Dobrý den , prosím o kontrolu logu.
Napsal: 11 zář 2017 18:53
Při otevření firefoxu se přesměrovává na jiné stránky (ruské) vyskakují reklamní okna apod. Děkuji.
Log obsahuje 163770 znaků , tak ho vkládám na dvakrát.
Logfile of random's system information tool 1.10 (written by random/random)
Run by vencau at 2017-09-11 19:37:01
Microsoft Windows 10 Home
System drive C: has 67 GB (55%) free of 121 GB
Total RAM: 3551 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:37:34, on 11.09.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
C:\Program Files\trend micro\vencau.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HCTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HCTE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HPRadioMgr] C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: HP JumpStart Launch.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: AdaptiveSleepService - Unknown owner - c:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Antivirus - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
O23 - Service: AVG Firewall Service (AVG Firewall) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\afwServ.exe
O23 - Service: avgbIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - c:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Comm Recovery (HP Comm Recover) - HP Inc. - C:\Program Files\HPCommRecovery\HPCommRecovery.exe
O23 - Service: HP JumpStart Bridge (HPJumpStartBridge) - HP Inc. - C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
O23 - Service: HP CASL Framework Service (hpqcaslwmiex) - HP - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: HPWMISVC - HP Inc. - C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
O23 - Service: @oem26.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\windows\system32\ibtsiva (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - CyberLink - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: tbaseprovisioning - Advanced Micro Devices, Inc. - C:\windows\SysWOW64\tbaseprovisioning.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 11468 bytes
======Listing Processes======
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k NetworkService
C:\windows\system32\atiesrxx.exe
C:\windows\SysWOW64\tbaseprovisioning.exe
atieclxx
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\WLANExt.exe 1818866604944
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k apphost
C:\windows\system32\ibtsiva
"C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe"
"c:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\windows\System32\svchost.exe -k utcsvc
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
sihost.exe
C:\windows\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /c
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\windows\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\windows\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="6688.0.1756781184\1502063690" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 6688 "\\.\pipe\gecko-crash-server-pipe.6688" gpu
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="6688.3.1796875006\973872094" -childID 1 -isForBrowser -intPrefs 5:50|6:-1|28:1000|33:20|34:10|43:128|44:10000|49:0|51:400|52:1|53:0|54:0|59:0|60:120|61:120|91:2|92:1|106:5000|117:0|119:0|130:10000|142:-1|147:128|148:10000|149:0|155:24|156:32768|158:0|159:0|167:5|171:1048576|172:100|173:5000|175:600|177:1|186:1|190:0|200:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|35:1|36:0|37:0|38:0|41:1|42:1|45:0|46:0|47:0|48:0|50:0|55:1|56:1|57:0|58:1|62:1|63:1|64:0|65:1|66:1|67:0|68:1|71:0|72:0|75:1|76:1|80:1|81:1|82:1|83:0|85:0|86:0|87:1|88:0|93:1|94:0|100:0|105:0|108:1|109:1|112:1|114:1|118:0|121:1|124:1|125:1|131:0|132:0|133:1|135:0|141:0|143:1|144:0|145:1|146:0|153:0|154:0|157:1|160:0|162:1|164:1|165:0|170:0|174:1|179:0|180:0|181:0|182:1|183:0|184:0|185:1|188:0|192:0|193:0|194:1|195:1|196:0|197:1|198:1|199:1|201:0|202:0|204:0|212:1|213:1|214:0|215:0|216:0| -stringPrefs "3:7;release|134:3;1.0|151:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|152:8;moderate|187:38;{55761e01-1794-4cbf-9849-b52028326897}|" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 6688 "\\.\pipe\gecko-crash-server-pipe.6688" tab
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
/fmw.trayonly
AVGUI.exe /nogui
"C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
C:\windows\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
C:\windows\system32\AUDIODG.EXE 0x3a0
"C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe"
"C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe"
"fontdrvhost.exe"
"c:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe"
"C:\Program Files\HPCommRecovery\HPCommRecovery.exe"
"C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files (x86)\HP\Shared\hpqwmiex.exe"
C:\windows\system32\msiexec.exe /V
C:\windows\servicing\TrustedInstaller.exe
C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1561_none_7ef6e89821f9a6be\TiWorker.exe -Embedding
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
wmiadap.exe /F /T /R
"C:\Users\vencau\Desktop\RSITx64.exe"
C:\windows\system32\wbem\WmiApSrv.exe
======Scheduled tasks folder======
C:\windows\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\windows\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForvencau.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForvencau (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\vencau\AppData\Roaming\Mozilla\Firefox\Profiles\ygfr7c8d.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.151 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_151.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.151 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_26_0_0_151.dll
C:\Users\vencau\AppData\Roaming\Mozilla\Firefox\Profiles\ygfr7c8d.default\extensions\
mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05 440712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05 416320]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-10-14 8903176]
"StartCN"=c:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-10-06 8029064]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [2017-08-24 239592]
"AVGUI.exe"=C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [2017-09-03 289248]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-09-08 1674960]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2017-08-14 4836032]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HPRadioMgr"=C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [2017-04-25 324600]
"HPMessageService"=C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [2017-07-13 701984]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP JumpStart Launch.lnk - c:\windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcapexe]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-09-11 19:37:01 ----D---- C:\rsit
2017-09-11 19:37:01 ----D---- C:\Program Files\trend micro
2017-09-11 18:50:09 ----D---- C:\ProgramData\Start Menu
2017-09-11 16:09:20 ----A---- C:\windows\system32\sdnclean64.exe
2017-09-11 16:09:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2017-09-11 16:09:12 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-09-10 21:49:12 ----D---- C:\ProgramData\install_clap
2017-09-10 21:45:03 ----D---- C:\Users\vencau\AppData\Roaming\BrowserModule
2017-09-10 21:43:59 ----D---- C:\ProgramData\WindowsReporting
2017-09-10 21:21:50 ----D---- C:\Users\vencau\AppData\Roaming\Bitmart
2017-09-10 16:43:27 ----D---- C:\Users\vencau\AppData\Roaming\Ashampoo
2017-09-10 16:43:17 ----D---- C:\ProgramData\Ashampoo
2017-09-10 16:43:12 ----D---- C:\Program Files (x86)\Ashampoo
2017-09-03 20:38:57 ----A---- C:\windows\system32\FNTCACHE.DAT
2017-09-03 17:38:00 ----A---- C:\windows\system32\drivers\dtliteusbbus.sys
2017-09-03 17:35:20 ----A---- C:\windows\system32\drivers\dtlitescsibus.sys
2017-09-03 17:35:19 ----D---- C:\Users\vencau\AppData\Roaming\DAEMON Tools Lite
2017-09-03 17:35:13 ----D---- C:\Program Files\DAEMON Tools Lite
2017-09-03 17:33:31 ----D---- C:\ProgramData\DAEMON Tools Lite
2017-09-03 14:20:48 ----AD---- C:\Program Files\Recuva
2017-09-03 13:52:38 ----HD---- C:\$AV_AVG
2017-09-03 12:40:02 ----A---- C:\windows\system32\drivers\avgNetSec.sys
2017-09-03 12:39:57 ----A---- C:\windows\system32\avgBoot.exe
2017-08-29 15:54:14 ----A---- C:\windows\SYSWOW64\aepic.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\invagent.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\generaltel.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\devinv.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\DeviceCensus.exe
2017-08-29 15:54:14 ----A---- C:\windows\system32\dcntel.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\CompatTelRunner.exe
2017-08-29 15:54:14 ----A---- C:\windows\system32\appraiser.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\aepic.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\aeinv.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\acmigration.dll
2017-08-26 17:52:53 ----D---- C:\Users\vencau\AppData\Roaming\CyberLink
2017-08-22 23:13:43 ----D---- C:\Program Files (x86)\Seznam.cz
2017-08-22 23:11:20 ----D---- C:\Users\vencau\AppData\Roaming\R-TT
2017-08-22 23:11:13 ----D---- C:\Users\vencau\AppData\Roaming\Seznam.cz
2017-08-22 22:30:05 ----D---- C:\Program Files (x86)\Smart Projects
2017-08-22 21:21:02 ----D---- C:\Users\vencau\AppData\Roaming\WinRAR
2017-08-22 21:20:31 ----AD---- C:\Program Files\WinRAR
2017-08-22 21:01:31 ----D---- C:\windows\system32\ad32474e8131123f7c768c36e6f0c9e1160837af57527..bin
2017-08-20 18:29:01 ----D---- C:\windows\system32\65dbbd69613ce8..bin
2017-08-17 13:46:22 ----D---- C:\Users\vencau\AppData\Roaming\Apple Computer
2017-08-17 13:44:21 ----AD---- C:\Program Files\Bonjour
2017-08-17 13:44:21 ----AD---- C:\Program Files (x86)\Bonjour
2017-08-17 13:22:48 ----DC---- C:\windows\system32\DRVSTORE
2017-08-17 13:22:48 ----A---- C:\windows\system32\drivers\GEARAspiWDM.sys
2017-08-17 13:22:20 ----D---- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2017-08-17 13:22:20 ----D---- C:\ProgramData\Apple Computer
2017-08-16 20:04:09 ----AD---- C:\Program Files\CCleaner
2017-08-16 02:00:24 ----D---- C:\windows\system32\0
2017-08-16 01:37:47 ----D---- C:\inetpub
2017-08-16 00:47:26 ----AD---- C:\Program Files\rempl
2017-08-16 00:28:38 ----D---- C:\windows\system32\MRT
2017-08-16 00:28:31 ----AC---- C:\windows\system32\MRT.exe
2017-08-16 00:28:16 ----D---- C:\windows\system32\UNP
2017-08-16 00:28:16 ----AD---- C:\Program Files\UNP
2017-08-16 00:23:33 ----A---- C:\windows\system32\aspnet_counters.dll
2017-08-16 00:23:31 ----A---- C:\windows\SYSWOW64\aspnet_counters.dll
2017-08-16 00:23:17 ----A---- C:\windows\system32\msvcr100_clr0400.dll
2017-08-16 00:23:11 ----A---- C:\windows\SYSWOW64\msvcr100_clr0400.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\MapsBtSvc.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\MapConfiguration.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\JpMapControl.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\BingMaps.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\Windows.UI.BlockedShutdown.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\Windows.UI.BioFeedback.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\win32k.sys
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\MapRouter.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\MapGeocoder.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\aadtb.dll
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\Windows.Networking.dll
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\win32kfull.sys
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\NMAA.dll
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\MapControlCore.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\Windows.UI.Cred.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\Windows.Media.Audio.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\wincorlib.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\mos.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\DeviceFlows.DataModel.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\Windows.Media.Editing.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\oleaut32.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\mfsensorgroup.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\MFMediaEngine.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\Windows.Web.Http.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\RTMediaFrame.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\iertutil.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\CoreMessaging.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\authui.dll
2017-08-16 00:20:15 ----A---- C:\windows\SYSWOW64\Windows.UI.Logon.dll
2017-08-16 00:20:14 ----A---- C:\windows\SYSWOW64\Windows.Data.Pdf.dll
2017-08-16 00:20:13 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-08-16 00:20:13 ----A---- C:\windows\SYSWOW64\dbgeng.dll
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\ole32.dll
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\bcastdvr.exe
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\AzureSettingSyncProvider.dll
2017-08-16 00:20:11 ----A---- C:\windows\SYSWOW64\Windows.Media.dll
2017-08-16 00:20:11 ----A---- C:\windows\SYSWOW64\dlnashext.dll
2017-08-16 00:20:11 ----A---- C:\windows\SYSWOW64\CredProvDataModel.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\Windows.UI.Search.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\Windows.UI.Immersive.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\LogonController.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\LicenseManager.dll
2017-08-16 00:20:09 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2017-08-16 00:20:09 ----A---- C:\windows\SYSWOW64\InputService.dll
2017-08-16 00:20:09 ----A---- C:\windows\SYSWOW64\CoreUIComponents.dll
2017-08-16 00:20:08 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.dll
2017-08-16 00:20:08 ----A---- C:\windows\SYSWOW64\Windows.Graphics.Printing.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\wlanapi.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\WinTypes.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\LicenseManagerApi.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\combase.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\AudioSes.dll
2017-08-16 00:20:06 ----A---- C:\windows\SYSWOW64\twinui.dll
2017-08-16 00:20:06 ----A---- C:\windows\SYSWOW64\aclui.dll
2017-08-16 00:20:05 ----A---- C:\windows\SYSWOW64\windows.storage.dll
2017-08-16 00:20:05 ----A---- C:\windows\SYSWOW64\mstsc.exe
2017-08-16 00:20:04 ----A---- C:\windows\SYSWOW64\shell32.dll
2017-08-16 00:20:03 ----A---- C:\windows\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-08-16 00:20:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2017-08-16 00:20:02 ----A---- C:\windows\SYSWOW64\schannel.dll
2017-08-16 00:20:02 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2017-08-16 00:20:01 ----A---- C:\windows\SYSWOW64\mstscax.dll
2017-08-16 00:20:01 ----A---- C:\windows\SYSWOW64\kerberos.dll
2017-08-16 00:20:01 ----A---- C:\windows\SYSWOW64\ExSMime.dll
2017-08-16 00:20:00 ----A---- C:\windows\SYSWOW64\winmde.dll
2017-08-16 00:20:00 ----A---- C:\windows\SYSWOW64\FSClient.dll
2017-08-16 00:20:00 ----A---- C:\windows\SYSWOW64\CPFilters.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\mfplat.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\mfnetsrc.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\mfnetcore.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\MCRecvSrc.dll
2017-08-16 00:19:58 ----A---- C:\windows\SYSWOW64\wininet.dll
2017-08-16 00:19:58 ----A---- C:\windows\SYSWOW64\mfcore.dll
2017-08-16 00:19:58 ----A---- C:\windows\SYSWOW64\mf.dll
2017-08-16 00:19:57 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2017-08-16 00:19:57 ----A---- C:\windows\SYSWOW64\smphost.dll
2017-08-16 00:19:57 ----A---- C:\windows\SYSWOW64\mispace.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\ntdll.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\msxml6.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\msrd2x40.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\msjint40.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\hevcdecoder.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msrepl40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msrd3x40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msjtes40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msjetoledb40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msjet40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msctf.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\mfsrcsnk.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\PlayToReceiver.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\PlayToDevice.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\InstallAgentUserBroker.exe
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\cdp.dll
2017-08-16 00:19:54 ----A---- C:\windows\system32\drivers\bthport.sys
2017-08-16 00:19:54 ----A---- C:\windows\system32\drivers\BthLEEnum.sys
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Media.Streaming.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Media.Speech.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Devices.Perception.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\StoreAgent.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\MiracastReceiver.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\InstallAgent.exe
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\wsp_health.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\vbscript.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\resutils.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\msi.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\clusapi.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\wsp_fs.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\usercpl.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\updatepolicy.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\mfsvr.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\esent.dll
2017-08-16 00:19:50 ----A---- C:\windows\SYSWOW64\WWAHost.exe
2017-08-16 00:19:50 ----A---- C:\windows\SYSWOW64\uReFS.dll
2017-08-16 00:19:50 ----A---- C:\windows\SYSWOW64\D3D12.dll
2017-08-16 00:19:49 ----A---- C:\windows\SYSWOW64\Windows.StateRepository.dll
2017-08-16 00:19:49 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2017-08-16 00:19:49 ----A---- C:\windows\SYSWOW64\d2d1.dll
2017-08-16 00:19:48 ----A---- C:\windows\SYSWOW64\rdpcore.dll
2017-08-16 00:19:48 ----A---- C:\windows\SYSWOW64\d3d11.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\mfmpeg2srcsnk.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\mfasfsrcsnk.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\DWrite.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msxbde40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\mstext40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\mspbde40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msltus40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msftedit.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msexcl40.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\Windows.Media.Speech.UXRes.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\UIAutomationCore.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\MrmCoreR.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\d3d9.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\certutil.exe
2017-08-16 00:19:44 ----A---- C:\windows\SYSWOW64\Windows.Globalization.dll
2017-08-16 00:19:44 ----A---- C:\windows\SYSWOW64\explorer.exe
2017-08-16 00:19:44 ----A---- C:\windows\SYSWOW64\AppContracts.dll
2017-08-16 00:19:44 ----A---- C:\windows\system32\drivers\dumpsd.sys
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\quartz.dll
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\OpcServices.dll
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\imapi2fs.dll
2017-08-16 00:19:43 ----A---- C:\windows\system32\drivers\sdbus.sys
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\winhttp.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\twinapi.appcore.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\tquery.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\wsp_sr.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\MSVidCtl.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\mssrch.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\gdi32full.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\crypt32.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\Windows.UI.Input.Inking.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\tcpipcfg.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\RemoteNaturalLanguage.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\mmc.exe
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\GdiPlus.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\dxgi.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\VCardParser.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\mfksproxy.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\comsvcs.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\comdlg32.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\AppxPackaging.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\sspicli.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\PCPTpm12.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\msvproc.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\MsSpellCheckingFacility.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\MMDevAPI.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\MbaeApiPublic.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\drvstore.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\setupugc.exe
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\ReAgent.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\mprddm.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\dcomp.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\actxprxy.dll
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\Windows.AccountsControl.dll
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\msdtcprx.dll
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\autochk.exe
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\autofmt.exe
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\autoconv.exe
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\AUDIOKSE.dll
2017-08-16 00:19:36 ----A---- C:\windows\system32\drivers\USBXHCI.SYS
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\Windows.UI.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\wdc.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\untfs.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\TextInputFramework.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\PlayToManager.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\mfmkvsrcsnk.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\fontdrvhost.exe
2017-08-16 00:19:35 ----A---- C:\windows\system32\drivers\spaceport.sys
2017-08-16 00:19:35 ----A---- C:\windows\system32\drivers\pci.sys
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\wpnapps.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\tdh.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\SessEnv.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\ngccredprov.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\MSVP9DEC.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\mprdim.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\CloudExperienceHostUser.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\AppXDeploymentClient.dll
2017-08-16 00:19:34 ----A---- C:\windows\system32\drivers\MegaSas2i.sys
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\Windows.Devices.Enumeration.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\twinapi.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\mswstr10.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\mswdat10.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\msjter40.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\mfds.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\gameux.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\BcastDVRHelper.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\wsecedit.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\wfdprov.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\webio.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\UserDataTimeUtil.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\user32.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\NetSetupEngine.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\mssvp.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\mprapi.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\MosStorage.dll
2017-08-16 00:19:32 ----A---- C:\windows\system32\drivers\tpm.sys
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\wintrust.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\Windows.Internal.Bluetooth.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\rasgcw.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\msxml3.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\container.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\atmfd.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\Wldap32.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\TpmCoreProvisioning.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\TokenBroker.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\policymanager.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\msinfo32.exe
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\mfaudiocnv.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\kernel32.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\ifsutil.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\thumbcache.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\RTWorkQ.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\mftranscode.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\hnetcfg.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\cryptngc.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\comctl32.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\BluetoothApis.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\biwinrt.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\adsnt.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\ActivationManager.dll
2017-08-16 00:19:29 ----A---- C:\windows\system32\drivers\xboxgip.sys
2017-08-16 00:19:29 ----A---- C:\windows\system32\drivers\stornvme.sys
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\wer.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\SndVolSSO.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\SHCore.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\netiohlp.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\ncryptprov.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\LockAppHost.exe
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\ddraw.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\basecsp.dll
2017-08-16 00:19:28 ----A---- C:\windows\system32\drivers\vhdmp.sys
2017-08-16 00:19:28 ----A---- C:\windows\system32\drivers\storahci.sys
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\Windows.UI.CredDialogController.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\Windows.Graphics.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\Windows.Devices.WiFi.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\weretw.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\uudf.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\ShareHost.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\pdh.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\NPSM.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\dnsapi.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\AppointmentApis.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\wlancfg.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\WinSCard.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\TempSignedLicenseExchangeTask.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\remoteaudioendpoint.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\rdpencom.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\NetSetupShim.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\mscms.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\MCCSEngineShared.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\gdi32.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\daxexec.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\DataExchange.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\BioCredProv.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\AuthBrokerUI.dll
2017-08-16 00:19:26 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2017-08-16 00:19:26 ----A---- C:\windows\system32\drivers\bthpan.sys
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\wuapi.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\WSManHTTPConfig.exe
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\scksp.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\MSVPXENC.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\LocationApi.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\D3DCompiler_47.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\comuid.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\wlidcli.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\SearchIndexer.exe
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\offlinesam.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\netiougc.exe
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\mssph.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\LaunchWinApp.exe
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\input.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\dmenrollengine.dll
2017-08-16 00:19:24 ----A---- C:\windows\system32\drivers\sdstor.sys
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\Windows.Networking.Connectivity.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\tsmf.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\tokenbinding.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\rastls.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\Faultrep.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\ExecModelClient.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\d3d8.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\credprovs.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\bcrypt.dll
2017-08-16 00:19:23 ----A---- C:\windows\system32\drivers\msiscsi.sys
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\Windows.Devices.PointOfService.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\uexfat.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\mtxclu.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\migisol.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\MFPlay.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\icm32.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\EmailApis.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\dwmapi.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\devenum.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\cmifw.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\ActiveSyncProvider.dll
2017-08-16 00:19:22 ----A---- C:\windows\system32\drivers\scmbus.sys
2017-08-16 00:19:22 ----A---- C:\windows\system32\drivers\BasicRender.sys
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\wscapi.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\Windows.Devices.Usb.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\iscsiwmi.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\ChatApis.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\CompPkgSup.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\BackgroundMediaPolicy.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\azroleui.dll
2017-08-16 00:19:21 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\Windows.Devices.Sensors.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\WerFaultSecure.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\WerFault.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\ufat.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\powercfg.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\Pimstore.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\ntmarta.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\IPHLPAPI.DLL
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\gpapi.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\CloudStorageWizard.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\autoplay.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\ActionCenterCPL.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\WMPDMC.exe
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\Windows.Media.MediaControl.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\Windows.Devices.Midi.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\wermgr.exe
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\NetSetupApi.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\evr.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\dtdump.exe
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\CloudExperienceHostCommon.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\XpsDocumentTargetPrint.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\WWanAPI.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\sud.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\sendmail.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\rasapi32.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\offreg.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\netlogon.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\MSPhotography.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\mfreadwrite.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\DolbyDecMFT.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\Windows.Devices.SmartCards.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\Windows.Devices.Picker.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\werui.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\SearchFilterHost.exe
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\Phoneutil.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\nshhttp.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\mbsmsapi.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\dsreg.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\cryptui.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\adsmsext.dll
2017-08-16 00:19:17 ----A---- C:\windows\system32\drivers\capimg.sys
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\wininetlui.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Media.Import.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Gaming.Input.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Devices.LowLevel.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\virtdisk.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\UserDataAccountApis.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\SyncSettings.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\SearchProtocolHost.exe
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\perfnet.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\mssphtb.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\ipsmsnap.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\fdeploy.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\efsext.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\CryptoWinRT.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\CloudBackupSettings.dll
2017-08-16 00:19:16 ----A---- C:\windows\system32\drivers\hidclass.sys
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\Windows.Perception.Stub.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\systemcpl.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\ReInfo.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\mfmjpegdec.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\ipsecsnp.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\dialclient.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\cnvfat.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\apprepsync.dll
2017-08-16 00:19:15 ----A---- C:\windows\system32\drivers\scmdisk0101.sys
2017-08-16 00:19:15 ----A---- C:\windows\system32\drivers\kbdhid.sys
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\wlidprov.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\Windows.Internal.Management.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\UserLanguagesCpl.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ReAgentc.exe
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ProximityCommon.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\olepro32.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ErrorDetailsUpdate.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ErrorDetails.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\credprovhost.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\wlanui.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\Windows.Devices.Lights.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\RADCUI.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\ntshrui.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\msdtcuiu.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\httpapi.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\DisplayManager.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\BrowserSettingSync.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\WinRtTracing.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\wcnwiz.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\vaultcli.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\mssitlb.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\Geolocation.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\AboveLockAppHost.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\XInputUap.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\wvc.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\wscinterop.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\WordBreakers.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.System.UserDeviceAssociation.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.System.SystemManagement.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.Media.Devices.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.Devices.Scanners.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\TokenBrokerCookies.exe
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\tbauth.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\rastlsext.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\puiapi.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\InputLocaleManager.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\GlobCollationHost.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\edputil.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\EditBufferTestHook.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\DafPrintProvider.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\apds.dll
2017-08-16 00:19:11 ----A---- C:\windows\system32\drivers\BasicDisplay.sys
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\Windows.Media.Ocr.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\vssapi.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\UserDeviceRegistration.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\themecpl.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\oleacc.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\NetCfgNotifyObjectHost.exe
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\msutb.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\iscsium.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\GamePanelExternalHook.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\DevicePairing.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\ContactApis.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\AppCapture.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Storage.Search.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Devices.Radios.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\tlscsp.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\SensorsApi.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\LockAppBroker.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\easwrt.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\dabapi.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\Windows.Web.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\chartv.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\fontext.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\efswrt.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\ConfigureExpandedStorage.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\ClipboardServer.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\zipfldr.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\xolehlp.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\UserMgrProxy.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\uReFSv1.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\regedit.exe
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\iprtrmgr.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\DWWIN.EXE
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\WwaApi.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\Unistore.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\sppcext.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\mspaint.exe
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\mscandui.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\imapi2.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\findnetprinters.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\WMVSENCD.DLL
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\Windows.StateRepositoryClient.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Core.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\regsvr32.exe
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\netshell.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\mdmregistration.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\deviceaccess.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\DavSyncProvider.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\certmgr.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\cemapi.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\AuthExt.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\accountaccessor.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\XblAuthTokenBrokerExt.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\XblAuthManagerProxy.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\Windows.Web.Diagnostics.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\tapi32.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\stobject.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\sbe.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\puiobj.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\PrintDialogs.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\msctfui.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\esentutl.exe
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\AuthBroker.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\apprepapi.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\Windows.Networking.HostName.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\Windows.Energy.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\TokenBrokerUI.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\NaturalLanguage6.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\frprov.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\credprovslegacy.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\CameraCaptureUI.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\BthTelemetry.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\tzres.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\raschap.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\onex.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\odbcconf.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\msctfp.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\MSAC3ENC.DLL
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\l2gpstore.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\FXSCOMEX.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\fdProxy.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\eapprovp.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\ddrawex.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\atmlib.dll
2017-08-16 00:18:57 ----A---- C:\windows\SYSWOW64\msvcr120_clr0400.dll
2017-08-16 00:18:57 ----A---- C:\windows\SYSWOW64\msvcp120_clr0400.dll
2017-08-16 00:18:57 ----A---- C:\windows\system32\msvcr120_clr0400.dll
2017-08-16 00:18:57 ----A---- C:\windows\system32\msvcp120_clr0400.dll
2017-08-16 00:18:41 ----A---- C:\windows\system32\Windows.Devices.Perception.dll
2017-08-16 00:18:40 ----A---- C:\windows\SYSWOW64\WebcamUi.dll
2017-08-16 00:18:40 ----A---- C:\windows\system32\WWAHost.exe
2017-08-16 00:18:40 ----A---- C:\windows\system32\WebcamUi.dll
2017-08-16 00:18:39 ----A---- C:\windows\system32\tquery.dll
2017-08-16 00:18:38 ----A---- C:\windows\system32\mssrch.dll
2017-08-16 00:18:37 ----A---- C:\windows\system32\Windows.ApplicationModel.dll
2017-08-16 00:18:36 ----A---- C:\windows\system32\wbiosrvc.dll
2017-08-16 00:18:35 ----A---- C:\windows\system32\xpsrchvw.exe
2017-08-16 00:18:35 ----A---- C:\windows\system32\Windows.Networking.Vpn.dll
2017-08-16 00:18:35 ----A---- C:\windows\system32\nshwfp.dll
2017-08-16 00:18:34 ----A---- C:\windows\system32\SearchIndexer.exe
2017-08-16 00:18:33 ----A---- C:\windows\system32\XblGameSaveExt.dll
2017-08-16 00:18:33 ----A---- C:\windows\system32\Windows.UI.dll
2017-08-16 00:18:32 ----A---- C:\windows\system32\VPNv2CSP.dll
2017-08-16 00:18:32 ----A---- C:\windows\system32\Search.ProtocolHandler.MAPI2.dll
2017-08-16 00:18:31 ----A---- C:\windows\SYSWOW64\xpsrchvw.exe
2017-08-16 00:18:31 ----A---- C:\windows\system32\zipfldr.dll
2017-08-16 00:18:31 ----A---- C:\windows\system32\mssvp.dll
2017-08-16 00:18:30 ----A---- C:\windows\system32\WMPDMC.exe
2017-08-16 00:18:30 ----A---- C:\windows\system32\SearchFilterHost.exe
2017-08-16 00:18:30 ----A---- C:\windows\system32\mssphtb.dll
2017-08-16 00:18:29 ----A---- C:\windows\SYSWOW64\pwrshplugin.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\Windows.Gaming.XboxLive.Storage.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\Windows.Gaming.UI.GameBar.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\SearchProtocolHost.exe
2017-08-16 00:18:29 ----A---- C:\windows\system32\mssph.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\cmintegrator.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\wwanmm.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\Windows.Media.Ocr.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\Windows.Media.FaceAnalysis.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\mssitlb.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\drivers\mrxdav.sys
2017-08-16 00:18:27 ----A---- C:\windows\system32\XblGameSave.dll
2017-08-16 00:18:27 ----A---- C:\windows\system32\WwaApi.dll
2017-08-16 00:18:26 ----A---- C:\windows\system32\wlanui.dll
2017-08-16 00:18:26 ----A---- C:\windows\system32\Windows.ApplicationModel.Wallet.dll
2017-08-16 00:18:26 ----A---- C:\windows\system32\mssprxy.dll
2017-08-16 00:18:25 ----A---- C:\windows\system32\wwanconn.dll
2017-08-16 00:18:25 ----A---- C:\windows\system32\Windows.Web.Diagnostics.dll
2017-08-16 00:18:25 ----A---- C:\windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\MosStorage.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\moshostcore.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\moshost.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\MapsBtSvc.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\MapConfiguration.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\SettingsHandlers_Bluetooth.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\MapsStore.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\JpMapControl.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2017-08-16 00:18:20 ----A---- C:\windows\system32\Windows.UI.Cred.dll
2017-08-16 00:18:20 ----A---- C:\windows\system32\mfnetcore.dll
2017-08-16 00:18:20 ----A---- C:\windows\system32\FSClient.dll
2017-08-16 00:18:20 ----A---- C:\windows\system32\BingMaps.dll
2017-08-16 00:18:19 ----A---- C:\windows\system32\drivers\srv.sys
2017-08-16 00:18:19 ----A---- C:\windows\system32\AzureSettingSyncProvider.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\mfsensorgroup.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\MFMediaEngine.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\MapGeocoder.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\FrameServer.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\RTMediaFrame.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\mfsvr.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\mfplat.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\mfnetsrc.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\MFCaptureEngine.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\wlansec.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\wlanapi.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\mf.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\hevcdecoder.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\drivers\srv2.sys
2017-08-16 00:18:16 ----A---- C:\windows\system32\drivers\pdc.sys
2017-08-16 00:18:16 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2017-08-16 00:18:15 ----A---- C:\windows\SYSWOW64\wmp.dll
2017-08-16 00:18:15 ----A---- C:\windows\system32\Windows.Media.Audio.dll
2017-08-16 00:18:14 ----A---- C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2017-08-16 00:18:13 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2017-08-16 00:18:12 ----A---- C:\windows\system32\rdpcorets.dll
2017-08-16 00:18:12 ----A---- C:\windows\system32\mstsc.exe
2017-08-16 00:18:11 ----A---- C:\windows\system32\NMAA.dll
2017-08-16 00:18:11 ----A---- C:\windows\system32\MapRouter.dll
2017-08-16 00:18:10 ----A---- C:\windows\system32\Windows.Media.dll
2017-08-16 00:18:10 ----A---- C:\windows\system32\MapControlCore.dll
2017-08-16 00:18:10 ----A---- C:\windows\system32\LicenseManager.dll
2017-08-16 00:18:09 ----A---- C:\windows\system32\rdpudd.dll
2017-08-16 00:18:09 ----A---- C:\windows\system32\mfcore.dll
2017-08-16 00:18:08 ----A---- C:\windows\system32\wlansvc.dll
2017-08-16 00:18:08 ----A---- C:\windows\system32\wfdprov.dll
2017-08-16 00:18:08 ----A---- C:\windows\system32\drivers\tcpip.sys
2017-08-16 00:18:07 ----A---- C:\windows\system32\wmp.dll
2017-08-16 00:18:06 ----A---- C:\windows\system32\KernelBase.dll
2017-08-16 00:18:05 ----A---- C:\windows\system32\usercpl.dll
2017-08-16 00:18:05 ----A---- C:\windows\system32\mstscax.dll
2017-08-16 00:18:04 ----A---- C:\windows\system32\wuuhext.dll
2017-08-16 00:18:04 ----A---- C:\windows\system32\Windows.Media.Streaming.dll
2017-08-16 00:18:04 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2017-08-16 00:18:04 ----A---- C:\windows\system32\ExSMime.dll
2017-08-16 00:18:03 ----A---- C:\windows\system32\oleaut32.dll
2017-08-16 00:18:03 ----A---- C:\windows\system32\mos.dll
2017-08-16 00:18:03 ----A---- C:\windows\system32\InputService.dll
2017-08-16 00:18:02 ----A---- C:\windows\system32\windows.storage.dll
2017-08-16 00:18:02 ----A---- C:\windows\system32\Windows.Graphics.Printing.dll
2017-08-16 00:18:01 ----A---- C:\windows\system32\shell32.dll
2017-08-16 00:17:59 ----A---- C:\windows\system32\msmpeg2vdec.dll
2017-08-16 00:17:59 ----A---- C:\windows\system32\MSAudDecMFT.dll
2017-08-16 00:17:58 ----A---- C:\windows\system32\Windows.Media.Editing.dll
2017-08-16 00:17:58 ----A---- C:\windows\system32\mfsrcsnk.dll
2017-08-16 00:17:58 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2017-08-16 00:17:57 ----A---- C:\windows\system32\wpninprc.dll
2017-08-16 00:17:57 ----A---- C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-08-16 00:17:57 ----A---- C:\windows\system32\Windows.ApplicationModel.Store.dll
2017-08-16 00:17:56 ----A---- C:\windows\system32\mfasfsrcsnk.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\Wpc.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\rdpcore.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\msi.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\mfmpeg2srcsnk.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\wpncore.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\usocore.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\StoreAgent.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\pnidui.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\MusUpdateHandlers.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\MusNotification.exe
2017-08-16 00:17:54 ----A---- C:\windows\system32\InstallAgent.exe
2017-08-16 00:17:54 ----A---- C:\windows\system32\diagtrack.dll
2017-08-16 00:17:53 ----A---- C:\windows\SYSWOW64\Wpc.dll
2017-08-16 00:17:53 ----A---- C:\windows\system32\wmpmde.dll
2017-08-16 00:17:53 ----A---- C:\windows\system32\Windows.UI.Xaml.InkControls.dll
2017-08-16 00:17:53 ----A---- C:\windows\system32\smartscreen.exe
2017-08-16 00:17:53 ----A---- C:\windows\system32\mmc.exe
2017-08-16 00:17:52 ----A---- C:\windows\SYSWOW64\wmpmde.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\wpnprv.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\RemoteNaturalLanguage.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\provengine.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\mfreadwrite.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\Windows.Internal.Shell.Broker.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\VCardParser.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\UserDataTimeUtil.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\spoolsv.exe
2017-08-16 00:17:51 ----A---- C:\windows\system32\services.exe
2017-08-16 00:17:51 ----A---- C:\windows\system32\Pimstore.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\ngcsvc.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\msvproc.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\MbaeApiPublic.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\Windows.Media.Playback.MediaPlayer.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\win32spl.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\sspicli.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\provops.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\NetSetupEngine.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\KnobsCsp.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\KnobsCore.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\wpnapps.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\WlanMediaManager.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\Windows.UI.Xaml.Phone.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\wdc.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\UserDataService.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\MMDevAPI.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\mfmkvsrcsnk.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\bdesvc.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\WpcMon.exe
2017-08-16 00:17:48 ----A---- C:\windows\system32\wiaservc.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\TextInputFramework.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\ngccredprov.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\lsm.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\drivers\WdiWiFi.sys
2017-08-16 00:17:47 ----A---- C:\windows\system32\ws2_32.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\usbmon.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\tdh.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\SpaceControl.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\SessEnv.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\NgcCtnrSvc.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\mprddm.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\drivers\nwifi.sys
2017-08-16 00:17:47 ----A---- C:\windows\system32\drivers\afd.sys
2017-08-16 00:17:47 ----A---- C:\windows\system32\ContactApis.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\wscsvc.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\SpeechPal.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\PsmServiceExtHost.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\ntshrui.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\NgcCtnr.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\mfaudiocnv.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\LsaIso.exe
2017-08-16 00:17:46 ----A---- C:\windows\system32\InstallAgentUserBroker.exe
2017-08-16 00:17:45 ----A---- C:\windows\system32\Windows.UI.Input.Inking.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\Windows.Devices.Sensors.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\UIAnimation.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\MSVP9DEC.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\drivers\ndis.sys
2017-08-16 00:17:44 ----A---- C:\windows\system32\SensorService.dll
2017-08-16 00:17:44 ----A---- C:\windows\system32\MSPhotography.dll
2017-08-16 00:17:44 ----A---- C:\windows\system32\manage-bde.exe
2017-08-16 00:17:44 ----A---- C:\windows\system32\fvewiz.dll
2017-08-16 00:17:44 ----A---- C:\windows\system32\ActiveSyncProvider.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\twinui.pcshell.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\TpmCoreProvisioning.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\RDXTaskFactory.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\ProvPluginEng.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\PimIndexMaintenance.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\NPSM.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\MSVideoDSP.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\MCCSEngineShared.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\mbsmsapi.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\localspl.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\EmailApis.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\AuthHost.exe
2017-08-16 00:17:42 ----A---- C:\windows\system32\WMVDECOD.DLL
2017-08-16 00:17:42 ----A---- C:\windows\system32\wmpeffects.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\wlancfg.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\rdpencom.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\rasgcw.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\RADCUI.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\pdh.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\NetSetupSvc.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\MusNotificationUx.exe
2017-08-16 00:17:42 ----A---- C:\windows\system32\drivers\iorate.sys
2017-08-16 00:17:41 ----A---- C:\windows\SYSWOW64\wmpeffects.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\TSWorkspace.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\SensorsApi.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\NfcRadioMedia.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\mfds.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\drivers\netio.sys
2017-08-16 00:17:41 ----A---- C:\windows\system32\drivers\ksecdd.sys
2017-08-16 00:17:40 ----A---- C:\windows\system32\XpsDocumentTargetPrint.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\wmpps.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\tsmf.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\powercfg.exe
2017-08-16 00:17:40 ----A---- C:\windows\system32\NetworkUXBroker.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\mfps.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\internetmail.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\ChatApis.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\drivers\tdx.sys
2017-08-16 00:17:40 ----A---- C:\windows\system32\AppointmentApis.dll
2017-08-16 00:17:39 ----A---- C:\windows\SYSWOW64\wmpshell.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\wvc.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\wscapi.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\wmpshell.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\puiobj.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\LockAppHost.exe
2017-08-16 00:17:39 ----A---- C:\windows\system32\fveui.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\bdeunlock.exe
2017-08-16 00:17:39 ----A---- C:\windows\system32\BackgroundMediaPolicy.dll
2017-08-16 00:17:38 ----A---- C:\windows\SYSWOW64\wmpdxm.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\wmpdxm.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\sdengin2.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\NetSetupApi.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\drivers\pacer.sys
2017-08-16 00:17:37 ----A---- C:\windows\system32\SearchFolder.dll
2017-08-16 00:17:37 ----A---- C:\windows\system32\ProvSysprep.dll
2017-08-16 00:17:37 ----A---- C:\windows\system32\drivers\wfplwfs.sys
2017-08-16 00:17:37 ----A---- C:\windows\system32\drivers\vwifimp.sys
2017-08-16 00:17:35 ----A---- C:\windows\system32\RelPost.exe
2017-08-16 00:17:35 ----A---- C:\windows\system32\PrintDialogs.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\perfnet.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\nshhttp.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\InputLocaleManager.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\cryptngc.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\BitLockerDeviceEncryption.exe
2017-08-16 00:17:35 ----A---- C:\windows\splwow64.exe
2017-08-16 00:17:34 ----A---- C:\windows\system32\WinRtTracing.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\wcnwiz.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\tlscsp.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\StorSvc.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\storewuauth.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\rdpclip.exe
2017-08-16 00:17:34 ----A---- C:\windows\system32\PrintRenderAPIHost.DLL
2017-08-16 00:17:34 ----A---- C:\windows\system32\fvecpl.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\efswrt.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\AboveLockAppHost.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\Windows.UI.Xaml.Maps.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\VEDataLayerHelpers.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\rastls.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\netcorehc.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\MSVPXENC.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\Windows.UI.Core.TextInput.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\tileobjserver.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\puiapi.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\PrintDialogs3D.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\DafPrintProvider.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\bdeui.dll
2017-08-16 00:17:31 ----A---- C:\windows\system32\Windows.Perception.Stub.dll
2017-08-16 00:17:31 ----A---- C:\windows\system32\EditBufferTestHook.dll
2017-08-16 00:17:25 ----A---- C:\windows\system32\WordBreakers.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\wscinterop.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\Windows.Storage.Search.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\ProvisioningHandlers.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\fvenotify.exe
2017-08-16 00:17:22 ----A---- C:\windows\system32\wksprt.exe
2017-08-16 00:17:22 ----A---- C:\windows\system32\LockAppBroker.dll
2017-08-16 00:17:22 ----A---- C:\windows\system32\drivers\rootmdm.sys
2017-08-16 00:17:21 ----A---- C:\windows\system32\Windows.Devices.Scanners.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\VEStoreEventHandlers.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\Unistore.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\tdlrecover.exe
2017-08-16 00:17:21 ----A---- C:\windows\system32\PrintWSDAHost.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\DuCsps.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\drivers\modem.sys
Log obsahuje 163770 znaků , tak ho vkládám na dvakrát.
Logfile of random's system information tool 1.10 (written by random/random)
Run by vencau at 2017-09-11 19:37:01
Microsoft Windows 10 Home
System drive C: has 67 GB (55%) free of 121 GB
Total RAM: 3551 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:37:34, on 11.09.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
C:\Program Files\trend micro\vencau.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HCTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HCTE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HPRadioMgr] C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: HP JumpStart Launch.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\Root\Office16\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: AdaptiveSleepService - Unknown owner - c:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Antivirus - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
O23 - Service: AVG Firewall Service (AVG Firewall) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\afwServ.exe
O23 - Service: avgbIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - c:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Comm Recovery (HP Comm Recover) - HP Inc. - C:\Program Files\HPCommRecovery\HPCommRecovery.exe
O23 - Service: HP JumpStart Bridge (HPJumpStartBridge) - HP Inc. - C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
O23 - Service: HP CASL Framework Service (hpqcaslwmiex) - HP - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - HP Inc. - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: HPWMISVC - HP Inc. - C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
O23 - Service: @oem26.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\windows\system32\ibtsiva (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - CyberLink - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: tbaseprovisioning - Advanced Micro Devices, Inc. - C:\windows\SysWOW64\tbaseprovisioning.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
--
End of file - 11468 bytes
======Listing Processes======
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k NetworkService
C:\windows\system32\atiesrxx.exe
C:\windows\SysWOW64\tbaseprovisioning.exe
atieclxx
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\windows\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\WLANExt.exe 1818866604944
\??\C:\windows\system32\conhost.exe 0x4
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k apphost
C:\windows\system32\ibtsiva
"C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe"
"c:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
C:\windows\System32\svchost.exe -k utcsvc
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
sihost.exe
C:\windows\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /c
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\windows\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\windows\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="6688.0.1756781184\1502063690" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 6688 "\\.\pipe\gecko-crash-server-pipe.6688" gpu
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="6688.3.1796875006\973872094" -childID 1 -isForBrowser -intPrefs 5:50|6:-1|28:1000|33:20|34:10|43:128|44:10000|49:0|51:400|52:1|53:0|54:0|59:0|60:120|61:120|91:2|92:1|106:5000|117:0|119:0|130:10000|142:-1|147:128|148:10000|149:0|155:24|156:32768|158:0|159:0|167:5|171:1048576|172:100|173:5000|175:600|177:1|186:1|190:0|200:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|35:1|36:0|37:0|38:0|41:1|42:1|45:0|46:0|47:0|48:0|50:0|55:1|56:1|57:0|58:1|62:1|63:1|64:0|65:1|66:1|67:0|68:1|71:0|72:0|75:1|76:1|80:1|81:1|82:1|83:0|85:0|86:0|87:1|88:0|93:1|94:0|100:0|105:0|108:1|109:1|112:1|114:1|118:0|121:1|124:1|125:1|131:0|132:0|133:1|135:0|141:0|143:1|144:0|145:1|146:0|153:0|154:0|157:1|160:0|162:1|164:1|165:0|170:0|174:1|179:0|180:0|181:0|182:1|183:0|184:0|185:1|188:0|192:0|193:0|194:1|195:1|196:0|197:1|198:1|199:1|201:0|202:0|204:0|212:1|213:1|214:0|215:0|216:0| -stringPrefs "3:7;release|134:3;1.0|151:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|152:8;moderate|187:38;{55761e01-1794-4cbf-9849-b52028326897}|" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 6688 "\\.\pipe\gecko-crash-server-pipe.6688" tab
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe" atlogon
/fmw.trayonly
AVGUI.exe /nogui
"C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
C:\windows\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
C:\windows\system32\AUDIODG.EXE 0x3a0
"C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe"
"C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe"
"fontdrvhost.exe"
"c:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe"
"C:\Program Files\HPCommRecovery\HPCommRecovery.exe"
"C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files (x86)\HP\Shared\hpqwmiex.exe"
C:\windows\system32\msiexec.exe /V
C:\windows\servicing\TrustedInstaller.exe
C:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1561_none_7ef6e89821f9a6be\TiWorker.exe -Embedding
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
wmiadap.exe /F /T /R
"C:\Users\vencau\Desktop\RSITx64.exe"
C:\windows\system32\wbem\WmiApSrv.exe
======Scheduled tasks folder======
C:\windows\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\windows\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\windows\tasks\HPCeeScheduleForvencau.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForvencau (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\vencau\AppData\Roaming\Mozilla\Firefox\Profiles\ygfr7c8d.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.151 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_151.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.151 Plugin
"Path"=C:\windows\system32\Macromed\Flash\NPSWF64_26_0_0_151.dll
C:\Users\vencau\AppData\Roaming\Mozilla\Firefox\Profiles\ygfr7c8d.default\extensions\
mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05 440712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05 416320]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-10-14 8903176]
"StartCN"=c:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [2016-10-06 8029064]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [2017-08-24 239592]
"AVGUI.exe"=C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [2017-09-03 289248]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\vencau\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-09-08 1674960]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2017-08-14 4836032]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HPRadioMgr"=C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [2017-04-25 324600]
"HPMessageService"=C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [2017-07-13 701984]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2014-06-24 4101576]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP JumpStart Launch.lnk - c:\windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcapexe]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McNaiAnn]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-09-11 19:37:01 ----D---- C:\rsit
2017-09-11 19:37:01 ----D---- C:\Program Files\trend micro
2017-09-11 18:50:09 ----D---- C:\ProgramData\Start Menu
2017-09-11 16:09:20 ----A---- C:\windows\system32\sdnclean64.exe
2017-09-11 16:09:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2017-09-11 16:09:12 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-09-10 21:49:12 ----D---- C:\ProgramData\install_clap
2017-09-10 21:45:03 ----D---- C:\Users\vencau\AppData\Roaming\BrowserModule
2017-09-10 21:43:59 ----D---- C:\ProgramData\WindowsReporting
2017-09-10 21:21:50 ----D---- C:\Users\vencau\AppData\Roaming\Bitmart
2017-09-10 16:43:27 ----D---- C:\Users\vencau\AppData\Roaming\Ashampoo
2017-09-10 16:43:17 ----D---- C:\ProgramData\Ashampoo
2017-09-10 16:43:12 ----D---- C:\Program Files (x86)\Ashampoo
2017-09-03 20:38:57 ----A---- C:\windows\system32\FNTCACHE.DAT
2017-09-03 17:38:00 ----A---- C:\windows\system32\drivers\dtliteusbbus.sys
2017-09-03 17:35:20 ----A---- C:\windows\system32\drivers\dtlitescsibus.sys
2017-09-03 17:35:19 ----D---- C:\Users\vencau\AppData\Roaming\DAEMON Tools Lite
2017-09-03 17:35:13 ----D---- C:\Program Files\DAEMON Tools Lite
2017-09-03 17:33:31 ----D---- C:\ProgramData\DAEMON Tools Lite
2017-09-03 14:20:48 ----AD---- C:\Program Files\Recuva
2017-09-03 13:52:38 ----HD---- C:\$AV_AVG
2017-09-03 12:40:02 ----A---- C:\windows\system32\drivers\avgNetSec.sys
2017-09-03 12:39:57 ----A---- C:\windows\system32\avgBoot.exe
2017-08-29 15:54:14 ----A---- C:\windows\SYSWOW64\aepic.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\invagent.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\generaltel.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\devinv.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\DeviceCensus.exe
2017-08-29 15:54:14 ----A---- C:\windows\system32\dcntel.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\CompatTelRunner.exe
2017-08-29 15:54:14 ----A---- C:\windows\system32\appraiser.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\aepic.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\aeinv.dll
2017-08-29 15:54:14 ----A---- C:\windows\system32\acmigration.dll
2017-08-26 17:52:53 ----D---- C:\Users\vencau\AppData\Roaming\CyberLink
2017-08-22 23:13:43 ----D---- C:\Program Files (x86)\Seznam.cz
2017-08-22 23:11:20 ----D---- C:\Users\vencau\AppData\Roaming\R-TT
2017-08-22 23:11:13 ----D---- C:\Users\vencau\AppData\Roaming\Seznam.cz
2017-08-22 22:30:05 ----D---- C:\Program Files (x86)\Smart Projects
2017-08-22 21:21:02 ----D---- C:\Users\vencau\AppData\Roaming\WinRAR
2017-08-22 21:20:31 ----AD---- C:\Program Files\WinRAR
2017-08-22 21:01:31 ----D---- C:\windows\system32\ad32474e8131123f7c768c36e6f0c9e1160837af57527..bin
2017-08-20 18:29:01 ----D---- C:\windows\system32\65dbbd69613ce8..bin
2017-08-17 13:46:22 ----D---- C:\Users\vencau\AppData\Roaming\Apple Computer
2017-08-17 13:44:21 ----AD---- C:\Program Files\Bonjour
2017-08-17 13:44:21 ----AD---- C:\Program Files (x86)\Bonjour
2017-08-17 13:22:48 ----DC---- C:\windows\system32\DRVSTORE
2017-08-17 13:22:48 ----A---- C:\windows\system32\drivers\GEARAspiWDM.sys
2017-08-17 13:22:20 ----D---- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2017-08-17 13:22:20 ----D---- C:\ProgramData\Apple Computer
2017-08-16 20:04:09 ----AD---- C:\Program Files\CCleaner
2017-08-16 02:00:24 ----D---- C:\windows\system32\0
2017-08-16 01:37:47 ----D---- C:\inetpub
2017-08-16 00:47:26 ----AD---- C:\Program Files\rempl
2017-08-16 00:28:38 ----D---- C:\windows\system32\MRT
2017-08-16 00:28:31 ----AC---- C:\windows\system32\MRT.exe
2017-08-16 00:28:16 ----D---- C:\windows\system32\UNP
2017-08-16 00:28:16 ----AD---- C:\Program Files\UNP
2017-08-16 00:23:33 ----A---- C:\windows\system32\aspnet_counters.dll
2017-08-16 00:23:31 ----A---- C:\windows\SYSWOW64\aspnet_counters.dll
2017-08-16 00:23:17 ----A---- C:\windows\system32\msvcr100_clr0400.dll
2017-08-16 00:23:11 ----A---- C:\windows\SYSWOW64\msvcr100_clr0400.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\MapsBtSvc.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\MapConfiguration.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\JpMapControl.dll
2017-08-16 00:20:21 ----A---- C:\windows\SYSWOW64\BingMaps.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\Windows.UI.BlockedShutdown.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\Windows.UI.BioFeedback.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\win32k.sys
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\MapRouter.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\MapGeocoder.dll
2017-08-16 00:20:20 ----A---- C:\windows\SYSWOW64\aadtb.dll
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\Windows.Networking.dll
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\win32kfull.sys
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\NMAA.dll
2017-08-16 00:20:19 ----A---- C:\windows\SYSWOW64\MapControlCore.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\Windows.UI.Cred.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\Windows.Media.Audio.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\wincorlib.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\mos.dll
2017-08-16 00:20:18 ----A---- C:\windows\SYSWOW64\DeviceFlows.DataModel.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\Windows.Media.Editing.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\oleaut32.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\mfsensorgroup.dll
2017-08-16 00:20:17 ----A---- C:\windows\SYSWOW64\MFMediaEngine.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\Windows.Web.Http.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\RTMediaFrame.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\iertutil.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\CoreMessaging.dll
2017-08-16 00:20:16 ----A---- C:\windows\SYSWOW64\authui.dll
2017-08-16 00:20:15 ----A---- C:\windows\SYSWOW64\Windows.UI.Logon.dll
2017-08-16 00:20:14 ----A---- C:\windows\SYSWOW64\Windows.Data.Pdf.dll
2017-08-16 00:20:13 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-08-16 00:20:13 ----A---- C:\windows\SYSWOW64\dbgeng.dll
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\ole32.dll
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\bcastdvr.exe
2017-08-16 00:20:12 ----A---- C:\windows\SYSWOW64\AzureSettingSyncProvider.dll
2017-08-16 00:20:11 ----A---- C:\windows\SYSWOW64\Windows.Media.dll
2017-08-16 00:20:11 ----A---- C:\windows\SYSWOW64\dlnashext.dll
2017-08-16 00:20:11 ----A---- C:\windows\SYSWOW64\CredProvDataModel.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\Windows.UI.Search.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\Windows.UI.Immersive.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\LogonController.dll
2017-08-16 00:20:10 ----A---- C:\windows\SYSWOW64\LicenseManager.dll
2017-08-16 00:20:09 ----A---- C:\windows\SYSWOW64\SettingSyncCore.dll
2017-08-16 00:20:09 ----A---- C:\windows\SYSWOW64\InputService.dll
2017-08-16 00:20:09 ----A---- C:\windows\SYSWOW64\CoreUIComponents.dll
2017-08-16 00:20:08 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.dll
2017-08-16 00:20:08 ----A---- C:\windows\SYSWOW64\Windows.Graphics.Printing.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\wlanapi.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\WinTypes.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\LicenseManagerApi.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\combase.dll
2017-08-16 00:20:07 ----A---- C:\windows\SYSWOW64\AudioSes.dll
2017-08-16 00:20:06 ----A---- C:\windows\SYSWOW64\twinui.dll
2017-08-16 00:20:06 ----A---- C:\windows\SYSWOW64\aclui.dll
2017-08-16 00:20:05 ----A---- C:\windows\SYSWOW64\windows.storage.dll
2017-08-16 00:20:05 ----A---- C:\windows\SYSWOW64\mstsc.exe
2017-08-16 00:20:04 ----A---- C:\windows\SYSWOW64\shell32.dll
2017-08-16 00:20:03 ----A---- C:\windows\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-08-16 00:20:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2017-08-16 00:20:02 ----A---- C:\windows\SYSWOW64\schannel.dll
2017-08-16 00:20:02 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2017-08-16 00:20:01 ----A---- C:\windows\SYSWOW64\mstscax.dll
2017-08-16 00:20:01 ----A---- C:\windows\SYSWOW64\kerberos.dll
2017-08-16 00:20:01 ----A---- C:\windows\SYSWOW64\ExSMime.dll
2017-08-16 00:20:00 ----A---- C:\windows\SYSWOW64\winmde.dll
2017-08-16 00:20:00 ----A---- C:\windows\SYSWOW64\FSClient.dll
2017-08-16 00:20:00 ----A---- C:\windows\SYSWOW64\CPFilters.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\msmpeg2vdec.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\mfplat.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\mfnetsrc.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\mfnetcore.dll
2017-08-16 00:19:59 ----A---- C:\windows\SYSWOW64\MCRecvSrc.dll
2017-08-16 00:19:58 ----A---- C:\windows\SYSWOW64\wininet.dll
2017-08-16 00:19:58 ----A---- C:\windows\SYSWOW64\mfcore.dll
2017-08-16 00:19:58 ----A---- C:\windows\SYSWOW64\mf.dll
2017-08-16 00:19:57 ----A---- C:\windows\SYSWOW64\storagewmi.dll
2017-08-16 00:19:57 ----A---- C:\windows\SYSWOW64\smphost.dll
2017-08-16 00:19:57 ----A---- C:\windows\SYSWOW64\mispace.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\ntdll.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\msxml6.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\msrd2x40.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\msjint40.dll
2017-08-16 00:19:56 ----A---- C:\windows\SYSWOW64\hevcdecoder.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msrepl40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msrd3x40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msjtes40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msjetoledb40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msjet40.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\msctf.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\mfsrcsnk.dll
2017-08-16 00:19:55 ----A---- C:\windows\SYSWOW64\mfmp4srcsnk.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\PlayToReceiver.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\PlayToDevice.dll
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\InstallAgentUserBroker.exe
2017-08-16 00:19:54 ----A---- C:\windows\SYSWOW64\cdp.dll
2017-08-16 00:19:54 ----A---- C:\windows\system32\drivers\bthport.sys
2017-08-16 00:19:54 ----A---- C:\windows\system32\drivers\BthLEEnum.sys
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Media.Streaming.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Media.Speech.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.Devices.Perception.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\StoreAgent.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\MiracastReceiver.dll
2017-08-16 00:19:53 ----A---- C:\windows\SYSWOW64\InstallAgent.exe
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\wsp_health.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\vbscript.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\resutils.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\msi.dll
2017-08-16 00:19:52 ----A---- C:\windows\SYSWOW64\clusapi.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\wsp_fs.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\usercpl.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\updatepolicy.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\mfsvr.dll
2017-08-16 00:19:51 ----A---- C:\windows\SYSWOW64\esent.dll
2017-08-16 00:19:50 ----A---- C:\windows\SYSWOW64\WWAHost.exe
2017-08-16 00:19:50 ----A---- C:\windows\SYSWOW64\uReFS.dll
2017-08-16 00:19:50 ----A---- C:\windows\SYSWOW64\D3D12.dll
2017-08-16 00:19:49 ----A---- C:\windows\SYSWOW64\Windows.StateRepository.dll
2017-08-16 00:19:49 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2017-08-16 00:19:49 ----A---- C:\windows\SYSWOW64\d2d1.dll
2017-08-16 00:19:48 ----A---- C:\windows\SYSWOW64\rdpcore.dll
2017-08-16 00:19:48 ----A---- C:\windows\SYSWOW64\d3d11.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\mfmpeg2srcsnk.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\mfasfsrcsnk.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2017-08-16 00:19:47 ----A---- C:\windows\SYSWOW64\DWrite.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\SettingSyncHost.exe
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msxbde40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\mstext40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\mspbde40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msltus40.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msftedit.dll
2017-08-16 00:19:46 ----A---- C:\windows\SYSWOW64\msexcl40.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\Windows.Media.Speech.UXRes.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\UIAutomationCore.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\MrmCoreR.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\d3d9.dll
2017-08-16 00:19:45 ----A---- C:\windows\SYSWOW64\certutil.exe
2017-08-16 00:19:44 ----A---- C:\windows\SYSWOW64\Windows.Globalization.dll
2017-08-16 00:19:44 ----A---- C:\windows\SYSWOW64\explorer.exe
2017-08-16 00:19:44 ----A---- C:\windows\SYSWOW64\AppContracts.dll
2017-08-16 00:19:44 ----A---- C:\windows\system32\drivers\dumpsd.sys
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\quartz.dll
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\OpcServices.dll
2017-08-16 00:19:43 ----A---- C:\windows\SYSWOW64\imapi2fs.dll
2017-08-16 00:19:43 ----A---- C:\windows\system32\drivers\sdbus.sys
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\winhttp.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\twinapi.appcore.dll
2017-08-16 00:19:42 ----A---- C:\windows\SYSWOW64\tquery.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\wsp_sr.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\MSVidCtl.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\mssrch.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\gdi32full.dll
2017-08-16 00:19:41 ----A---- C:\windows\SYSWOW64\crypt32.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\Windows.UI.Input.Inking.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\tcpipcfg.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\RemoteNaturalLanguage.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\mmc.exe
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\GdiPlus.dll
2017-08-16 00:19:40 ----A---- C:\windows\SYSWOW64\dxgi.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\VCardParser.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\twinui.appcore.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\mfksproxy.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\comsvcs.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\comdlg32.dll
2017-08-16 00:19:39 ----A---- C:\windows\SYSWOW64\AppxPackaging.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\sspicli.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\PCPTpm12.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\msvproc.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\MsSpellCheckingFacility.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\MMDevAPI.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\MbaeApiPublic.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\inetcomm.dll
2017-08-16 00:19:38 ----A---- C:\windows\SYSWOW64\drvstore.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\setupugc.exe
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\ReAgent.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\mprddm.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\dcomp.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2017-08-16 00:19:37 ----A---- C:\windows\SYSWOW64\actxprxy.dll
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\Windows.AccountsControl.dll
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\msdtcprx.dll
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\autochk.exe
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\autofmt.exe
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\autoconv.exe
2017-08-16 00:19:36 ----A---- C:\windows\SYSWOW64\AUDIOKSE.dll
2017-08-16 00:19:36 ----A---- C:\windows\system32\drivers\USBXHCI.SYS
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\Windows.UI.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\wdc.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\untfs.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\TextInputFramework.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\PlayToManager.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\mfmkvsrcsnk.dll
2017-08-16 00:19:35 ----A---- C:\windows\SYSWOW64\fontdrvhost.exe
2017-08-16 00:19:35 ----A---- C:\windows\system32\drivers\spaceport.sys
2017-08-16 00:19:35 ----A---- C:\windows\system32\drivers\pci.sys
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\wpnapps.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\tdh.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\SessEnv.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\ngccredprov.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\MSVP9DEC.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\mprdim.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\CloudExperienceHostUser.dll
2017-08-16 00:19:34 ----A---- C:\windows\SYSWOW64\AppXDeploymentClient.dll
2017-08-16 00:19:34 ----A---- C:\windows\system32\drivers\MegaSas2i.sys
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\Windows.Devices.Enumeration.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\twinapi.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\mswstr10.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\mswdat10.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\msjter40.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\mfds.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\gameux.dll
2017-08-16 00:19:33 ----A---- C:\windows\SYSWOW64\BcastDVRHelper.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\wsecedit.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\wfdprov.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\webio.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\UserDataTimeUtil.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\user32.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\NetSetupEngine.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\mssvp.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\mprapi.dll
2017-08-16 00:19:32 ----A---- C:\windows\SYSWOW64\MosStorage.dll
2017-08-16 00:19:32 ----A---- C:\windows\system32\drivers\tpm.sys
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\WsmSvc.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\wintrust.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\Windows.Internal.Bluetooth.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\rasgcw.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\msxml3.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\container.dll
2017-08-16 00:19:31 ----A---- C:\windows\SYSWOW64\atmfd.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\Wldap32.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\TpmCoreProvisioning.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\TokenBroker.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\policymanager.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\msinfo32.exe
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\mfaudiocnv.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\kernel32.dll
2017-08-16 00:19:30 ----A---- C:\windows\SYSWOW64\ifsutil.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\thumbcache.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\RTWorkQ.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\mftranscode.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\hnetcfg.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\cryptngc.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\comctl32.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\BluetoothApis.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\biwinrt.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\adsnt.dll
2017-08-16 00:19:29 ----A---- C:\windows\SYSWOW64\ActivationManager.dll
2017-08-16 00:19:29 ----A---- C:\windows\system32\drivers\xboxgip.sys
2017-08-16 00:19:29 ----A---- C:\windows\system32\drivers\stornvme.sys
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\wer.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\SndVolSSO.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\SHCore.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\netiohlp.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\ncryptprov.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\LockAppHost.exe
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\ddraw.dll
2017-08-16 00:19:28 ----A---- C:\windows\SYSWOW64\basecsp.dll
2017-08-16 00:19:28 ----A---- C:\windows\system32\drivers\vhdmp.sys
2017-08-16 00:19:28 ----A---- C:\windows\system32\drivers\storahci.sys
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\Windows.UI.CredDialogController.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\Windows.Graphics.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\Windows.Devices.WiFi.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\weretw.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\uudf.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\ShareHost.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\pdh.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\NPSM.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\hgcpl.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\dnsapi.dll
2017-08-16 00:19:27 ----A---- C:\windows\SYSWOW64\AppointmentApis.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\wlancfg.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\WinSCard.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\TempSignedLicenseExchangeTask.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\remoteaudioendpoint.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\rdpencom.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\NetSetupShim.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\mscms.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\MCCSEngineShared.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\gdi32.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\daxexec.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\DataExchange.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\BioCredProv.dll
2017-08-16 00:19:26 ----A---- C:\windows\SYSWOW64\AuthBrokerUI.dll
2017-08-16 00:19:26 ----A---- C:\windows\system32\drivers\IPMIDrv.sys
2017-08-16 00:19:26 ----A---- C:\windows\system32\drivers\bthpan.sys
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\wuapi.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\WSManHTTPConfig.exe
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\scksp.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\MSVPXENC.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\LocationApi.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\D3DCompiler_47.dll
2017-08-16 00:19:25 ----A---- C:\windows\SYSWOW64\comuid.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\wlidcli.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\UIAnimation.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\SearchIndexer.exe
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\offlinesam.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\netiougc.exe
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\mssph.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\LaunchWinApp.exe
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\input.dll
2017-08-16 00:19:24 ----A---- C:\windows\SYSWOW64\dmenrollengine.dll
2017-08-16 00:19:24 ----A---- C:\windows\system32\drivers\sdstor.sys
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\Windows.Networking.Connectivity.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\tsmf.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\tokenbinding.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\rastls.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\Faultrep.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\ExecModelClient.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\d3d8.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\credprovs.dll
2017-08-16 00:19:23 ----A---- C:\windows\SYSWOW64\bcrypt.dll
2017-08-16 00:19:23 ----A---- C:\windows\system32\drivers\msiscsi.sys
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\Windows.Devices.PointOfService.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\uexfat.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\mtxclu.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\migisol.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\MFPlay.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\icm32.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\EmailApis.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\dwmapi.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\devenum.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\cmifw.dll
2017-08-16 00:19:22 ----A---- C:\windows\SYSWOW64\ActiveSyncProvider.dll
2017-08-16 00:19:22 ----A---- C:\windows\system32\drivers\scmbus.sys
2017-08-16 00:19:22 ----A---- C:\windows\system32\drivers\BasicRender.sys
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\wscapi.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\Windows.Devices.Usb.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\iscsiwmi.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\ChatApis.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\CompPkgSup.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\BackgroundMediaPolicy.dll
2017-08-16 00:19:21 ----A---- C:\windows\SYSWOW64\azroleui.dll
2017-08-16 00:19:21 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\Windows.Devices.Sensors.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\WerFaultSecure.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\WerFault.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\ufat.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\powercfg.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\Pimstore.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\ntmarta.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\IPHLPAPI.DLL
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\gpapi.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\CloudStorageWizard.exe
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\autoplay.dll
2017-08-16 00:19:20 ----A---- C:\windows\SYSWOW64\ActionCenterCPL.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\WMPDMC.exe
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\Windows.Media.MediaControl.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\Windows.Devices.Midi.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\wermgr.exe
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\NetSetupApi.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\evr.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\dtdump.exe
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\CloudExperienceHostCommon.dll
2017-08-16 00:19:19 ----A---- C:\windows\SYSWOW64\asycfilt.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\XpsDocumentTargetPrint.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\WWanAPI.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\sud.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\sendmail.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\rasapi32.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\offreg.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\netlogon.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\MSPhotography.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\mfreadwrite.dll
2017-08-16 00:19:18 ----A---- C:\windows\SYSWOW64\DolbyDecMFT.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\Windows.Devices.SmartCards.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\Windows.Devices.Picker.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\werui.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\SearchFilterHost.exe
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\Phoneutil.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\nshhttp.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\mbsmsapi.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\dsreg.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\cryptui.dll
2017-08-16 00:19:17 ----A---- C:\windows\SYSWOW64\adsmsext.dll
2017-08-16 00:19:17 ----A---- C:\windows\system32\drivers\capimg.sys
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\wininetlui.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Media.Import.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Gaming.Input.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\Windows.Devices.LowLevel.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\virtdisk.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\UserDataAccountApis.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\SyncSettings.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\SearchProtocolHost.exe
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\perfnet.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\mssphtb.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\ipsmsnap.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\fdeploy.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\efsext.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\CryptoWinRT.dll
2017-08-16 00:19:16 ----A---- C:\windows\SYSWOW64\CloudBackupSettings.dll
2017-08-16 00:19:16 ----A---- C:\windows\system32\drivers\hidclass.sys
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\Windows.Perception.Stub.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\systemcpl.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\ReInfo.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\mfmjpegdec.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\ipsecsnp.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\dialclient.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\cnvfat.dll
2017-08-16 00:19:15 ----A---- C:\windows\SYSWOW64\apprepsync.dll
2017-08-16 00:19:15 ----A---- C:\windows\system32\drivers\scmdisk0101.sys
2017-08-16 00:19:15 ----A---- C:\windows\system32\drivers\kbdhid.sys
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\wlidprov.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\Windows.Internal.Management.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\UserLanguagesCpl.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ReAgentc.exe
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ProximityCommon.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\olepro32.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ErrorDetailsUpdate.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\ErrorDetails.dll
2017-08-16 00:19:14 ----A---- C:\windows\SYSWOW64\credprovhost.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\wlanui.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\Windows.Devices.Lights.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\RADCUI.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\ntshrui.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\msdtcuiu.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\httpapi.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\DisplayManager.dll
2017-08-16 00:19:13 ----A---- C:\windows\SYSWOW64\BrowserSettingSync.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\WinRtTracing.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\wcnwiz.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\vaultcli.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\mssitlb.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\Geolocation.dll
2017-08-16 00:19:12 ----A---- C:\windows\SYSWOW64\AboveLockAppHost.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\XInputUap.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\wvc.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\wscinterop.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\WordBreakers.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.System.UserDeviceAssociation.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.System.SystemManagement.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.Media.Devices.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\Windows.Devices.Scanners.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\TokenBrokerCookies.exe
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\tbauth.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\rastlsext.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\puiapi.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\InputLocaleManager.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\GlobCollationHost.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\edputil.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\EditBufferTestHook.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\DafPrintProvider.dll
2017-08-16 00:19:11 ----A---- C:\windows\SYSWOW64\apds.dll
2017-08-16 00:19:11 ----A---- C:\windows\system32\drivers\BasicDisplay.sys
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\Windows.Media.Ocr.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\vssapi.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\UserDeviceRegistration.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\themecpl.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\SettingSync.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\oleacc.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\NetCfgNotifyObjectHost.exe
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\msutb.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\iscsium.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\GamePanelExternalHook.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\DevicePairing.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\ContactApis.dll
2017-08-16 00:19:10 ----A---- C:\windows\SYSWOW64\AppCapture.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Storage.Search.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.Devices.Radios.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\tlscsp.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\SensorsApi.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\LockAppBroker.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\easwrt.dll
2017-08-16 00:19:09 ----A---- C:\windows\SYSWOW64\dabapi.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\WsmWmiPl.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\Windows.Web.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\chartv.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\fontext.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\efswrt.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\ConfigureExpandedStorage.dll
2017-08-16 00:19:08 ----A---- C:\windows\SYSWOW64\ClipboardServer.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\zipfldr.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\xolehlp.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\UserMgrProxy.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\uReFSv1.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\regedit.exe
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\iprtrmgr.dll
2017-08-16 00:19:07 ----A---- C:\windows\SYSWOW64\DWWIN.EXE
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\WwaApi.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\Unistore.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\sppcext.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\mspaint.exe
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\mscandui.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\imapi2.dll
2017-08-16 00:19:06 ----A---- C:\windows\SYSWOW64\findnetprinters.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\WMVSENCD.DLL
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\Windows.StateRepositoryClient.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\Windows.ApplicationModel.Core.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\regsvr32.exe
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\netshell.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\mdmregistration.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\deviceaccess.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\DavSyncProvider.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\certmgr.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\cemapi.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\AuthExt.dll
2017-08-16 00:19:05 ----A---- C:\windows\SYSWOW64\accountaccessor.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\XblAuthTokenBrokerExt.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\XblAuthManagerProxy.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\Windows.Web.Diagnostics.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\tapi32.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\stobject.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\sbe.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\puiobj.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\PrintDialogs.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\msctfui.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\esentutl.exe
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\AuthBroker.dll
2017-08-16 00:19:04 ----A---- C:\windows\SYSWOW64\apprepapi.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\Windows.Networking.HostName.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\Windows.Energy.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\TokenBrokerUI.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\NaturalLanguage6.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\frprov.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\credprovslegacy.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\CameraCaptureUI.dll
2017-08-16 00:19:03 ----A---- C:\windows\SYSWOW64\BthTelemetry.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\tzres.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\raschap.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\onex.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\odbcconf.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\msctfp.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\MSAC3ENC.DLL
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\l2gpstore.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\FXSCOMEX.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\fdProxy.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\eapprovp.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\ddrawex.dll
2017-08-16 00:19:02 ----A---- C:\windows\SYSWOW64\atmlib.dll
2017-08-16 00:18:57 ----A---- C:\windows\SYSWOW64\msvcr120_clr0400.dll
2017-08-16 00:18:57 ----A---- C:\windows\SYSWOW64\msvcp120_clr0400.dll
2017-08-16 00:18:57 ----A---- C:\windows\system32\msvcr120_clr0400.dll
2017-08-16 00:18:57 ----A---- C:\windows\system32\msvcp120_clr0400.dll
2017-08-16 00:18:41 ----A---- C:\windows\system32\Windows.Devices.Perception.dll
2017-08-16 00:18:40 ----A---- C:\windows\SYSWOW64\WebcamUi.dll
2017-08-16 00:18:40 ----A---- C:\windows\system32\WWAHost.exe
2017-08-16 00:18:40 ----A---- C:\windows\system32\WebcamUi.dll
2017-08-16 00:18:39 ----A---- C:\windows\system32\tquery.dll
2017-08-16 00:18:38 ----A---- C:\windows\system32\mssrch.dll
2017-08-16 00:18:37 ----A---- C:\windows\system32\Windows.ApplicationModel.dll
2017-08-16 00:18:36 ----A---- C:\windows\system32\wbiosrvc.dll
2017-08-16 00:18:35 ----A---- C:\windows\system32\xpsrchvw.exe
2017-08-16 00:18:35 ----A---- C:\windows\system32\Windows.Networking.Vpn.dll
2017-08-16 00:18:35 ----A---- C:\windows\system32\nshwfp.dll
2017-08-16 00:18:34 ----A---- C:\windows\system32\SearchIndexer.exe
2017-08-16 00:18:33 ----A---- C:\windows\system32\XblGameSaveExt.dll
2017-08-16 00:18:33 ----A---- C:\windows\system32\Windows.UI.dll
2017-08-16 00:18:32 ----A---- C:\windows\system32\VPNv2CSP.dll
2017-08-16 00:18:32 ----A---- C:\windows\system32\Search.ProtocolHandler.MAPI2.dll
2017-08-16 00:18:31 ----A---- C:\windows\SYSWOW64\xpsrchvw.exe
2017-08-16 00:18:31 ----A---- C:\windows\system32\zipfldr.dll
2017-08-16 00:18:31 ----A---- C:\windows\system32\mssvp.dll
2017-08-16 00:18:30 ----A---- C:\windows\system32\WMPDMC.exe
2017-08-16 00:18:30 ----A---- C:\windows\system32\SearchFilterHost.exe
2017-08-16 00:18:30 ----A---- C:\windows\system32\mssphtb.dll
2017-08-16 00:18:29 ----A---- C:\windows\SYSWOW64\pwrshplugin.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\Windows.Gaming.XboxLive.Storage.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\Windows.Gaming.UI.GameBar.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\SearchProtocolHost.exe
2017-08-16 00:18:29 ----A---- C:\windows\system32\mssph.dll
2017-08-16 00:18:29 ----A---- C:\windows\system32\cmintegrator.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\wwanmm.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\Windows.Media.Ocr.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\Windows.Media.FaceAnalysis.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\mssitlb.dll
2017-08-16 00:18:28 ----A---- C:\windows\system32\drivers\mrxdav.sys
2017-08-16 00:18:27 ----A---- C:\windows\system32\XblGameSave.dll
2017-08-16 00:18:27 ----A---- C:\windows\system32\WwaApi.dll
2017-08-16 00:18:26 ----A---- C:\windows\system32\wlanui.dll
2017-08-16 00:18:26 ----A---- C:\windows\system32\Windows.ApplicationModel.Wallet.dll
2017-08-16 00:18:26 ----A---- C:\windows\system32\mssprxy.dll
2017-08-16 00:18:25 ----A---- C:\windows\system32\wwanconn.dll
2017-08-16 00:18:25 ----A---- C:\windows\system32\Windows.Web.Diagnostics.dll
2017-08-16 00:18:25 ----A---- C:\windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\MosStorage.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\moshostcore.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\moshost.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\MapsBtSvc.dll
2017-08-16 00:18:23 ----A---- C:\windows\system32\MapConfiguration.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\SettingsHandlers_Bluetooth.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\MapsStore.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\JpMapControl.dll
2017-08-16 00:18:22 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2017-08-16 00:18:20 ----A---- C:\windows\system32\Windows.UI.Cred.dll
2017-08-16 00:18:20 ----A---- C:\windows\system32\mfnetcore.dll
2017-08-16 00:18:20 ----A---- C:\windows\system32\FSClient.dll
2017-08-16 00:18:20 ----A---- C:\windows\system32\BingMaps.dll
2017-08-16 00:18:19 ----A---- C:\windows\system32\drivers\srv.sys
2017-08-16 00:18:19 ----A---- C:\windows\system32\AzureSettingSyncProvider.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\mfsensorgroup.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\MFMediaEngine.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\MapGeocoder.dll
2017-08-16 00:18:18 ----A---- C:\windows\system32\FrameServer.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\RTMediaFrame.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\mfsvr.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\mfplat.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\mfnetsrc.dll
2017-08-16 00:18:17 ----A---- C:\windows\system32\MFCaptureEngine.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\wlansec.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\wlanapi.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\mf.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\hevcdecoder.dll
2017-08-16 00:18:16 ----A---- C:\windows\system32\drivers\srv2.sys
2017-08-16 00:18:16 ----A---- C:\windows\system32\drivers\pdc.sys
2017-08-16 00:18:16 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2017-08-16 00:18:15 ----A---- C:\windows\SYSWOW64\wmp.dll
2017-08-16 00:18:15 ----A---- C:\windows\system32\Windows.Media.Audio.dll
2017-08-16 00:18:14 ----A---- C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2017-08-16 00:18:13 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2017-08-16 00:18:12 ----A---- C:\windows\system32\rdpcorets.dll
2017-08-16 00:18:12 ----A---- C:\windows\system32\mstsc.exe
2017-08-16 00:18:11 ----A---- C:\windows\system32\NMAA.dll
2017-08-16 00:18:11 ----A---- C:\windows\system32\MapRouter.dll
2017-08-16 00:18:10 ----A---- C:\windows\system32\Windows.Media.dll
2017-08-16 00:18:10 ----A---- C:\windows\system32\MapControlCore.dll
2017-08-16 00:18:10 ----A---- C:\windows\system32\LicenseManager.dll
2017-08-16 00:18:09 ----A---- C:\windows\system32\rdpudd.dll
2017-08-16 00:18:09 ----A---- C:\windows\system32\mfcore.dll
2017-08-16 00:18:08 ----A---- C:\windows\system32\wlansvc.dll
2017-08-16 00:18:08 ----A---- C:\windows\system32\wfdprov.dll
2017-08-16 00:18:08 ----A---- C:\windows\system32\drivers\tcpip.sys
2017-08-16 00:18:07 ----A---- C:\windows\system32\wmp.dll
2017-08-16 00:18:06 ----A---- C:\windows\system32\KernelBase.dll
2017-08-16 00:18:05 ----A---- C:\windows\system32\usercpl.dll
2017-08-16 00:18:05 ----A---- C:\windows\system32\mstscax.dll
2017-08-16 00:18:04 ----A---- C:\windows\system32\wuuhext.dll
2017-08-16 00:18:04 ----A---- C:\windows\system32\Windows.Media.Streaming.dll
2017-08-16 00:18:04 ----A---- C:\windows\system32\SystemSettingsAdminFlows.exe
2017-08-16 00:18:04 ----A---- C:\windows\system32\ExSMime.dll
2017-08-16 00:18:03 ----A---- C:\windows\system32\oleaut32.dll
2017-08-16 00:18:03 ----A---- C:\windows\system32\mos.dll
2017-08-16 00:18:03 ----A---- C:\windows\system32\InputService.dll
2017-08-16 00:18:02 ----A---- C:\windows\system32\windows.storage.dll
2017-08-16 00:18:02 ----A---- C:\windows\system32\Windows.Graphics.Printing.dll
2017-08-16 00:18:01 ----A---- C:\windows\system32\shell32.dll
2017-08-16 00:17:59 ----A---- C:\windows\system32\msmpeg2vdec.dll
2017-08-16 00:17:59 ----A---- C:\windows\system32\MSAudDecMFT.dll
2017-08-16 00:17:58 ----A---- C:\windows\system32\Windows.Media.Editing.dll
2017-08-16 00:17:58 ----A---- C:\windows\system32\mfsrcsnk.dll
2017-08-16 00:17:58 ----A---- C:\windows\system32\mfmp4srcsnk.dll
2017-08-16 00:17:57 ----A---- C:\windows\system32\wpninprc.dll
2017-08-16 00:17:57 ----A---- C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-08-16 00:17:57 ----A---- C:\windows\system32\Windows.ApplicationModel.Store.dll
2017-08-16 00:17:56 ----A---- C:\windows\system32\mfasfsrcsnk.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\Wpc.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\rdpcore.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\msi.dll
2017-08-16 00:17:55 ----A---- C:\windows\system32\mfmpeg2srcsnk.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\wpncore.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\usocore.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\StoreAgent.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\pnidui.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\MusUpdateHandlers.dll
2017-08-16 00:17:54 ----A---- C:\windows\system32\MusNotification.exe
2017-08-16 00:17:54 ----A---- C:\windows\system32\InstallAgent.exe
2017-08-16 00:17:54 ----A---- C:\windows\system32\diagtrack.dll
2017-08-16 00:17:53 ----A---- C:\windows\SYSWOW64\Wpc.dll
2017-08-16 00:17:53 ----A---- C:\windows\system32\wmpmde.dll
2017-08-16 00:17:53 ----A---- C:\windows\system32\Windows.UI.Xaml.InkControls.dll
2017-08-16 00:17:53 ----A---- C:\windows\system32\smartscreen.exe
2017-08-16 00:17:53 ----A---- C:\windows\system32\mmc.exe
2017-08-16 00:17:52 ----A---- C:\windows\SYSWOW64\wmpmde.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\wpnprv.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\RemoteNaturalLanguage.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\provengine.dll
2017-08-16 00:17:52 ----A---- C:\windows\system32\mfreadwrite.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\Windows.Internal.Shell.Broker.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\VCardParser.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\UserDataTimeUtil.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\spoolsv.exe
2017-08-16 00:17:51 ----A---- C:\windows\system32\services.exe
2017-08-16 00:17:51 ----A---- C:\windows\system32\Pimstore.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\ngcsvc.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\msvproc.dll
2017-08-16 00:17:51 ----A---- C:\windows\system32\MbaeApiPublic.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\Windows.Media.Playback.MediaPlayer.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\win32spl.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\sspicli.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\provops.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\NetSetupEngine.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\KnobsCsp.dll
2017-08-16 00:17:50 ----A---- C:\windows\system32\KnobsCore.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\wpnapps.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\WlanMediaManager.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\Windows.UI.Xaml.Phone.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\wdc.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\UserDataService.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\MMDevAPI.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\mfmkvsrcsnk.dll
2017-08-16 00:17:49 ----A---- C:\windows\system32\bdesvc.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\WpcMon.exe
2017-08-16 00:17:48 ----A---- C:\windows\system32\wiaservc.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\TextInputFramework.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\ngccredprov.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\lsm.dll
2017-08-16 00:17:48 ----A---- C:\windows\system32\drivers\WdiWiFi.sys
2017-08-16 00:17:47 ----A---- C:\windows\system32\ws2_32.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\usbmon.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\tdh.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\SpaceControl.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\SessEnv.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\NgcCtnrSvc.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\mprddm.dll
2017-08-16 00:17:47 ----A---- C:\windows\system32\drivers\nwifi.sys
2017-08-16 00:17:47 ----A---- C:\windows\system32\drivers\afd.sys
2017-08-16 00:17:47 ----A---- C:\windows\system32\ContactApis.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\wscsvc.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\SpeechPal.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\PsmServiceExtHost.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\ntshrui.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\NgcCtnr.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\mfaudiocnv.dll
2017-08-16 00:17:46 ----A---- C:\windows\system32\LsaIso.exe
2017-08-16 00:17:46 ----A---- C:\windows\system32\InstallAgentUserBroker.exe
2017-08-16 00:17:45 ----A---- C:\windows\system32\Windows.UI.Input.Inking.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\Windows.Devices.Sensors.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\UIAnimation.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\MSVP9DEC.dll
2017-08-16 00:17:45 ----A---- C:\windows\system32\drivers\ndis.sys
2017-08-16 00:17:44 ----A---- C:\windows\system32\SensorService.dll
2017-08-16 00:17:44 ----A---- C:\windows\system32\MSPhotography.dll
2017-08-16 00:17:44 ----A---- C:\windows\system32\manage-bde.exe
2017-08-16 00:17:44 ----A---- C:\windows\system32\fvewiz.dll
2017-08-16 00:17:44 ----A---- C:\windows\system32\ActiveSyncProvider.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\twinui.pcshell.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\TpmCoreProvisioning.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\RDXTaskFactory.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\ProvPluginEng.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\PimIndexMaintenance.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\NPSM.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\MSVideoDSP.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\MCCSEngineShared.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\mbsmsapi.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\localspl.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\EmailApis.dll
2017-08-16 00:17:43 ----A---- C:\windows\system32\AuthHost.exe
2017-08-16 00:17:42 ----A---- C:\windows\system32\WMVDECOD.DLL
2017-08-16 00:17:42 ----A---- C:\windows\system32\wmpeffects.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\wlancfg.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\rdpencom.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\rasgcw.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\RADCUI.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\pdh.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\NetSetupSvc.dll
2017-08-16 00:17:42 ----A---- C:\windows\system32\MusNotificationUx.exe
2017-08-16 00:17:42 ----A---- C:\windows\system32\drivers\iorate.sys
2017-08-16 00:17:41 ----A---- C:\windows\SYSWOW64\wmpeffects.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\TSWorkspace.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\SensorsApi.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\NfcRadioMedia.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\mfds.dll
2017-08-16 00:17:41 ----A---- C:\windows\system32\drivers\netio.sys
2017-08-16 00:17:41 ----A---- C:\windows\system32\drivers\ksecdd.sys
2017-08-16 00:17:40 ----A---- C:\windows\system32\XpsDocumentTargetPrint.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\wmpps.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\tsmf.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\powercfg.exe
2017-08-16 00:17:40 ----A---- C:\windows\system32\NetworkUXBroker.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\mfps.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\internetmail.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\ChatApis.dll
2017-08-16 00:17:40 ----A---- C:\windows\system32\drivers\tdx.sys
2017-08-16 00:17:40 ----A---- C:\windows\system32\AppointmentApis.dll
2017-08-16 00:17:39 ----A---- C:\windows\SYSWOW64\wmpshell.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\wvc.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\wscapi.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\wmpshell.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\puiobj.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\LockAppHost.exe
2017-08-16 00:17:39 ----A---- C:\windows\system32\fveui.dll
2017-08-16 00:17:39 ----A---- C:\windows\system32\bdeunlock.exe
2017-08-16 00:17:39 ----A---- C:\windows\system32\BackgroundMediaPolicy.dll
2017-08-16 00:17:38 ----A---- C:\windows\SYSWOW64\wmpdxm.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\wmpdxm.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\sdengin2.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\NetSetupApi.dll
2017-08-16 00:17:38 ----A---- C:\windows\system32\drivers\pacer.sys
2017-08-16 00:17:37 ----A---- C:\windows\system32\SearchFolder.dll
2017-08-16 00:17:37 ----A---- C:\windows\system32\ProvSysprep.dll
2017-08-16 00:17:37 ----A---- C:\windows\system32\drivers\wfplwfs.sys
2017-08-16 00:17:37 ----A---- C:\windows\system32\drivers\vwifimp.sys
2017-08-16 00:17:35 ----A---- C:\windows\system32\RelPost.exe
2017-08-16 00:17:35 ----A---- C:\windows\system32\PrintDialogs.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\perfnet.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\nshhttp.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\InputLocaleManager.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\cryptngc.dll
2017-08-16 00:17:35 ----A---- C:\windows\system32\BitLockerDeviceEncryption.exe
2017-08-16 00:17:35 ----A---- C:\windows\splwow64.exe
2017-08-16 00:17:34 ----A---- C:\windows\system32\WinRtTracing.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\wcnwiz.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\tlscsp.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\StorSvc.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\storewuauth.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\rdpclip.exe
2017-08-16 00:17:34 ----A---- C:\windows\system32\PrintRenderAPIHost.DLL
2017-08-16 00:17:34 ----A---- C:\windows\system32\fvecpl.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\efswrt.dll
2017-08-16 00:17:34 ----A---- C:\windows\system32\AboveLockAppHost.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\Windows.UI.Xaml.Maps.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\VEDataLayerHelpers.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\rastls.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\netcorehc.dll
2017-08-16 00:17:33 ----A---- C:\windows\system32\MSVPXENC.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\Windows.UI.Core.TextInput.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\tileobjserver.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\puiapi.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\PrintDialogs3D.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\DafPrintProvider.dll
2017-08-16 00:17:32 ----A---- C:\windows\system32\bdeui.dll
2017-08-16 00:17:31 ----A---- C:\windows\system32\Windows.Perception.Stub.dll
2017-08-16 00:17:31 ----A---- C:\windows\system32\EditBufferTestHook.dll
2017-08-16 00:17:25 ----A---- C:\windows\system32\WordBreakers.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\wscinterop.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\Windows.Storage.Search.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\ProvisioningHandlers.dll
2017-08-16 00:17:23 ----A---- C:\windows\system32\fvenotify.exe
2017-08-16 00:17:22 ----A---- C:\windows\system32\wksprt.exe
2017-08-16 00:17:22 ----A---- C:\windows\system32\LockAppBroker.dll
2017-08-16 00:17:22 ----A---- C:\windows\system32\drivers\rootmdm.sys
2017-08-16 00:17:21 ----A---- C:\windows\system32\Windows.Devices.Scanners.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\VEStoreEventHandlers.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\Unistore.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\tdlrecover.exe
2017-08-16 00:17:21 ----A---- C:\windows\system32\PrintWSDAHost.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\DuCsps.dll
2017-08-16 00:17:21 ----A---- C:\windows\system32\drivers\modem.sys