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-09-19 15:53:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-09-19 15:53:00 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-19 15:52:57 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-09-19 15:52:57 ----A---- C:\WINDOWS\SYSWOW64\hnetcfg.dll
2016-09-19 15:52:56 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2016-09-19 15:52:56 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2016-09-19 15:52:55 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-09-19 15:52:54 ----A---- C:\WINDOWS\system32\msdt.exe
2016-09-19 15:52:54 ----A---- C:\WINDOWS\system32\DiagCpl.dll
2016-09-19 15:52:53 ----A---- C:\WINDOWS\system32\shsetup.dll
2016-09-19 15:52:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-19 15:52:52 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-19 15:52:51 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-09-19 15:52:50 ----A---- C:\WINDOWS\system32\OpcServices.dll
2016-09-19 15:52:50 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-09-19 15:52:49 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-19 15:52:49 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-19 15:52:48 ----A---- C:\WINDOWS\SYSWOW64\winmsipc.dll
2016-09-19 15:52:48 ----A---- C:\WINDOWS\SYSWOW64\winipcsecproc.dll
2016-09-19 15:52:48 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-09-19 15:52:47 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2016-09-19 15:52:47 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2016-09-19 15:52:47 ----A---- C:\WINDOWS\SYSWOW64\XpsDocumentTargetPrint.dll
2016-09-19 15:52:46 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-19 15:52:45 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2016-09-19 15:52:45 ----A---- C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-19 15:52:45 ----A---- C:\WINDOWS\system32\authfwcfg.dll
2016-09-19 15:52:44 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-09-19 15:52:44 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-09-19 15:52:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2016-09-19 15:52:43 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-09-19 15:52:42 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-09-19 15:52:41 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-09-19 15:52:39 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-09-19 15:52:39 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-19 15:52:37 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-09-19 15:52:37 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-09-19 15:52:37 ----A---- C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-19 15:52:36 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-19 15:52:36 ----A---- C:\WINDOWS\system32\bdechangepin.exe
2016-09-19 15:52:36 ----A---- C:\WINDOWS\system32\authui.dll
2016-09-19 15:52:35 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-09-19 15:52:35 ----A---- C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-09-19 15:52:35 ----A---- C:\WINDOWS\system32\DictationManager.dll
2016-09-19 15:52:34 ----A---- C:\WINDOWS\system32\edputil.dll
2016-09-19 15:52:33 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-19 15:52:33 ----A---- C:\WINDOWS\system32\xpsservices.dll
2016-09-19 15:52:31 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-09-19 15:52:30 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-19 15:52:30 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-09-19 15:52:29 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-09-19 15:52:29 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\comdlg32.dll
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-09-19 15:52:28 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-09-19 15:52:24 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-09-19 15:52:22 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-09-19 15:52:22 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-19 15:52:22 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-09-19 15:52:21 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-09-19 15:52:19 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-09-19 15:52:18 ----A---- C:\WINDOWS\system32\mscms.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\rdpcore.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-09-19 15:52:17 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-09-19 15:52:16 ----A---- C:\WINDOWS\system32\InputService.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\wpnapps.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-09-19 15:52:15 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-09-19 15:52:14 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\wsmprovhost.exe
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmAuto.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\WsmAgent.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2016-09-19 15:52:13 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\winipcsecproc_ssp.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-09-19 15:52:12 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-09-19 15:52:11 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-09-19 15:52:10 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-19 15:52:10 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\shsetup.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-09-19 15:52:09 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\werconcpl.dll
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-09-19 15:52:08 ----A---- C:\WINDOWS\system32\localspl.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-19 15:52:07 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-09-19 15:52:06 ----A---- C:\WINDOWS\system32\mf.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\system32\rasgcw.dll
2016-09-19 15:52:05 ----A---- C:\WINDOWS\system32\dot3ui.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-19 15:52:04 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2016-09-19 15:52:03 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2016-09-19 15:52:03 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2016-09-19 15:52:02 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-09-19 15:52:02 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2016-09-19 15:52:02 ----A---- C:\WINDOWS\system32\das.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\SYSWOW64\syncutil.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-09-19 15:52:01 ----A---- C:\WINDOWS\system32\RADCUI.dll
2016-09-19 15:52:00 ----A---- C:\WINDOWS\system32\netcenter.dll
2016-09-19 15:52:00 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-19 15:51:59 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-09-19 15:51:58 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-19 15:51:58 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2016-09-19 15:51:58 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-19 15:51:57 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-09-19 15:51:57 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-19 15:51:57 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-09-19 15:51:55 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-19 15:51:55 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Cortana.ProxyStub.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\VoipRT.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\mmcshext.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2016-09-19 15:51:53 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\PhoneOm.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2016-09-19 15:51:52 ----A---- C:\WINDOWS\SYSWOW64\fwcfg.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\cic.dll
2016-09-19 15:51:51 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\pla.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-09-19 15:51:50 ----A---- C:\WINDOWS\SYSWOW64\authfwcfg.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-09-19 15:51:49 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-09-19 15:51:48 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-09-19 15:51:47 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-09-19 15:51:47 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2016-09-19 15:51:47 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2016-09-19 15:51:46 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-09-19 15:51:46 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-09-19 15:51:46 ----A---- C:\WINDOWS\system32\IconCodecService.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-19 15:51:45 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\oemlicense.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\licensingdiag.exe
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\filemgmt.dll
2016-09-19 15:51:44 ----A---- C:\WINDOWS\SYSWOW64\certmgr.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\PeerDistSh.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\mmcbase.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\gpedit.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\system32\WcnApi.dll
2016-09-19 15:51:43 ----A---- C:\WINDOWS\system32\dafWCN.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\wsmprovhost.exe
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\PeerDistSh.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\dialserver.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-09-19 15:51:42 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\SYSWOW64\AdmTmpl.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\WmpDui.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\wcncsvc.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-09-19 15:51:41 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-09-19 15:51:40 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\system32\WLanConn.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\system32\fdWCN.dll
2016-09-19 15:51:40 ----A---- C:\WINDOWS\system32\comuid.dll
2016-09-19 15:51:39 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-19 15:51:39 ----A---- C:\WINDOWS\system32\WsmAuto.dll
2016-09-19 15:51:39 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\wlanui.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-09-19 15:51:38 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\quartz.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\ieui.dll
2016-09-19 15:51:37 ----A---- C:\WINDOWS\system32\AdmTmpl.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\spcompat.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-09-19 15:51:36 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\WlanMM.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-19 15:51:35 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\odbcconf.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\nettrace.dll
2016-09-19 15:51:34 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\wdc.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-09-19 15:51:33 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\wbemcomn.dll
2016-09-19 15:51:32 ----A---- C:\WINDOWS\system32\azroles.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\webservices.dll
2016-09-19 15:51:31 ----A---- C:\WINDOWS\system32\WalletService.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-19 15:51:30 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-09-19 15:51:29 ----A---- C:\WINDOWS\system32\shell32.dll
2016-09-19 15:51:28 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-09-19 15:51:28 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-09-19 15:51:27 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-09-19 15:51:26 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2016-09-19 15:51:24 ----A---- C:\WINDOWS\SYSWOW64\srmclient.dll
2016-09-19 15:51:24 ----A---- C:\WINDOWS\system32\srmclient.dll
2016-09-19 15:51:23 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-19 15:51:22 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-09-19 15:51:21 ----A---- C:\WINDOWS\system32\srmscan.dll
2016-09-19 15:51:21 ----A---- C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2016-09-19 15:51:20 ----A---- C:\WINDOWS\SYSWOW64\gpprefcl.dll
2016-09-19 15:51:20 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2016-09-19 15:51:19 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-19 15:51:18 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-09-19 15:51:17 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2016-09-19 15:51:16 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-19 15:51:16 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-19 15:51:15 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2016-09-19 15:51:15 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-19 15:51:13 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-19 15:51:13 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-09-19 15:51:12 ----A---- C:\WINDOWS\SYSWOW64\CheckNetIsolation.exe
2016-09-19 15:51:12 ----A---- C:\WINDOWS\system32\WsmAgent.dll
2016-09-19 15:51:12 ----A---- C:\WINDOWS\system32\drivers\MTConfig.sys
2016-09-19 15:51:11 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-09-19 15:51:11 ----A---- C:\WINDOWS\system32\usocore.dll
2016-09-19 15:51:11 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-09-19 15:51:11 ----A---- C:\WINDOWS\system32\lsass.exe
2016-09-19 15:51:08 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-09-19 15:51:08 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2016-09-19 15:51:08 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-09-19 15:51:08 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-09-19 15:51:07 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2016-09-19 15:51:07 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-09-19 15:51:05 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\certca.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-09-19 15:51:04 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\SYSWOW64\azroles.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\tdh.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\netman.dll
2016-09-19 15:51:03 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-09-19 15:51:02 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\dot3ui.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\SYSWOW64\comuid.dll
2016-09-19 15:51:01 ----A---- C:\WINDOWS\system32\wusa.exe
2016-09-19 15:51:01 ----A---- C:\WINDOWS\system32\netshell.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\usbceip.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-09-19 15:51:00 ----A---- C:\WINDOWS\SYSWOW64\AppLockerCSP.dll
2016-09-19 15:50:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-09-19 15:50:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-09-19 15:50:59 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-09-19 15:50:58 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-09-19 15:50:57 ----A---- C:\WINDOWS\system32\setupapi.dll
2016-09-19 15:50:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-09-19 15:50:56 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\SYSWOW64\XpsFilt.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-19 15:50:55 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\StikyNot.exe
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\moshost.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-19 15:50:54 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-09-19 15:50:53 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-09-19 15:50:53 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\scapi.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\fhsvc.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\eapsvc.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-09-19 15:50:52 ----A---- C:\WINDOWS\system32\duser.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\sdengin2.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-09-19 15:50:51 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\SYSWOW64\BCP47Langs.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\d3d9.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-09-19 15:50:50 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\dui70.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2016-09-19 15:50:49 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-09-19 15:50:48 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-09-19 15:50:47 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-09-19 15:50:47 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-09-19 15:50:47 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-09-19 15:50:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-09-19 15:50:46 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-19 15:50:46 ----A---- C:\WINDOWS\system32\BCP47Langs.dll
2016-09-19 15:50:45 ----A---- C:\WINDOWS\system32\mos.dll
2016-09-19 15:50:44 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-09-19 15:50:42 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-09-19 15:50:41 ----A---- C:\WINDOWS\system32\aitstatic.exe
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\pcasvc.dll
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\kernel32.dll
2016-09-19 15:50:40 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\wbengine.exe
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\resutils.dll
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\mcbuilder.exe
2016-09-19 15:50:39 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\wlidprov.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\mispace.dll
2016-09-19 15:50:38 ----A---- C:\WINDOWS\system32\icsvc.dll
2016-09-19 15:50:36 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-19 15:50:36 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2016-09-19 15:50:36 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\vdsutil.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\upnphost.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\udhisapi.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\netplwiz.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\fdProxy.dll
2016-09-19 15:50:35 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\vss_ps.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\vds.exe
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\termsrv.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\msctf.dll
2016-09-19 15:50:34 ----A---- C:\WINDOWS\system32\autochk.exe
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\qmgr.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\pla.dll
2016-09-19 15:50:33 ----A---- C:\WINDOWS\system32\defragsvc.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\wimserv.exe
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-09-19 15:50:31 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-19 15:50:29 ----A---- C:\WINDOWS\system32\mprddm.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\VoipRT.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\PhoneOm.dll
2016-09-19 15:50:28 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-09-19 15:50:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-09-19 15:50:27 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-09-19 15:50:26 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-09-19 15:50:24 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-09-19 15:50:24 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-09-19 15:50:24 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\upnpcont.exe
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\themeui.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\swprv.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-19 15:50:23 ----A---- C:\WINDOWS\system32\fhcfg.dll
2016-09-19 15:50:22 ----A---- C:\WINDOWS\system32\syncutil.dll
2016-09-19 15:50:21 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-19 15:50:20 ----A---- C:\WINDOWS\system32\APHostService.dll
2016-09-19 15:50:18 ----A---- C:\WINDOWS\system32\diagperf.dll
2016-09-19 15:50:17 ----A---- C:\WINDOWS\system32\msobjs.dll
2016-09-19 15:50:17 ----A---- C:\WINDOWS\system32\adtschema.dll
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-09-19 15:50:16 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-19 15:50:15 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-09-19 15:50:15 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2016-09-19 15:50:15 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-19 15:50:15 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-09-19 15:50:14 ----A---- C:\WINDOWS\system32\drvstore.dll
2016-09-19 15:50:13 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-09-19 15:50:13 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-09-19 15:50:13 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-09-19 15:50:13 ----A---- C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-19 15:50:12 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-09-19 15:50:12 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-09-19 15:50:12 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-09-19 15:50:11 ----A---- C:\WINDOWS\SYSWOW64\IdCtrls.dll
2016-09-19 15:50:11 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-09-19 15:50:11 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2016-09-19 15:50:09 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-19 15:50:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2016-09-19 15:50:08 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\SYSWOW64\WSSync.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\system32\SRH.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-09-19 15:50:07 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-09-19 15:50:06 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-19 15:50:06 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2016-09-19 15:50:06 ----A---- C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\WUDFx.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\ImplatSetup.dll
2016-09-19 15:50:05 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\SettingMonitor.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Pimstore.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2016-09-19 15:50:04 ----A---- C:\WINDOWS\system32\Geolocation.dll
2016-09-19 15:50:03 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-09-19 15:50:03 ----A---- C:\WINDOWS\system32\gameux.dll
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\zipfldr.dll
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-09-19 15:50:02 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-19 15:50:01 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\twinui.dll
2016-09-19 15:50:00 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-09-19 15:49:59 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-09-19 15:49:58 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-09-19 15:49:57 ----A---- C:\WINDOWS\system32\WSSync.dll
2016-09-19 15:49:57 ----A---- C:\WINDOWS\system32\WSService.dll
2016-09-19 15:49:55 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-19 15:49:55 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-19 15:49:52 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2016-09-19 15:49:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-09-19 15:49:52 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\system32\winipcsecproc.dll
2016-09-19 15:49:51 ----A---- C:\WINDOWS\system32\winipcfile.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\system32\winmsipc.dll
2016-09-19 15:49:50 ----A---- C:\WINDOWS\system32\filemgmt.dll
2016-09-19 15:49:49 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2016-09-19 15:49:49 ----A---- C:\WINDOWS\system32\winmde.dll
2016-09-19 15:49:49 ----A---- C:\WINDOWS\system32\mmcshext.dll