Divná aktualizace nebo havěť ?
Napsal: 27 zář 2016 20:53
Dobrý den,
nejdou mi otevírat stávající textové dokumenty, ani ukládat nové. Koupila jsem si SSD a počítač jel krásně, do deseti vteřin se zapl. Teď to zase trvá minutu a je takový zpomalený. Všechno mu trvá dlouho. Před pár dny se nainstalovala nějaká větší W10 aktualizace, tak docela podezřívám tu. Ale kdyby jste se mi na to někdo kouknul prosím, třeba tam nějaká havěť bude. Díky
Logfile of random's system information tool 1.10 (written by random/random)
Run by Scarlett at 2016-09-27 21:50:43
Microsoft Windows 10 Home
System drive C: has 47 GB (47%) free of 99 GB
Total RAM: 8143 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:50:48, on 27.9.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\EXPERTool\TBPanel.exe
C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
C:\Program Files (x86)\MSI\Live Update\Live Update.exe
C:\Program Files\trend micro\Scarlett.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ControlCenterCount] C:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe
O4 - HKLM\..\Run: [Super Charger] C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ProductUpdater] C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "H:\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [TBPanel] "C:\Program Files (x86)\EXPERTool\TBPanel.exe" /A
O4 - HKCU\..\Run: [NvLedServiceHost] C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe RunStartup
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CurseClientStartup.ccip
O4 - Startup: Sidebar99.lnk = C:\Program Files\Windows Sidebar\sidebar.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Gaming Registry Service (LogiRegistryService) - Logitech Inc. - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: MSI Live Update Service (MSI_LiveUpdate_Service) - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - G:\origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - G:\origin\OriginWebHelperService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: SplitCamService (SpliCamService) - SplitCam Co. - E:\SplitCam\SplitCamService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: SuperRAIDSvc - Micro-Star INT'L CO., LTD. - C:\MSI\Smart Utilities\SuperRAIDSvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9724 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe"
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\mqsvc.exe
dashost.exe {b6ac8d00-a603-45c0-8718d0e28dad103b}
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\MSI\Smart Utilities\SuperRAIDSvc.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
sihost.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe" /hw
"C:\Program Files (x86)\EXPERTool\TBPanel.exe" /A
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe" RunStartup
H:\CCleaner\CCleaner.exe /MONITOR /uac
"C:\Users\Scarlett\AppData\Local\Apps\2.0\QXW8VEZH.VEA\B5XPP9TV.6HP\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe"
"C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe"
"C:\Program Files (x86)\MSI\Live Update\Live Update.exe" /REMINDER
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Scarlett\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=53.0.2785.116 --handshake-handle=0x1bc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7736.0.1925882160\1029291583" --mojo-application-channel-token=3D1073DB4817E70FE648714A8BFC8153 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-liberal/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,14,18,31,56,70 --gpu-vendor-id=0x10de --gpu-device-id=0x1c03 --gpu-driver-vendor=NVIDIA --gpu-driver-version=21.21.13.7290 --gpu-driver-date=9-16-2016 --mojo-platform-channel-handle=1292 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=257B10660CB78B18F1D9E22C8BFEE9AC --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=BE255E9FB3663C76CE921ED9F8E925D9 --mojo-application-channel-token=257B10660CB78B18F1D9E22C8BFEE9AC --channel="7736.3.1660202646\1170160093" --mojo-platform-channel-handle=2600 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=8DB0C89894B86C1FD412733C07DD8C2A --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=C87AC5E6176123779DF67A93A1EDF08F --mojo-application-channel-token=8DB0C89894B86C1FD412733C07DD8C2A --channel="7736.4.1740101262\1557093244" --mojo-platform-channel-handle=2576 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=29C83CEC2783F86C37B6F08A18EA317D --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=DB0801F707742F189EC7F635CFB7D65E --mojo-application-channel-token=29C83CEC2783F86C37B6F08A18EA317D --channel="7736.5.1687593623\1672196894" --mojo-platform-channel-handle=2480 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=AA009C30D8108ADF6293FF4542BF9DDA --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=CD4F3565B6ACCAF0305A817CCC407EFE --mojo-application-channel-token=AA009C30D8108ADF6293FF4542BF9DDA --channel="7736.6.1547397260\1168285034" --mojo-platform-channel-handle=2584 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=C0BB9FF225A248A05099F3DF8D9DF6DF --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=C5A294C9A3F771D082219E5975E5FB11 --mojo-application-channel-token=C0BB9FF225A248A05099F3DF8D9DF6DF --channel="7736.7.930103694\1030127565" --mojo-platform-channel-handle=5400 /prefetch:1
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=78AF5A774A5ED36667AC12277378EAEB --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=5C497CBCB1D25B7FC95B43A7762D66C8 --mojo-application-channel-token=78AF5A774A5ED36667AC12277378EAEB --channel="7736.10.2062515250\1353086687" --mojo-platform-channel-handle=6556 /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=A1BDB1A167CBFCE6AA6C20AEF712631C --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=80EF341646C966CB708CC79367BDD0C0 --mojo-application-channel-token=A1BDB1A167CBFCE6AA6C20AEF712631C --channel="7736.11.650128667\1480718557" --mojo-platform-channel-handle=6620 /prefetch:1
C:\WINDOWS\system32\AUDIODG.EXE 0x42c
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 652 656 664 8192 660
"C:\Users\Scarlett\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\RtlNetworkGenieVistaStart.job - C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe /hw
=========Mozilla firefox=========
ProfilePath - C:\Users\Scarlett\AppData\Roaming\Mozilla\Firefox\Profiles\m54syo4d.default
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=E:\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=E:\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-05-28 8801024]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2016-05-20 3941528]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2016-04-29 15818872]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-15 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-06-15 1767760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-09-26 633024]
"CCleaner Monitoring"=H:\CCleaner\CCleaner64.exe [2016-05-13 8721624]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe []
"TBPanel"=C:\Program Files (x86)\EXPERTool\TBPanel.exe [2016-06-13 2024752]
"NvLedServiceHost"=C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe [2016-06-15 86904]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-11-04 767176]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-02-22 292088]
"ControlCenterCount"=C:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe [2012-03-26 872448]
"Super Charger"=C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [2016-03-17 1027024]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-09-12 9107616]
"ProductUpdater"=C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [2016-06-03 75776]
"Live Update"=C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2016-07-19 11340752]
C:\Users\Scarlett\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CurseClientStartup.ccip
Sidebar99.lnk - C:\Program Files\Windows Sidebar\sidebar.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-27 21:50:43 ----D---- C:\rsit
2016-09-27 21:50:43 ----D---- C:\Program Files\trend micro
2016-09-26 23:07:13 ----D---- C:\WINDOWS\LastGood.Tmp
2016-09-26 22:56:00 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-09-26 08:28:20 ----DC---- C:\WINDOWS\Panther
2016-09-26 08:26:22 ----D---- C:\Windows.old
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncPolicy.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\encapi.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\spwmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\dxmasf.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wmploc.DLL
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\spwmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfps.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\lsass.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\iesetup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\iernonce.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\FSClient.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\FrameServer.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\evr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\dxmasf.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\dasHost.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\das.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\slc.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\tsmf.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\msxml6r.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\msctf.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\w32time.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\uReFS.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\twinui.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\tcpipcfg.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\sppcext.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\sppc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\slcext.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\slc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\shell32.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provtool.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provops.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provengine.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provdatastore.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\pidgenx.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\netiougc.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\GenValObj.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\devinv.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\authui.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\aclui.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\PhoneutilRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wups2.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\winmde.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\usocore.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\PhoneutilRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\mfpmp.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\mf.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DbgModel.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\dafpos.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\AddressParser.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32u.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32k.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\wevtapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\user32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\tzres.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\smphost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\schannel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\samlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\resutils.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\qmgr.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\offlinesam.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\nativemap.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MosResource.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\moshost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mispace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\InputService.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\container.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\combase.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\cdd.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-09-26 08:22:39 ----D---- C:\WINDOWS\system32\Microsoft
2016-09-26 08:21:37 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-09-26 08:21:37 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-09-26 08:21:37 ----D---- C:\WINDOWS\system32\msmq
2016-09-26 08:21:37 ----D---- C:\WINDOWS\system32\BestPractices
2016-09-26 08:21:37 ----D---- C:\Program Files\Reference Assemblies
2016-09-26 08:21:37 ----D---- C:\Program Files\MSBuild
2016-09-26 08:21:37 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-09-26 08:21:37 ----D---- C:\Program Files (x86)\MSBuild
2016-09-26 08:21:37 ----D---- C:\inetpub
2016-09-26 08:21:16 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-09-26 08:21:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-09-26 08:21:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-09-26 08:21:15 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-09-26 08:21:15 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-09-26 08:21:15 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-09-26 08:21:00 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2016-09-26 07:46:42 ----D---- C:\ProgramData\Microsoft OneDrive
2016-09-26 07:45:52 ----D---- C:\ProgramData\USOShared
2016-09-26 07:45:00 ----SHD---- C:\Recovery
2016-09-26 07:41:21 ----ASH---- C:\hiberfil.sys
2016-09-26 07:32:40 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-09-26 07:32:15 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-09-26 07:31:56 ----SD---- C:\Users\Scarlett\AppData\Roaming\Microsoft
2016-09-26 07:31:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-26 07:31:32 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-09-26 07:30:51 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2016-09-26 07:30:45 ----AS---- C:\WINDOWS\bootstat.dat
2016-09-26 07:30:43 ----D---- C:\ProgramData\NVIDIA
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2016-09-26 07:30:41 ----HD---- C:\Program Files (x86)\Uninstall Information
2016-09-26 07:30:36 ----D---- C:\ProgramData\NVIDIA Corporation
2016-09-26 07:30:32 ----D---- C:\Program Files\NVIDIA Corporation
2016-09-26 07:30:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-09-26 07:30:26 ----D---- C:\Program Files\Realtek
2016-09-26 07:30:25 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-09-26 07:30:00 ----D---- C:\WINDOWS\system32\SleepStudy
2016-09-26 07:30:00 ----D---- C:\WINDOWS\ServiceProfiles
2016-09-26 07:30:00 ----D---- C:\WINDOWS\Prefetch
2016-09-26 07:29:58 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-09-21 21:09:12 ----D---- C:\ProgramData\EA Core
2016-09-21 21:09:11 ----D---- C:\ProgramData\Electronic Arts
2016-09-21 20:43:15 ----D---- C:\Users\Scarlett\AppData\Roaming\Origin
2016-09-21 20:33:26 ----D---- C:\ProgramData\Origin
2016-09-21 18:07:44 ----D---- C:\Users\Scarlett\AppData\Roaming\BioshockHD
2016-09-21 17:31:07 ----D---- C:\Users\Scarlett\AppData\Roaming\NVIDIA
2016-09-21 17:15:22 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2016-09-21 17:15:18 ----D---- C:\Program Files (x86)\VulkanRT
2016-09-21 17:15:18 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2016-09-21 17:15:18 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2016-09-21 17:15:18 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2016-09-21 17:15:18 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFThevc.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvopencl.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvEncMFThevc.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvdispgenco6437290.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvdispco6437290.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvcuda.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvapi64.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2016-09-21 17:10:43 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2016-09-21 17:10:43 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2016-09-21 17:10:43 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2016-09-21 17:08:15 ----AD---- C:\Program Files (x86)\EXPERTool
2016-09-16 09:56:42 ----A---- C:\WINDOWS\SYSWOW64\fmcodec.DLL
2016-09-12 17:50:09 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-09-12 17:50:06 ----A---- C:\WINDOWS\avastSS.scr
2016-09-09 20:25:58 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1-1-0-26-0.dll
2016-09-09 20:25:28 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo-1-1-0-26-0.exe
2016-09-09 20:25:10 ----A---- C:\WINDOWS\system32\vulkan-1-1-0-26-0.dll
2016-09-09 20:24:38 ----A---- C:\WINDOWS\system32\vulkaninfo-1-1-0-26-0.exe
2016-08-29 21:42:27 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-08-28 19:05:54 ----AD---- C:\Program Files (x86)\GPU Temp
======List of files/folders modified in the last 1 month======
nejdou mi otevírat stávající textové dokumenty, ani ukládat nové. Koupila jsem si SSD a počítač jel krásně, do deseti vteřin se zapl. Teď to zase trvá minutu a je takový zpomalený. Všechno mu trvá dlouho. Před pár dny se nainstalovala nějaká větší W10 aktualizace, tak docela podezřívám tu. Ale kdyby jste se mi na to někdo kouknul prosím, třeba tam nějaká havěť bude. Díky
Logfile of random's system information tool 1.10 (written by random/random)
Run by Scarlett at 2016-09-27 21:50:43
Microsoft Windows 10 Home
System drive C: has 47 GB (47%) free of 99 GB
Total RAM: 8143 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:50:48, on 27.9.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\EXPERTool\TBPanel.exe
C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
C:\Program Files (x86)\MSI\Live Update\Live Update.exe
C:\Program Files\trend micro\Scarlett.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ControlCenterCount] C:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe
O4 - HKLM\..\Run: [Super Charger] C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ProductUpdater] C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "H:\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKCU\..\Run: [TBPanel] "C:\Program Files (x86)\EXPERTool\TBPanel.exe" /A
O4 - HKCU\..\Run: [NvLedServiceHost] C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe RunStartup
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: CurseClientStartup.ccip
O4 - Startup: Sidebar99.lnk = C:\Program Files\Windows Sidebar\sidebar.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Gaming Registry Service (LogiRegistryService) - Logitech Inc. - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: MSI Live Update Service (MSI_LiveUpdate_Service) - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - G:\origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - G:\origin\OriginWebHelperService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: SplitCamService (SpliCamService) - SplitCam Co. - E:\SplitCam\SplitCamService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: SuperRAIDSvc - Micro-Star INT'L CO., LTD. - C:\MSI\Smart Utilities\SuperRAIDSvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9724 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
"C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe"
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k iissvcs
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\mqsvc.exe
dashost.exe {b6ac8d00-a603-45c0-8718d0e28dad103b}
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\MSI\Smart Utilities\SuperRAIDSvc.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
sihost.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe" /hw
"C:\Program Files (x86)\EXPERTool\TBPanel.exe" /A
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe" RunStartup
H:\CCleaner\CCleaner.exe /MONITOR /uac
"C:\Users\Scarlett\AppData\Local\Apps\2.0\QXW8VEZH.VEA\B5XPP9TV.6HP\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe"
"C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe"
"C:\Program Files (x86)\MSI\Live Update\Live Update.exe" /REMINDER
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Scarlett\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=53.0.2785.116 --handshake-handle=0x1bc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7736.0.1925882160\1029291583" --mojo-application-channel-token=3D1073DB4817E70FE648714A8BFC8153 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-liberal/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,14,18,31,56,70 --gpu-vendor-id=0x10de --gpu-device-id=0x1c03 --gpu-driver-vendor=NVIDIA --gpu-driver-version=21.21.13.7290 --gpu-driver-date=9-16-2016 --mojo-platform-channel-handle=1292 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=257B10660CB78B18F1D9E22C8BFEE9AC --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=BE255E9FB3663C76CE921ED9F8E925D9 --mojo-application-channel-token=257B10660CB78B18F1D9E22C8BFEE9AC --channel="7736.3.1660202646\1170160093" --mojo-platform-channel-handle=2600 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=8DB0C89894B86C1FD412733C07DD8C2A --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=C87AC5E6176123779DF67A93A1EDF08F --mojo-application-channel-token=8DB0C89894B86C1FD412733C07DD8C2A --channel="7736.4.1740101262\1557093244" --mojo-platform-channel-handle=2576 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=29C83CEC2783F86C37B6F08A18EA317D --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=DB0801F707742F189EC7F635CFB7D65E --mojo-application-channel-token=29C83CEC2783F86C37B6F08A18EA317D --channel="7736.5.1687593623\1672196894" --mojo-platform-channel-handle=2480 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=AA009C30D8108ADF6293FF4542BF9DDA --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=CD4F3565B6ACCAF0305A817CCC407EFE --mojo-application-channel-token=AA009C30D8108ADF6293FF4542BF9DDA --channel="7736.6.1547397260\1168285034" --mojo-platform-channel-handle=2584 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=C0BB9FF225A248A05099F3DF8D9DF6DF --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=C5A294C9A3F771D082219E5975E5FB11 --mojo-application-channel-token=C0BB9FF225A248A05099F3DF8D9DF6DF --channel="7736.7.930103694\1030127565" --mojo-platform-channel-handle=5400 /prefetch:1
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=78AF5A774A5ED36667AC12277378EAEB --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=5C497CBCB1D25B7FC95B43A7762D66C8 --mojo-application-channel-token=78AF5A774A5ED36667AC12277378EAEB --channel="7736.10.2062515250\1353086687" --mojo-platform-channel-handle=6556 /prefetch:1
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,*BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-liberal/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/127ByteCrimePaddingOn/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/*PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Default/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Enabled/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_10/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=A1BDB1A167CBFCE6AA6C20AEF712631C --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=80EF341646C966CB708CC79367BDD0C0 --mojo-application-channel-token=A1BDB1A167CBFCE6AA6C20AEF712631C --channel="7736.11.650128667\1480718557" --mojo-platform-channel-handle=6620 /prefetch:1
C:\WINDOWS\system32\AUDIODG.EXE 0x42c
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 652 656 664 8192 660
"C:\Users\Scarlett\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\RtlNetworkGenieVistaStart.job - C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe /hw
=========Mozilla firefox=========
ProfilePath - C:\Users\Scarlett\AppData\Roaming\Mozilla\Firefox\Profiles\m54syo4d.default
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.3]
"Description"=VLC Multimedia Plugin
"Path"=E:\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=E:\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-05-28 8801024]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2016-05-20 3941528]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2016-04-29 15818872]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-06-15 2398776]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-06-15 1767760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Scarlett\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-09-26 633024]
"CCleaner Monitoring"=H:\CCleaner\CCleaner64.exe [2016-05-13 8721624]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe []
"TBPanel"=C:\Program Files (x86)\EXPERTool\TBPanel.exe [2016-06-13 2024752]
"NvLedServiceHost"=C:\Program Files (x86)\NVIDIA Corporation\LED Visualizer\NvLedServiceHost.exe [2016-06-15 86904]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-11-04 767176]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-02-22 292088]
"ControlCenterCount"=C:\Program Files (x86)\MSI\ControlCenter\ControlCenterCount.exe [2012-03-26 872448]
"Super Charger"=C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [2016-03-17 1027024]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-09-12 9107616]
"ProductUpdater"=C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [2016-06-03 75776]
"Live Update"=C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2016-07-19 11340752]
C:\Users\Scarlett\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
CurseClientStartup.ccip
Sidebar99.lnk - C:\Program Files\Windows Sidebar\sidebar.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-09-27 21:50:43 ----D---- C:\rsit
2016-09-27 21:50:43 ----D---- C:\Program Files\trend micro
2016-09-26 23:07:13 ----D---- C:\WINDOWS\LastGood.Tmp
2016-09-26 22:56:00 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-09-26 08:28:20 ----DC---- C:\WINDOWS\Panther
2016-09-26 08:26:22 ----D---- C:\Windows.old
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncPolicy.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-09-26 08:25:37 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\encapi.dll
2016-09-26 08:25:37 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\spwmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\dxmasf.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wmploc.DLL
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\spwmp.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfps.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\lsass.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\iesetup.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\iernonce.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\FSClient.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\FrameServer.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\evr.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\dxmasf.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\dasHost.exe
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\das.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-09-26 08:25:32 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\slc.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\tsmf.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\msxml6r.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\msctf.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-09-26 08:25:29 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\w32time.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\uReFS.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\twinui.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\tcpipcfg.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\sppcext.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\sppc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\slcext.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\slc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\shell32.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provtool.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provops.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provengine.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\provdatastore.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\pidgenx.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\netiougc.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\invagent.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\GenValObj.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\devinv.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\authui.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-09-26 08:25:25 ----A---- C:\WINDOWS\system32\aclui.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\PhoneutilRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wups2.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\winmde.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\usocore.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\PhoneutilRes.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\mfpmp.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\mf.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\DbgModel.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\dafpos.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-09-26 08:25:23 ----A---- C:\WINDOWS\system32\AddressParser.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32u.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\win32k.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\wevtapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\user32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\tzres.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\smphost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\schannel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\samlib.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\resutils.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\qmgr.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\offlinesam.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\nativemap.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MosResource.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\moshost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mispace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\InputService.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\container.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\combase.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\cdd.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-09-26 08:25:18 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-09-26 08:23:09 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-09-26 08:22:39 ----D---- C:\WINDOWS\system32\Microsoft
2016-09-26 08:21:37 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-09-26 08:21:37 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-09-26 08:21:37 ----D---- C:\WINDOWS\system32\msmq
2016-09-26 08:21:37 ----D---- C:\WINDOWS\system32\BestPractices
2016-09-26 08:21:37 ----D---- C:\Program Files\Reference Assemblies
2016-09-26 08:21:37 ----D---- C:\Program Files\MSBuild
2016-09-26 08:21:37 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-09-26 08:21:37 ----D---- C:\Program Files (x86)\MSBuild
2016-09-26 08:21:37 ----D---- C:\inetpub
2016-09-26 08:21:16 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-09-26 08:21:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-09-26 08:21:16 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-09-26 08:21:15 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-09-26 08:21:15 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-09-26 08:21:15 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-09-26 08:21:00 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2016-09-26 07:46:42 ----D---- C:\ProgramData\Microsoft OneDrive
2016-09-26 07:45:52 ----D---- C:\ProgramData\USOShared
2016-09-26 07:45:00 ----SHD---- C:\Recovery
2016-09-26 07:41:21 ----ASH---- C:\hiberfil.sys
2016-09-26 07:32:40 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-09-26 07:32:15 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-09-26 07:31:56 ----SD---- C:\Users\Scarlett\AppData\Roaming\Microsoft
2016-09-26 07:31:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-26 07:31:32 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-09-26 07:30:51 ----A---- C:\WINDOWS\system32\drivers\LNonPnP.sys
2016-09-26 07:30:45 ----AS---- C:\WINDOWS\bootstat.dat
2016-09-26 07:30:43 ----D---- C:\ProgramData\NVIDIA
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2016-09-26 07:30:42 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2016-09-26 07:30:41 ----HD---- C:\Program Files (x86)\Uninstall Information
2016-09-26 07:30:36 ----D---- C:\ProgramData\NVIDIA Corporation
2016-09-26 07:30:32 ----D---- C:\Program Files\NVIDIA Corporation
2016-09-26 07:30:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-09-26 07:30:26 ----D---- C:\Program Files\Realtek
2016-09-26 07:30:25 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-09-26 07:30:00 ----D---- C:\WINDOWS\system32\SleepStudy
2016-09-26 07:30:00 ----D---- C:\WINDOWS\ServiceProfiles
2016-09-26 07:30:00 ----D---- C:\WINDOWS\Prefetch
2016-09-26 07:29:58 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-09-21 21:09:12 ----D---- C:\ProgramData\EA Core
2016-09-21 21:09:11 ----D---- C:\ProgramData\Electronic Arts
2016-09-21 20:43:15 ----D---- C:\Users\Scarlett\AppData\Roaming\Origin
2016-09-21 20:33:26 ----D---- C:\ProgramData\Origin
2016-09-21 18:07:44 ----D---- C:\Users\Scarlett\AppData\Roaming\BioshockHD
2016-09-21 17:31:07 ----D---- C:\Users\Scarlett\AppData\Roaming\NVIDIA
2016-09-21 17:15:22 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2016-09-21 17:15:18 ----D---- C:\Program Files (x86)\VulkanRT
2016-09-21 17:15:18 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2016-09-21 17:15:18 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2016-09-21 17:15:18 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2016-09-21 17:15:18 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFThevc.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvopencl.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvEncMFThevc.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvdispgenco6437290.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvdispco6437290.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvcuda.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2016-09-21 17:13:41 ----A---- C:\WINDOWS\system32\nvapi64.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2016-09-21 17:10:49 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2016-09-21 17:10:43 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2016-09-21 17:10:43 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2016-09-21 17:10:43 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2016-09-21 17:08:15 ----AD---- C:\Program Files (x86)\EXPERTool
2016-09-16 09:56:42 ----A---- C:\WINDOWS\SYSWOW64\fmcodec.DLL
2016-09-12 17:50:09 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-09-12 17:50:06 ----A---- C:\WINDOWS\avastSS.scr
2016-09-09 20:25:58 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1-1-0-26-0.dll
2016-09-09 20:25:28 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo-1-1-0-26-0.exe
2016-09-09 20:25:10 ----A---- C:\WINDOWS\system32\vulkan-1-1-0-26-0.dll
2016-09-09 20:24:38 ----A---- C:\WINDOWS\system32\vulkaninfo-1-1-0-26-0.exe
2016-08-29 21:42:27 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-08-28 19:05:54 ----AD---- C:\Program Files (x86)\GPU Temp
======List of files/folders modified in the last 1 month======