prosim o kontrolu
Napsal: 26 zář 2016 17:29
Dobry den,
poprosil by som o kontrolu.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Zdenno at 2016-09-26 18:21:56
Microsoft Windows 10 Home
System drive C: has 59 GB (27%) free of 223 GB
Total RAM: 16341 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:22:14, on 26.09.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe
C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe
C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Zdenno.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://safesearch.avira.com/#web/result?source=art&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://safesearch.avira.com/#web/result?source=art&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://safesearch.avira.com/#web/result?source=art&q=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://safesearch.avira.com/#web/result?source=art&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [DropboxOEM] "C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe" auto
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] "C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
O4 - HKLM\..\Run: [Kerio Control VPN Client] "C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray
O4 - HKLM\..\Run: [C.T.R.L.R] C:\Program Files\Mad Catz\C.T.R.L.R\CTRLR_Profiler.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [GalaxyClient] C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Content Manager Assistant for PlayStation(R).lnk = C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GalaxyClientService - GOG.com - C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Kerio Control VPN Client Service (KVPNCSvc) - Kerio Technologies Inc. - C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: upsMonitor - Acresso - C:\Program Files (x86)\ViewPower2.10\upsMonitor.exe
O23 - Service: Apache Tomcat upsTomcat (upsTomcat) - Apache Software Foundation - C:\Program Files (x86)\ViewPower2.10\tomcat\bin\tomcat6.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13691 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files (x86)\Avira\Antivirus\sched.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\Antivirus\avguard.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files (x86)\Origin\OriginWebHelperService.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ViewPower2.10\upsMonitor.exe" -zglaxservice upsMonitor
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe"
"C:\windows\system32\mfevtps.exe" -mms
"C:\Program Files (x86)\ViewPower2.10\jre\bin\javaw.exe" -Xrs -classpath "C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-jvmstat.jar;C:\Program Files (x86)\ViewPower2.10\monitor\derby.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-profiler.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\htmlconverter.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\deploy.jar;C:\Program Files (x86)\ViewPower2.10\monitor\volModbus.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-masterfs.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\rt.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\backport-util-concurrent.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\viewpowerweb.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\lib\jfluid-server.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\ext\jh-2.0_05.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\im\indicim.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jasper-el.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-autoupdate-ui.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-queries.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-windows.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\core\com-sun-tools-visualvm-modules-startup.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-data-req.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-execution.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\bin\bootstrap.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\ext\swing-layout-1.0.3.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\javaws.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-i18n-ja.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-awt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\ext\updater.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\sunjce_provider.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\el-api.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-autoupdate-services.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\docs\swing-layout-1.0.3-src.zip;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-nativeaccess.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\commons-logging.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-modules-appui.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\lib\boot.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\annotations-api.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-core.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-jmx.jar;C:\Program Files (x86)\ViewPower2.10\monitor\snmp4j-1.11.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\sunpkcs11.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\locale\org-netbeans-core-windows_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\monitor\RXTXcomm.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\lib\org-openide-modules.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\volUtil.jar;C:\Program Files (x86)\ViewPower2.10\console\lib\SoftewareUpgrade.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-editor-mimelookup-impl.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-common.jar;C:\Program Files (x86)\ViewPower2.10\monitor\mail.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-options.jar;C:\Program Files (x86)\ViewPower2.10\monitor\commons-logging.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-i18n-fr.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\locale\org-netbeans-modules-profiler_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\core\org-openide-filesystems.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina-ha.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-windows.jar;C:\Program Files (x86)\ViewPower2.10\monitor\dom4j-1.6.1.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-host-views.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-execution.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\management-agent.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\locale\org-netbeans-core_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jasper.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\localedata.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\bin\commons-daemon.jar;C:\Program Files (x86)\ViewPower2.10\monitor\saxpath.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-applemenu.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-settings.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\tools.jar;C:\Program Files (x86)\ViewPower2.10\monitor\jaxen-full.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-io.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-tools.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-host.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\resources.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\sunmscapi.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\bin\tomcat-juli.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\deploy\ffjcext.zip;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-modules-profiler.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-threaddump.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-progress-ui.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina-tribes.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jasper-jdt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-multiview.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-nodes.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\dom4j-1.6.1.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-data.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\dnsns.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-coredump.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\commons-httpclient-3.0.1.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-util-enumerations.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-javahelp.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-lib-profiler.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-attach.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-application-views.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\jsse.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-editor-mimelookup.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-remoting.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\lib\jfluid-server-15.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-loaders.jar;C:\Program Files (x86)\ViewPower2.10\monitor\snmp4j-1.11-javadoc.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-acrobat.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-heapdump.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-templates.jar;C:\Program Files (x86)\ViewPower2.10\console\lib\JTattoo.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\security\US_export_policy.jar;C:\Program Files (x86)\ViewPower2.10\monitor\spring-core.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\plugin.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-jvm.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\servlet-api.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jsp-api.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-dialogs.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-favorites.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-explorer.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-sendopts.jar;C:\Program Files (x86)\ViewPower2.10\monitor\viewpowermonitor.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina-ant.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\lib\org-openide-util.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\core\locale\core_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\dt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-application.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-i18n-es.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-lib-profiler-common.jar;C:\Program Files (x86)\ViewPower2.10\monitor\spring-beans.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-swing-plaf.jar;C:\Program Files (x86)\ViewPower2.10\console\lib\ViewPowerConsole.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-options-api.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-text.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\viewpowerRMI.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-api-progress.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-lib-profiler-ui.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-swing-tabcontrol.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-swing-outline.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\docs\swing-layout-1.0.3-doc.zip;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-options-keymap.jar;C:\Program Files (x86)\ViewPower2.10\monitor\iText-5.0.6.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\jaxen-full.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-jdesktop-layout.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\alt-rt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\im\thaiim.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-output2.jar;C:\Program Files (x86)\ViewPower2.10\monitor\log4j-1.2.14.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\charsets.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\security\local_policy.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-spi-quicksearch.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-opt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-core.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\log4j-1.2.14.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-api-visual.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\jce.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-actions.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-coyote.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-sa.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-proxy.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-core-kit.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\jconsole.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\core\core.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-dbcp.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-compat.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-ui.jar;C:\Program Files (x86)\ViewPower2.10\lax.jar;" com.zerog.lax.LAX "C:/Program Files (x86)/ViewPower2.10/upsMonitor.lax" "C:/WINDOWS/TEMP/lax1B48.tmp"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ViewPower2.10\tomcat\bin\tomcat6.exe" //RS//upsTomcat
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Avira\Antivirus\avshadow.exe" avshadowcontrol0_0000093c
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe" /hideui
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\Explorer.EXE
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.113.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Zdenno\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=53.0.2785.116 --handshake-handle=0x244
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7512.0.639742952\995174305" --mojo-application-channel-token=192359C39833483378C8AFEE5D089385 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_18/*UMA-Uniformity-Trial-50-Percent/group_01/WebBluetoothBlacklist/BlacklistUpdate1/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,14,18,31,56,70 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6869 --gpu-driver-date=6-29-2016 --mojo-platform-channel-handle=1352 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-medium/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_18/*UMA-Uniformity-Trial-50-Percent/group_01/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=4F0C8BDBD33D7CE5BECF36D7FC4F1577 --lang=sk --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=2656E29EBC68A2A5AEFBC36ABA5CB02E --mojo-application-channel-token=4F0C8BDBD33D7CE5BECF36D7FC4F1577 --channel="7512.3.669563884\904945347" --mojo-platform-channel-handle=3200 /prefetch:1
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SOUNDEDGE
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" "-cachedir=C:\Users\Zdenno\AppData\Local\Steam\htmlcache" "-steampid=6892" "-buildid=1474415843" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
"C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe"
"C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe" 9792
"fontdrvhost.exe"
"C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
"C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe" /connectToHost
"C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray
"C:\Program Files\Mad Catz\C.T.R.L.R\CTRLR_Profiler.exe"
"C:\Program Files (x86)\Origin\QtWebEngineProcess.exe" --type=renderer --enable-threaded-compositing --no-sandbox --disable-databases --lang=en --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="6412.4.1354031741\1546851141" /prefetch:673131151
"C:\Program Files (x86)\Origin\QtWebEngineProcess.exe" --type=renderer --enable-threaded-compositing --no-sandbox --disable-databases --lang=en --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="6412.6.2002692886\1291703821" /prefetch:673131151
"C:\Program Files (x86)\Origin\QtWebEngineProcess.exe" --type=renderer --enable-threaded-compositing --no-sandbox --lang=en --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="6412.10.401033787\1260831362" /prefetch:673131151
"C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe" /runWithoutUpdating
"C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe" --type=gpu-process --channel="10336.0.936533596\603493801" --no-sandbox --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,13,25,54,69 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6869 --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --mojo-platform-channel-handle=1980 /prefetch:2
"C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --primordial-pipe-token=17D94E4C828A20548B0E904E102B09D8 --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="10336.1.979396383\262957169" --mojo-platform-channel-handle=2392 /prefetch:1
"C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --primordial-pipe-token=4EFDEE05E84D0351A5EA0B91056C1ABE --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="10336.2.1386462232\1479992967" --mojo-platform-channel-handle=2428 /prefetch:1
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11608.1001.49.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe" -ServerName:App.AppXqagq4n4gvy0tjw576pgh6xr601s1h1mv.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-medium/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/*GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/*PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/*TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_18/*UMA-Uniformity-Trial-50-Percent/group_01/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=E5EE3446D1F913B9A206BEE8C1B3C6BE --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=0BF01F6921B1FA328567EFE2256C09CD --mojo-application-channel-token=E5EE3446D1F913B9A206BEE8C1B3C6BE --channel="7512.37.1421020740\2049951339" --mojo-platform-channel-handle=8544 /prefetch:1
C:\WINDOWS\system32\AUDIODG.EXE 0x4d4
"C:\Users\Zdenno\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-07-25 585568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVBg_SOUNDEDGE"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-01-15 1416440]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-01-15 8790264]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-14 2397120]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-09-20 2858272]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2016-09-20 3503088]
"GalaxyClient"=C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [2016-09-20 4090944]
"OneDrive"=C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-08-27 633024]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"DropboxOEM"=C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2014-09-02 462160]
"Avira SystrayStartTrigger"=C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [2016-08-19 60136]
"avgnt"=C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2016-09-12 830064]
"Kerio Control VPN Client"=C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe [2016-04-14 2180096]
""= []
"C.T.R.L.R"=C:\Program Files\Mad Catz\C.T.R.L.R\CTRLR_Profiler.exe [2015-11-12 86528]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Content Manager Assistant for PlayStation(R).lnk - C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-26 18:21:56 ----D---- C:\rsit
2016-09-26 18:21:56 ----D---- C:\Program Files\trend micro
2016-09-26 17:01:27 ----HD---- C:\OneDriveTemp
2016-09-15 15:22:55 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\nativemap.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\moshost.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\DbgModel.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\mos.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\AddressParser.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\cdd.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-09-15 15:22:42 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-09-15 15:22:42 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-09-15 15:22:42 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-09-15 15:22:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-15 15:22:41 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-09-15 15:22:41 ----A---- C:\WINDOWS\system32\MosResource.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\twinui.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-09-15 15:22:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-09-15 15:22:36 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\msctf.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\aclui.dll
2016-09-15 15:22:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-09-15 15:22:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-09-15 15:22:33 ----A---- C:\WINDOWS\system32\shell32.dll
2016-09-15 15:22:32 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-09-15 15:22:32 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-09-15 15:22:30 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-09-15 15:22:30 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-15 15:22:29 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-09-15 15:22:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-09-15 15:22:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2016-09-15 15:22:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-09-15 15:22:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-09-15 15:22:27 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-09-15 15:22:27 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-09-15 15:22:27 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-09-15 15:22:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-15 15:22:26 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-09-15 15:22:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-15 15:22:23 ----A---- C:\WINDOWS\system32\wmp.dll
2016-09-15 15:22:23 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-15 15:22:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2016-09-15 15:22:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-09-15 15:22:22 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2016-09-15 15:22:22 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-15 15:22:20 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-09-15 15:22:20 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-15 15:22:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-09-15 15:22:19 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\system32\mf.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\combase.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-09-15 15:22:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-09-15 15:22:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-09-15 15:22:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\winmde.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\resutils.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-09-15 15:22:06 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\lsass.exe
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-09-15 15:22:04 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-09-15 15:22:04 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-15 15:22:04 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-09-15 15:22:04 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-09-15 15:22:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\devinv.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-09-15 15:22:02 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\authui.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\evr.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\win32u.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-09-15 15:21:57 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-09-15 15:21:57 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\invagent.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-09-15 15:21:55 ----A---- C:\WINDOWS\system32\InputService.dll
2016-09-15 15:21:55 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\PhoneutilRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\tzres.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\provengine.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\PhoneutilRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\msxml6r.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-09-15 15:21:52 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-09-15 15:21:49 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\win32k.sys
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\wups2.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-09-15 15:21:47 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-09-15 15:21:46 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-09-15 15:21:46 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-09-15 15:21:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-09-01 20:00:52 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2016-09-01 20:00:52 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2016-09-01 20:00:51 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-09-01 20:00:51 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\FSClient.dll
2016-09-01 20:00:49 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-09-01 20:00:48 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\mfps.dll
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\drivers\BthLEEnum.sys
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-09-01 20:00:47 ----A---- C:\WINDOWS\system32\FrameServer.dll
2016-09-01 20:00:45 ----A---- C:\WINDOWS\system32\schannel.dll
2016-09-01 20:00:45 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-09-01 20:00:44 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2016-09-01 20:00:44 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2016-09-01 20:00:44 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2016-09-01 20:00:44 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2016-09-01 20:00:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2016-09-01 20:00:41 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2016-09-01 20:00:37 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\usocore.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-09-01 20:00:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\smphost.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\mispace.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2016-09-01 20:00:32 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provtool.exe
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provops.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provdatastore.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-09-01 20:00:29 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-01 20:00:28 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-09-01 20:00:28 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2016-09-01 20:00:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2016-09-01 20:00:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2016-09-01 20:00:25 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-09-01 20:00:22 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-09-01 20:00:19 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2016-09-01 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2016-09-01 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-09-01 20:00:16 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-09-01 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2016-09-01 20:00:15 ----A---- C:\WINDOWS\system32\encapi.dll
2016-09-01 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2016-09-01 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-08-27 11:13:25 ----D---- C:\Users\Zdenno\AppData\Roaming\Skype
======List of files/folders modified in the last 1 month======
2016-09-26 18:22:00 ----D---- C:\WINDOWS\Temp
2016-09-26 18:21:58 ----D---- C:\WINDOWS\Prefetch
2016-09-26 18:21:56 ----RD---- C:\Program Files
2016-09-26 18:21:34 ----D---- C:\Users\Zdenno\AppData\Roaming\Origin
2016-09-26 18:21:08 ----D---- C:\Users\Zdenno\AppData\Roaming\Azureus
2016-09-26 17:55:00 ----D---- C:\WINDOWS\system32\sru
2016-09-26 17:12:34 ----RD---- C:\WINDOWS\Microsoft.NET
2016-09-26 17:01:34 ----D---- C:\ProgramData\Origin
2016-09-26 17:01:15 ----D---- C:\Program Files (x86)\Steam
2016-09-26 16:59:41 ----D---- C:\WINDOWS\System32
2016-09-26 16:59:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-26 16:57:16 ----D---- C:\WINDOWS\system32\SleepStudy
2016-09-25 20:42:41 ----D---- C:\ProgramData\NVIDIA
2016-09-25 20:34:38 ----SHD---- C:\System Volume Information
2016-09-25 11:39:53 ----D---- C:\WINDOWS\AppReadiness
2016-09-24 09:24:08 ----HD---- C:\Program Files\WindowsApps
2016-09-23 13:00:53 ----D---- C:\WINDOWS\system32\catroot2
2016-09-20 18:06:11 ----AD---- C:\Program Files (x86)\Origin
2016-09-20 17:59:18 ----AD---- C:\Program Files (x86)\GalaxyClient
2016-09-18 14:43:53 ----D---- C:\WINDOWS\rescache
2016-09-18 14:30:28 ----D---- C:\WINDOWS\system32\config
2016-09-16 10:01:23 ----D---- C:\WINDOWS\WinSxS
2016-09-16 10:01:23 ----D---- C:\WINDOWS\system32\DriverStore
2016-09-16 08:43:15 ----RD---- C:\WINDOWS\assembly
2016-09-16 08:10:07 ----D---- C:\WINDOWS\INF
2016-09-15 22:40:25 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-09-15 22:40:25 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-09-15 22:40:25 ----D---- C:\WINDOWS\SysWOW64
2016-09-15 22:40:24 ----SD---- C:\WINDOWS\system32\F12
2016-09-15 22:40:24 ----SD---- C:\WINDOWS\system32\dsc
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\zh-TW
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\zh-HK
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\zh-CN
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\uk-UA
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\tr-TR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\th-TH
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sv-SE
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sl-SI
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sk-SK
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ru-RU
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ro-RO
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\pt-PT
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\pt-BR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\pl-PL
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\oobe
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\nl-NL
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\nb-NO
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\lv-LV
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\lt-LT
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ko-KR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ja-jp
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\it-IT
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\hu-HU
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\hr-HR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\he-IL
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\fr-FR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\fr-CA
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\fi-FI
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\et-EE
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\es-MX
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\es-ES
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\en-US
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\en-GB
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\el-GR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\drivers
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\Dism
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\de-DE
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\da-DK
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\cs-CZ
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\Boot
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\bg-BG
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ar-SA
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\appraiser
2016-09-15 22:40:23 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-09-15 22:40:23 ----RD---- C:\Program Files\Windows Defender
2016-09-15 22:40:23 ----D---- C:\WINDOWS\ShellExperiences
2016-09-15 22:40:23 ----D---- C:\WINDOWS\Provisioning
2016-09-15 22:40:23 ----D---- C:\WINDOWS\AppPatch
2016-09-15 22:40:23 ----D---- C:\Program Files\Windows Media Player
2016-09-15 22:40:23 ----D---- C:\Program Files\Windows Mail
2016-09-15 22:40:23 ----D---- C:\Program Files\Internet Explorer
2016-09-15 22:40:23 ----D---- C:\Program Files (x86)\Windows Mail
2016-09-15 22:40:23 ----D---- C:\Program Files (x86)\Windows Defender
2016-09-15 22:40:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-15 18:06:27 ----D---- C:\WINDOWS\CbsTemp
2016-09-15 18:06:25 ----D---- C:\WINDOWS\system32\MRT
2016-09-15 18:03:37 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-09-15 17:10:22 ----D---- C:\ProgramData\Package Cache
2016-09-15 17:10:21 ----SHD---- C:\WINDOWS\Installer
2016-09-14 18:00:38 ----D---- C:\WINDOWS\system32\Tasks
2016-09-07 18:32:38 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-09-01 21:10:33 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-09-01 21:10:33 ----D---- C:\WINDOWS\system32\wbem
2016-09-01 21:10:33 ----D---- C:\WINDOWS\system32\migration
2016-09-01 19:42:48 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-09-01 19:42:47 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-01 19:42:46 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-09-01 19:42:45 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-06-07 670056]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-07-16 45920]
R0 mfehidk;McAfee Inc. mfehidk; C:\WINDOWS\system32\drivers\mfehidk.sys [2015-08-10 839376]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\WINDOWS\system32\drivers\mfewfpk.sys [2015-08-10 244024]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2016-07-28 154392]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2015-12-01 35488]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2016-07-28 144664]
R2 avnetflt;avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [2016-05-29 78208]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 AmUStor;@oem71.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2013-07-19 83224]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-08-20 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-08-20 247296]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-07-16 128000]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-08-20 84992]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-01-15 4695288]
R3 kvnet;@oem62.inf,%kvnet.Service.DispName%;Kerio Virtual Network Adapter; C:\WINDOWS\System32\drivers\kvnet.sys [2016-04-14 30208]
R3 MEIx64;@oem65.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem34.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2016-06-30 214592]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2016-07-01 13617096]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-06-14 26560]
R3 nvvad_WaveExtensible;@oem66.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@oem35.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-02-17 896760]
R3 SaiMini;SaiMini; C:\WINDOWS\System32\drivers\SaiMini.sys [2014-05-23 24040]
R3 SaiNtBus;SaiNtBus; C:\WINDOWS\system32\drivers\SaiBus.sys [2015-12-04 51616]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2016-08-20 965120]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-07-16 117248]
S3 CSRBC;@oem23.inf,%CSRBC.SvcDesc%;CSRBC.Sys DFU Test driver; C:\WINDOWS\System32\Drivers\csrbc.sys [2016-08-24 46240]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 kvpndev;@oem21.inf,%kvpndev.Service.DispName%;Kerio VPN adapter; C:\WINDOWS\System32\drivers\kvpndrv.sys [2008-01-16 73216]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-04-15 192216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2013-07-09 263896]
S3 SaiK5266;SaiK5266; C:\WINDOWS\system32\DRIVERS\SaiK5266.sys [2015-12-04 182464]
S3 SaiXInput;SaiXInput; C:\WINDOWS\System32\drivers\SaiXInput.sys [2015-12-04 53440]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
poprosil by som o kontrolu.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Zdenno at 2016-09-26 18:21:56
Microsoft Windows 10 Home
System drive C: has 59 GB (27%) free of 223 GB
Total RAM: 16341 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:22:14, on 26.09.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Origin\Origin.exe
C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe
C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe
C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe
C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
C:\Program Files (x86)\Origin\QtWebEngineProcess.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Zdenno.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://safesearch.avira.com/#web/result?source=art&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://safesearch.avira.com/#web/result?source=art&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://safesearch.avira.com/#web/result?source=art&q=
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://safesearch.avira.com/#web/result?source=art&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [DropboxOEM] "C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe" auto
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] "C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
O4 - HKLM\..\Run: [Kerio Control VPN Client] "C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray
O4 - HKLM\..\Run: [C.T.R.L.R] C:\Program Files\Mad Catz\C.T.R.L.R\CTRLR_Profiler.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
O4 - HKCU\..\Run: [GalaxyClient] C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe /launchViaAutoStart
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Content Manager Assistant for PlayStation(R).lnk = C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GalaxyClientService - GOG.com - C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Kerio Control VPN Client Service (KVPNCSvc) - Kerio Technologies Inc. - C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: upsMonitor - Acresso - C:\Program Files (x86)\ViewPower2.10\upsMonitor.exe
O23 - Service: Apache Tomcat upsTomcat (upsTomcat) - Apache Software Foundation - C:\Program Files (x86)\ViewPower2.10\tomcat\bin\tomcat6.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 13691 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files (x86)\Avira\Antivirus\sched.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\Antivirus\avguard.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Kerio\VPN Client\kvpncsvc.exe"
"C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe"
"C:\windows\system32\mfevtps.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files (x86)\Origin\OriginWebHelperService.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ViewPower2.10\upsMonitor.exe" -zglaxservice upsMonitor
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe"
"C:\windows\system32\mfevtps.exe" -mms
"C:\Program Files (x86)\ViewPower2.10\jre\bin\javaw.exe" -Xrs -classpath "C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-jvmstat.jar;C:\Program Files (x86)\ViewPower2.10\monitor\derby.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-profiler.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\htmlconverter.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\deploy.jar;C:\Program Files (x86)\ViewPower2.10\monitor\volModbus.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-masterfs.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\rt.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\backport-util-concurrent.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\viewpowerweb.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\lib\jfluid-server.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\ext\jh-2.0_05.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\im\indicim.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jasper-el.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-autoupdate-ui.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-queries.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-windows.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\core\com-sun-tools-visualvm-modules-startup.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-data-req.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-execution.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\bin\bootstrap.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\ext\swing-layout-1.0.3.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\javaws.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-i18n-ja.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-awt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\ext\updater.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\sunjce_provider.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\el-api.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-autoupdate-services.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\docs\swing-layout-1.0.3-src.zip;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-nativeaccess.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\commons-logging.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-modules-appui.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\lib\boot.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\annotations-api.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-core.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-jmx.jar;C:\Program Files (x86)\ViewPower2.10\monitor\snmp4j-1.11.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\sunpkcs11.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\locale\org-netbeans-core-windows_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\monitor\RXTXcomm.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\lib\org-openide-modules.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\volUtil.jar;C:\Program Files (x86)\ViewPower2.10\console\lib\SoftewareUpgrade.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-editor-mimelookup-impl.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-common.jar;C:\Program Files (x86)\ViewPower2.10\monitor\mail.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-options.jar;C:\Program Files (x86)\ViewPower2.10\monitor\commons-logging.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-i18n-fr.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\locale\org-netbeans-modules-profiler_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\core\org-openide-filesystems.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina-ha.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-windows.jar;C:\Program Files (x86)\ViewPower2.10\monitor\dom4j-1.6.1.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-host-views.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-execution.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\management-agent.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\locale\org-netbeans-core_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jasper.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\localedata.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\bin\commons-daemon.jar;C:\Program Files (x86)\ViewPower2.10\monitor\saxpath.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-applemenu.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-settings.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\tools.jar;C:\Program Files (x86)\ViewPower2.10\monitor\jaxen-full.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-io.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-tools.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-host.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\resources.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\sunmscapi.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\bin\tomcat-juli.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\deploy\ffjcext.zip;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-modules-profiler.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-threaddump.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-progress-ui.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina-tribes.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jasper-jdt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-multiview.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-nodes.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\dom4j-1.6.1.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-data.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\ext\dnsns.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-coredump.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\commons-httpclient-3.0.1.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-util-enumerations.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-javahelp.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-lib-profiler.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-attach.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-application-views.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\jsse.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-editor-mimelookup.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-remoting.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\lib\jfluid-server-15.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-loaders.jar;C:\Program Files (x86)\ViewPower2.10\monitor\snmp4j-1.11-javadoc.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-acrobat.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-heapdump.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-templates.jar;C:\Program Files (x86)\ViewPower2.10\console\lib\JTattoo.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\security\US_export_policy.jar;C:\Program Files (x86)\ViewPower2.10\monitor\spring-core.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\plugin.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-jvm.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\servlet-api.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\jsp-api.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-dialogs.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-favorites.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-explorer.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-sendopts.jar;C:\Program Files (x86)\ViewPower2.10\monitor\viewpowermonitor.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina-ant.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\lib\org-openide-util.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\core\locale\core_visualvm.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\dt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-application.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-i18n-es.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-lib-profiler-common.jar;C:\Program Files (x86)\ViewPower2.10\monitor\spring-beans.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-swing-plaf.jar;C:\Program Files (x86)\ViewPower2.10\console\lib\ViewPowerConsole.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-options-api.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-text.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\viewpowerRMI.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-api-progress.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\profiler3\modules\org-netbeans-lib-profiler-ui.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-swing-tabcontrol.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\catalina.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-swing-outline.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\docs\swing-layout-1.0.3-doc.zip;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-options-keymap.jar;C:\Program Files (x86)\ViewPower2.10\monitor\iText-5.0.6.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\jaxen-full.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-jdesktop-layout.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\alt-rt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\im\thaiim.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-output2.jar;C:\Program Files (x86)\ViewPower2.10\monitor\log4j-1.2.14.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\charsets.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\security\local_policy.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-spi-quicksearch.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-opt.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-core.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\log4j-1.2.14.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-api-visual.jar;C:\Program Files (x86)\ViewPower2.10\jdk\jre\lib\jce.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-actions.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-coyote.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\visualvm\modules\com-sun-tools-visualvm-sa.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\webapps\ViewPower\WEB-INF\lib\flex-messaging-proxy.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-modules-core-kit.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\jconsole.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\core\core.jar;C:\Program Files (x86)\ViewPower2.10\tomcat\lib\tomcat-dbcp.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-openide-compat.jar;C:\Program Files (x86)\ViewPower2.10\jdk\lib\visualvm\platform9\modules\org-netbeans-core-ui.jar;C:\Program Files (x86)\ViewPower2.10\lax.jar;" com.zerog.lax.LAX "C:/Program Files (x86)/ViewPower2.10/upsMonitor.lax" "C:/WINDOWS/TEMP/lax1B48.tmp"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ViewPower2.10\tomcat\bin\tomcat6.exe" //RS//upsTomcat
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Avira\Antivirus\avshadow.exe" avshadowcontrol0_0000093c
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe" /hideui
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\Explorer.EXE
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.113.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Zdenno\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=53.0.2785.116 --handshake-handle=0x244
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7512.0.639742952\995174305" --mojo-application-channel-token=192359C39833483378C8AFEE5D089385 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-medium/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_18/*UMA-Uniformity-Trial-50-Percent/group_01/WebBluetoothBlacklist/BlacklistUpdate1/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,14,18,31,56,70 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6869 --gpu-driver-date=6-29-2016 --mojo-platform-channel-handle=1352 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-medium/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_18/*UMA-Uniformity-Trial-50-Percent/group_01/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=4F0C8BDBD33D7CE5BECF36D7FC4F1577 --lang=sk --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=2656E29EBC68A2A5AEFBC36ABA5CB02E --mojo-application-channel-token=4F0C8BDBD33D7CE5BECF36D7FC4F1577 --channel="7512.3.669563884\904945347" --mojo-platform-channel-handle=3200 /prefetch:1
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SOUNDEDGE
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" "-cachedir=C:\Users\Zdenno\AppData\Local\Steam\htmlcache" "-steampid=6892" "-buildid=1474415843" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
"C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe"
"C:\Program Files (x86)\Sony\Content Manager Assistant\CMAWatcher.exe" 9792
"fontdrvhost.exe"
"C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min
"C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe" /connectToHost
"C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe" /tray
"C:\Program Files\Mad Catz\C.T.R.L.R\CTRLR_Profiler.exe"
"C:\Program Files (x86)\Origin\QtWebEngineProcess.exe" --type=renderer --enable-threaded-compositing --no-sandbox --disable-databases --lang=en --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="6412.4.1354031741\1546851141" /prefetch:673131151
"C:\Program Files (x86)\Origin\QtWebEngineProcess.exe" --type=renderer --enable-threaded-compositing --no-sandbox --disable-databases --lang=en --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="6412.6.2002692886\1291703821" /prefetch:673131151
"C:\Program Files (x86)\Origin\QtWebEngineProcess.exe" --type=renderer --enable-threaded-compositing --no-sandbox --lang=en --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="6412.10.401033787\1260831362" /prefetch:673131151
"C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe" /runWithoutUpdating
"C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe" --type=gpu-process --channel="10336.0.936533596\603493801" --no-sandbox --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,13,25,54,69 --gpu-vendor-id=0x10de --gpu-device-id=0x13c0 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.6869 --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --mojo-platform-channel-handle=1980 /prefetch:2
"C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --primordial-pipe-token=17D94E4C828A20548B0E904E102B09D8 --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="10336.1.979396383\262957169" --mojo-platform-channel-handle=2392 /prefetch:1
"C:\Program Files (x86)\GalaxyClient\GalaxyClient Helper.exe" --type=renderer --enable-smooth-scrolling --js-flags=--expose-gc --no-sandbox --primordial-pipe-token=4EFDEE05E84D0351A5EA0B91056C1ABE --lang=en-US --lang=en-US --log-file="C:\ProgramData\GOG.com\Galaxy\logs\cef.log" --log-severity=info --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="10336.2.1386462232\1479992967" --mojo-platform-channel-handle=2428 /prefetch:1
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11608.1001.49.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe" -ServerName:App.AppXqagq4n4gvy0tjw576pgh6xr601s1h1mv.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-medium/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/*GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/*PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/*TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_18/*UMA-Uniformity-Trial-50-Percent/group_01/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=E5EE3446D1F913B9A206BEE8C1B3C6BE --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=0BF01F6921B1FA328567EFE2256C09CD --mojo-application-channel-token=E5EE3446D1F913B9A206BEE8C1B3C6BE --channel="7512.37.1421020740\2049951339" --mojo-platform-channel-handle=8544 /prefetch:1
C:\WINDOWS\system32\AUDIODG.EXE 0x4d4
"C:\Users\Zdenno\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-07-25 585568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVBg_SOUNDEDGE"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-01-15 1416440]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-01-15 8790264]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-14 2397120]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-09-20 2858272]
"EADM"=C:\Program Files (x86)\Origin\Origin.exe [2016-09-20 3503088]
"GalaxyClient"=C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe [2016-09-20 4090944]
"OneDrive"=C:\Users\Zdenno\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-08-27 633024]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"DropboxOEM"=C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2014-09-02 462160]
"Avira SystrayStartTrigger"=C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [2016-08-19 60136]
"avgnt"=C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2016-09-12 830064]
"Kerio Control VPN Client"=C:\Program Files (x86)\Kerio\VPN Client\kvpncgui.exe [2016-04-14 2180096]
""= []
"C.T.R.L.R"=C:\Program Files\Mad Catz\C.T.R.L.R\CTRLR_Profiler.exe [2015-11-12 86528]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Content Manager Assistant for PlayStation(R).lnk - C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-26 18:21:56 ----D---- C:\rsit
2016-09-26 18:21:56 ----D---- C:\Program Files\trend micro
2016-09-26 17:01:27 ----HD---- C:\OneDriveTemp
2016-09-15 15:22:55 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\nativemap.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\moshost.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2016-09-15 15:22:55 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2016-09-15 15:22:54 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-09-15 15:22:53 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2016-09-15 15:22:52 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2016-09-15 15:22:51 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-09-15 15:22:50 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-09-15 15:22:49 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-09-15 15:22:48 ----A---- C:\WINDOWS\system32\DbgModel.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-15 15:22:47 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-09-15 15:22:46 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\mos.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-09-15 15:22:45 ----A---- C:\WINDOWS\system32\AddressParser.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-09-15 15:22:44 ----A---- C:\WINDOWS\system32\cdd.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-09-15 15:22:43 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-09-15 15:22:42 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-09-15 15:22:42 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-09-15 15:22:42 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-09-15 15:22:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-15 15:22:41 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-09-15 15:22:41 ----A---- C:\WINDOWS\system32\MosResource.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-09-15 15:22:40 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\twinui.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-09-15 15:22:39 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-09-15 15:22:37 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-09-15 15:22:36 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\msctf.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-09-15 15:22:35 ----A---- C:\WINDOWS\system32\aclui.dll
2016-09-15 15:22:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-09-15 15:22:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-09-15 15:22:33 ----A---- C:\WINDOWS\system32\shell32.dll
2016-09-15 15:22:32 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-09-15 15:22:32 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-09-15 15:22:30 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-09-15 15:22:30 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-15 15:22:29 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-09-15 15:22:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-09-15 15:22:29 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-09-15 15:22:28 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2016-09-15 15:22:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-09-15 15:22:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-09-15 15:22:27 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-09-15 15:22:27 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-09-15 15:22:27 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-09-15 15:22:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-15 15:22:26 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-09-15 15:22:24 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-09-15 15:22:23 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-15 15:22:23 ----A---- C:\WINDOWS\system32\wmp.dll
2016-09-15 15:22:23 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-15 15:22:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2016-09-15 15:22:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-09-15 15:22:22 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2016-09-15 15:22:22 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-09-15 15:22:21 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-15 15:22:20 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-09-15 15:22:20 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-15 15:22:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-09-15 15:22:19 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\system32\mf.dll
2016-09-15 15:22:18 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-15 15:22:17 ----A---- C:\WINDOWS\system32\combase.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-09-15 15:22:16 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-15 15:22:15 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-09-15 15:22:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-09-15 15:22:14 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-09-15 15:22:14 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\winmde.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-09-15 15:22:13 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-09-15 15:22:12 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-09-15 15:22:11 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-09-15 15:22:10 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-09-15 15:22:09 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\resutils.dll
2016-09-15 15:22:08 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-09-15 15:22:07 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-09-15 15:22:06 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-09-15 15:22:06 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\lsass.exe
2016-09-15 15:22:05 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-09-15 15:22:04 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-09-15 15:22:04 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-15 15:22:04 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-09-15 15:22:04 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-09-15 15:22:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\devinv.dll
2016-09-15 15:22:03 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-09-15 15:22:02 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-09-15 15:22:02 ----A---- C:\WINDOWS\system32\authui.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-09-15 15:22:01 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\evr.dll
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
2016-09-15 15:22:00 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\win32u.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-15 15:21:59 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-09-15 15:21:58 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-09-15 15:21:57 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-09-15 15:21:57 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\invagent.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-15 15:21:56 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-09-15 15:21:55 ----A---- C:\WINDOWS\system32\InputService.dll
2016-09-15 15:21:55 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\PhoneutilRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\tzres.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\provengine.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\PhoneutilRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\msxml6r.dll
2016-09-15 15:21:54 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-09-15 15:21:53 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-09-15 15:21:52 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-09-15 15:21:52 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-15 15:21:51 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-09-15 15:21:50 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-09-15 15:21:49 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\win32k.sys
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-09-15 15:21:49 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\wups2.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-09-15 15:21:48 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-09-15 15:21:47 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-09-15 15:21:46 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-09-15 15:21:46 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-09-15 15:21:46 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-09-15 15:21:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-09-01 20:00:52 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2016-09-01 20:00:52 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2016-09-01 20:00:51 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-09-01 20:00:51 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2016-09-01 20:00:50 ----A---- C:\WINDOWS\system32\FSClient.dll
2016-09-01 20:00:49 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-09-01 20:00:48 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\mfps.dll
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\drivers\BthLEEnum.sys
2016-09-01 20:00:48 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-09-01 20:00:47 ----A---- C:\WINDOWS\system32\FrameServer.dll
2016-09-01 20:00:45 ----A---- C:\WINDOWS\system32\schannel.dll
2016-09-01 20:00:45 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-09-01 20:00:44 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2016-09-01 20:00:44 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2016-09-01 20:00:44 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2016-09-01 20:00:44 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2016-09-01 20:00:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2016-09-01 20:00:41 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-09-01 20:00:40 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2016-09-01 20:00:37 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\usocore.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-09-01 20:00:35 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-09-01 20:00:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\smphost.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\mispace.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2016-09-01 20:00:33 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2016-09-01 20:00:32 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2016-09-01 20:00:31 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provtool.exe
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provops.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\provdatastore.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-09-01 20:00:30 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-09-01 20:00:29 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-01 20:00:28 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-09-01 20:00:28 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2016-09-01 20:00:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2016-09-01 20:00:27 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2016-09-01 20:00:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2016-09-01 20:00:25 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-09-01 20:00:22 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-09-01 20:00:19 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2016-09-01 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2016-09-01 20:00:16 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-09-01 20:00:16 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-09-01 20:00:15 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2016-09-01 20:00:15 ----A---- C:\WINDOWS\system32\encapi.dll
2016-09-01 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2016-09-01 20:00:14 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-08-27 11:13:25 ----D---- C:\Users\Zdenno\AppData\Roaming\Skype
======List of files/folders modified in the last 1 month======
2016-09-26 18:22:00 ----D---- C:\WINDOWS\Temp
2016-09-26 18:21:58 ----D---- C:\WINDOWS\Prefetch
2016-09-26 18:21:56 ----RD---- C:\Program Files
2016-09-26 18:21:34 ----D---- C:\Users\Zdenno\AppData\Roaming\Origin
2016-09-26 18:21:08 ----D---- C:\Users\Zdenno\AppData\Roaming\Azureus
2016-09-26 17:55:00 ----D---- C:\WINDOWS\system32\sru
2016-09-26 17:12:34 ----RD---- C:\WINDOWS\Microsoft.NET
2016-09-26 17:01:34 ----D---- C:\ProgramData\Origin
2016-09-26 17:01:15 ----D---- C:\Program Files (x86)\Steam
2016-09-26 16:59:41 ----D---- C:\WINDOWS\System32
2016-09-26 16:59:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-26 16:57:16 ----D---- C:\WINDOWS\system32\SleepStudy
2016-09-25 20:42:41 ----D---- C:\ProgramData\NVIDIA
2016-09-25 20:34:38 ----SHD---- C:\System Volume Information
2016-09-25 11:39:53 ----D---- C:\WINDOWS\AppReadiness
2016-09-24 09:24:08 ----HD---- C:\Program Files\WindowsApps
2016-09-23 13:00:53 ----D---- C:\WINDOWS\system32\catroot2
2016-09-20 18:06:11 ----AD---- C:\Program Files (x86)\Origin
2016-09-20 17:59:18 ----AD---- C:\Program Files (x86)\GalaxyClient
2016-09-18 14:43:53 ----D---- C:\WINDOWS\rescache
2016-09-18 14:30:28 ----D---- C:\WINDOWS\system32\config
2016-09-16 10:01:23 ----D---- C:\WINDOWS\WinSxS
2016-09-16 10:01:23 ----D---- C:\WINDOWS\system32\DriverStore
2016-09-16 08:43:15 ----RD---- C:\WINDOWS\assembly
2016-09-16 08:10:07 ----D---- C:\WINDOWS\INF
2016-09-15 22:40:25 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-09-15 22:40:25 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-09-15 22:40:25 ----D---- C:\WINDOWS\SysWOW64
2016-09-15 22:40:24 ----SD---- C:\WINDOWS\system32\F12
2016-09-15 22:40:24 ----SD---- C:\WINDOWS\system32\dsc
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\zh-TW
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\zh-HK
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\zh-CN
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\uk-UA
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\tr-TR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\th-TH
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sv-SE
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sl-SI
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\sk-SK
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ru-RU
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ro-RO
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\pt-PT
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\pt-BR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\pl-PL
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\oobe
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\nl-NL
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\nb-NO
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\lv-LV
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\lt-LT
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ko-KR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ja-jp
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\it-IT
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\hu-HU
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\hr-HR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\he-IL
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\fr-FR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\fr-CA
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\fi-FI
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\et-EE
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\es-MX
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\es-ES
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\en-US
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\en-GB
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\el-GR
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\drivers
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\Dism
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\de-DE
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\da-DK
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\cs-CZ
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\Boot
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\bg-BG
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\ar-SA
2016-09-15 22:40:24 ----D---- C:\WINDOWS\system32\appraiser
2016-09-15 22:40:23 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-09-15 22:40:23 ----RD---- C:\Program Files\Windows Defender
2016-09-15 22:40:23 ----D---- C:\WINDOWS\ShellExperiences
2016-09-15 22:40:23 ----D---- C:\WINDOWS\Provisioning
2016-09-15 22:40:23 ----D---- C:\WINDOWS\AppPatch
2016-09-15 22:40:23 ----D---- C:\Program Files\Windows Media Player
2016-09-15 22:40:23 ----D---- C:\Program Files\Windows Mail
2016-09-15 22:40:23 ----D---- C:\Program Files\Internet Explorer
2016-09-15 22:40:23 ----D---- C:\Program Files (x86)\Windows Mail
2016-09-15 22:40:23 ----D---- C:\Program Files (x86)\Windows Defender
2016-09-15 22:40:23 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-15 18:06:27 ----D---- C:\WINDOWS\CbsTemp
2016-09-15 18:06:25 ----D---- C:\WINDOWS\system32\MRT
2016-09-15 18:03:37 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-09-15 17:10:22 ----D---- C:\ProgramData\Package Cache
2016-09-15 17:10:21 ----SHD---- C:\WINDOWS\Installer
2016-09-14 18:00:38 ----D---- C:\WINDOWS\system32\Tasks
2016-09-07 18:32:38 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-09-01 21:10:33 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-09-01 21:10:33 ----D---- C:\WINDOWS\system32\wbem
2016-09-01 21:10:33 ----D---- C:\WINDOWS\system32\migration
2016-09-01 19:42:48 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-09-01 19:42:47 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-01 19:42:46 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-09-01 19:42:45 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-06-07 670056]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-07-16 45920]
R0 mfehidk;McAfee Inc. mfehidk; C:\WINDOWS\system32\drivers\mfehidk.sys [2015-08-10 839376]
R0 mfewfpk;McAfee Inc. mfewfpk; C:\WINDOWS\system32\drivers\mfewfpk.sys [2015-08-10 244024]
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2016-07-28 154392]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2015-12-01 35488]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-16 88576]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2016-07-16 8192]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2016-07-28 144664]
R2 avnetflt;avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [2016-05-29 78208]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2016-07-16 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2016-07-16 78336]
R3 AmUStor;@oem71.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2013-07-19 83224]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-08-20 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-08-20 247296]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-07-16 128000]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-08-20 84992]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-01-15 4695288]
R3 kvnet;@oem62.inf,%kvnet.Service.DispName%;Kerio Virtual Network Adapter; C:\WINDOWS\System32\drivers\kvnet.sys [2016-04-14 30208]
R3 MEIx64;@oem65.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;@oem34.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2016-06-30 214592]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2016-07-01 13617096]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-06-14 26560]
R3 nvvad_WaveExtensible;@oem66.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2016-04-14 56384]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@oem35.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-02-17 896760]
R3 SaiMini;SaiMini; C:\WINDOWS\System32\drivers\SaiMini.sys [2014-05-23 24040]
R3 SaiNtBus;SaiNtBus; C:\WINDOWS\system32\drivers\SaiBus.sys [2015-12-04 51616]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2016-07-16 105824]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2016-07-16 101216]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2016-07-16 58720]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2016-07-16 61792]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2016-07-16 32096]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2016-07-16 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2016-08-20 965120]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2016-07-16 38912]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-07-16 117248]
S3 CSRBC;@oem23.inf,%CSRBC.SvcDesc%;CSRBC.Sys DFU Test driver; C:\WINDOWS\System32\Drivers\csrbc.sys [2016-08-24 46240]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2016-07-16 20480]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2016-07-16 50016]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2016-07-16 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2016-07-16 176384]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2016-07-16 526176]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 kvpndev;@oem21.inf,%kvpndev.Service.DispName%;Kerio VPN adapter; C:\WINDOWS\System32\drivers\kvpndrv.sys [2008-01-16 73216]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2016-04-15 192216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2016-07-16 842584]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2016-07-16 108896]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2016-07-16 928608]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2013-07-09 263896]
S3 SaiK5266;SaiK5266; C:\WINDOWS\system32\DRIVERS\SaiK5266.sys [2015-12-04 182464]
S3 SaiXInput;SaiXInput; C:\WINDOWS\System32\drivers\SaiXInput.sys [2015-12-04 53440]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]