winnet32b a inet32upd nadmerne vytazuju procesor
Napsal: 02 led 2017 21:02
Zdravym, mam problem s nadmernym vytazenim procesora. Podla správcu uloh to sposobuju programy winnet32b a inet32upd. Zacal som to pozorovat po stiahnuti aplikacie (traineru) z nemenovaneho uloziska. Bol by som Vam moc vdacny keby ste mi vedeli pomoct.
Prikladam log z RSIT:
Logfile of random's system information tool 1.14 (written by random/random)
Run by Michal at 2017-01-02 20:53:46
Microsoft Windows 10 Home
System drive C: has 428 GB (90%) free of 476 GB
Total RAM: 16323 MB (85% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:53:49, on 2.1.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
C:\Windows\SysWoW64\muachost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\ATHEROS\S5wow.exe
C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
C:\Program Files (x86)\MSI\Live Update\Live Update.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
C:\MSI\MSIRegister\MSIRegister.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Networking\inet32upd.exe
C:\Program Files\trend micro\Michal_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe
O4 - HKLM\..\Run: [ASUS WiFi GO! FileTransfer Execute] C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe
O4 - HKLM\..\Run: [RtlS5Wake Execute] C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
O4 - HKLM\..\Run: [MSIRegister] "C:\MSI\MSIRegister\MSIRegister.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [HP Deskjet 3510 series (NET)] "C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN3581PHHK05Y8:NW" -scfn "HP Deskjet 3510 series (NET)" -AutoStart 1
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: conhost32.exe
O4 - Startup: conhost64.exe
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAH\FAHConsole.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
O23 - Service: AtherosSvc - Qualcomm Atheros - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Pro Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamingApp_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
O23 - Service: GamingHotkey_Service - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MirrorOP Sender (MOPSender) - BARCO \ AWIND - C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\AWService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSIREGISTER_MR - Micro-Star INT'L CO., LTD. - C:\MSI\MSIRegister\MSIRegisterService.exe
O23 - Service: MSI_ActiveX_Service - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
O23 - Service: MSI Live Update Service (MSI_LiveUpdate_Service) - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 12188 bytes
======Enumerating Processes======
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\winlogon.exe
C:\Windows\system32\dwm.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\AWService.exe" -service
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\MSI\MSIRegister\MSIRegisterService.exe
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\Windows\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\StationApp.exe" -winsta
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sihost.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\system32\taskhostw.exe
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
C:\Windows\system32\AUDIODG.EXE 0x3c8
"C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe"
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\SysWoW64\muachost.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\ASUSRelayWS.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\x64\S5wow_2005.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\ATHEROS\S5wow.exe"
C:\Windows\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN3581PHHK05Y8:NW" -scfn "HP Deskjet 3510 series (NET)" -AutoStart 1
"C:\Program Files\WinZip\FAH\FAHWindow64.exe" register
"C:\Program Files\WinZip\WzPreloader.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" "-cachedir=C:\Users\Michal\AppData\Local\Steam\htmlcache" "-steampid=9200" "-buildid=1482202200" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --disable-spell-checking --disable-out-of-process-pac --disable-smooth-scrolling --enable-direct-write
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 "--database=C:\Users\Michal\AppData\Local\Chromium\User Data\Crashpad" "--metrics-dir=C:\Users\Michal\AppData\Local\Chromium\User Data" --annotation=channel= --annotation=plat=Win32 --annotation=prod= --annotation=ver=01.00.00.01-devel --handshake-handle=0x2dc
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe"
"C:\Program Files (x86)\MSI\Live Update\Live Update.exe" /REMINDER
"C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe"
"C:\MSI\MSIRegister\MSIRegister.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe" /AUTOHIDE
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="2136.0.1344336614\230760078" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 2136 "\\.\pipe\gecko-crash-server-pipe.2136" tab
"C:\Users\Michal\AppData\Roaming\Microsoft\Networking\winnet32b.exe" -a skein -o stratum+tcp://stratum.dgb.theblocksfactory.com:9002 -O LukeP.1:x -t 4
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Users\Michal\AppData\Roaming\Microsoft\Networking\inet32upd.exe" --skein -o stratum+tcp://stratum.dgb.theblocksfactory.com:9002 -O LukeP.1:x -T
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Users\Michal\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\HPCustParticipation HP Deskjet 3510 series - "C:\Program Files\HP\HP Deskjet 3510 series\Bin\HPCustPartic.exe" /UA 10.5 /DDV 0x0b05
C:\Windows\system32\tasks\MSIOSDx64_Host - C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
C:\Windows\system32\tasks\MSIOSDx86_Host - C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
C:\Windows\system32\tasks\MSISW_Host - C:\Windows\SysWoW64\muachost.exe
C:\Windows\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\Windows\system32\tasks\SamsungMagician - "C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe" /AUTOHIDE
C:\Windows\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\Windows\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\Windows\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\Windows\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\Windows\system32\sc.exe start wuauserv
C:\Windows\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\Windows\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\Windows\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - %systemroot%\system32\MusNotification.exe Display
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - %systemroot%\system32\MusNotification.exe ReadyToReboot
C:\Windows\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\Windows\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\Windows\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\Windows\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\Windows\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\Windows\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\Windows\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\Windows\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\Windows\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\Windows\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\Windows\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\Windows\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\Windows\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\Windows\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe \\?\Volume{00dc7b45-b830-4d7d-b9c2-ae81732c45f4}\ \\?\Volume{ed4f91de-17f3-4652-a341-702b0572388c}\ -e -h -o -$
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\ASUS\ASUS WiFi GO! Server Execute - C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server Launcher.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default
prefs.js - "browser.startup.homepage" - "www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWoW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.111.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\addons.json
Facebook Unseen - extension - {230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3}
AdBlock for Firefox - extension - jid1-NIfFY2CA8fy1tg@jetpack
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\extensions.json
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Facebook unseen - webextension - {230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3} - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\extensions\{230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3}.xpi
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\pluginreg.dat
Plugin - Adobe Acrobat - 11.0.11.18 - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
Plugin - Adobe Acrobat - 11.0.11.18 - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
Plugin - VLC Web Plugin - 2.2.4.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
Plugin - Google Update - 1.3.32.7 - C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
Plugin - NVIDIA 3D VISION - 7.17.13.7290 - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
Plugin - NVIDIA 3D Vision - 7.17.13.7290 - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
Plugin - Java(TM) Platform SE 8 U111 - 11.111.2.14 - C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll
Plugin - Java Deployment Toolkit 7.0.210.11 - 10.21.2.11 - C:\Windows\SysWoW64\npDeployJava1.dll
=========Google Chrome=========
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb Obchod 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Hľadať v Google 0.0.0.19
Extension eemcgdkfndhakfknompkggombfjjjeno Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg Settings 0.2
Extension gfdkimpbcpahaombhbimeihdjnejgicl Feedback 1.0
Extension mfehgcgbbipciphmccgaenjidiccnmng Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf Chrome 0.1
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Homepage: http://www.google.com
default_search_provider.search_url: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-12-14 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-14 186944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-02 2398776]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-05-02 1767944]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-23 8495320]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2016-10-13 3942864]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-12-27 1517280]
"DAEMON Tools Pro Agent"=C:\Program Files\DAEMON Tools Pro\DTAgent.exe [2015-07-08 4809048]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-12-20 2876704]
"HP Deskjet 3510 series (NET)"=C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe [2016-10-19 63968]
"ASUS WiFi GO! FileTransfer Execute"=C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe [2014-01-22 1392952]
"RtlS5Wake Execute"=C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe [2014-02-13 1642496]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-05-01 1022152]
"Live Update"=C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2016-11-11 13376464]
"MSIRegister"=C:\MSI\MSIRegister\MSIRegister.exe [2016-11-09 1258448]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-09-22 587288]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FAH.lnk - C:\Program Files\WinZip\FAH\FAHConsole.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
conhost32.exe
conhost64.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-02 20:53:46 ----D---- C:\rsit
2017-01-02 20:53:46 ----D---- C:\Program Files\trend micro
2017-01-02 20:48:00 ----D---- C:\AdwCleaner
2017-01-02 19:31:05 ----D---- C:\Users\Michal\AppData\Roaming\NVIDIA
2017-01-02 16:04:27 ----HD---- C:\OneDriveTemp
2016-12-31 10:26:46 ----D---- C:\Users\Michal\AppData\Roaming\HD Tune Pro
2016-12-31 10:26:33 ----AD---- C:\Program Files (x86)\HD Tune Pro
2016-12-30 18:47:01 ----D---- C:\Users\Michal\AppData\Roaming\vlc
2016-12-28 20:25:55 ----D---- C:\ProgramData\Bohemia Interactive
2016-12-28 00:55:44 ----D---- C:\Windows\LastGood.Tmp
2016-12-27 21:54:51 ----D---- C:\Users\Michal\AppData\Roaming\Macromedia
2016-12-27 21:53:47 ----D---- C:\Program Files (x86)\Microsoft
2016-12-27 21:53:43 ----D---- C:\ProgramData\Visan
2016-12-27 21:53:43 ----D---- C:\Program Files (x86)\HP Photo Creations
2016-12-27 21:53:43 ----AD---- C:\ProgramData\HP Photo Creations
2016-12-27 21:53:37 ----D---- C:\Users\Michal\AppData\Roaming\HpUpdate
2016-12-27 21:53:34 ----N---- C:\Windows\system32\HPDiscoPMAD11.dll
2016-12-27 21:53:26 ----AD---- C:\ProgramData\HP
2016-12-27 21:53:26 ----AD---- C:\Program Files (x86)\HP
2016-12-27 21:53:24 ----D---- C:\Program Files\HP
2016-12-27 21:53:17 ----A---- C:\ProgramData\Ament.ini
2016-12-27 18:53:55 ----D---- C:\Users\Michal\AppData\Roaming\WinRAR
2016-12-27 18:53:42 ----AD---- C:\Program Files\WinRAR
2016-12-27 18:14:04 ----D---- C:\Asus WebStorage
2016-12-27 18:10:27 ----SHD---- C:\aws
2016-12-27 17:55:41 ----D---- C:\Windows\Minidump
2016-12-16 00:26:16 ----D---- C:\Program Files (x86)\VideoLAN
2016-12-16 00:25:45 ----AD---- C:\KMPlayer
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\XAudio2_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\xactengine3_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\d3dcsx_43.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\XAudio2_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\XAudio2_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\xactengine3_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\xactengine3_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\D3DX9_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\D3DX9_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dx11_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dx10_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dx10_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dcsx_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\XAudio2_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\xactengine3_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\D3DX9_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\d3dx10_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAudio2_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAudio2_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\xactengine3_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\xactengine3_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\D3DX9_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\d3dx10_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\XAudio2_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\XAudio2_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\xactengine3_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\D3DX9_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\d3dx10_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\xactengine3_0.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\xactengine2_10.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\D3DX9_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\d3dx10_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\d3dx10_36.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\xactengine2_9.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\d3dx9_36.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\d3dx9_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\d3dx10_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\xinput1_3.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\xactengine2_8.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\xactengine2_7.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\d3dx9_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\d3dx10_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\d3dx10_33.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\xactengine2_6.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\xactengine2_5.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\xactengine2_4.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\x3daudio1_1.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\d3dx9_33.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\d3dx9_32.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\d3dx10.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xinput1_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xinput1_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xactengine2_3.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xactengine2_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xactengine2_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\d3dx9_31.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\d3dx9_30.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\xactengine2_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\x3daudio1_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\d3dx9_29.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\d3dx9_28.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\d3dx9_27.dll
2016-12-15 23:32:24 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2016-12-15 23:32:24 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2016-12-15 23:32:24 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2016-12-15 23:32:24 ----A---- C:\Windows\system32\d3dx9_26.dll
2016-12-15 23:32:24 ----A---- C:\Windows\system32\d3dx9_25.dll
2016-12-15 23:32:24 ----A---- C:\Windows\system32\d3dx9_24.dll
2016-12-15 22:59:55 ----D---- C:\Program Files (x86)\Steam
2016-12-14 07:10:51 ----D---- C:\Program Files\CPUID
2016-12-14 07:04:17 ----D---- C:\Users\Michal\AppData\Roaming\Skype
2016-12-14 07:03:02 ----A---- C:\Windows\system32\perfh01B.dat
2016-12-14 07:03:02 ----A---- C:\Windows\system32\perfc01B.dat
2016-12-14 06:55:43 ----D---- C:\Windows\system32\MRT
2016-12-14 06:55:41 ----AC---- C:\Windows\system32\MRT.exe
2016-12-14 06:55:11 ----A---- C:\Windows\SYSWOW64\windows.storage.dll
2016-12-14 06:55:11 ----A---- C:\Windows\SYSWOW64\LicenseManagerApi.dll
2016-12-14 06:55:11 ----A---- C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\TempSignedLicenseExchangeTask.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\mos.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\MapRouter.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\BingMaps.dll
2016-12-14 06:55:10 ----A---- C:\Windows\system32\Windows.UI.Logon.dll
2016-12-14 06:55:10 ----A---- C:\Windows\system32\mssrch.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\winmde.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\MapGeocoder.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\DolbyDecMFT.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\tquery.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\msi.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\msdtctm.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\diagtrack.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\AzureSettingSyncProvider.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\JpMapControl.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\D3D12.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\xpsrchvw.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\WlanMediaManager.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\wbiosrvc.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\SearchIndexer.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\ole32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\MSAJApi.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\MbaeApiPublic.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\hvloader.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\hvix64.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\hvax64.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2016-12-14 06:55:08 ----A---- C:\Windows\system32\comsvcs.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\comdlg32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\bdesvc.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\AppReadiness.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\Windows.StateRepository.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\Windows.Media.Editing.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\wevtapi.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\NMAA.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\mprdim.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\MapControlCore.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\MapConfiguration.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\InputService.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\FSClient.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\daxexec.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\AzureSettingSyncProvider.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\wsecedit.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\Windows.StateRepository.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\Windows.Networking.Vpn.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\twinapi.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\tdh.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\SpaceControl.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\schannel.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\nshwfp.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\drivers\stornvme.sys
2016-12-14 06:55:07 ----A---- C:\Windows\system32\authui.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\AppXDeploymentClient.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\aclui.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\xpsrchvw.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\TextInputFramework.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\pdh.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\msdtcprx.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\MosStorage.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfsensorgroup.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfmkvsrcsnk.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfaudiocnv.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\MapsBtSvc.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_47.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\CloudStorageWizard.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\biwinrt.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.UI.CredDialogController.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.UI.BioFeedback.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.Storage.ApplicationData.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.Devices.Sensors.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.Devices.AllJoyn.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\twinui.pcshell.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\twinui.appcore.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\services.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\PlayToManager.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\pdh.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\NPSM.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\msdtcprx.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\mbsmsapi.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\manage-bde.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\LogonController.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\fveui.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\storahci.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\fastfat.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\dam.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\cmimcext.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\DMRServer.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\DataExchange.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\ConsoleLogon.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\browserbroker.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\BackgroundMediaPolicy.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\asycfilt.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.Media.Audio.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.Printing.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\mfps.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\wuuhext.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.Perception.Stub.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.Devices.Scanners.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\VPNv2CSP.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\SearchFilterHost.exe
2016-12-14 06:55:05 ----A---- C:\Windows\system32\RTMediaFrame.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\PlayToDevice.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\mssprxy.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\lpremove.exe
2016-12-14 06:55:05 ----A---- C:\Windows\system32\kdhvcom.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\efswrt.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\drivers\hvservice.sys
2016-12-14 06:55:05 ----A---- C:\Windows\system32\drivers\bthpan.sys
2016-12-14 06:55:05 ----A---- C:\Windows\system32\DisplayManager.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\dialclient.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\cmintegrator.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\bdeui.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\AccountsRt.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\xolehlp.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\wpnapps.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\WordBreakers.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.UI.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.Perception.Stub.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.Devices.SerialCommunication.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\SettingSyncPolicy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\NmaDirect.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\MosResource.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\MosHostClient.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\MapControlStringsRes.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\InputLocaleManager.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\EditBufferTestHook.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eappprxy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eappcfg.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\BingOnlineServices.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.StateRepositoryBroker.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.Energy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.Cortana.Desktop.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.ApplicationModel.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\VEStoreEventHandlers.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\shutdownux.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\PrintWSDAHost.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\PlayToReceiver.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\msinfo32.exe
2016-12-14 06:55:04 ----A---- C:\Windows\system32\kerberos.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\fvenotify.exe
2016-12-14 06:55:04 ----A---- C:\Windows\system32\credprovslegacy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\CbtBackgroundManagerPolicy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\ActivationManager.dll
2016-12-14 06:55:03 ----A---- C:\Windows\SYSWOW64\MSVPXENC.dll
2016-12-14 06:55:03 ----A---- C:\Windows\system32\wmp.dll
2016-12-14 06:55:03 ----A---- C:\Windows\system32\sppsvc.exe
2016-12-14 06:55:02 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-12-14 06:55:02 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-12-14 06:55:02 ----A---- C:\Windows\system32\mstscax.dll
2016-12-14 06:55:01 ----D---- C:\Users\Michal\AppData\Roaming\Mozilla
2016-12-14 06:55:01 ----A---- C:\Windows\SYSWOW64\mispace.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\Windows.Media.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\sppobjs.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\MFMediaEngine.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\wsp_fs.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\tquery.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\esent.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\winmde.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\mfcore.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\LicenseManager.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\CoreUIComponents.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\wsp_health.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\MSAJApi.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\wlidsvc.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\smartscreen.exe
2016-12-14 06:54:59 ----A---- C:\Windows\system32\mstsc.exe
2016-12-14 06:54:59 ----A---- C:\Windows\system32\mfreadwrite.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\mfnetcore.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\CredProvDataModel.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\AppxPackaging.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\aadtb.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\wsp_sr.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\RemoteNaturalLanguage.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\MiracastReceiver.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\MCRecvSrc.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\fontdrvhost.exe
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\Windows.Media.Editing.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\sppwinob.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\SpeechPal.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\NotificationController.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\msvproc.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\mfsvr.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\mfplat.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\InputService.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\gpsvc.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\facecredentialprovider.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\aadcloudap.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\msctf.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\mfksproxy.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\GamePanel.exe
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\DataExchange.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\bcastdvr.exe
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\wwanconn.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\wmpps.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\wmpeffects.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\winlogon.exe
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.Media.Audio.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.Devices.Perception.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.AccountsControl.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\StoreAgent.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\skci.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\SettingSync.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\MusNotification.exe
2016-12-14 06:54:57 ----A---- C:\Windows\system32\MSVideoDSP.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\mfmkvsrcsnk.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\mfaudiocnv.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\MDMAppInstaller.exe
2016-12-14 06:54:57 ----A---- C:\Windows\system32\hidclass.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\hal.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\tpm.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\sdbus.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\MegaSas2i.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\hidclass.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\EhStorTcgDrv.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\actxprxy.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Usb.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.PointOfService.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Picker.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.AllJoyn.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.AccountsControl.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\sud.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\pidgenx.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\migisol.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\gameux.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\dtdump.exe
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\devenum.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\CryptoWinRT.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\CloudExperienceHostUser.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\CloudExperienceHostCommon.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\ActivationManager.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\zipfldr.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\wmpshell.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\wmpdxm.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\Windows.Devices.LowLevel.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\UserDeviceRegistration.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\TextInputFramework.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\SyncSettings.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\StorSvc.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\sppcext.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\ProvSysprep.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\powercfg.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\pidgenx.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\mfsrcsnk.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\mfps.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\mfnetsrc.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\LicenseManagerSvc.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\InstallAgentUserBroker.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\InstallAgent.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\InputLocaleManager.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\GenValObj.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\DeviceReactivation.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\CloudStorageWizard.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\CloudBackupSettings.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\adsmsext.dll
2016-12-14 06:54:55 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\WwaApi.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\wscinterop.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\UserMgrProxy.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\sendmail.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\RTMediaFrame.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\PrintDialogs.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\PlayToReceiver.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\netshell.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\mspaint.exe
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\fontext.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\esentutl.exe
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\encapi.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\DisplayManager.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\BcastDVRHelper.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\AuthExt.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\XamlTileRender.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\wwanmm.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\WordBreakers.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.System.UserDeviceAssociation.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Media.Ocr.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Devices.Printers.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\RjvMDMConfig.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\RDXService.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\MDEServer.exe
2016-12-14 06:54:55 ----A---- C:\Windows\system32\ListSvc.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\fhcpl.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\efsext.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\EditionUpgradeHelper.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\EditBufferTestHook.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\dsreg.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-12-14 06:54:55 ----A---- C:\Windows\system32\drivers\modem.sys
2016-12-14 06:54:55 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2016-12-14 06:54:55 ----A---- C:\Windows\system32\credprovhost.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\AuthBroker.dll
2016-12-14 06:54:54 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\Windows.Energy.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\storagewmi_passthru.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\stobject.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\smphost.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\LaunchWinApp.exe
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\findnetprinters.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\DevicePairing.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\delegatorprovider.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\DbgModel.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\ConfigureExpandedStorage.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\AppCapture.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\wmploc.DLL
2016-12-14 06:54:54 ----A---- C:\Windows\system32\tzautoupdate.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\StorageUsage.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\spwmp.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\sppc.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\slcext.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\slc.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\SettingSyncPolicy.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\hidusb.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\hidparse.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\dxmasf.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\drivers\hidusb.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\drivers\hidparse.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\AppXApplicabilityBlob.dll
2016-12-14 06:54:53 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-12-14 06:54:53 ----A---- C:\Windows\system32\ieframe.dll
2016-12-14 06:54:52 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-12-14 06:54:52 ----A---- C:\Windows\system32\SettingsHandlers_nt.dll
2016-12-14 06:54:52 ----A---- C:\Windows\system32\mos.dll
2016-12-14 06:54:52 ----A---- C:\Windows\system32\BingMaps.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\win32kfull.sys
2016-12-14 06:54:51 ----A---- C:\Windows\system32\twinui.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\rdpcorets.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\MapRouter.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\cdp.dll
2016-12-14 06:54:50 ----A---- C:\Windows\SYSWOW64\win32kfull.sys
2016-12-14 06:54:50 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2016-12-14 06:54:50 ----A---- C:\Windows\SYSWOW64\msi.dll
Prikladam log z RSIT:
Logfile of random's system information tool 1.14 (written by random/random)
Run by Michal at 2017-01-02 20:53:46
Microsoft Windows 10 Home
System drive C: has 428 GB (90%) free of 476 GB
Total RAM: 16323 MB (85% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:53:49, on 2.1.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
C:\Windows\SysWoW64\muachost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\ATHEROS\S5wow.exe
C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe
C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
C:\Program Files (x86)\MSI\Live Update\Live Update.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
C:\MSI\MSIRegister\MSIRegister.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Networking\inet32upd.exe
C:\Program Files\trend micro\Michal_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe
O4 - HKLM\..\Run: [ASUS WiFi GO! FileTransfer Execute] C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe
O4 - HKLM\..\Run: [RtlS5Wake Execute] C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Live Update] C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
O4 - HKLM\..\Run: [MSIRegister] "C:\MSI\MSIRegister\MSIRegister.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [HP Deskjet 3510 series (NET)] "C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN3581PHHK05Y8:NW" -scfn "HP Deskjet 3510 series (NET)" -AutoStart 1
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: conhost32.exe
O4 - Startup: conhost64.exe
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAH\FAHConsole.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe
O23 - Service: AtherosSvc - Qualcomm Atheros - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Pro Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamingApp_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
O23 - Service: GamingHotkey_Service - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MirrorOP Sender (MOPSender) - BARCO \ AWIND - C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\AWService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSIREGISTER_MR - Micro-Star INT'L CO., LTD. - C:\MSI\MSIRegister\MSIRegisterService.exe
O23 - Service: MSI_ActiveX_Service - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
O23 - Service: MSI Live Update Service (MSI_LiveUpdate_Service) - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 12188 bytes
======Enumerating Processes======
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\winlogon.exe
C:\Windows\system32\dwm.exe
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.15.458\AsusWSWinService.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
C:\Windows\system32\IProsetMonitor.exe
"C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\AWService.exe" -service
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\MSI\MSIRegister\MSIRegisterService.exe
"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\Windows\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\StationApp.exe" -winsta
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sihost.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\system32\taskhostw.exe
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
C:\Windows\system32\AUDIODG.EXE 0x3c8
"C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe"
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe"
\??\C:\Windows\system32\conhost.exe 0x4
C:\Windows\SysWoW64\muachost.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\ASUSRelayWS.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\x64\S5wow_2005.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\ATHEROS\S5wow.exe"
C:\Windows\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe"
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe" -deviceID "CN3581PHHK05Y8:NW" -scfn "HP Deskjet 3510 series (NET)" -AutoStart 1
"C:\Program Files\WinZip\FAH\FAHWindow64.exe" register
"C:\Program Files\WinZip\WzPreloader.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe"
"C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" "-cachedir=C:\Users\Michal\AppData\Local\Steam\htmlcache" "-steampid=9200" "-buildid=1482202200" "-steamid=0" --disable-gpu-compositing --disable-gpu --process-per-tab --disable-spell-checking --disable-out-of-process-pac --disable-smooth-scrolling --enable-direct-write
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 "--database=C:\Users\Michal\AppData\Local\Chromium\User Data\Crashpad" "--metrics-dir=C:\Users\Michal\AppData\Local\Chromium\User Data" --annotation=channel= --annotation=plat=Win32 --annotation=prod= --annotation=ver=01.00.00.01-devel --handshake-handle=0x2dc
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe"
"C:\Program Files (x86)\MSI\Live Update\Live Update.exe" /REMINDER
"C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe"
"C:\MSI\MSIRegister\MSIRegister.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe" /AUTOHIDE
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="2136.0.1344336614\230760078" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 2136 "\\.\pipe\gecko-crash-server-pipe.2136" tab
"C:\Users\Michal\AppData\Roaming\Microsoft\Networking\winnet32b.exe" -a skein -o stratum+tcp://stratum.dgb.theblocksfactory.com:9002 -O LukeP.1:x -t 4
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Users\Michal\AppData\Roaming\Microsoft\Networking\inet32upd.exe" --skein -o stratum+tcp://stratum.dgb.theblocksfactory.com:9002 -O LukeP.1:x -T
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
"C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe"
"C:\Users\Michal\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\HPCustParticipation HP Deskjet 3510 series - "C:\Program Files\HP\HP Deskjet 3510 series\Bin\HPCustPartic.exe" /UA 10.5 /DDV 0x0b05
C:\Windows\system32\tasks\MSIOSDx64_Host - C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
C:\Windows\system32\tasks\MSIOSDx86_Host - C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
C:\Windows\system32\tasks\MSISW_Host - C:\Windows\SysWoW64\muachost.exe
C:\Windows\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\Windows\system32\tasks\SamsungMagician - "C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe" /AUTOHIDE
C:\Windows\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\Windows\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\Windows\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\Windows\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\Windows\system32\sc.exe start wuauserv
C:\Windows\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\Windows\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\Windows\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - %systemroot%\system32\MusNotification.exe Display
C:\Windows\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - %systemroot%\system32\MusNotification.exe ReadyToReboot
C:\Windows\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\Windows\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\Windows\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\Windows\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\Windows\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\Windows\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\Windows\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\Windows\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\Windows\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\Windows\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\Windows\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\Windows\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\Windows\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\Windows\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe \\?\Volume{00dc7b45-b830-4d7d-b9c2-ae81732c45f4}\ \\?\Volume{ed4f91de-17f3-4652-a341-702b0572388c}\ -e -h -o -$
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\Windows\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\ASUS\ASUS WiFi GO! Server Execute - C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server Launcher.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default
prefs.js - "browser.startup.homepage" - "www.google.sk/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWoW64\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.111.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\addons.json
Facebook Unseen - extension - {230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3}
AdBlock for Firefox - extension - jid1-NIfFY2CA8fy1tg@jetpack
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\extensions.json
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Facebook unseen - webextension - {230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3} - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\extensions\{230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3}.xpi
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\cnk98cdl.default\pluginreg.dat
Plugin - Adobe Acrobat - 11.0.11.18 - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
Plugin - Adobe Acrobat - 11.0.11.18 - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
Plugin - VLC Web Plugin - 2.2.4.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
Plugin - Google Update - 1.3.32.7 - C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
Plugin - NVIDIA 3D VISION - 7.17.13.7290 - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
Plugin - NVIDIA 3D Vision - 7.17.13.7290 - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
Plugin - Java(TM) Platform SE 8 U111 - 11.111.2.14 - C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll
Plugin - Java Deployment Toolkit 7.0.210.11 - 10.21.2.11 - C:\Windows\SysWoW64\npDeployJava1.dll
=========Google Chrome=========
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb Obchod 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Hľadať v Google 0.0.0.19
Extension eemcgdkfndhakfknompkggombfjjjeno Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg Settings 0.2
Extension gfdkimpbcpahaombhbimeihdjnejgicl Feedback 1.0
Extension mfehgcgbbipciphmccgaenjidiccnmng Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf Chrome 0.1
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Homepage: http://www.google.com
default_search_provider.search_url: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-12-14 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-14 186944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25 1253144]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-05-02 2398776]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2016-05-02 1767944]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-23 8495320]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2016-10-13 3942864]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Michal\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-12-27 1517280]
"DAEMON Tools Pro Agent"=C:\Program Files\DAEMON Tools Pro\DTAgent.exe [2015-07-08 4809048]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-12-20 2876704]
"HP Deskjet 3510 series (NET)"=C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe [2012-10-17 2573416]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.2.12.577\ASUSWSLoader.exe [2016-10-19 63968]
"ASUS WiFi GO! FileTransfer Execute"=C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe [2014-01-22 1392952]
"RtlS5Wake Execute"=C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe [2014-02-13 1642496]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-05-01 1022152]
"Live Update"=C:\Program Files (x86)\MSI\Live Update\Live Update.exe [2016-11-11 13376464]
"MSIRegister"=C:\MSI\MSIRegister\MSIRegister.exe [2016-11-09 1258448]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-09-22 587288]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FAH.lnk - C:\Program Files\WinZip\FAH\FAHConsole.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe
C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
conhost32.exe
conhost64.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-02 20:53:46 ----D---- C:\rsit
2017-01-02 20:53:46 ----D---- C:\Program Files\trend micro
2017-01-02 20:48:00 ----D---- C:\AdwCleaner
2017-01-02 19:31:05 ----D---- C:\Users\Michal\AppData\Roaming\NVIDIA
2017-01-02 16:04:27 ----HD---- C:\OneDriveTemp
2016-12-31 10:26:46 ----D---- C:\Users\Michal\AppData\Roaming\HD Tune Pro
2016-12-31 10:26:33 ----AD---- C:\Program Files (x86)\HD Tune Pro
2016-12-30 18:47:01 ----D---- C:\Users\Michal\AppData\Roaming\vlc
2016-12-28 20:25:55 ----D---- C:\ProgramData\Bohemia Interactive
2016-12-28 00:55:44 ----D---- C:\Windows\LastGood.Tmp
2016-12-27 21:54:51 ----D---- C:\Users\Michal\AppData\Roaming\Macromedia
2016-12-27 21:53:47 ----D---- C:\Program Files (x86)\Microsoft
2016-12-27 21:53:43 ----D---- C:\ProgramData\Visan
2016-12-27 21:53:43 ----D---- C:\Program Files (x86)\HP Photo Creations
2016-12-27 21:53:43 ----AD---- C:\ProgramData\HP Photo Creations
2016-12-27 21:53:37 ----D---- C:\Users\Michal\AppData\Roaming\HpUpdate
2016-12-27 21:53:34 ----N---- C:\Windows\system32\HPDiscoPMAD11.dll
2016-12-27 21:53:26 ----AD---- C:\ProgramData\HP
2016-12-27 21:53:26 ----AD---- C:\Program Files (x86)\HP
2016-12-27 21:53:24 ----D---- C:\Program Files\HP
2016-12-27 21:53:17 ----A---- C:\ProgramData\Ament.ini
2016-12-27 18:53:55 ----D---- C:\Users\Michal\AppData\Roaming\WinRAR
2016-12-27 18:53:42 ----AD---- C:\Program Files\WinRAR
2016-12-27 18:14:04 ----D---- C:\Asus WebStorage
2016-12-27 18:10:27 ----SHD---- C:\aws
2016-12-27 17:55:41 ----D---- C:\Windows\Minidump
2016-12-16 00:26:16 ----D---- C:\Program Files (x86)\VideoLAN
2016-12-16 00:25:45 ----AD---- C:\KMPlayer
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2016-12-15 23:32:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\XAudio2_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\xactengine3_7.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\d3dcsx_43.dll
2016-12-15 23:32:36 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2016-12-15 23:32:35 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\XAudio2_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\XAudio2_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\xactengine3_6.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\xactengine3_5.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2016-12-15 23:32:35 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\D3DX9_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\D3DX9_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dx11_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dx10_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dx10_41.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\d3dcsx_42.dll
2016-12-15 23:32:34 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\XAudio2_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\xactengine3_4.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\D3DX9_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\d3dx10_40.dll
2016-12-15 23:32:33 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAudio2_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAudio2_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\xactengine3_3.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\xactengine3_2.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\D3DX9_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\d3dx10_39.dll
2016-12-15 23:32:32 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\XAudio2_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\XAudio2_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\xactengine3_1.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\D3DX9_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\d3dx10_38.dll
2016-12-15 23:32:31 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\xactengine3_0.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\xactengine2_10.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\D3DX9_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\d3dx10_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\d3dx10_36.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2016-12-15 23:32:30 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\xactengine2_9.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\d3dx9_36.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\d3dx9_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\d3dx10_35.dll
2016-12-15 23:32:29 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\xinput1_3.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\xactengine2_8.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\xactengine2_7.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\d3dx9_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\d3dx10_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\d3dx10_33.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2016-12-15 23:32:28 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2016-12-15 23:32:27 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\xactengine2_6.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\xactengine2_5.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\xactengine2_4.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\x3daudio1_1.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\d3dx9_33.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\d3dx9_32.dll
2016-12-15 23:32:27 ----A---- C:\Windows\system32\d3dx10.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2016-12-15 23:32:26 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xinput1_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xinput1_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xactengine2_3.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xactengine2_2.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\xactengine2_1.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\d3dx9_31.dll
2016-12-15 23:32:26 ----A---- C:\Windows\system32\d3dx9_30.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2016-12-15 23:32:25 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\xactengine2_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\x3daudio1_0.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\d3dx9_29.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\d3dx9_28.dll
2016-12-15 23:32:25 ----A---- C:\Windows\system32\d3dx9_27.dll
2016-12-15 23:32:24 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2016-12-15 23:32:24 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2016-12-15 23:32:24 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2016-12-15 23:32:24 ----A---- C:\Windows\system32\d3dx9_26.dll
2016-12-15 23:32:24 ----A---- C:\Windows\system32\d3dx9_25.dll
2016-12-15 23:32:24 ----A---- C:\Windows\system32\d3dx9_24.dll
2016-12-15 22:59:55 ----D---- C:\Program Files (x86)\Steam
2016-12-14 07:10:51 ----D---- C:\Program Files\CPUID
2016-12-14 07:04:17 ----D---- C:\Users\Michal\AppData\Roaming\Skype
2016-12-14 07:03:02 ----A---- C:\Windows\system32\perfh01B.dat
2016-12-14 07:03:02 ----A---- C:\Windows\system32\perfc01B.dat
2016-12-14 06:55:43 ----D---- C:\Windows\system32\MRT
2016-12-14 06:55:41 ----AC---- C:\Windows\system32\MRT.exe
2016-12-14 06:55:11 ----A---- C:\Windows\SYSWOW64\windows.storage.dll
2016-12-14 06:55:11 ----A---- C:\Windows\SYSWOW64\LicenseManagerApi.dll
2016-12-14 06:55:11 ----A---- C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\TempSignedLicenseExchangeTask.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\mos.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\MapRouter.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2016-12-14 06:55:10 ----A---- C:\Windows\SYSWOW64\BingMaps.dll
2016-12-14 06:55:10 ----A---- C:\Windows\system32\Windows.UI.Logon.dll
2016-12-14 06:55:10 ----A---- C:\Windows\system32\mssrch.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\winmde.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\MapGeocoder.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\DolbyDecMFT.dll
2016-12-14 06:55:09 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\tquery.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\msi.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\msdtctm.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\diagtrack.dll
2016-12-14 06:55:09 ----A---- C:\Windows\system32\AzureSettingSyncProvider.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\JpMapControl.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\D3D12.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\xpsrchvw.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\WlanMediaManager.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\wbiosrvc.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\SearchIndexer.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\ole32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\msv1_0.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\MSAJApi.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\MbaeApiPublic.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\hvloader.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\hvix64.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\hvax64.exe
2016-12-14 06:55:08 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2016-12-14 06:55:08 ----A---- C:\Windows\system32\comsvcs.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\comdlg32.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\bdesvc.dll
2016-12-14 06:55:08 ----A---- C:\Windows\system32\AppReadiness.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\Windows.StateRepository.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\Windows.Media.Editing.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\wevtapi.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\NMAA.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\mprdim.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\MapControlCore.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\MapConfiguration.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\InputService.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\FSClient.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\daxexec.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\AzureSettingSyncProvider.dll
2016-12-14 06:55:07 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\wsecedit.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\Windows.StateRepository.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\Windows.Networking.Vpn.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\twinapi.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\tdh.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\SpaceControl.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\schannel.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\nshwfp.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\drivers\stornvme.sys
2016-12-14 06:55:07 ----A---- C:\Windows\system32\authui.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\AppXDeploymentClient.dll
2016-12-14 06:55:07 ----A---- C:\Windows\system32\aclui.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\xpsrchvw.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\WSManHTTPConfig.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\TextInputFramework.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\pdh.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\msdtcprx.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\MosStorage.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfsensorgroup.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfmkvsrcsnk.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\mfaudiocnv.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\MapsBtSvc.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_47.dll
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\CloudStorageWizard.exe
2016-12-14 06:55:06 ----A---- C:\Windows\SYSWOW64\biwinrt.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.UI.CredDialogController.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.UI.BioFeedback.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.Storage.ApplicationData.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.Devices.Sensors.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Windows.Devices.AllJoyn.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\twinui.pcshell.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\twinui.appcore.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\services.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\PlayToManager.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\pdh.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\NPSM.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\msdtcprx.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\mbsmsapi.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\manage-bde.exe
2016-12-14 06:55:06 ----A---- C:\Windows\system32\LogonController.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\fveui.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\storahci.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\fastfat.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\dam.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\drivers\cmimcext.sys
2016-12-14 06:55:06 ----A---- C:\Windows\system32\DMRServer.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\DataExchange.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\ConsoleLogon.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\browserbroker.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\BackgroundMediaPolicy.dll
2016-12-14 06:55:06 ----A---- C:\Windows\system32\asycfilt.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.Media.Audio.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.Graphics.Printing.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2016-12-14 06:55:05 ----A---- C:\Windows\SYSWOW64\mfps.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\wuuhext.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.Perception.Stub.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.Devices.Scanners.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\VPNv2CSP.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\SearchFilterHost.exe
2016-12-14 06:55:05 ----A---- C:\Windows\system32\RTMediaFrame.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\PlayToDevice.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\mssprxy.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\lpremove.exe
2016-12-14 06:55:05 ----A---- C:\Windows\system32\kdhvcom.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\efswrt.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\drivers\hvservice.sys
2016-12-14 06:55:05 ----A---- C:\Windows\system32\drivers\bthpan.sys
2016-12-14 06:55:05 ----A---- C:\Windows\system32\DisplayManager.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\dialclient.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\cmintegrator.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\bdeui.dll
2016-12-14 06:55:05 ----A---- C:\Windows\system32\AccountsRt.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\xolehlp.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\wpnapps.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\WordBreakers.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.UI.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.StateRepositoryClient.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.Perception.Stub.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Windows.Devices.SerialCommunication.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\SettingSyncPolicy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\NmaDirect.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\MosResource.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\MosHostClient.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Microsoft-Windows-MosTrace.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Microsoft-Windows-MosHost.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\Microsoft-Windows-MapControls.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\MapControlStringsRes.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\InputLocaleManager.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\EditBufferTestHook.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eappprxy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eappcfg.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2016-12-14 06:55:04 ----A---- C:\Windows\SYSWOW64\BingOnlineServices.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.StateRepositoryBroker.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.Energy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.Cortana.Desktop.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\Windows.ApplicationModel.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\VEStoreEventHandlers.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\shutdownux.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\PrintWSDAHost.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\PlayToReceiver.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\msinfo32.exe
2016-12-14 06:55:04 ----A---- C:\Windows\system32\kerberos.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\fvenotify.exe
2016-12-14 06:55:04 ----A---- C:\Windows\system32\credprovslegacy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\CbtBackgroundManagerPolicy.dll
2016-12-14 06:55:04 ----A---- C:\Windows\system32\ActivationManager.dll
2016-12-14 06:55:03 ----A---- C:\Windows\SYSWOW64\MSVPXENC.dll
2016-12-14 06:55:03 ----A---- C:\Windows\system32\wmp.dll
2016-12-14 06:55:03 ----A---- C:\Windows\system32\sppsvc.exe
2016-12-14 06:55:02 ----A---- C:\Windows\SYSWOW64\wmp.dll
2016-12-14 06:55:02 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-12-14 06:55:02 ----A---- C:\Windows\system32\mstscax.dll
2016-12-14 06:55:01 ----D---- C:\Users\Michal\AppData\Roaming\Mozilla
2016-12-14 06:55:01 ----A---- C:\Windows\SYSWOW64\mispace.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\Windows.Media.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\sppobjs.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2016-12-14 06:55:01 ----A---- C:\Windows\system32\MFMediaEngine.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\wsp_fs.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\tquery.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\esent.dll
2016-12-14 06:55:00 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\winmde.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\mfcore.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\LicenseManager.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\CoreUIComponents.dll
2016-12-14 06:55:00 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\wsp_health.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\MSAJApi.dll
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\explorer.exe
2016-12-14 06:54:59 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\wlidsvc.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\smartscreen.exe
2016-12-14 06:54:59 ----A---- C:\Windows\system32\mstsc.exe
2016-12-14 06:54:59 ----A---- C:\Windows\system32\mfreadwrite.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\mfnetcore.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\CredProvDataModel.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\AppxPackaging.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 06:54:59 ----A---- C:\Windows\system32\aadtb.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\wsp_sr.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\RemoteNaturalLanguage.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\MiracastReceiver.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\MCRecvSrc.dll
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\fontdrvhost.exe
2016-12-14 06:54:58 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\Windows.Media.Editing.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\sppwinob.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\SpeechPal.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\NotificationController.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\msvproc.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\mfsvr.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\mfplat.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\InputService.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\gpsvc.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\facecredentialprovider.dll
2016-12-14 06:54:58 ----A---- C:\Windows\system32\aadcloudap.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\Windows.Storage.ApplicationData.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\msctf.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\mfksproxy.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\GamePanel.exe
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\DataExchange.dll
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\bcastdvr.exe
2016-12-14 06:54:57 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\wwanconn.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\wmpps.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\wmpeffects.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\winlogon.exe
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.Media.Audio.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.Devices.Perception.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\Windows.AccountsControl.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\StoreAgent.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\skci.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\SettingSync.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\MusNotification.exe
2016-12-14 06:54:57 ----A---- C:\Windows\system32\MSVideoDSP.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\mfmkvsrcsnk.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\mfaudiocnv.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\MDMAppInstaller.exe
2016-12-14 06:54:57 ----A---- C:\Windows\system32\hidclass.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\hal.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\tpm.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\sdbus.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\MegaSas2i.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\hidclass.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\EhStorTcgDrv.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2016-12-14 06:54:57 ----A---- C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-12-14 06:54:57 ----A---- C:\Windows\system32\actxprxy.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Usb.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.PointOfService.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Picker.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.Devices.AllJoyn.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Windows.AccountsControl.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\sud.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\pidgenx.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\migisol.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\gameux.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\dtdump.exe
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\devenum.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\CryptoWinRT.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\CloudExperienceHostUser.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\CloudExperienceHostCommon.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-12-14 06:54:56 ----A---- C:\Windows\SYSWOW64\ActivationManager.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\zipfldr.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\wmpshell.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\wmpdxm.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\Windows.Devices.LowLevel.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\UserDeviceRegistration.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\TextInputFramework.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\SyncSettings.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\StorSvc.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\sppcext.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\ProvSysprep.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\powercfg.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\pidgenx.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\mfsrcsnk.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\mfps.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\mfnetsrc.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\LicenseManagerSvc.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\InstallAgentUserBroker.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\InstallAgent.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\InputLocaleManager.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\GenValObj.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\DeviceReactivation.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\CloudStorageWizard.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\CloudBackupSettings.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-12-14 06:54:56 ----A---- C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-12-14 06:54:56 ----A---- C:\Windows\system32\adsmsext.dll
2016-12-14 06:54:55 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\WwaApi.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\wscinterop.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\UserMgrProxy.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\sendmail.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\RTMediaFrame.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\PrintDialogs.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\PlayToReceiver.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\netshell.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\mspaint.exe
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\fontext.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\esentutl.exe
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\encapi.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\DisplayManager.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\BcastDVRHelper.dll
2016-12-14 06:54:55 ----A---- C:\Windows\SYSWOW64\AuthExt.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\XamlTileRender.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\wwanmm.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\WordBreakers.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.System.UserDeviceAssociation.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Media.Ocr.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.Devices.Printers.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\RjvMDMConfig.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\RDXService.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\MDEServer.exe
2016-12-14 06:54:55 ----A---- C:\Windows\system32\ListSvc.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\fhcpl.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\efsext.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\EditionUpgradeHelper.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\EditBufferTestHook.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\dsreg.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-12-14 06:54:55 ----A---- C:\Windows\system32\drivers\modem.sys
2016-12-14 06:54:55 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2016-12-14 06:54:55 ----A---- C:\Windows\system32\credprovhost.dll
2016-12-14 06:54:55 ----A---- C:\Windows\system32\AuthBroker.dll
2016-12-14 06:54:54 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\Windows.Energy.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\storagewmi_passthru.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\stobject.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\smphost.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\LaunchWinApp.exe
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\findnetprinters.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\DevicePairing.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\delegatorprovider.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\DbgModel.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\ConfigureExpandedStorage.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-12-14 06:54:54 ----A---- C:\Windows\SYSWOW64\AppCapture.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\wmploc.DLL
2016-12-14 06:54:54 ----A---- C:\Windows\system32\tzautoupdate.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\StorageUsage.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\spwmp.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\sppc.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\slcext.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\slc.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\SettingSyncPolicy.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\hidusb.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\hidparse.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\dxmasf.dll
2016-12-14 06:54:54 ----A---- C:\Windows\system32\drivers\hidusb.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\drivers\hidparse.sys
2016-12-14 06:54:54 ----A---- C:\Windows\system32\AppXApplicabilityBlob.dll
2016-12-14 06:54:53 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-12-14 06:54:53 ----A---- C:\Windows\system32\ieframe.dll
2016-12-14 06:54:52 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-12-14 06:54:52 ----A---- C:\Windows\system32\SettingsHandlers_nt.dll
2016-12-14 06:54:52 ----A---- C:\Windows\system32\mos.dll
2016-12-14 06:54:52 ----A---- C:\Windows\system32\BingMaps.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\win32kfull.sys
2016-12-14 06:54:51 ----A---- C:\Windows\system32\twinui.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\rdpcorets.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\MapRouter.dll
2016-12-14 06:54:51 ----A---- C:\Windows\system32\cdp.dll
2016-12-14 06:54:50 ----A---- C:\Windows\SYSWOW64\win32kfull.sys
2016-12-14 06:54:50 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2016-12-14 06:54:50 ----A---- C:\Windows\SYSWOW64\msi.dll