Stránka 1 z 2

Zasekaný počítač, malware

Napsal: 22 říj 2016 07:55
od CZDaywalker
Dobrý den,

Prosím o kontrolu logu = uživatel si sám stáhl nejdříve adwcleaner a pak MBAM.
Po kontrole a vymazání nějakých věcí mi ho dal na kontrolu, protože se mu zdá pomalý...

Logfile of random's system information tool 1.13 (written by random/random)
Run by Lenka at 2016-10-22 08:52:25
Microsoft Windows 10 Home
System drive C: has 188 GB (64%) free of 295 GB
Total RAM: 2939 MB (56% free)
X64

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:52:33, on 22.10.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal

Running processes:
C:\Program Files\trend micro\Lenka_RSITx64.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE11ENGB/MSN_WCP
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Bitdefender Antivirus Free Edition (gzserv) - Bitdefender - C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Roxio UPnP Renderer 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
O23 - Service: Roxio Upnp Server 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Media plus Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: VAIO Media plus Database Manager (SOHDBSvr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe
O23 - Service: VAIO Media plus Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: VAIO Media plus Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Media plus Playlist Manager (SOHPlMgr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata Intelligent Network Service Manager (VcmINSMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VSNService - Sony Corporation - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11084 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe" /service
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-4191cb3c-0b9a-409f-9326-6a36cab2ea12 -SystemEventPortName:HostProcess-ddf7d1a7-0a06-486f-b6e3-c9957d1157ae -IoCancelEventPortName:HostProcess-8fdad5f7-40b8-4904-a475-b46736df2b38 -NonStateChangingEventPortName:HostProcess-f8c6423d-8ee4-43db-8b36-45be4ee1b683 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:8c79c2f9-9a61-402b-b281-cc9d1c8c9341 -DeviceGroupId:WpdFsGroup
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe"
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\svchost.exe -k appmodel

"C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe"
"C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe"
"C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Sony\VAIO Power Management\SPMService.exe"
"C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe"
"C:\Program Files\Sony\VAIO Smart Network\VSNService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe" -RunBySCM
C:\WINDOWS\SysWoW64\DllHost.exe /Processid:{78FD0120-D39C-45D8-A9BE-2B802B3C23E5}
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator
"C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe"
"C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe" -noshow
C:\WINDOWS\SysWoW64\DllHost.exe /Processid:{78FD0120-D39C-45D8-A9BE-2B802B3C23E5}
/Device:00000060
"C:\Program Files (x86)\Sony\VAIO Event Service\VESGfxMgr.exe" -Embedding
sihost.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\WINDOWS\system32\AUDIODG.EXE 0x298
"C:\Program Files\Sony\VAIO Power Management\SPMgr.exe" /Start
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Apoint\Apoint.exe"
"C:\Program Files\Apoint\ApMsgFwd.exe" -s{05FA8492-C047-4207-BE65-780D8591C113}
"C:\Program Files\Apoint\Apvfb.exe"
"Apntex.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"

"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Users\Lenka\Desktop\RSITx64.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 644 648 656 8192 652

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2189116564-477309667-4237360652-1001Core.job - C:\Users\Lenka\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-2189116564-477309667-4237360652-1001UA.job - C:\Users\Lenka\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89 - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Lenka\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe

=========Google Chrome=========

C:\Users\Lenka\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Web Store 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Google Docs 0.9
Extension apdfllckaahabafndbhieahigkjlhalf
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension felcaaldnbdncclmgdcncolpebgiejap
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension lifbcibllhkdhoafpjfnlhfpfgnpldfl 2 Skype 8.1.0.9127
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.2.0
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Chrome Web Store Payments 1.0.0.0
Extension pjkljhegncpnkpknbcohdijeoejaedia
Homepage:
default_search_provider.search_url:
C:\Users\Lenka\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl]
"Path"=C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"=
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511161178}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07 346736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2013-08-07 318960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-19 43520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2009-11-19 320920]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-07 256112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2013-08-07 761840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2013-08-07 458736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-11-19 41368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07 346736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-07 256112]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Apoint"=C:\Program Files\Apoint\Apoint.exe [2009-08-03 208384]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-07-24 7938080]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-07-24 1833504]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"iCloudServices"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2014-10-17 43816]
"ApplePhotoStreams"=C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [2014-11-21 43816]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-09-12 29645440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
C:\Program Files\Apoint\Apoint.exe [2009-08-03 208384]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApplePhotoStreams]
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [2014-11-21 43816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-07-31 43816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVG_UI]
C:\Program Files (x86)\AVG\AVG2014\avgui.exe /TRAYONLY []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
C:\Users\Lenka\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-03-08 138096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\Windows\system32\hkcmd.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-06-05 186904]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iCloudServices]
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2014-10-17 43816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\Windows\system32\igfxtray.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Internet Helper Anti-phishing]
C:\ProgramData\Internet Helper Anti-phishing\internetHelper_antiphishing.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\Windows\system32\igfxpers.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-07-24 7938080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-09-12 29645440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-07-24 1833504]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify]
C:\Users\Lenka\AppData\Roaming\Spotify\Spotify.exe [2014-02-22 6118400]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
C:\Users\Lenka\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-02-22 1171968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zune Launcher]
C:\Program Files\Zune\ZuneLauncher.exe [2011-08-05 163552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lenka^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Messenger.lnk]
C:\Users\Lenka\AppData\Local\Facebook\MESSEN~1\214814~1.0\FACEBO~1.EXE [2013-03-07 248240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Lenka^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MyPC Backup.lnk]
C:\PROGRA~2\MYPCBA~1\MYPCBA~1.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2014-10-02 421888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.inf - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1
.ini - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\WINDOWS\System32\WScript.exe" "%1" %*
.txt - open - "%SystemRoot%\system32\NOTEPAD.EXE" %1

======List of files/folders created in the last 1 month======

2016-10-22 08:52:25 ----D---- C:\rsit
2016-10-22 08:52:25 ----D---- C:\Program Files\trend micro
2016-10-22 08:48:36 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-21 23:31:57 ----D---- C:\nokia
2016-10-21 23:03:24 ----A---- C:\WINDOWS\SYSWOW64\SER9PL.sys
2016-10-21 22:56:54 ----D---- C:\Users\Lenka\AppData\Roaming\PC Suite
2016-10-21 22:56:52 ----D---- C:\ProgramData\PC Suite
2016-10-21 22:55:53 ----A---- C:\WINDOWS\system32\drivers\pccsmcfdx64.sys
2016-10-21 22:55:44 ----AD---- C:\Program Files (x86)\PC Connectivity Solution
2016-10-21 22:52:32 ----D---- C:\Users\Lenka\AppData\Roaming\Nokia
2016-10-21 22:48:24 ----A---- C:\ProgramData\SystemInformation.txt
2016-10-21 22:46:55 ----A---- C:\WINDOWS\system32\nmwcdclsX64.dll
2016-10-21 22:45:15 ----D---- C:\ProgramData\Nokia
2016-10-21 22:45:15 ----AD---- C:\Program Files (x86)\Nokia
2016-10-21 22:37:56 ----D---- C:\ProgramData\Installations
2016-10-21 22:05:26 ----A---- C:\WINDOWS\system32\drivers\avchv.sys
2016-10-21 20:18:17 ----A---- C:\WINDOWS\system32\bddel.exe
2016-10-21 20:18:16 ----A---- C:\WINDOWS\system32\bddel.dat
2016-10-21 19:53:31 ----A---- C:\WINDOWS\system32\drivers\SET524E.tmp
2016-10-21 19:53:23 ----A---- C:\WINDOWS\system32\drivers\avckf.sys
2016-10-21 19:53:23 ----A---- C:\WINDOWS\system32\drivers\avc3.sys
2016-10-21 19:48:46 ----D---- C:\Program Files (x86)\SpeedFan
2016-10-21 19:48:40 ----D---- C:\Program Files\Bitdefender
2016-10-21 19:48:39 ----A---- C:\WINDOWS\system32\drivers\gzflt.sys
2016-10-21 19:48:38 ----A---- C:\WINDOWS\system32\drivers\trufos.sys
2016-10-21 19:48:14 ----D---- C:\Users\Lenka\AppData\Roaming\QuickScan
2016-10-21 19:41:40 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2016-10-21 19:41:05 ----AD---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-10-21 19:41:05 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2016-10-21 19:41:05 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2016-10-21 19:21:08 ----D---- C:\AdwCleaner
2016-10-21 18:55:04 ----D---- C:\ProgramData\LGE
2016-10-21 18:55:04 ----D---- C:\ProgramData\HTC
2016-10-21 18:55:04 ----D---- C:\Program Files (x86)\Microsoft Care Suite
2016-10-21 18:53:51 ----D---- C:\Program Files\DIFX
2016-10-21 18:53:49 ----D---- C:\WINDOWS\SYSWOW64\FFU Loader Driver
2016-10-21 18:53:37 ----D---- C:\Program Files (x86)\Windows Kits
2016-10-21 18:49:25 ----D---- C:\ProgramData\Package Cache
2016-10-18 03:01:39 ----D---- C:\WINDOWS\PCHEALTH
2016-10-18 02:39:26 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-10-18 02:39:24 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-10-18 02:39:23 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-10-18 02:39:22 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-10-18 02:39:21 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-10-18 02:39:21 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-10-18 02:39:20 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-10-18 02:39:20 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2016-10-18 02:39:20 ----A---- C:\WINDOWS\system32\wpx.dll
2016-10-18 02:39:20 ----A---- C:\WINDOWS\system32\ncsi.dll
2016-10-18 02:39:19 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2016-10-18 02:39:19 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-10-18 02:39:19 ----A---- C:\WINDOWS\system32\nlasvc.dll
2016-10-18 02:39:19 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-10-18 02:39:19 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-10-18 02:39:18 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-10-18 02:39:18 ----A---- C:\WINDOWS\system32\netshell.dll
2016-10-18 02:39:18 ----A---- C:\WINDOWS\system32\msdtctm.dll
2016-10-18 02:39:18 ----A---- C:\WINDOWS\system32\credprovs.dll
2016-10-18 02:39:18 ----A---- C:\WINDOWS\system32\bcdedit.exe
2016-10-18 02:39:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2016-10-18 02:39:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2016-10-18 02:39:17 ----A---- C:\WINDOWS\SYSWOW64\dsreg.dll
2016-10-18 02:39:17 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2016-10-18 02:39:17 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-10-18 02:39:16 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2016-10-18 02:39:16 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2016-10-18 02:39:16 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2016-10-18 02:39:16 ----A---- C:\WINDOWS\system32\dsreg.dll
2016-10-18 02:39:15 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2016-10-18 02:39:15 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2016-10-18 02:39:15 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2016-10-18 02:39:15 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-18 02:39:15 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-10-18 02:39:15 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-10-18 02:39:13 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-10-18 02:39:11 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-10-18 02:39:09 ----A---- C:\WINDOWS\system32\shell32.dll
2016-10-18 02:39:07 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-10-18 02:39:05 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-10-18 02:39:03 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-10-18 02:39:02 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-10-18 02:39:02 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-10-18 02:39:01 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-10-18 02:39:00 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-10-18 02:39:00 ----A---- C:\WINDOWS\system32\wininet.dll
2016-10-18 02:38:59 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-10-18 02:38:59 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-10-18 02:38:58 ----A---- C:\WINDOWS\system32\smartscreen.exe
2016-10-18 02:38:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-10-18 02:38:57 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-10-18 02:38:57 ----A---- C:\WINDOWS\system32\drivers\MegaSas2i.sys
2016-10-18 02:38:56 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-10-18 02:38:55 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-10-18 02:38:54 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-10-18 02:38:54 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-10-18 02:38:54 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-10-18 02:38:54 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-10-18 02:38:53 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-10-18 02:38:53 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-10-18 02:38:52 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2016-10-18 02:38:51 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2016-10-18 02:38:51 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2016-10-18 02:38:51 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2016-10-18 02:38:51 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2016-10-18 02:38:51 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2016-10-18 02:38:51 ----A---- C:\WINDOWS\system32\adsmsext.dll
2016-10-18 02:38:48 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2016-10-18 02:38:48 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2016-10-18 02:38:48 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2016-10-18 02:38:48 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-10-18 02:38:47 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-10-18 02:38:44 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-10-18 02:38:42 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-10-18 02:38:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-10-18 02:38:39 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-10-18 02:38:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-10-18 02:38:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-10-18 02:38:38 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-10-18 02:38:37 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-10-18 02:38:36 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2016-10-18 02:38:35 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2016-10-18 02:38:35 ----A---- C:\WINDOWS\system32\wc_storage.dll
2016-10-18 02:38:35 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-10-18 02:38:35 ----A---- C:\WINDOWS\system32\daxexec.dll
2016-10-18 02:38:34 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-10-18 02:38:33 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2016-10-18 02:38:32 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-10-18 02:38:32 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-10-18 02:38:32 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-10-18 02:38:32 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-10-18 02:38:31 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-10-18 02:38:31 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-10-18 02:38:31 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-10-18 02:38:30 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2016-10-18 02:38:30 ----A---- C:\WINDOWS\system32\efswrt.dll
2016-10-18 02:38:29 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-10-18 02:38:29 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-10-18 02:38:29 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-10-18 02:38:29 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-10-18 02:38:28 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-10-18 02:38:28 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-10-18 02:38:28 ----A---- C:\WINDOWS\system32\dialclient.dll
2016-10-18 02:38:22 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-10-18 02:38:21 ----A---- C:\WINDOWS\system32\wmp.dll
2016-10-18 02:38:20 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-10-18 02:38:19 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-10-18 02:38:18 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-10-18 02:38:17 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-10-18 02:38:17 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2016-10-18 02:38:16 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-10-18 02:38:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-10-18 02:38:15 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-10-18 02:38:14 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-10-18 02:38:14 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-10-18 02:38:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2016-10-18 02:38:13 ----A---- C:\WINDOWS\system32\winload.exe
2016-10-18 02:38:12 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2016-10-18 02:38:12 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-10-18 02:38:11 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-10-18 02:38:11 ----A---- C:\WINDOWS\system32\winresume.exe
2016-10-18 02:38:11 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2016-10-18 02:38:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2016-10-18 02:38:09 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-10-18 02:38:08 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-10-18 02:38:08 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-10-18 02:38:08 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2016-10-18 02:38:08 ----A---- C:\WINDOWS\system32\FrameServer.dll
2016-10-18 02:38:07 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2016-10-18 02:38:07 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-10-18 02:38:07 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-10-18 02:38:07 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-10-18 02:38:06 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2016-10-18 02:38:06 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-10-18 02:38:06 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2016-10-18 02:38:06 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2016-10-18 02:38:06 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-10-18 02:38:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2016-10-18 02:38:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2016-10-18 02:38:05 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-10-18 02:38:05 ----A---- C:\WINDOWS\system32\offreg.dll
2016-10-18 02:38:05 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-10-18 02:38:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2016-10-18 02:38:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2016-10-18 02:38:04 ----A---- C:\WINDOWS\system32\msi.dll
2016-10-18 02:38:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2016-10-18 02:38:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-18 02:38:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2016-10-18 02:38:03 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-10-18 02:38:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-10-18 02:38:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2016-10-18 02:38:02 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2016-10-18 02:38:02 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2016-10-18 02:38:02 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2016-10-18 02:38:00 ----A---- C:\WINDOWS\system32\twinui.dll
2016-10-18 02:37:58 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-10-18 02:37:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-10-18 02:37:55 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-10-18 02:37:54 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-10-18 02:37:53 ----A---- C:\WINDOWS\system32\mos.dll
2016-10-18 02:37:52 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-10-18 02:37:52 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-10-18 02:37:50 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-10-18 02:37:49 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-10-18 02:37:49 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-10-18 02:37:49 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-10-18 02:37:48 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-10-18 02:37:47 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-10-18 02:37:46 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-10-18 02:37:46 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-10-18 02:37:46 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-10-18 02:37:45 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-10-18 02:37:45 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-10-18 02:37:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-10-18 02:37:45 ----A---- C:\WINDOWS\system32\cloudAP.dll
2016-10-18 02:37:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2016-10-18 02:37:44 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2016-10-18 02:37:44 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-10-18 02:37:44 ----A---- C:\WINDOWS\system32\mfps.dll
2016-10-18 02:37:44 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-10-18 02:37:44 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-10-18 02:37:43 ----A---- C:\WINDOWS\SYSWOW64\adsmsext.dll
2016-10-18 02:37:43 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-10-18 02:37:43 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-10-18 02:37:43 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-10-18 02:37:42 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-10-18 02:37:41 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-10-18 02:37:40 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-10-18 02:37:40 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-10-18 02:37:40 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2016-10-18 01:01:33 ----DC---- C:\WINDOWS\Panther
2016-10-18 00:57:40 ----D---- C:\Windows.old
2016-10-18 00:41:57 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\TempSignedLicenseExchangeTask.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\MSAC3ENC.DLL
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\LicenseManagerApi.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\system32\MSAC3ENC.DLL
2016-10-18 00:41:56 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\system32\encapi.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2016-10-18 00:41:56 ----A---- C:\WINDOWS\system32\devenum.dll
2016-10-18 00:41:55 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2016-10-18 00:41:55 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncPolicy.dll
2016-10-18 00:41:55 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-10-18 00:41:55 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2016-10-18 00:41:55 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2016-10-18 00:41:55 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2016-10-18 00:41:55 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2016-10-18 00:41:54 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-10-18 00:41:53 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-10-18 00:41:52 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2016-10-18 00:41:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\FSClient.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-10-18 00:41:51 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-10-18 00:41:50 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-10-18 00:41:49 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-10-18 00:41:49 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-10-18 00:41:44 ----A---- C:\WINDOWS\system32\LsaIso.exe
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\manage-bde.exe
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\fveui.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\fvenotify.exe
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\bdeunlock.exe
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\bdeui.dll
2016-10-18 00:41:43 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-10-18 00:41:42 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2016-10-18 00:41:42 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-10-18 00:41:42 ----A---- C:\WINDOWS\system32\wpnapps.dll
2016-10-18 00:41:42 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-10-18 00:41:42 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\SYSWOW64\wlancfg.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-10-18 00:41:41 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-10-18 00:41:41 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-10-18 00:41:40 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\wlancfg.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\mprddm.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\dasHost.exe
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\das.dll
2016-10-18 00:41:40 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2016-10-18 00:41:39 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-10-18 00:41:39 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-10-18 00:41:39 ----A---- C:\WINDOWS\system32\mprdim.dll
2016-10-18 00:41:39 ----A---- C:\WINDOWS\system32\evr.dll
2016-10-18 00:41:39 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-10-18 00:41:38 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-10-18 00:41:38 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2016-10-18 00:41:38 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-10-18 00:41:38 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2016-10-18 00:41:38 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-10-18 00:41:37 ----A---- C:\WINDOWS\system32\wmploc.DLL
2016-10-18 00:41:37 ----A---- C:\WINDOWS\system32\spwmp.dll
2016-10-18 00:41:37 ----A---- C:\WINDOWS\system32\dxmasf.dll
2016-10-18 00:41:36 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2016-10-18 00:41:36 ----A---- C:\WINDOWS\SYSWOW64\spwmp.dll
2016-10-18 00:41:36 ----A---- C:\WINDOWS\SYSWOW64\dxmasf.dll
2016-10-18 00:41:36 ----A---- C:\WINDOWS\system32\wmpps.dll
2016-10-18 00:41:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2016-10-18 00:41:35 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-10-18 00:41:35 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2016-10-18 00:41:35 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-10-18 00:41:34 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2016-10-18 00:41:34 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-10-18 00:41:33 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2016-10-18 00:41:32 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-10-18 00:41:32 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2016-10-18 00:41:31 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-10-18 00:41:30 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-10-18 00:41:30 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-10-18 00:41:30 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-10-18 00:41:30 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-10-18 00:41:29 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-10-18 00:41:29 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\SYSWOW64\NetworkCollectionAgent.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\system32\NetworkCollectionAgent.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\system32\iesetup.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\system32\iernonce.dll
2016-10-18 00:41:28 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-10-18 00:41:27 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-10-18 00:41:27 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2016-10-18 00:41:27 ----A---- C:\WINDOWS\SYSWOW64\cngkeyhelper.dll
2016-10-18 00:41:27 ----A---- C:\WINDOWS\system32\Geolocation.dll
2016-10-18 00:41:27 ----A---- C:\WINDOWS\system32\cngkeyhelper.dll
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\lsass.exe
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2016-10-18 00:41:26 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-10-18 00:41:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-18 00:41:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2016-10-18 00:41:22 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2016-10-18 00:41:22 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-10-18 00:41:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-10-18 00:41:15 ----A---- C:\WINDOWS\system32\msxml6r.dll
2016-10-18 00:41:15 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-10-18 00:41:15 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-10-18 00:41:15 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2016-10-18 00:41:15 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-10-18 00:41:15 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-10-18 00:41:14 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2016-10-18 00:41:14 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2016-10-18 00:41:14 ----A---- C:\WINDOWS\system32\drivers\cmimcext.sys
2016-10-18 00:41:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-10-18 00:41:13 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-10-18 00:41:13 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2016-10-18 00:41:12 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2016-10-18 00:41:08 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2016-10-18 00:41:08 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-10-18 00:41:08 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-10-18 00:41:08 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2016-10-18 00:41:08 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\slc.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\pwrshplugin.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-10-18 00:41:07 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2016-10-18 00:41:06 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-10-18 00:41:06 ----A---- C:\WINDOWS\system32\gdi32full.dll
2016-10-18 00:41:06 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-10-18 00:41:05 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-10-18 00:41:05 ----A---- C:\WINDOWS\system32\tsmf.dll
2016-10-18 00:41:05 ----A---- C:\WINDOWS\system32\mstsc.exe
2016-10-18 00:41:05 ----A---- C:\WINDOWS\system32\msctf.dll
2016-10-18 00:41:04 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-10-18 00:41:04 ----A---- C:\WINDOWS\system32\SessEnv.dll
2016-10-18 00:41:04 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-10-18 00:41:04 ----A---- C:\WINDOWS\system32\lsm.dll
2016-10-18 00:41:03 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-10-18 00:41:03 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-10-18 00:41:03 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-10-18 00:41:02 ----A---- C:\WINDOWS\system32\rshx32.dll
2016-10-18 00:41:02 ----A---- C:\WINDOWS\system32\bootux.dll
2016-10-18 00:41:01 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-10-18 00:41:01 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-10-18 00:41:01 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-10-18 00:41:01 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2016-10-18 00:41:01 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-10-18 00:41:01 ----A---- C:\WINDOWS\explorer.exe
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\Family.Client.dll
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\Family.Authentication.dll
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\authui.dll
2016-10-18 00:41:00 ----A---- C:\WINDOWS\system32\aclui.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\puiobj.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\localspl.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\credprovslegacy.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-10-18 00:40:59 ----A---- C:\WINDOWS\splwow64.exe
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\RMapi.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\PhoneService.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-10-18 00:40:58 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\provtool.exe
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\provops.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\provengine.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\provdatastore.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-10-18 00:40:57 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-10-18 00:40:56 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\w32time.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\usermgr.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\uReFS.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\tcpipcfg.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\sbe.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\qedit.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\nltest.exe
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\nettrace.dll
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\netiougc.exe
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2016-10-18 00:40:55 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2016-10-18 00:40:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-10-18 00:40:54 ----A---- C:\WINDOWS\system32\SndVolSSO.dll
2016-10-18 00:40:54 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-10-18 00:40:54 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-10-18 00:40:54 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-10-18 00:40:54 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-10-18 00:40:50 ----A---- C:\WINDOWS\system32\hal.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\sppcext.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\sppc.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\slcext.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\slc.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\odbcconf.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\GenValObj.exe
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\dsregcmd.exe
2016-10-18 00:40:48 ----A---- C:\WINDOWS\system32\appinfo.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\system32\pidgenx.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\system32\ole32.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\system32\imapi2.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-10-18 00:40:47 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\wsp_health.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\RelPost.exe
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\invagent.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\devinv.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-10-18 00:40:46 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\Sens.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\ReAgent.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\fhcfg.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\discan.dll
2016-10-18 00:40:45 ----A---- C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2016-10-18 00:40:44 ----A---- C:\WINDOWS\system32\pwrshplugin.dll
2016-10-18 00:40:44 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2016-10-18 00:40:44 ----A---- C:\WINDOWS\system32\DscCore.dll
2016-10-18 00:40:43 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-10-18 00:40:38 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-10-18 00:40:38 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\SYSWOW64\biwinrt.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\biwinrt.dll
2016-10-18 00:40:37 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-10-18 00:40:36 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2016-10-18 00:40:36 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2016-10-18 00:40:36 ----A---- C:\WINDOWS\system32\NotificationController.dll
2016-10-18 00:40:35 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-10-18 00:40:35 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\PhoneutilRes.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\wups2.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\usocore.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\PhoneutilRes.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\DbgModel.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-10-18 00:40:34 ----A---- C:\WINDOWS\system32\AddressParser.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2016-10-18 00:40:33 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-10-18 00:40:33 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-10-18 00:40:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2016-10-18 00:40:32 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\NetworkUXBroker.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2016-10-18 00:40:32 ----A---- C:\WINDOWS\system32\dafpos.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\winmde.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\mfpmp.exe
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\mf.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-10-18 00:40:31 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\skci.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\securekernel.exe
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\nativemap.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MosResource.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\moshost.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapRouter.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2016-10-18 00:40:30 ----A---- C:\WINDOWS\system32\BingMaps.dll

Re: Zasekaný počítač, malware

Napsal: 22 říj 2016 07:55
od CZDaywalker
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\user32.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\tquery.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\mssprxy.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\InputService.dll
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\hvloader.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\hvix64.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\hvax64.exe
2016-10-18 00:40:25 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2016-10-18 00:40:24 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2016-10-18 00:40:24 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\win32u.dll
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\win32k.sys
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-10-18 00:40:24 ----A---- C:\WINDOWS\system32\cdd.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\wevtapi.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\D3D12.dll
2016-10-18 00:40:23 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\wkssvc.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\wincorlib.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\webio.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\tzres.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\schannel.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\samlib.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\offlinesam.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\NfcRadioMedia.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\mprapi.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\container.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\combase.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\ci.dll
2016-10-18 00:40:22 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2016-10-18 00:40:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-10-18 00:40:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-10-18 00:40:21 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-10-18 00:40:21 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-10-18 00:40:21 ----A---- C:\WINDOWS\system32\qmgr.dll
2016-10-18 00:40:21 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2016-10-18 00:40:20 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-10-18 00:40:20 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-10-18 00:40:20 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-10-18 00:40:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2016-10-18 00:40:19 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-10-18 00:40:19 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-10-18 00:40:19 ----A---- C:\WINDOWS\system32\wintrust.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2016-10-18 00:40:18 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2016-10-18 00:40:17 ----A---- C:\WINDOWS\SYSWOW64\DataExchange.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-10-18 00:40:16 ----A---- C:\WINDOWS\system32\DataExchange.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\Windows.Devices.Printers.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-10-18 00:40:15 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Energy.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\ffbroker.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\cdp.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\AppContracts.dll
2016-10-18 00:40:14 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\setupugc.exe
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\resutils.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\clusapi.dll
2016-10-18 00:40:13 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-10-18 00:40:09 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\SYSWOW64\BackgroundMediaPolicy.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\Windows.Media.Ocr.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\tdh.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\pdh.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\icsvcext.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\icsvc.dll
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2016-10-18 00:40:08 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\system32\storagewmi.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\system32\spaceman.exe
2016-10-18 00:40:07 ----A---- C:\WINDOWS\system32\smphost.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\system32\mispace.dll
2016-10-18 00:40:07 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\WSManHTTPConfig.exe
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.UserDeviceAssociation.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\mprapi.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2016-10-18 00:40:06 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\dwmapi.dll
2016-10-18 00:40:06 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\vpci.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-10-18 00:40:05 ----A---- C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
2016-10-18 00:30:30 ----A---- C:\WINDOWS\system32\prm0005.dll
2016-10-18 00:29:36 ----D---- C:\WINDOWS\system32\Microsoft
2016-10-18 00:27:21 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2016-10-18 00:27:21 ----D---- C:\WINDOWS\system32\msmq
2016-10-18 00:27:21 ----D---- C:\WINDOWS\system32\BestPractices
2016-10-18 00:27:19 ----D---- C:\Program Files\Reference Assemblies
2016-10-18 00:27:19 ----D---- C:\Program Files\MSBuild
2016-10-18 00:27:19 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-10-18 00:27:19 ----D---- C:\Program Files (x86)\MSBuild
2016-10-18 00:27:19 ----D---- C:\inetpub
2016-10-18 00:26:24 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-10-18 00:26:23 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-10-18 00:26:23 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-10-18 00:26:18 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-10-18 00:26:18 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-10-18 00:26:18 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-10-18 00:25:45 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2016-10-17 15:48:03 ----D---- C:\ProgramData\Microsoft OneDrive
2016-10-17 15:43:45 ----D---- C:\ProgramData\USOShared
2016-10-17 15:41:18 ----SHD---- C:\Recovery
2016-10-17 15:41:18 ----SHD---- C:\ProgramData\Templates
2016-10-17 15:41:18 ----SHD---- C:\ProgramData\Start Menu
2016-10-17 15:41:18 ----SHD---- C:\ProgramData\Favorites
2016-10-17 15:41:18 ----SHD---- C:\ProgramData\Documents
2016-10-17 15:41:18 ----SHD---- C:\ProgramData\Desktop
2016-10-17 15:41:18 ----SHD---- C:\ProgramData\Application Data
2016-10-17 15:22:34 ----ASH---- C:\hiberfil.sys
2016-10-17 15:12:47 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-10-17 15:10:00 ----SD---- C:\Users\Lenka\AppData\Roaming\Microsoft
2016-10-17 15:08:51 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-17 15:08:43 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-10-17 15:06:15 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-10-17 15:05:48 ----D---- C:\Program Files\Realtek
2016-10-17 15:05:47 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-10-17 15:05:30 ----D---- C:\Program Files\Apoint
2016-10-17 15:04:47 ----AS---- C:\WINDOWS\bootstat.dat
2016-10-17 15:03:24 ----D---- C:\WINDOWS\Prefetch
2016-10-17 15:03:18 ----D---- C:\WINDOWS\system32\SleepStudy
2016-10-17 15:03:18 ----D---- C:\WINDOWS\ServiceProfiles

======List of files/folders modified in the last 1 month======

2016-10-22 08:52:25 ----RD---- C:\Program Files
2016-10-22 08:51:28 ----D---- C:\WINDOWS\System32
2016-10-22 08:51:05 ----D---- C:\Users\Lenka\AppData\Roaming\Skype
2016-10-22 08:50:21 ----D---- C:\WINDOWS\INF
2016-10-22 08:49:15 ----D---- C:\WINDOWS\Temp
2016-10-22 08:48:30 ----D---- C:\Windows
2016-10-22 08:47:44 ----D---- C:\WINDOWS\system32\sru
2016-10-22 08:47:38 ----D---- C:\WINDOWS\system32\config
2016-10-22 08:47:19 ----SHD---- C:\WINDOWS\Installer
2016-10-22 08:44:49 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2016-10-22 08:44:49 ----D---- C:\WINDOWS\system32\LogFiles
2016-10-22 08:44:48 ----D---- C:\WINDOWS\debug
2016-10-22 08:42:32 ----RD---- C:\Program Files (x86)
2016-10-22 08:42:22 ----D---- C:\WINDOWS\Tasks
2016-10-22 08:42:22 ----D---- C:\WINDOWS\system32\Tasks
2016-10-22 08:37:25 ----D---- C:\WINDOWS\system32\drivers
2016-10-22 08:37:25 ----AD---- C:\WINDOWS\SysWOW64
2016-10-22 08:36:52 ----D---- C:\WINDOWS\system32\catroot2
2016-10-22 08:36:52 ----D---- C:\WINDOWS\system32\CatRoot
2016-10-22 07:13:25 ----D---- C:\WINDOWS\rescache
2016-10-22 07:04:41 ----D---- C:\WINDOWS\Logs
2016-10-22 05:41:58 ----D---- C:\WINDOWS\system32\DriverStore
2016-10-22 05:41:53 ----D---- C:\WINDOWS\WinSxS
2016-10-22 05:17:47 ----RD---- C:\WINDOWS\Microsoft.NET
2016-10-22 05:17:40 ----RD---- C:\WINDOWS\assembly
2016-10-22 05:11:43 ----HD---- C:\Program Files\WindowsApps
2016-10-21 23:03:23 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-10-21 23:02:18 ----D---- C:\Program Files (x86)\Common Files
2016-10-21 23:01:05 ----D---- C:\Users\Lenka\AppData\Roaming\vlc
2016-10-21 22:56:52 ----HD---- C:\ProgramData
2016-10-21 22:55:53 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-10-21 22:50:14 ----D---- C:\WINDOWS\AppReadiness
2016-10-21 22:45:37 ----RSD---- C:\WINDOWS\Fonts
2016-10-21 22:42:59 ----SHD---- C:\System Volume Information
2016-10-21 19:41:05 ----D---- C:\ProgramData\Malwarebytes
2016-10-21 19:36:28 ----D---- C:\WINDOWS\system32\WDI
2016-10-21 19:12:14 ----D---- C:\ProgramData\Norton
2016-10-21 19:10:16 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-10-21 19:10:09 ----SD---- C:\WINDOWS\system32\DiagSvcs
2016-10-21 19:10:09 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-10-21 19:10:09 ----D---- C:\WINDOWS\system32\wbem
2016-10-21 19:10:09 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2016-10-21 19:10:09 ----D---- C:\WINDOWS\system32\migwiz
2016-10-21 19:10:09 ----D---- C:\WINDOWS\system32\en-US
2016-10-21 19:10:09 ----D---- C:\WINDOWS\system32\Boot
2016-10-21 19:10:07 ----D---- C:\WINDOWS\ShellExperiences
2016-10-21 19:10:06 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-10-21 19:10:06 ----D---- C:\Program Files\Windows Photo Viewer
2016-10-21 19:10:06 ----D---- C:\Program Files\Windows Mail
2016-10-21 19:10:06 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-10-21 18:57:56 ----HD---- C:\WINDOWS\ELAMBKUP
2016-10-21 18:57:54 ----D---- C:\Program Files\Common Files
2016-10-21 18:55:04 ----ASD---- C:\ProgramData\Microsoft
2016-10-18 03:50:07 ----D---- C:\WINDOWS\appcompat
2016-10-18 03:04:04 ----D---- C:\WINDOWS\CbsTemp
2016-10-18 03:03:48 ----D---- C:\ProgramData\Microsoft Help
2016-10-18 03:00:34 ----D---- C:\WINDOWS\system32\MRT
2016-10-18 02:54:18 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-10-18 02:41:19 ----D---- C:\WINDOWS\system32\restore
2016-10-18 02:13:16 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-10-18 00:45:00 ----SD---- C:\WINDOWS\SYSWOW64\F12
2016-10-18 00:45:00 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-10-18 00:45:00 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2016-10-18 00:45:00 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-10-18 00:44:59 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-10-18 00:44:58 ----D---- C:\WINDOWS\system32\zh-TW
2016-10-18 00:44:58 ----D---- C:\WINDOWS\system32\zh-HK
2016-10-18 00:44:58 ----D---- C:\WINDOWS\system32\zh-CN
2016-10-18 00:44:57 ----SD---- C:\WINDOWS\system32\F12
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\uk-UA
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\tr-TR
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\th-TH
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\sv-SE
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\sl-SI
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\sk-SK
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\setup
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\ru-RU
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\ro-RO
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\pt-PT
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\pt-BR
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\pl-PL
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\nl-NL
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\nb-NO
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\lv-LV
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\lt-LT
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\ko-KR
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\ja-jp
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\it-IT
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\hu-HU
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\hr-HR
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\he-IL
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\fr-FR
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\fr-CA
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\fi-FI
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\et-EE
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\es-MX
2016-10-18 00:44:57 ----D---- C:\WINDOWS\system32\es-ES
2016-10-18 00:44:56 ----SD---- C:\WINDOWS\system32\dsc
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\en-GB
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\el-GR
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\Dism
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\de-DE
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\da-DK
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\cs-CZ
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\bg-BG
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\ar-SA
2016-10-18 00:44:56 ----D---- C:\WINDOWS\system32\appraiser
2016-10-18 00:44:53 ----D---- C:\WINDOWS\Provisioning
2016-10-18 00:44:53 ----D---- C:\WINDOWS\bcastdvr
2016-10-18 00:44:53 ----D---- C:\WINDOWS\AppPatch
2016-10-18 00:44:52 ----RD---- C:\Program Files\Windows Defender
2016-10-18 00:44:52 ----D---- C:\Program Files\Windows Media Player
2016-10-18 00:44:52 ----D---- C:\Program Files (x86)\Windows Media Player
2016-10-18 00:44:52 ----D---- C:\Program Files (x86)\Windows Mail
2016-10-18 00:44:52 ----D---- C:\Program Files (x86)\Windows Defender
2016-10-18 00:30:54 ----D---- C:\WINDOWS\OCR
2016-10-18 00:27:21 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-10-18 00:27:21 ----D---- C:\WINDOWS\system32\inetsrv
2016-10-18 00:27:13 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2016-10-18 00:27:13 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2016-10-18 00:27:12 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-10-18 00:27:12 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-10-18 00:27:12 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-10-18 00:27:12 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-10-18 00:27:12 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-10-18 00:27:12 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-10-18 00:27:10 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-10-18 00:27:10 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-10-18 00:27:10 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-10-18 00:27:10 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-10-18 00:27:10 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-10-18 00:27:10 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-10-18 00:27:09 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2016-10-18 00:27:09 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-10-18 00:27:08 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-10-18 00:27:07 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-10-18 00:27:05 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-10-18 00:27:05 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-10-18 00:27:04 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-10-18 00:27:03 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2016-10-18 00:27:03 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-10-18 00:27:02 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2016-10-18 00:27:01 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-10-18 00:27:01 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-10-17 15:43:46 ----D---- C:\ProgramData\USOPrivate
2016-10-17 15:40:55 ----D---- C:\WINDOWS\SoftwareDistribution
2016-10-17 15:38:10 ----D---- C:\WINDOWS\Registration
2016-10-17 15:38:00 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-10-17 15:38:00 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2016-10-17 15:31:28 ----RSD---- C:\WINDOWS\Media
2016-10-17 15:31:14 ----D---- C:\WINDOWS\system32\drivers\etc
2016-10-17 15:21:30 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-10-17 15:21:28 ----D---- C:\WINDOWS\system32\OEM
2016-10-17 15:21:28 ----D---- C:\WINDOWS\System
2016-10-17 15:21:28 ----D---- C:\WINDOWS\ShellNew
2016-10-17 15:20:27 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2016-10-17 15:15:28 ----D---- C:\WINDOWS\SYSWOW64\x64
2016-10-17 15:15:25 ----D---- C:\WINDOWS\SYSWOW64\SDA
2016-10-17 15:15:25 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-10-17 15:15:25 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-10-17 15:15:25 ----D---- C:\WINDOWS\SYSWOW64\Lang
2016-10-17 15:15:24 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-10-17 15:15:12 ----D---- C:\WINDOWS\system32\SPReview
2016-10-17 15:15:12 ----D---- C:\WINDOWS\system32\spool
2016-10-17 15:15:09 ----D---- C:\WINDOWS\system32\oobe
2016-10-17 15:15:09 ----D---- C:\WINDOWS\system32\NDF
2016-10-17 15:15:08 ----D---- C:\WINDOWS\system32\migration
2016-10-17 15:15:07 ----D---- C:\WINDOWS\system32\IME
2016-10-17 15:15:07 ----D---- C:\WINDOWS\system32\EventProviders
2016-10-17 15:15:04 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-10-17 15:15:03 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-10-17 15:13:22 ----D---- C:\WINDOWS\schemas
2016-10-17 15:13:22 ----D---- C:\WINDOWS\Resources
2016-10-17 15:13:11 ----D---- C:\WINDOWS\ehome
2016-10-17 15:13:06 ----RD---- C:\Users
2016-10-17 15:13:06 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-10-17 15:12:54 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-10-17 15:12:53 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-10-17 15:12:53 ----D---- C:\Program Files (x86)\Internet Explorer
2016-10-17 15:12:48 ----SHD---- C:\Program Files\Windows Sidebar
2016-10-17 15:12:48 ----D---- C:\Program Files\Microsoft Games
2016-10-17 15:12:47 ----D---- C:\Program Files\Internet Explorer
2016-10-17 15:12:47 ----AD---- C:\Program Files\Common Files\microsoft shared
2016-10-17 15:12:27 ----D---- C:\WINDOWS\system32\Recovery
2016-10-17 15:08:22 ----D---- C:\WINDOWS\system32\Sysprep
2016-10-17 15:06:22 ----RD---- C:\WINDOWS\PrintDialog
2016-10-17 15:06:22 ----RD---- C:\WINDOWS\MiracastView
2016-10-17 13:58:01 ----HD---- C:\$WINDOWS.~BT
2016-10-04 15:37:30 ----D---- C:\ProgramData\Skype
2016-10-04 15:37:23 ----RD---- C:\Program Files (x86)\Skype
2016-10-03 22:09:37 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 avc3;avc3; C:\WINDOWS\system32\DRIVERS\avc3.sys [2013-04-17 718840]
R0 iaStor;@oem7.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2009-06-05 408600]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-07-16 45920]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2009-05-20 55280]
R0 trufos;trufos; C:\WINDOWS\system32\DRIVERS\trufos.sys [2013-05-28 382536]
R1 gzflt;gzflt; C:\WINDOWS\system32\DRIVERS\gzflt.sys [2013-04-22 148696]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 rimsptsk;rimsptsk; C:\WINDOWS\System32\drivers\rimssn64.sys [2009-07-31 86528]
R2 risdptsk;risdptsk; C:\WINDOWS\System32\drivers\risdsn64.sys [2009-07-31 76288]
R3 ApfiltrService;@oem19.inf,%Filter.SvcDesc%;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2009-08-03 250928]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\WINDOWS\system32\DRIVERS\ArcSoftKsUFilter.sys [2009-05-26 19968]
R3 athr;@netathrx.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athwnx.sys [2016-07-16 4233728]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-10-18 175616]
R3 SFEP;@oem16.inf,%SvcDesc%;Sony Firmware Extension Parser; C:\WINDOWS\System32\drivers\SFEP.sys [2009-06-11 11392]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S1 bdfwfpf;bdfwfpf; \??\C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [2013-07-02 121928]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 avckf;avckf; C:\WINDOWS\system32\DRIVERS\avckf.sys [2013-04-17 593144]
S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2014-07-01 20872]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-10-18 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI; C:\WINDOWS\system32\drivers\IntcHdmi.sys [2009-08-05 139264]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 RTHDMIAzAudService;Service for HDMI; C:\WINDOWS\system32\drivers\RtHDMIVX.sys [2009-07-24 201472]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; %windir%\system32\svchost.exe -k apphost;"ServiceDll"=%windir%\system32\inetsrv\apphostsvc.dll
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CDPUserSvc_2af52;CDPUserSvc_2af52; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 gzserv;Bitdefender Antivirus Free Edition; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2016-03-02 79552]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2009-06-05 354840]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2015-11-20 21184]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-10-18 26112]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
R2 OneSyncSvc_2af52;Sync Host_2af52; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 uCamMonitor;CamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960]
R3 PimIndexMaintenanceSvc_2af52;Contact Data_2af52; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\TimeBrokerServer.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
S2 Roxio Upnp Server 10;Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [2009-06-26 362992]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-07-25 324224]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-26 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-08-07 182768]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_2af52;MessagingService_2af52; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2009-06-26 313840]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 SOHCImp;VAIO Media plus Content Importer; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2009-07-28 120104]
S3 SOHDBSvr;VAIO Media plus Database Manager; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [2009-07-28 70952]
S3 SOHDms;VAIO Media plus Digital Media Server; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2009-07-28 427304]
S3 SOHDs;VAIO Media plus Device Searcher; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2009-07-28 75048]
S3 SOHPlMgr;VAIO Media plus Playlist Manager; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [2009-07-28 91432]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll

-----------------EOF-----------------

Re: Zasekaný počítač, malware

Napsal: 22 říj 2016 10:07
od Rudy

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 16:28
od CZDaywalker
Tady je log:

dition\gzserv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe
(ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESGfxMgr.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe
(ALPS) C:\Program Files\Apoint\Apvfb.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apoint] => C:\Program Files\Apoint\Apoint.exe [208384 2009-08-03] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7938080 2009-07-24] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] => C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2009-07-24] (Realtek Semiconductor Corp.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-10-17] (Apple Inc.)
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27021952 2016-10-17] (Skype Technologies S.A.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8c9729c4-1a69-4efc-bdd0-4d7cdf569e69}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{aaecc0a6-4beb-4908-bb23-950157fa6ef8}: [DhcpNameServer] 192.168.30.1
Tcpip\..\Interfaces\{e71868b7-eed6-40be-9356-c83791f0c615}: [DhcpNameServer] 192.168.1.1
ManualProxies:

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://search.msn.com/spbasic.htm
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/1me10IE11ENGB/MSN_WCP
SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {A271FEAF-9C45-4F00-9B95-0B70DA400975} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {CD21A3AB-A4E9-4464-AA27-9506FCAFCFDC} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13014
BHO: No Name -> {11111111-1111-1111-1111-110511161178} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2013-08-07] (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-19] (Sun Microsystems, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2009-11-19] (Sun Microsystems, Inc.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-07] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2013-08-07] (Google Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2013-08-07] (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-11-19] (Sun Microsystems, Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-07] (Google Inc.)
Toolbar: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07] (Google Inc.)
Toolbar: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll [2008-12-03] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll [2008-12-03] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default [2016-10-22]
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF Homepage: Mozilla\Firefox\Profiles\mkvy251t.default -> hxxps://www.malwarebytes.org/restorebrowser//?f ... 231299&ir=
FF Extension: (05f6a7ea896b11da8bdef66bad1e3fff) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\Extensions\{05f6a7ea-896b-11da-8bde-f66bad1e3fff} [2014-11-06] [not signed]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\2dc2652c-b3bc-4800-a457-fd8af6190942@056465a8-dce2-48fb-8fc7-c82955f37db0.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\3889d70a-3fde-4565-9f53-587ed12a797a@b90fd175-524e-46e6-a91f-624789f3369f.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\ffxtlbr@mysearchdial.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\staged\{2d7886a0-85bb-4bf2-b684-ba92b4b21d23} [2014-12-27] [not signed]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{29b136c9-938d-4d3d-8df8-d649d9b74d02}.xpi [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{49936815-2f09-31fa-e671-ef0d2669a7ab} [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\tylerkeith11@aol.com [not found]
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [No File]
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll [2009-11-19] (Sun Microsystems, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-22] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-10-22] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2012-12-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-04-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2189116564-477309667-4237360652-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Lenka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2013-11-06] (Skype Limited)
FF Plugin HKU\S-1-5-21-2189116564-477309667-4237360652-1001: facebook.com/fbDesktopPlugin -> C:\Users\Lenka\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll [2013-03-07] (Facebook, Inc.)

Chrome:
=======
CHR Profile: C:\Users\Lenka\AppData\Local\Google\Chrome\User Data\Default [2016-10-23]
CHR Extension: (Google Docs) - C:\Users\Lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-21]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-21]
CHR Extension: (Chrome Media Router) - C:\Users\Lenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-23]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 gzserv; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [79552 2016-03-02] (Bitdefender)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2015-11-20] (Microsoft Corporation)
S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-06-26] (Sonic Solutions)
S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-06-26] (Sonic Solutions)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [189984 2009-07-24] (Realtek Semiconductor)
S3 SOHDBSvr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [70952 2009-07-28] (Sony Corporation)
S3 SOHPlMgr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [91432 2009-07-28] (Sony Corporation)
R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2009-07-23] (Sony Corporation) [File not signed]
R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642920 2009-07-23] (Sony Corporation)
R3 Vcsw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [313264 2009-07-23] (Sony Corporation)
R2 VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [522240 2009-08-13] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336 2009-07-23] (Sony Corporation) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ArcSoftKsUFilter; C:\WINDOWS\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [718840 2013-04-17] (BitDefender)
S3 avckf; C:\WINDOWS\System32\DRIVERS\avckf.sys [593144 2013-04-17] (BitDefender)
S1 bdfwfpf; C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [121928 2013-07-02] (Bitdefender SRL)
R1 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [148696 2013-04-22] (BitDefender LLC)
S0 megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R2 risdptsk; C:\WINDOWS\System32\drivers\risdsn64.sys [76288 2009-07-31] (REDC)
R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [382536 2013-05-28] (BitDefender S.R.L.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 yukonw8; C:\WINDOWS\System32\drivers\yk63x64.sys [288768 2016-07-16] (Marvell)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-23 17:25 - 2016-10-23 17:26 - 00018493 _____ C:\Users\Lenka\Desktop\FRST.txt
2016-10-23 17:24 - 2016-10-23 17:25 - 00000000 ____D C:\FRST
2016-10-23 17:24 - 2016-10-23 17:24 - 02407424 _____ (Farbar) C:\Users\Lenka\Desktop\FRST64.exe
2016-10-23 17:22 - 2016-10-23 17:22 - 00029696 _____ C:\Users\Lenka\AppData\Local\MSGBOX.EXE
2016-10-22 08:52 - 2016-10-22 08:52 - 01328128 _____ C:\Users\Lenka\Desktop\RSITx64.exe
2016-10-22 08:52 - 2016-10-22 08:52 - 00000000 ____D C:\rsit
2016-10-22 08:52 - 2016-10-22 08:52 - 00000000 ____D C:\Program Files\trend micro
2016-10-22 08:48 - 2016-10-22 08:48 - 00293408 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-22 08:47 - 2016-10-22 08:47 - 00445774 _____ C:\Users\Lenka\Documents\cc_20161022_084720.reg
2016-10-22 08:42 - 2016-10-22 08:48 - 00000928 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf.job
2016-10-22 08:42 - 2016-10-22 08:48 - 00000924 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89.job
2016-10-22 08:42 - 2016-10-22 08:42 - 00004016 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf
2016-10-22 08:42 - 2016-10-22 08:42 - 00003784 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89
2016-10-22 00:06 - 2016-10-22 00:06 - 03725824 _____ C:\Users\Lenka\Downloads\RM875_msimage_v1.0.mbn
2016-10-22 00:06 - 2016-10-22 00:06 - 00205268 _____ C:\Users\Lenka\Downloads\FAST8960_EOS_ROW.hex
2016-10-21 23:31 - 2016-10-22 00:23 - 00000000 ____D C:\nokia
2016-10-21 23:27 - 2016-10-21 23:27 - 04681216 _____ C:\Users\Lenka\Downloads\Nokia Data Package www.allflashfiles.net.msi
2016-10-21 23:03 - 2005-08-03 16:05 - 00035892 _____ (Prolific Technology Inc.) C:\WINDOWS\SysWOW64\SER9PL.sys
2016-10-21 23:03 - 2005-08-03 16:04 - 00026719 _____ C:\WINDOWS\SysWOW64\SERSPL.VXD
2016-10-21 23:02 - 2016-10-21 23:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia
2016-10-21 23:01 - 2016-10-21 23:01 - 02745256 _____ (Microsoft Corporation) C:\Users\Lenka\Downloads\vcredist_x86 (1).exe
2016-10-21 22:59 - 2016-10-21 23:01 - 155318784 _____ C:\Users\Lenka\Downloads\Nokia_Care_Suite_5.0_2012.40.5.8 (1).msi
2016-10-21 22:56 - 2016-10-21 22:56 - 40653824 _____ () C:\Users\Lenka\Downloads\Nokia_Care_Suite_eng_web (1).exe
2016-10-21 22:56 - 2016-10-21 22:56 - 00000000 ____D C:\Users\Lenka\AppData\Roaming\PC Suite
2016-10-21 22:56 - 2016-10-21 22:56 - 00000000 ____D C:\ProgramData\PC Suite
2016-10-21 22:55 - 2016-10-21 22:55 - 00000000 ____D C:\Program Files (x86)\PC Connectivity Solution
2016-10-21 22:55 - 2012-06-11 11:33 - 00026112 _____ (Nokia) C:\WINDOWS\system32\Drivers\pccsmcfdx64.sys
2016-10-21 22:52 - 2016-10-21 22:56 - 00000000 ____D C:\Users\Lenka\AppData\Roaming\Nokia
2016-10-21 22:48 - 2016-10-21 23:45 - 00001749 _____ C:\ProgramData\SystemInformation.txt
2016-10-21 22:46 - 2012-01-09 17:28 - 00057856 _____ (Nokia) C:\WINDOWS\system32\nmwcdclsX64.dll
2016-10-21 22:45 - 2016-10-21 23:02 - 00000000 ____D C:\ProgramData\Nokia
2016-10-21 22:45 - 2016-10-21 23:02 - 00000000 ____D C:\Program Files (x86)\Nokia
2016-10-21 22:42 - 2016-10-21 22:42 - 02745256 _____ (Microsoft Corporation) C:\Users\Lenka\Downloads\vcredist_x86.exe
2016-10-21 22:40 - 2016-10-21 22:41 - 155318784 _____ C:\Users\Lenka\Downloads\Nokia_Care_Suite_5.0_2012.40.5.8.msi
2016-10-21 22:37 - 2016-10-21 22:37 - 00000000 ____D C:\ProgramData\Installations
2016-10-21 22:36 - 2016-10-21 22:37 - 40653824 _____ () C:\Users\Lenka\Downloads\Nokia_Care_Suite_eng_web.exe
2016-10-21 22:05 - 2016-10-21 22:05 - 00261056 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avchv.sys
2016-10-21 20:18 - 2016-10-21 20:18 - 00027136 _____ C:\WINDOWS\system32\bddel.exe
2016-10-21 20:18 - 2016-10-21 20:18 - 00003256 _____ C:\WINDOWS\system32\bddel.dat
2016-10-21 19:56 - 2016-10-21 19:56 - 00209880 _____ C:\ProgramData\1477072095.bdinstall.bin
2016-10-21 19:54 - 2016-10-21 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antivirus Free Edition
2016-10-21 19:53 - 2013-04-17 13:59 - 00718840 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2016-10-21 19:53 - 2013-04-17 13:59 - 00593144 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys
2016-10-21 19:53 - 2012-11-02 13:17 - 00261056 _____ (BitDefender) C:\WINDOWS\system32\Drivers\SET524E.tmp
2016-10-21 19:48 - 2016-10-21 22:04 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2016-10-21 19:48 - 2016-10-21 19:54 - 00000000 ____D C:\Program Files\Bitdefender
2016-10-21 19:48 - 2016-10-21 19:49 - 00000000 ____D C:\Users\Lenka\AppData\Roaming\QuickScan
2016-10-21 19:48 - 2016-10-21 19:48 - 03086696 _____ C:\Users\Lenka\Downloads\instspeedfan452.exe
2016-10-21 19:48 - 2016-10-21 19:48 - 00001076 _____ C:\Users\Lenka\Desktop\SpeedFan.lnk
2016-10-21 19:48 - 2016-10-21 19:48 - 00000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo
2016-10-21 19:48 - 2016-10-21 19:48 - 00000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2016-10-21 19:48 - 2013-05-28 11:12 - 00382536 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2016-10-21 19:48 - 2013-04-22 12:21 - 00148696 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2016-10-21 19:41 - 2016-10-22 00:30 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-10-21 19:41 - 2016-10-21 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-10-21 19:41 - 2016-10-21 19:41 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-10-21 19:41 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-10-21 19:41 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-10-21 19:39 - 2016-10-21 19:40 - 22851472 _____ (Malwarebytes ) C:\Users\Lenka\Downloads\mbam-setup-2.2.1.1043.exe
2016-10-21 19:21 - 2016-10-21 19:32 - 00000000 ____D C:\AdwCleaner
2016-10-21 18:57 - 2016-10-21 18:57 - 00000000 ____D C:\WINDOWS\System32\Tasks\Norton Internet Security
2016-10-21 18:55 - 2016-10-21 18:55 - 00002759 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Device Recovery Tool.lnk
2016-10-21 18:55 - 2016-10-21 18:55 - 00000000 ____D C:\ProgramData\LGE
2016-10-21 18:55 - 2016-10-21 18:55 - 00000000 ____D C:\ProgramData\HTC
2016-10-21 18:55 - 2016-10-21 18:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Care Suite
2016-10-21 18:53 - 2016-10-21 22:56 - 00000000 ____D C:\Program Files\DIFX
2016-10-21 18:53 - 2016-10-21 18:53 - 00000000 ____D C:\WINDOWS\SysWOW64\FFU Loader Driver
2016-10-21 18:53 - 2016-10-21 18:53 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2016-10-21 18:49 - 2016-10-21 18:53 - 00000000 ____D C:\ProgramData\Package Cache
2016-10-21 18:45 - 2016-10-21 18:46 - 02427112 _____ (Microsoft) C:\Users\Lenka\Downloads\WindowsDeviceRecoveryToolInstaller.exe
2016-10-18 03:01 - 2016-10-18 03:01 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-10-18 02:39 - 2016-10-05 12:17 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-10-18 02:39 - 2016-10-05 12:12 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-10-18 02:39 - 2016-10-05 12:09 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-10-18 02:39 - 2016-10-05 11:44 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-10-18 02:39 - 2016-10-05 11:36 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-18 02:39 - 2016-10-05 11:35 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-10-18 02:39 - 2016-10-05 11:35 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-10-18 02:39 - 2016-10-05 11:33 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-10-18 02:39 - 2016-10-05 11:33 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-10-18 02:39 - 2016-10-05 11:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-10-18 02:39 - 2016-10-05 11:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2016-10-18 02:39 - 2016-10-05 11:31 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-10-18 02:39 - 2016-10-05 11:30 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2016-10-18 02:39 - 2016-10-05 11:29 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2016-10-18 02:39 - 2016-10-05 11:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2016-10-18 02:39 - 2016-10-05 11:26 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-10-18 02:39 - 2016-10-05 11:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2016-10-18 02:39 - 2016-10-05 11:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-10-18 02:39 - 2016-10-05 11:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-10-18 02:39 - 2016-10-05 11:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-10-18 02:39 - 2016-10-05 11:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2016-10-18 02:39 - 2016-10-05 11:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2016-10-18 02:39 - 2016-10-05 11:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2016-10-18 02:39 - 2016-10-05 11:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-10-18 02:39 - 2016-10-05 11:22 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-10-18 02:39 - 2016-10-05 11:21 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-10-18 02:39 - 2016-10-05 11:20 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-10-18 02:39 - 2016-10-05 11:19 - 02265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-10-18 02:39 - 2016-10-05 11:19 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-10-18 02:39 - 2016-10-05 11:18 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-10-18 02:39 - 2016-10-05 11:17 - 08126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-10-18 02:39 - 2016-10-05 11:17 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-10-18 02:39 - 2016-10-05 11:16 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-10-18 02:39 - 2016-10-05 11:16 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-10-18 02:39 - 2016-10-05 11:15 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-10-18 02:39 - 2016-10-05 11:15 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-10-18 02:39 - 2016-10-05 11:14 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-10-18 02:39 - 2016-10-05 11:14 - 02667520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-10-18 02:39 - 2016-10-05 11:11 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-10-18 02:39 - 2016-10-05 11:11 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-10-18 02:39 - 2016-10-05 11:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-10-18 02:39 - 2016-10-05 11:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-10-18 02:39 - 2016-10-05 11:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-10-18 02:39 - 2016-10-05 11:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-10-18 02:39 - 2016-10-05 11:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-10-18 02:39 - 2016-10-05 11:06 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-10-18 02:38 - 2016-10-05 12:34 - 01051104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-10-18 02:38 - 2016-10-05 12:34 - 00894088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-10-18 02:38 - 2016-10-05 12:33 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-10-18 02:38 - 2016-10-05 12:31 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-10-18 02:38 - 2016-10-05 12:31 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-10-18 02:38 - 2016-10-05 12:31 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-10-18 02:38 - 2016-10-05 12:13 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-10-18 02:38 - 2016-10-05 12:13 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-10-18 02:38 - 2016-10-05 12:13 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-10-18 02:38 - 2016-10-05 12:12 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-10-18 02:38 - 2016-10-05 12:12 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-10-18 02:38 - 2016-10-05 12:09 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys
2016-10-18 02:38 - 2016-10-05 12:08 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-10-18 02:38 - 2016-10-05 12:03 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-10-18 02:38 - 2016-10-05 11:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-10-18 02:38 - 2016-10-05 11:50 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-10-18 02:38 - 2016-10-05 11:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2016-10-18 02:38 - 2016-10-05 11:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-10-18 02:38 - 2016-10-05 11:46 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-10-18 02:38 - 2016-10-05 11:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-10-18 02:38 - 2016-10-05 11:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-10-18 02:38 - 2016-10-05 11:45 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-10-18 02:38 - 2016-10-05 11:41 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-10-18 02:38 - 2016-10-05 11:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-10-18 02:38 - 2016-10-05 11:38 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2016-10-18 02:38 - 2016-10-05 11:35 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll
2016-10-18 02:38 - 2016-10-05 11:34 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2016-10-18 02:38 - 2016-10-05 11:34 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-10-18 02:38 - 2016-10-05 11:33 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-10-18 02:38 - 2016-10-05 11:33 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-10-18 02:38 - 2016-10-05 11:32 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-10-18 02:38 - 2016-10-05 11:32 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-10-18 02:38 - 2016-10-05 11:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-10-18 02:38 - 2016-10-05 11:31 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-10-18 02:38 - 2016-10-05 11:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-10-18 02:38 - 2016-10-05 11:31 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-10-18 02:38 - 2016-10-05 11:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2016-10-18 02:38 - 2016-10-05 11:29 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-10-18 02:38 - 2016-10-05 11:29 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-10-18 02:38 - 2016-10-05 11:28 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-10-18 02:38 - 2016-10-05 11:28 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-10-18 02:38 - 2016-10-05 11:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-10-18 02:38 - 2016-10-05 11:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
2016-10-18 02:38 - 2016-10-05 11:27 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-10-18 02:38 - 2016-10-05 11:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-10-18 02:38 - 2016-10-05 11:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-18 02:38 - 2016-10-05 11:26 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-10-18 02:38 - 2016-10-05 11:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2016-10-18 02:38 - 2016-10-05 11:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-10-18 02:38 - 2016-10-05 11:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-10-18 02:38 - 2016-10-05 11:24 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-10-18 02:38 - 2016-10-05 11:24 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-10-18 02:38 - 2016-10-05 11:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-10-18 02:38 - 2016-10-05 11:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-10-18 02:38 - 2016-10-05 11:23 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2016-10-18 02:38 - 2016-10-05 11:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-10-18 02:38 - 2016-10-05 11:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-10-18 02:38 - 2016-10-05 11:21 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-10-18 02:38 - 2016-10-05 11:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-10-18 02:38 - 2016-10-05 11:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-10-18 02:38 - 2016-10-05 11:21 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-10-18 02:38 - 2016-10-05 11:20 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-10-18 02:38 - 2016-10-05 11:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-10-18 02:38 - 2016-10-05 11:19 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2016-10-18 02:38 - 2016-10-05 11:19 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-10-18 02:38 - 2016-10-05 11:18 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-10-18 02:38 - 2016-10-05 11:18 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-10-18 02:38 - 2016-10-05 11:18 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-10-18 02:38 - 2016-10-05 11:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-10-18 02:38 - 2016-10-05 11:17 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-10-18 02:38 - 2016-10-05 11:16 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-10-18 02:38 - 2016-10-05 11:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-10-18 02:38 - 2016-10-05 11:15 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-10-18 02:38 - 2016-10-05 11:15 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-10-18 02:38 - 2016-10-05 11:15 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-10-18 02:38 - 2016-10-05 11:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2016-10-18 02:38 - 2016-10-05 11:14 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-10-18 02:38 - 2016-10-05 11:14 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-10-18 02:38 - 2016-10-05 11:14 - 01778176 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-10-18 02:38 - 2016-10-05 11:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-10-18 02:38 - 2016-10-05 11:14 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-10-18 02:38 - 2016-10-05 11:14 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-10-18 02:38 - 2016-10-05 11:13 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-10-18 02:38 - 2016-10-05 11:13 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-10-18 02:38 - 2016-10-05 11:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-10-18 02:38 - 2016-10-05 11:12 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-10-18 02:38 - 2016-10-05 11:12 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-10-18 02:38 - 2016-10-05 11:12 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-10-18 02:38 - 2016-10-05 11:11 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-10-18 02:38 - 2016-10-05 11:11 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-10-18 02:38 - 2016-10-05 11:09 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-10-18 02:38 - 2016-10-05 11:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-10-18 02:38 - 2016-10-05 11:09 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-10-18 02:38 - 2016-10-05 11:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-10-18 02:38 - 2016-10-05 11:09 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-10-18 02:38 - 2016-10-05 11:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-10-18 02:38 - 2016-10-05 11:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-10-18 02:38 - 2016-10-05 11:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-10-18 02:38 - 2016-10-05 11:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-10-18 02:38 - 2016-10-05 11:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-10-18 02:38 - 2016-10-05 11:07 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-10-18 02:38 - 2016-10-05 11:06 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-10-18 02:38 - 2016-10-05 11:06 - 02254336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-10-18 02:38 - 2016-10-05 11:06 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-10-18 02:38 - 2016-10-05 11:06 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-10-18 02:38 - 2016-10-05 11:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-10-18 02:38 - 2016-10-05 11:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-10-18 02:38 - 2016-10-05 11:06 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-10-18 02:38 - 2016-10-05 11:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2016-10-18 02:38 - 2016-10-05 11:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-10-18 02:38 - 2016-10-05 02:01 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-10-18 02:38 - 2016-09-07 07:34 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-10-18 02:37 - 2016-10-05 12:35 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-10-18 02:37 - 2016-10-05 12:30 - 07812448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-10-18 02:37 - 2016-10-05 12:22 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-10-18 02:37 - 2016-10-05 12:16 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-10-18 02:37 - 2016-10-05 12:09 - 04129928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-10-18 02:37 - 2016-10-05 12:09 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-10-18 02:37 - 2016-10-05 12:09 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-10-18 02:37 - 2016-10-05 12:04 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-10-18 02:37 - 2016-10-05 12:04 - 00628032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-10-18 02:37 - 2016-10-05 11:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-10-18 02:37 - 2016-10-05 11:36 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-10-18 02:37 - 2016-10-05 11:35 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2016-10-18 02:37 - 2016-10-05 11:35 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-10-18 02:37 - 2016-10-05 11:31 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-10-18 02:37 - 2016-10-05 11:29 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-10-18 02:37 - 2016-10-05 11:29 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-10-18 02:37 - 2016-10-05 11:28 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-10-18 02:37 - 2016-10-05 11:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll
2016-10-18 02:37 - 2016-10-05 11:23 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-10-18 02:37 - 2016-10-05 11:22 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-10-18 02:37 - 2016-10-05 11:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-10-18 02:37 - 2016-10-05 11:21 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2016-10-18 02:37 - 2016-10-05 11:20 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-10-18 02:37 - 2016-10-05 11:18 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-10-18 02:37 - 2016-10-05 11:17 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-10-18 02:37 - 2016-10-05 11:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll
2016-10-18 02:37 - 2016-10-05 11:16 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-10-18 02:37 - 2016-10-05 11:16 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-10-18 02:37 - 2016-10-05 11:15 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-10-18 02:37 - 2016-10-05 11:15 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-10-18 02:37 - 2016-10-05 11:15 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-10-18 02:37 - 2016-10-05 11:15 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-10-18 02:37 - 2016-10-05 11:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-10-18 02:37 - 2016-10-05 11:14 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-10-18 02:37 - 2016-10-05 11:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2016-10-18 01:01 - 2016-10-22 08:44 - 00000000 ___DC C:\WINDOWS\Panther
2016-10-18 00:57 - 2016-10-18 00:57 - 00000000 ____D C:\Windows.old
2016-10-18 00:41 - 2016-10-18 00:41 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-10-18 00:41 - 2016-10-18 00:41 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-10-18 00:41 - 2016-10-18 00:41 - 06574592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 04148224 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 03299328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-10-18 00:41 - 2016-10-18 00:41 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-10-18 00:41 - 2016-10-18 00:41 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02481768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02256224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02183792 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-10-18 00:41 - 2016-10-18 00:41 - 02049480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-10-18 00:41 - 2016-10-18 00:41 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01966288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01853232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01847048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01557296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01362504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01343928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01176664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-10-18 00:41 - 2016-10-18 00:41 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00959104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00790760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00755656 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00640976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00450392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00409944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-10-18 00:41 - 2016-10-18 00:41 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00396168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00313560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2016-10-18 00:41 - 2016-10-18 00:41 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2016-10-18 00:41 - 2016-10-18 00:41 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2016-10-18 00:41 - 2016-10-18 00:41 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00151224 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DscCoreConfProv.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00133472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00121368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00108384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00057400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
2016-10-18 00:41 - 2016-10-18 00:41 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-10-18 00:41 - 2016-10-18 00:41 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-10-18 00:41 - 2016-10-18 00:41 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2016-10-18 00:41 - 2016-10-18 00:41 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2016-10-18 00:41 - 2016-10-18 00:41 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2016-10-18 00:40 - 2016-10-18 00:41 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 17187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 13867520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 07792640 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05384192 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 04557824 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 03116544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02947072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02423296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02360832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02289664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02107392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02083840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 16:29
od CZDaywalker
a jeste jeho druha cast:

2016-10-18 00:40 - 2016-10-18 00:40 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01349120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01066328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01006080 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-10-18 00:40 - 2016-10-18 00:40 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00939872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00773200 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00681304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00665768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00650240 _____ (Microsoft) C:\WINDOWS\system32\DbgModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00601200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00461312 _____ (Microsoft) C:\WINDOWS\SysWOW64\DbgModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00303968 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-10-18 00:40 - 2016-10-18 00:40 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL
2016-10-18 00:40 - 2016-10-18 00:40 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_G18030.DLL
2016-10-18 00:40 - 2016-10-18 00:40 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00204288 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS
2016-10-18 00:40 - 2016-10-18 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AddressParser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AddressParser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactActivation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactActivation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00044472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00041824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-10-18 00:40 - 2016-10-18 00:40 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00036168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\encapi.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi_passthru.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2016-10-18 00:40 - 2016-10-18 00:40 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2016-10-18 00:40 - 2016-10-18 00:40 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_IS2022.DLL
2016-10-18 00:40 - 2016-10-18 00:40 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\c_GSM7.DLL
2016-10-18 00:40 - 2016-10-18 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2016-10-18 00:40 - 2016-10-18 00:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccessRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneutilRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2016-10-18 00:40 - 2016-10-18 00:40 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-10-18 00:30 - 2016-07-16 05:29 - 06472704 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0005.dll
2016-10-18 00:29 - 2016-10-18 00:29 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\Program Files\MSBuild
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-10-18 00:27 - 2016-10-18 00:27 - 00000000 ____D C:\inetpub
2016-10-18 00:26 - 2016-05-26 00:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-10-18 00:26 - 2016-05-26 00:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-10-18 00:26 - 2016-05-26 00:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-10-18 00:26 - 2016-05-25 21:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-10-18 00:26 - 2016-05-25 21:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-10-18 00:26 - 2016-05-25 21:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-10-18 00:25 - 2016-10-18 00:25 - 00199008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2016-10-17 15:53 - 2016-10-17 15:53 - 00003336 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task
2016-10-17 15:48 - 2016-10-17 15:48 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-10-17 15:43 - 2016-10-21 19:18 - 00000000 ____D C:\Users\Lenka\AppData\Local\ConnectedDevicesPlatform
2016-10-17 15:43 - 2016-10-17 15:43 - 00000000 ____D C:\ProgramData\USOShared
2016-10-17 15:42 - 2016-10-17 15:42 - 00000020 ___SH C:\Users\Lenka\ntuser.ini
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default\My Documents
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2016-10-17 15:41 - 2016-10-17 15:41 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2016-10-17 15:38 - 2016-10-17 15:40 - 00007623 _____ C:\WINDOWS\diagwrn.xml
2016-10-17 15:38 - 2016-10-17 15:40 - 00007623 _____ C:\WINDOWS\diagerr.xml
2016-10-17 15:29 - 2016-10-22 08:48 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-17 15:20 - 2016-10-17 15:20 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-10-17 15:20 - 2016-10-17 15:20 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2016-10-17 15:20 - 2016-10-17 15:20 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-10-17 15:20 - 2016-10-17 15:20 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-10-17 15:20 - 2016-10-17 15:20 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2016-10-17 15:20 - 2016-10-17 15:20 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-10-17 15:20 - 2016-10-17 15:20 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-10-17 15:12 - 2016-10-17 15:21 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-10-17 15:12 - 2016-10-17 15:12 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-10-17 15:10 - 2016-10-23 17:16 - 00000000 ____D C:\Users\Lenka
2016-10-17 15:10 - 2016-10-17 15:10 - 00000000 _SHDL C:\Users\Lenka\My Documents
2016-10-17 15:10 - 2016-10-17 15:10 - 00000000 _SHDL C:\Users\Lenka\Documents\My Videos
2016-10-17 15:10 - 2016-10-17 15:10 - 00000000 _SHDL C:\Users\Lenka\Documents\My Pictures
2016-10-17 15:10 - 2016-10-17 15:10 - 00000000 _SHDL C:\Users\Lenka\Documents\My Music
2016-10-17 15:08 - 2016-10-22 08:55 - 01058234 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-17 15:08 - 2016-10-17 15:08 - 00969108 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-10-17 15:06 - 2016-07-16 13:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-10-17 15:05 - 2016-10-17 15:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Apfiltr_01007.Wdf
2016-10-17 15:05 - 2016-10-17 15:05 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-10-17 15:05 - 2016-10-17 15:05 - 00000000 ____D C:\Program Files\Realtek
2016-10-17 15:05 - 2016-10-17 15:05 - 00000000 ____D C:\Program Files\Apoint
2016-10-17 15:04 - 2016-10-17 15:04 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-10-17 15:03 - 2016-10-22 08:35 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-10-17 15:03 - 2016-10-17 15:03 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-10-17 13:46 - 2016-10-17 13:46 - 00100592 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SY1

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-10-23 17:19 - 2013-08-06 23:46 - 00000000 ____D C:\Users\Lenka\AppData\Roaming\Skype
2016-10-23 17:17 - 2013-08-07 07:02 - 00000000 ____D C:\ProgramData\Skype
2016-10-23 17:17 - 2013-08-06 23:46 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-10-23 17:14 - 2016-04-21 17:52 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-23 17:14 - 2016-04-21 17:52 - 00002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-23 17:12 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-22 08:50 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF
2016-10-22 08:48 - 2016-04-21 17:51 - 00000928 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-10-22 08:48 - 2016-04-21 17:51 - 00000924 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-22 08:47 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2016-10-22 08:44 - 2014-07-24 20:13 - 00000000 ____D C:\Users\Lenka\AppData\Local\CrashDumps
2016-10-22 07:13 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache
2016-10-22 05:11 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-21 23:03 - 2009-11-18 23:37 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-10-21 23:01 - 2014-04-09 16:52 - 00000000 ____D C:\Users\Lenka\AppData\Roaming\vlc
2016-10-21 19:41 - 2013-08-06 23:00 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-10-21 19:15 - 2016-04-27 08:39 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-10-21 19:15 - 2013-09-01 20:35 - 00000000 ___RD C:\Users\Lenka\Podcasts
2016-10-21 19:12 - 2014-06-21 09:41 - 00000000 ____D C:\ProgramData\Norton
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-10-21 19:10 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-10-21 18:57 - 2016-07-16 13:47 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-10-21 18:57 - 2016-07-16 08:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-10-18 03:50 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\appcompat
2016-10-18 03:04 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-10-18 03:00 - 2013-09-16 19:00 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-10-18 02:54 - 2013-09-16 19:00 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-10-18 02:13 - 2013-08-06 22:53 - 00504488 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-10-18 01:01 - 2016-07-16 13:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-10-18 00:45 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-10-18 00:45 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ___RD C:\Program Files\Windows Defender
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\setup
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\es-MX
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Provisioning
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-10-18 00:44 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-10-18 00:44 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-10-18 00:44 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-10-18 00:30 - 2016-07-16 16:15 - 00000000 ____D C:\WINDOWS\OCR
2016-10-18 00:27 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-10-18 00:27 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-10-18 00:27 - 2016-07-16 13:44 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2016-10-18 00:27 - 2016-07-16 13:44 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2016-10-18 00:27 - 2016-07-16 13:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2016-10-18 00:27 - 2016-07-16 13:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2016-10-18 00:27 - 2016-07-16 13:44 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2016-10-18 00:27 - 2016-07-16 13:44 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2016-10-18 00:27 - 2016-07-16 13:44 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2016-10-18 00:27 - 2016-07-16 13:43 - 01414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00785408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2016-10-18 00:27 - 2016-07-16 13:43 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2016-10-18 00:27 - 2016-07-16 13:43 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2016-10-18 00:27 - 2016-07-16 13:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2016-10-18 00:27 - 2016-07-16 13:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2016-10-18 00:27 - 2016-07-16 13:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2016-10-18 00:27 - 2016-07-16 13:43 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2016-10-18 00:27 - 2016-07-16 13:43 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-10-18 00:27 - 2016-07-16 13:43 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-10-18 00:27 - 2016-07-16 13:43 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2016-10-17 16:03 - 2014-05-19 23:06 - 00000000 ____D C:\Users\Lenka\AppData\Local\Packages
2016-10-17 15:53 - 2016-06-17 20:17 - 00002403 _____ C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-10-17 15:53 - 2016-06-17 20:17 - 00000000 ___RD C:\Users\Lenka\OneDrive
2016-10-17 15:43 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-10-17 15:38 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-10-17 15:38 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Registration
2016-10-17 15:38 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-10-17 15:32 - 2016-06-17 19:03 - 00022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-10-17 15:31 - 2016-07-16 13:47 - 00000000 __RSD C:\WINDOWS\Media
2016-10-17 15:31 - 2016-07-16 13:47 - 00000000 __RHD C:\Users\Public\Libraries
2016-10-17 15:21 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\System
2016-10-17 15:21 - 2016-04-27 08:20 - 00000000 ____D C:\WINDOWS\ShellNew
2016-10-17 15:21 - 2014-12-14 21:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2016-10-17 15:21 - 2014-12-12 22:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone
2016-10-17 15:21 - 2014-11-03 20:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2016-10-17 15:21 - 2014-08-27 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-10-17 15:21 - 2014-04-08 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-10-17 15:21 - 2014-03-02 12:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-10-17 15:21 - 2013-08-07 07:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2016-10-17 15:21 - 2013-08-07 07:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft WebCam Companion 3
2016-10-17 15:21 - 2013-08-07 07:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update 4
2016-10-17 15:21 - 2013-08-07 07:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio Easy Media Creator 10 LJ
2016-10-17 15:21 - 2013-08-07 07:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
2016-10-17 15:21 - 2013-08-07 06:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-10-17 15:21 - 2013-08-07 06:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Premium Partners
2016-10-17 15:21 - 2013-08-07 06:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2016-10-17 15:21 - 2013-08-07 06:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Magic-i Visual Effects 2
2016-10-17 15:21 - 2013-08-07 06:49 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Video & Photo Suite
2016-10-17 15:21 - 2013-08-07 06:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony Picture Utility
2016-10-17 15:21 - 2013-08-06 23:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
2016-10-17 15:21 - 2009-11-18 23:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager
2016-10-17 15:20 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-10-17 15:20 - 2015-10-30 08:28 - 00000000 ____D C:\Users\Default.migrated
2016-10-17 15:15 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-10-17 15:15 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-10-17 15:15 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\spool
2016-10-17 15:15 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-10-17 15:15 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-10-17 15:15 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\IME
2016-10-17 15:15 - 2013-08-14 23:46 - 00000000 ____D C:\WINDOWS\system32\SPReview
2016-10-17 15:15 - 2013-08-10 23:47 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2016-10-17 15:15 - 2009-11-18 23:40 - 00000000 ____D C:\WINDOWS\SysWOW64\SDA
2016-10-17 15:15 - 2009-11-18 23:39 - 00000000 ____D C:\WINDOWS\SysWOW64\x64
2016-10-17 15:15 - 2009-11-18 23:39 - 00000000 ____D C:\WINDOWS\SysWOW64\Lang
2016-10-17 15:13 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\schemas
2016-10-17 15:13 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Resources
2016-10-17 15:13 - 2016-01-05 13:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-10-17 15:13 - 2013-09-01 20:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune
2016-10-17 15:13 - 2009-07-14 09:44 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-10-17 15:12 - 2016-07-16 13:47 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-10-17 15:12 - 2016-07-16 13:47 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-10-17 15:12 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-10-17 15:12 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-10-17 15:08 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-10-17 15:06 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-10-17 15:06 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-10-17 13:58 - 2016-07-16 17:17 - 00000000 ___HD C:\$WINDOWS.~BT
2016-10-17 13:37 - 2016-06-18 10:26 - 00000000 ____D C:\Users\Lenka\AppData\Local\MicrosoftEdge
2016-10-03 22:09 - 2016-07-16 13:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-10-03 22:09 - 2016-07-16 13:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2014-09-01 18:50 - 2014-09-01 18:54 - 45189120 _____ () C:\Program Files (x86)\GUT43C5.tmp
2014-01-04 00:16 - 2014-04-10 16:14 - 0000231 _____ () C:\Users\Lenka\AppData\Roaming\WB.CFG
2016-10-23 17:22 - 2016-10-23 17:22 - 0029696 _____ () C:\Users\Lenka\AppData\Local\MSGBOX.EXE
2016-10-21 19:56 - 2016-10-21 19:56 - 0209880 _____ () C:\ProgramData\1477072095.bdinstall.bin
2016-10-21 22:48 - 2016-10-21 23:45 - 0001749 _____ () C:\ProgramData\SystemInformation.txt

Some files in TEMP:
====================
C:\Users\Lenka\AppData\Local\Temp\libeay32.dll
C:\Users\Lenka\AppData\Local\Temp\msvcr120.dll
C:\Users\Lenka\AppData\Local\Temp\PL2303_Prolific_DriverInstaller_v130.exe
C:\Users\Lenka\AppData\Local\Temp\RemoveDevicePathFromRegistryKey.exe
C:\Users\Lenka\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Lenka\AppData\Local\Temp\sfareca00001.dll
C:\Users\Lenka\AppData\Local\Temp\sfextra.dll
C:\Users\Lenka\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Lenka\AppData\Local\Temp\sqlite3.dll
C:\Users\Lenka\AppData\Local\Temp\UpdateDevicePathRegistryKey.exe
C:\Users\Lenka\AppData\Local\Temp\vcredist_x86.exe
C:\Users\Lenka\AppData\Local\Temp\vcredist_x86_2010.exe


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-10-17 15:02

==================== End of FRST.txt ===========

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 16:42
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Program Files (x86)\GUT43C5.tmp
C:\Users\Lenka\AppData\Local\Temp
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {A271FEAF-9C45-4F00-9B95-0B70DA400975} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
BHO: No Name -> {11111111-1111-1111-1111-110511161178} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2013-08-07] (Google Inc.)
C:\Program Files\Google\GoogleToolbarNotifier
C:\Program Files (x86)\Google\Google Toolbar
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-07] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2013-08-07] (Google Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2013-08-07] (Google Inc.)
Toolbar: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\3889d70a-3fde-4565-9f53-587ed12a797a@b90fd175-524e-46e6-a91f-624789f3369f.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\ffxtlbr@mysearchdial.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{29b136c9-938d-4d3d-8df8-d649d9b74d02}.xpi [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{49936815-2f09-31fa-e671-ef0d2669a7ab} [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\tylerkeith11@aol.com [not found]
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [No File]
U3 idsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89
C:\WINDOWS\system32\Drivers\SET524E.tmp
End
Uložte do stejného adresáře, jako FRST jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 17:04
od CZDaywalker
Zde log:

Fix result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016
Ran by Lenka (23-10-2016 18:00:51) Run:2
Running from C:\Users\Lenka\Desktop
Loaded Profiles: Lenka (Available Profiles: Lenka)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\Program Files (x86)\GUT43C5.tmp
C:\Users\Lenka\AppData\Local\Temp
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> {A271FEAF-9C45-4F00-9B95-0B70DA400975} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
BHO: No Name -> {11111111-1111-1111-1111-110511161178} -> No File
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2013-08-07] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2013-08-07] (Google Inc.)
C:\Program Files\Google\GoogleToolbarNotifier
C:\Program Files (x86)\Google\Google Toolbar
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2013-08-07] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2013-08-07] (Google Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2013-08-07] (Google Inc.)
Toolbar: HKU\S-1-5-21-2189116564-477309667-4237360652-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\mkvy251t.default -> Mysearchdial
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\3889d70a-3fde-4565-9f53-587ed12a797a@b90fd175-524e-46e6-a91f-624789f3369f.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\ffxtlbr@mysearchdial.com [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{29b136c9-938d-4d3d-8df8-d649d9b74d02}.xpi [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{49936815-2f09-31fa-e671-ef0d2669a7ab} [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} [not found]
FF Extension: (No Name) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\tylerkeith11@aol.com [not found]
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [No File]
U3 idsvc; no ImagePath
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89
C:\WINDOWS\system32\Drivers\SET524E.tmp
End
*****************

"C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job" => not found.
"C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job" => not found.
"C:\Program Files (x86)\GUT43C5.tmp" => not found.

"C:\Users\Lenka\AppData\Local\Temp" folder move:

Could not move "C:\Users\Lenka\AppData\Local\Temp" => Scheduled to move on reboot.

"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt1" => key removed successfully
HKCR\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt2" => key removed successfully
HKCR\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt3" => key removed successfully
HKCR\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt4" => key removed successfully
HKCR\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => key not found.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9}" => key removed successfully
HKCR\CLSID\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-2189116564-477309667-4237360652-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKU\S-1-5-21-2189116564-477309667-4237360652-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A271FEAF-9C45-4F00-9B95-0B70DA400975}" => key removed successfully
HKCR\CLSID\{A271FEAF-9C45-4F00-9B95-0B70DA400975} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511161178}" => key removed successfully
HKCR\CLSID\{11111111-1111-1111-1111-110511161178} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}" => key removed successfully
"HKCR\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}" => key removed successfully
"HKCR\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}" => key removed successfully
C:\Program Files\Google\GoogleToolbarNotifier => moved successfully
C:\Program Files (x86)\Google\Google Toolbar => moved successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{AA58ED58-01DD-4d91-8333-CF10577473F7}" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}" => key removed successfully
HKU\S-1-5-21-2189116564-477309667-4237360652-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully
"HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" => key removed successfully
Firefox DefaultSearchEngine removed successfully
Firefox SearchEngineOrder.1 removed successfully
Firefox SelectedSearchEngine removed successfully
C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\3889d70a-3fde-4565-9f53-587ed12a797a@b90fd175-524e-46e6-a91f-624789f3369f.com => path removed successfully
C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\ffxtlbr@mysearchdial.com => path removed successfully
C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{29b136c9-938d-4d3d-8df8-d649d9b74d02}.xpi => path removed successfully
C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{49936815-2f09-31fa-e671-ef0d2669a7ab} => path removed successfully
C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} => path removed successfully
C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\extensions\tylerkeith11@aol.com => path removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.67.2" => key removed successfully
idsvc => service removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89.job => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d22c2f713bc0cf => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d22c2f7024cd89 => moved successfully
C:\WINDOWS\system32\Drivers\SET524E.tmp => moved successfully

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 23-10-2016 18:03:44)

"C:\Users\Lenka\AppData\Local\Temp" => Could not move

==== End of Fixlog 18:03:48 ====

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 17:46
od CZDaywalker
Jinak se mi zda, že zapnutí stále trvá hrozně dlouho. Nejvíc se to zasekne při načítání profilu...
Jinak po zapnutí se čeká na nahrání ikon a pak na to, až se objeví skype...ale tak to chce uživatelka mít.

Čas na zapnutí odhadem je tak 40 - 50 sekund...


edit: Přestal fungovat bitdefender...

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 18:13
od Rudy
Smazáno. Nastala nějaká změna?

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 18:42
od CZDaywalker
Viz můj předchozí komnentář = zapnutí docela dlouhé a přestal fungovat bitdefender ....

Re: Zasekaný počítač, malware

Napsal: 23 říj 2016 19:29
od Rudy
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: Zasekaný počítač, malware

Napsal: 24 říj 2016 06:18
od CZDaywalker
Scan z MBAM:

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 23.10.2016
Cas skenování: 21:03
Protokol: mbam.txt
Správce: Ano

Verze: 2.2.1.1043
Databáze malwaru: v2016.10.23.06
Databáze rootkitu: v2016.09.26.02
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Lenka

Typ skenu: Vlastní sken
Výsledek: Dokonceno
Prohledaných objektu: 502747
Uplynulý cas: 2 hod, 31 min, 23 sek

Pamet: Zapnuto
Po spuštení: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíce registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 31
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (user_pref("extensions.mysearchdial.aflt", "ir_14_15_ff");), ,[831f7c20c5d55ed8b13b4f4946be817f]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: ( to this file while the application is running,
* the changes will be nual change t), ,[069c1f7d6c2e47ef79737a1ec83ced13]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (ication is running,
* the changes will be nual change to preferences, you can visit the URL about:config
*/

user_pref("app.update.lastUpdateTiuser_pref("app.update.lasf("app.update.lastUpdateTime.blocklist-background-update-timer", 1396716896);
user_pref("app.update.lastUpdateTime.browser-cleanup-thumbnails", 1arch-engine-update-timer", 139), ,[a1011d7f029838fe5795702845bfed13]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (pp.update.lastUpdateTime.browser-cleanup-thumbnai), ,[7a28cbd15b3ff93dae3ed2c623e1c43c]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: ( changes to this file while the application is runnin), ,[732f3a627b1fab8b30bcf8a0030107f9]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (nges to this file while the application is runnin), ,[32705f3d75253ff70fdd5741897b14ec]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: ( changes to this file while the application is runni), ,[435f5e3e5a4096a03fad732584801de3]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (anges to this file while the application is runnin), ,[5949bfdd9dfd75c14aa2395fe71dbd43]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (changes to this file while the application is running,
* the changes will be nual change to preferences, you can visit the URL about:config
*/

user_pref("app.update.lastUpdateTiuser_pref("app.update.lasf("app.update.lastUpdateTime.blocklist-background-update-timer", 1396716896);
user_pref("app.update.lastUpdateTime.browser-cleanup-thumbnails", 1arch-engine-update-timer", 1396775074);
user_pref("app.update.migrated.updateDir", true);
user_pref("browser.cache.disk.capacity", 358400);
user_pref("browser.cache.disk.smart_size.first_run", false);
user_pref("browser.cache.disk.smart_size.use_old_max", false);
user_p), ,[228013890f8be2546983b9df43c1f60a]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (ache.disk.smart_size.use_old_max", false);
user_pre), ,[1a88316b425853e37f6d77214db7bb45]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (anges to this file while the application is running,
* the changes will be nua), ,[8d1534686733f73fd913128630d4ae52]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: ( application is running,
* the changes will be), ,[287ad4c8b6e4f145727ac7d120e49f61]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (e changes to this file while the application is running,
* the changes will be nual change to preferences, you can visit the URL about:config
*/

user_pref("app.update.lastUpdateTiuser_pref("app.update.lasf("app.update.lastUpdateTime.blocklist-background-update-timer", 1396716896);
user_pref("app.update.lastUpdateTime.browser-cleanup-thumbnails", 1arch-engine-update-timer", 1396775074);
user_pref("app.update.migr), ,[b2f07b218d0dae88f9f36f2928dc13ed]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (timer", 1396775074);
user_pref("app.update.migrated.updateD), ,[3b67d5c75d3d191d5a925642f70d14ec]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: ( this file while the application is running,
* the ch), ,[a5fdc7d59a002c0ae408f6a22cd8be42]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (es to this file while the application is running,
* the ), ,[4c56c6d6faa0af8754980890867e916f]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (to this file while the application is running,
* the changes will be nual change to preferences, you can visit the URL about:config
*/

user_pref("app.update.lastUpdateTiuser_pref("app.update.lasf("app.update.lastUpdateTime.blocklist-background-update-timer", 1396716896);
user_pref("app.update.lastUpdateTime.browser-cleanup-thumbnails", 1arch-engine-update-timer", 1396775074);
user_pref("app.update.migrated.upd), ,[b4ee4a52a1f92511a745079180847a86]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (e-timer", 1396775074);
user_pref("app.update.migrated.updateDir", t), ,[5b4793097d1d57dff2fa890f52b2aa56]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (le while the application is running,
* the changes will be nual change to preferences, you can visit the URL about:config
*/

user_pref("app.update.lastUpdateTiuser_pref("app.update.lasf("app.update.lastUpdateTime.blocklist-background-update-timer", 1396716896);
user_pref("app.update.lastUpdateTime.browser-cleanup-thumbnails", 1arch-engine-update-timer", 1396775074);
user_pref("app.update.migrated.updateDir", true)), ,[cdd5f3a9495126108d5f8e0a5ea68080]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (mer", 1396775074);
user_pref("app.update.migrated.updateDir", true);
user_pref("browser.cache.disk.capacity", 358400);
user_pref("browser.cache.disk.smart_size.first_run", false);
us), ,[cdd5eab23169be785e8e4d4b9b69fc04]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (onfig
*/

user_pref("app.update.lastUpdateTiuser_pref("), ,[7a28cfcdd6c4d75f0ae25048ff05669a]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (o this file while the application is running,
* the changes), ,[cbd77725633770c632baefa9f014ae52]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (this file while the application is running,
* ), ,[4b57c6d6e8b259dd04e8bcdc14f08f71]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (e changes to this file while the application is running,
* th), ,[930fd7c55f3b50e6dc101d7b1be9857b]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (is file while the application is running,
* the ch), ,[e2c073298f0bb383c22a3d5b25df52ae]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (anges to this file while the application is running,
* the changes will be nual change to preferences, you can visit the URL about:config
*/

user_pref("app.update.lastUpdateTiuser_pref("app.update.lasf("app.update.lastUpdateTime.blocklist-background-update-timer", 1396716896);
user_pref("app.update.lastUpdateTime.browser-cleanup-thumbnails", 1arch-engine-update-timer", 1396775074);
user_pref("app.update.migrated.update), ,[9111c7d5712949edbd2f059329db04fc]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: ( 1396775074);
user_pref("app.update.migrated.updateDi), ,[8e14a0fcd2c84de955970f89d1333ec2]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (ges to this file while the application is running,
* ), ,[c5dd3b61a5f59e98b4380a8ed133ff01]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (es to this file while the application is running,
*), ,[c2e07626d1c9270fe5070a8e8183936d]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (nges to this file while the application is running,
*), ,[dac8d8c42f6bb185b23a8711f60e54ac]
PUP.Optional.MySearchDial, C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\mkvy251t.default\prefs.js, Dobré: (), Špatné: (es to this file while the application is running,
* the changes ), ,[0999316b0793eb4b15d75d3b12f2be42]

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Re: Zasekaný počítač, malware

Napsal: 24 říj 2016 17:41
od Rudy
Smažte všechny nálezy.

Re: Zasekaný počítač, malware

Napsal: 24 říj 2016 18:30
od CZDaywalker
Po vymazani nic moc pokrok :(
Start systemu je cca 1:45 a bitdefender nefunguje :(

Re: Zasekaný počítač, malware

Napsal: 24 říj 2016 18:44
od Rudy
Zkuste Bitdef přeinstalovat.