Logfile of random's system information tool 1.10 (written by random/random) Run by galyfa at 2016-06-27 19:15:54 Microsoft Windows 7 Professionnel Service Pack 1 System drive C: has 183 GB (77%) free of 238 GB Total RAM: 8123 MB (72% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 19:51:28, on 27/06/2016 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v11.0 (11.00.9600.18347) Boot mode: Normal Running processes: C:\Program Files (x86)\Avira\Antivirus\avgnt.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe E:\Téléchargement E\RSIT.exe C:\Program Files (x86)\trend micro\galyfa.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\Antivirus\avgnt.exe" /min O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O9 - Extra button: Afficher ou masquer l'HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1466730781589 O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Avira Protection e-mail (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe O23 - Service: Avira Planificateur (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\sched.exe O23 - Service: Avira Protection temps réel (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avguard.exe O23 - Service: Avira Protection Web (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @appmgmts.dll,-3250 (AppMgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe O23 - Service: AvrcpService - Realtek Semiconductor Corporation - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\cscsvc.dll,-200 (CscService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\UtcResources.dll,-3001 (DiagTrack) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Service Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: hpqcxs08 - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service HP CUE DeviceDiscovery (hpqddsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing) O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Net Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\peerdistsvc.dll,-9000 (PeerDistSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Pml Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe O23 - Service: RtkBleServ - Realtek Semiconductor Corporation - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\StorSvc.dll,-100 (StorSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\umrdp.dll,-1000 (UmRdpService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\wiarpc.dll,-2 (WiaRpc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Windows Update (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe -- End of file - 23477 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler =========Mozilla firefox========= ProfilePath - C:\Users\galyfa\AppData\Roaming\Mozilla\Firefox\Profiles\q38zjd3p.default "{F003DA68-8256-4b37-A6C4-350FA04494DF}"=C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt "smartwebprinting@hp.com"=C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer] "Description"=Adobe® Flash® Player 22.0.0.192 Plugin "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.91.2] "Description"=Java™ Deployment Toolkit "Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.91.2] "Description"=Oracle® Next Generation Java™ Plug-In "Path"=C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE] "Description"= "Path"=disabled [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision] "Description"=NVIDIA stereo images plugin for Mozilla browsers "Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming] "Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers "Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9] "Description"=Google Update "Path"=C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.4] "Description"=VLC Multimedia Plugin "Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll C:\Users\galyfa\AppData\Roaming\Mozilla\Firefox\Profiles\q38zjd3p.default\extensions\ abs@avira.com {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}] HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-14 461888] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}] Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26 366200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-14 173120] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}] HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Avira SystrayStartTrigger"=C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [2016-06-01 66328] "avgnt"=C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2016-04-10 814608] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-06-10 8810200] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"=1 "NoActiveDesktopChanges"=1 "ForceActiveDesktopOn"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "vidc.uyvy"=msyuv.dll "vidc.yuy2"=msyuv.dll "vidc.yvyu"=msyuv.dll "vidc.iyuv"=iyuv_32.dll "vidc.i420"=lvcodec2.dll "vidc.yvu9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm "vidc.cvid"=iccvid.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "wave3"=wdmaud.drv "midi3"=wdmaud.drv "mixer3"=wdmaud.drv "wave2"=wdmaud.drv "midi2"=wdmaud.drv "mixer2"=wdmaud.drv "aux1"=wdmaud.drv "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "wave4"=wdmaud.drv "midi4"=wdmaud.drv "mixer4"=wdmaud.drv ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 month====== 2016-06-27 19:15:54 ----D---- C:\rsit 2016-06-27 19:15:54 ----D---- C:\Program Files (x86)\trend micro 2016-06-26 18:16:12 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-06-24 15:18:14 ----D---- C:\Program Files (x86)\Advanced PC Media LLC 2016-06-23 17:57:36 ----A---- C:\Windows\SysWOW64\tsgqec.dll 2016-06-23 17:57:36 ----A---- C:\Windows\SysWOW64\rdvidcrl.dll 2016-06-23 17:57:36 ----A---- C:\Windows\SysWOW64\mstscax.dll 2016-06-23 16:14:58 ----D---- C:\Program Files (x86)\MSXML 4.0 2016-06-23 16:03:27 ----A---- C:\Windows\SysWOW64\wksprtPS.dll 2016-06-23 16:03:27 ----A---- C:\Windows\SysWOW64\mstsc.exe 2016-06-23 16:03:27 ----A---- C:\Windows\SysWOW64\MsRdpWebAccess.dll 2016-06-23 15:58:24 ----A---- C:\Windows\SysWOW64\rdpendp_winip.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\wuwebv.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\wuapi.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\wdigest.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\sspicli.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\rpcrt4.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\olepro32.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\oleaut32.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\ntdll.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\ncrypt.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\msiexec.exe 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\msi.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\kerberos.dll 2016-06-23 15:53:25 ----A---- C:\Windows\SysWOW64\certcli.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-06-23 15:53:24 ----AH---- C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\wups.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\wudriver.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\wuapp.exe 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\wow32.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\user.exe 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\TSpkg.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\srclient.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\setup16.exe 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\secur32.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\schannel.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\rpchttp.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\ntvdm64.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\msv1_0.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\msobjs.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\msimsg.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\msihnd.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\msaudite.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\KernelBase.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\kernel32.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\instnm.exe 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\cryptbase.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\credssp.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\authui.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\auditpol.exe 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\asycfilt.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\appidapi.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\apisetschema.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\advapi32.dll 2016-06-23 15:53:24 ----A---- C:\Windows\SysWOW64\adtschema.dll 2016-06-23 15:42:37 ----A---- C:\Windows\SysWOW64\mshtmled.dll 2016-06-23 15:42:37 ----A---- C:\Windows\SysWOW64\inseng.dll 2016-06-23 15:42:37 ----A---- C:\Windows\SysWOW64\iernonce.dll 2016-06-23 15:42:37 ----A---- C:\Windows\SysWOW64\ieetwproxystub.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\vbscript.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\urlmon.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\occache.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\MshtmlDac.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\mshtml.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\msfeeds.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\iedkcs32.dll 2016-06-23 15:42:36 ----A---- C:\Windows\SysWOW64\dxtrans.dll 2016-06-23 15:42:35 ----A---- C:\Windows\SysWOW64\iesetup.dll 2016-06-23 15:42:35 ----A---- C:\Windows\SysWOW64\iertutil.dll 2016-06-23 15:42:35 ----A---- C:\Windows\SysWOW64\ieapfltr.dll 2016-06-23 15:42:34 ----A---- C:\Windows\SysWOW64\jsproxy.dll 2016-06-23 15:42:34 ----A---- C:\Windows\SysWOW64\jscript9diag.dll 2016-06-23 15:42:34 ----A---- C:\Windows\SysWOW64\jscript.dll 2016-06-23 15:42:34 ----A---- C:\Windows\SysWOW64\ieui.dll 2016-06-23 15:42:34 ----A---- C:\Windows\SysWOW64\ieframe.dll 2016-06-23 15:42:34 ----A---- C:\Windows\SysWOW64\dxtmsft.dll 2016-06-23 15:42:32 ----A---- C:\Windows\SysWOW64\wininet.dll 2016-06-23 15:42:32 ----A---- C:\Windows\SysWOW64\webcheck.dll 2016-06-23 15:42:32 ----A---- C:\Windows\SysWOW64\msrating.dll 2016-06-23 15:42:32 ----A---- C:\Windows\SysWOW64\mshtmlmedia.dll 2016-06-23 15:42:32 ----A---- C:\Windows\SysWOW64\jscript9.dll 2016-06-23 15:42:32 ----A---- C:\Windows\SysWOW64\ieUnatt.exe 2016-06-23 15:35:19 ----SD---- C:\Windows\SysWOW64\GWX 2016-06-23 15:08:52 ----A---- C:\Windows\SysWOW64\tzres.dll 2016-06-23 15:08:50 ----A---- C:\Windows\SysWOW64\bcryptprimitives.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\ws2_32.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\winhttp.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\StructuredQuery.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\netbtugc.exe 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\mswsock.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\lpk.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\fontsub.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\dciman32.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\atmlib.dll 2016-06-23 15:08:47 ----A---- C:\Windows\SysWOW64\atmfd.dll 2016-06-23 15:08:46 ----A---- C:\Windows\SysWOW64\polstore.dll 2016-06-23 15:08:46 ----A---- C:\Windows\SysWOW64\gpscript.exe 2016-06-23 15:08:46 ----A---- C:\Windows\SysWOW64\gpscript.dll 2016-06-23 15:08:46 ----A---- C:\Windows\SysWOW64\gpprefcl.dll 2016-06-23 15:08:46 ----A---- C:\Windows\SysWOW64\gpapi.dll 2016-06-23 15:08:46 ----A---- C:\Windows\SysWOW64\FwRemoteSvr.dll 2016-06-23 15:08:45 ----A---- C:\Windows\SysWOW64\winipsec.dll 2016-06-23 15:08:42 ----A---- C:\Windows\SysWOW64\gdi32.dll 2016-06-23 15:08:40 ----A---- C:\Windows\SysWOW64\shell32.dll 2016-06-23 15:08:40 ----A---- C:\Windows\SysWOW64\ExplorerFrame.dll 2016-06-23 15:08:40 ----A---- C:\Windows\SysWOW64\explorer.exe 2016-06-23 15:08:40 ----A---- C:\Windows\explorer.exe 2016-06-23 15:07:50 ----A---- C:\Windows\SysWOW64\d3d10level9.dll 2016-06-23 15:03:58 ----A---- C:\Windows\SysWOW64\WindowsCodecs.dll 2016-06-23 11:45:11 ----A---- C:\Windows\SysWOW64\eappprxy.dll 2016-06-23 11:45:05 ----A---- C:\Windows\SysWOW64\eventcls.dll 2016-06-23 11:44:59 ----A---- C:\Windows\SysWOW64\davclnt.dll 2016-06-23 11:44:55 ----A---- C:\Windows\SysWOW64\MRINFO.EXE 2016-06-23 11:44:54 ----A---- C:\Windows\SysWOW64\ksuser.dll 2016-06-23 11:44:53 ----A---- C:\Windows\SysWOW64\fdWNet.dll 2016-06-23 11:44:52 ----A---- C:\Windows\SysWOW64\uexfat.dll 2016-06-23 11:44:50 ----A---- C:\Windows\SysWOW64\wintrust.dll 2016-06-23 11:44:49 ----A---- C:\Windows\SysWOW64\FWPUCLNT.DLL 2016-06-23 11:44:48 ----A---- C:\Windows\SysWOW64\sdbinst.exe 2016-06-23 11:44:47 ----A---- C:\Windows\SysWOW64\wshrm.dll 2016-06-23 11:44:45 ----A---- C:\Windows\SysWOW64\cryptdlg.dll 2016-06-23 11:44:43 ----A---- C:\Windows\SysWOW64\sechost.dll 2016-06-23 11:44:42 ----A---- C:\Windows\SysWOW64\msshooks.dll 2016-06-23 11:44:42 ----A---- C:\Windows\SysWOW64\dtsh.dll 2016-06-23 11:44:42 ----A---- C:\Windows\SysWOW64\dimsjob.dll 2016-06-23 11:44:41 ----A---- C:\Windows\SysWOW64\webservices.dll 2016-06-23 11:44:41 ----A---- C:\Windows\SysWOW64\tvratings.dll 2016-06-23 11:44:41 ----A---- C:\Windows\SysWOW64\inetmib1.dll 2016-06-23 11:44:39 ----A---- C:\Windows\SysWOW64\msnetobj.dll 2016-06-23 11:44:38 ----A---- C:\Windows\SysWOW64\odbccp32.dll 2016-06-23 11:44:38 ----A---- C:\Windows\SysWOW64\odbc32.dll 2016-06-23 11:44:37 ----A---- C:\Windows\SysWOW64\SCardDlg.dll 2016-06-23 11:44:37 ----A---- C:\Windows\SysWOW64\linkinfo.dll 2016-06-23 11:44:37 ----A---- C:\Windows\SysWOW64\format.com 2016-06-23 11:44:36 ----A---- C:\Windows\SysWOW64\rdpendp.dll 2016-06-23 11:44:36 ----A---- C:\Windows\SysWOW64\racpldlg.dll 2016-06-23 11:44:35 ----A---- C:\Windows\SysWOW64\wowreg32.exe 2016-06-23 11:44:35 ----A---- C:\Windows\SysWOW64\prncache.dll 2016-06-23 11:44:35 ----A---- C:\Windows\SysWOW64\comdlg32.dll 2016-06-23 11:44:34 ----A---- C:\Windows\SysWOW64\input.dll 2016-06-23 11:44:32 ----A---- C:\Windows\SysWOW64\rtm.dll 2016-06-23 11:44:32 ----A---- C:\Windows\SysWOW64\dimsroam.dll 2016-06-23 11:44:32 ----A---- C:\Windows\SysWOW64\CertEnrollCtrl.exe 2016-06-23 11:44:32 ----A---- C:\Windows\SysWOW64\cca.dll 2016-06-23 11:44:31 ----A---- C:\Windows\SysWOW64\mssitlb.dll 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\wer.dll 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\KBDINTEL.DLL 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\KBDINPUN.DLL 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\KBDINGUJ.DLL 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\KBDINBE2.DLL 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\KBDINBE1.DLL 2016-06-23 11:44:30 ----A---- C:\Windows\SysWOW64\KBDINASA.DLL 2016-06-23 11:44:29 ----A---- C:\Windows\SysWOW64\fsutil.exe 2016-06-23 11:44:29 ----A---- C:\Windows\SysWOW64\dhcpcsvc.dll 2016-06-23 11:44:28 ----A---- C:\Windows\SysWOW64\wshcon.dll 2016-06-23 11:44:28 ----A---- C:\Windows\SysWOW64\ulib.dll 2016-06-23 11:44:27 ----A---- C:\Windows\SysWOW64\regapi.dll 2016-06-23 11:44:27 ----A---- C:\Windows\SysWOW64\mgmtapi.dll 2016-06-23 11:44:27 ----A---- C:\Windows\SysWOW64\dhcpcmonitor.dll 2016-06-23 11:44:26 ----A---- C:\Windows\SysWOW64\webio.dll 2016-06-23 11:44:26 ----A---- C:\Windows\SysWOW64\opengl32.dll 2016-06-23 11:44:26 ----A---- C:\Windows\SysWOW64\els.dll 2016-06-23 11:44:24 ----A---- C:\Windows\SysWOW64\svchost.exe 2016-06-23 11:44:23 ----A---- C:\Windows\SysWOW64\WSDApi.dll 2016-06-23 11:44:21 ----A---- C:\Windows\SysWOW64\Wpc.dll 2016-06-23 11:44:21 ----A---- C:\Windows\SysWOW64\msra.exe 2016-06-23 11:44:21 ----A---- C:\Windows\SysWOW64\ifsutil.dll 2016-06-23 11:44:21 ----A---- C:\Windows\SysWOW64\iccvid.dll 2016-06-23 11:44:21 ----A---- C:\Windows\SysWOW64\cryptdll.dll 2016-06-23 11:44:21 ----A---- C:\Windows\SysWOW64\activeds.dll 2016-06-23 11:44:20 ----A---- C:\Windows\SysWOW64\version.dll 2016-06-23 11:44:20 ----A---- C:\Windows\fveupdate.exe 2016-06-23 11:44:19 ----A---- C:\Windows\SysWOW64\sscore.dll 2016-06-23 11:44:19 ----A---- C:\Windows\SysWOW64\mprdim.dll 2016-06-23 11:44:19 ----A---- C:\Windows\SysWOW64\cryptsp.dll 2016-06-23 11:44:18 ----A---- C:\Windows\SysWOW64\userenv.dll 2016-06-23 11:44:18 ----A---- C:\Windows\SysWOW64\pcaui.dll 2016-06-23 11:44:18 ----A---- C:\Windows\SysWOW64\cmstplua.dll 2016-06-23 11:44:18 ----A---- C:\Windows\SysWOW64\advpack.dll 2016-06-23 11:44:17 ----A---- C:\Windows\SysWOW64\AUDIOKSE.dll 2016-06-23 11:44:16 ----A---- C:\Windows\SysWOW64\tbs.dll 2016-06-23 11:44:16 ----A---- C:\Windows\SysWOW64\sisbkup.dll 2016-06-23 11:44:15 ----A---- C:\Windows\SysWOW64\WinSCard.dll 2016-06-23 11:44:15 ----A---- C:\Windows\SysWOW64\t2embed.dll 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\tasklist.exe 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\taskkill.exe 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\Robocopy.exe 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\reg.exe 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\nsi.dll 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\mapistub.dll 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\mapi32.dll 2016-06-23 11:44:13 ----A---- C:\Windows\SysWOW64\imagehlp.dll 2016-06-23 11:44:12 ----A---- C:\Windows\SysWOW64\werdiagcontroller.dll 2016-06-23 11:44:12 ----A---- C:\Windows\SysWOW64\tcpmib.dll 2016-06-23 11:44:12 ----A---- C:\Windows\SysWOW64\rasppp.dll 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\wecapi.dll 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDYAK.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDTUQ.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDTUF.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDTAT.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDRU1.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDRU.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINTAM.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINORI.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINMAR.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINMAL.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINKAN.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINHIN.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINDEV.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDINBEN.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\kbdgeoqw.dll 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDBASH.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDAZEL.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\KBDAZE.DLL 2016-06-23 11:44:11 ----A---- C:\Windows\SysWOW64\dot3dlg.dll 2016-06-23 11:44:10 ----A---- C:\Windows\SysWOW64\cewmdm.dll 2016-06-23 11:44:09 ----A---- C:\Windows\SysWOW64\rshx32.dll 2016-06-23 11:44:07 ----A---- C:\Windows\SysWOW64\qdv.dll 2016-06-23 11:44:07 ----A---- C:\Windows\SysWOW64\imm32.dll 2016-06-23 11:44:07 ----A---- C:\Windows\SysWOW64\cmd.exe 2016-06-23 11:44:06 ----A---- C:\Windows\SysWOW64\glu32.dll 2016-06-23 11:44:05 ----A---- C:\Windows\SysWOW64\untfs.dll 2016-06-23 11:44:05 ----A---- C:\Windows\SysWOW64\nlaapi.dll 2016-06-23 11:44:05 ----A---- C:\Windows\SysWOW64\l2gpstore.dll 2016-06-23 11:44:05 ----A---- C:\Windows\SysWOW64\efscore.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\uxtheme.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\photowiz.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\packager.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\odbccu32.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\odbccr32.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\AzSqlExt.dll 2016-06-23 11:44:04 ----A---- C:\Windows\SysWOW64\AudioSes.dll 2016-06-23 11:44:03 ----A---- C:\Windows\SysWOW64\WinFax.dll 2016-06-23 11:44:03 ----A---- C:\Windows\SysWOW64\oleprn.dll 2016-06-23 11:44:03 ----A---- C:\Windows\SysWOW64\MSAC3ENC.DLL 2016-06-23 11:44:03 ----A---- C:\Windows\SysWOW64\FXSEXT32.dll 2016-06-23 11:44:02 ----A---- C:\Windows\SysWOW64\wfapigp.dll 2016-06-23 11:44:02 ----A---- C:\Windows\SysWOW64\oleacchooks.dll 2016-06-23 11:44:02 ----A---- C:\Windows\SysWOW64\devobj.dll 2016-06-23 11:44:02 ----A---- C:\Windows\SysWOW64\clfsw32.dll 2016-06-23 11:44:02 ----A---- C:\Windows\SysWOW64\charmap.exe 2016-06-23 11:44:02 ----A---- C:\Windows\SysWOW64\cfgmgr32.dll 2016-06-23 11:44:01 ----A---- C:\Windows\SysWOW64\tapisrv.dll 2016-06-23 11:44:01 ----A---- C:\Windows\SysWOW64\osk.exe 2016-06-23 11:44:00 ----A---- C:\Windows\SysWOW64\xmllite.dll 2016-06-23 11:44:00 ----A---- C:\Windows\SysWOW64\winsta.dll 2016-06-23 11:44:00 ----A---- C:\Windows\SysWOW64\sxstrace.exe 2016-06-23 11:43:59 ----A---- C:\Windows\SysWOW64\msasn1.dll 2016-06-23 11:43:59 ----A---- C:\Windows\SysWOW64\INETRES.dll 2016-06-23 11:43:58 ----A---- C:\Windows\SysWOW64\winmm.dll 2016-06-23 11:43:58 ----A---- C:\Windows\SysWOW64\inetcomm.dll 2016-06-23 11:43:57 ----A---- C:\Windows\SysWOW64\stobject.dll 2016-06-23 11:43:57 ----A---- C:\Windows\SysWOW64\cryptnet.dll 2016-06-23 11:43:56 ----A---- C:\Windows\SysWOW64\samlib.dll 2016-06-23 11:43:56 ----A---- C:\Windows\SysWOW64\powrprof.dll 2016-06-23 11:43:56 ----A---- C:\Windows\SysWOW64\netjoin.dll 2016-06-23 11:43:56 ----A---- C:\Windows\SysWOW64\mferror.dll 2016-06-23 11:43:56 ----A---- C:\Windows\SysWOW64\certenc.dll 2016-06-23 11:43:55 ----A---- C:\Windows\SysWOW64\xolehlp.dll 2016-06-23 11:43:55 ----A---- C:\Windows\SysWOW64\networkitemfactory.dll 2016-06-23 11:43:54 ----A---- C:\Windows\SysWOW64\shimeng.dll 2016-06-23 11:43:54 ----A---- C:\Windows\SysWOW64\SearchProtocolHost.exe 2016-06-23 11:43:54 ----A---- C:\Windows\SysWOW64\SearchFilterHost.exe 2016-06-23 11:43:54 ----A---- C:\Windows\SysWOW64\devrtl.dll 2016-06-23 11:43:54 ----A---- C:\Windows\SysWOW64\cryptsvc.dll 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\synceng.dll 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmutil.dll 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmstp.exe 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmpbk32.dll 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmmon32.exe 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmlua.dll 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmdl32.exe 2016-06-23 11:43:53 ----A---- C:\Windows\SysWOW64\cmcfg32.dll 2016-06-23 11:43:52 ----A---- C:\Windows\SysWOW64\tcpipcfg.dll 2016-06-23 11:43:52 ----A---- C:\Windows\SysWOW64\rascfg.dll 2016-06-23 11:43:52 ----A---- C:\Windows\SysWOW64\qasf.dll 2016-06-23 11:43:52 ----A---- C:\Windows\SysWOW64\iassam.dll 2016-06-23 11:43:52 ----A---- C:\Windows\SysWOW64\iasnap.dll 2016-06-23 11:43:52 ----A---- C:\Windows\SysWOW64\devenum.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\secproc_ssp_isv.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\secproc_ssp.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\secproc_isv.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\secproc.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\scesrv.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\scecli.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\msftedit.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\cdosys.dll 2016-06-23 11:43:51 ----A---- C:\Windows\SysWOW64\aclui.dll 2016-06-23 11:43:50 ----A---- C:\Windows\SysWOW64\wdi.dll 2016-06-23 11:43:50 ----A---- C:\Windows\SysWOW64\msorcl32.dll 2016-06-23 11:43:48 ----A---- C:\Windows\SysWOW64\prevhost.exe 2016-06-23 11:43:48 ----A---- C:\Windows\SysWOW64\icsunattend.exe 2016-06-23 11:43:47 ----A---- C:\Windows\SysWOW64\WPDShextAutoplay.exe 2016-06-23 11:43:47 ----A---- C:\Windows\SysWOW64\tsmf.dll 2016-06-23 11:43:47 ----A---- C:\Windows\SysWOW64\fixmapi.exe 2016-06-23 11:43:47 ----A---- C:\Windows\SysWOW64\DShowRdpFilter.dll 2016-06-23 11:43:47 ----A---- C:\Windows\SysWOW64\dpnsvr.exe 2016-06-23 11:43:47 ----A---- C:\Windows\SysWOW64\BWContextHandler.dll 2016-06-23 11:43:46 ----A---- C:\Windows\SysWOW64\SearchIndexer.exe 2016-06-23 11:43:46 ----A---- C:\Windows\SysWOW64\netiohlp.dll 2016-06-23 11:43:46 ----A---- C:\Windows\SysWOW64\mssphtb.dll 2016-06-23 11:43:46 ----A---- C:\Windows\SysWOW64\mssph.dll 2016-06-23 11:43:46 ----A---- C:\Windows\SysWOW64\imapi2.dll 2016-06-23 11:43:45 ----A---- C:\Windows\SysWOW64\tcpmonui.dll 2016-06-23 11:43:45 ----A---- C:\Windows\SysWOW64\netevent.dll 2016-06-23 11:43:44 ----A---- C:\Windows\SysWOW64\wvc.dll 2016-06-23 11:43:44 ----A---- C:\Windows\SysWOW64\wsmprovhost.exe 2016-06-23 11:43:44 ----A---- C:\Windows\SysWOW64\wermgr.exe 2016-06-23 11:43:44 ----A---- C:\Windows\SysWOW64\wecutil.exe 2016-06-23 11:43:43 ----A---- C:\Windows\SysWOW64\typeperf.exe 2016-06-23 11:43:43 ----A---- C:\Windows\SysWOW64\relog.exe 2016-06-23 11:43:42 ----A---- C:\Windows\SysWOW64\sdchange.exe 2016-06-23 11:43:42 ----A---- C:\Windows\SysWOW64\raserver.exe 2016-06-23 11:43:39 ----A---- C:\Windows\SysWOW64\rdrleakdiag.exe 2016-06-23 11:43:38 ----A---- C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2016-06-23 11:43:38 ----A---- C:\Windows\SysWOW64\SessEnv.dll 2016-06-23 11:43:38 ----A---- C:\Windows\SysWOW64\scrrun.dll 2016-06-23 11:43:38 ----A---- C:\Windows\SysWOW64\scrobj.dll 2016-06-23 11:43:38 ----A---- C:\Windows\SysWOW64\cscript.exe 2016-06-23 11:43:37 ----A---- C:\Windows\SysWOW64\wscript.exe 2016-06-23 11:43:37 ----A---- C:\Windows\SysWOW64\psisdecd.dll 2016-06-23 11:43:36 ----A---- C:\Windows\SysWOW64\sti.dll 2016-06-23 11:43:35 ----A---- C:\Windows\SysWOW64\WPDShServiceObj.dll 2016-06-23 11:43:35 ----A---- C:\Windows\SysWOW64\ncryptui.dll 2016-06-23 11:43:35 ----A---- C:\Windows\SysWOW64\credui.dll 2016-06-23 11:43:34 ----A---- C:\Windows\SysWOW64\sxs.dll 2016-06-23 11:43:34 ----A---- C:\Windows\SysWOW64\FirewallAPI.dll 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\shdocvw.dll 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\proquota.exe 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\odbctrac.dll 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\odbcjt32.dll 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\notepad.exe 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\nlsbres.dll 2016-06-23 11:43:33 ----A---- C:\Windows\SysWOW64\cryptui.dll 2016-06-23 11:43:33 ----A---- C:\Windows\notepad.exe 2016-06-23 11:43:32 ----A---- C:\Windows\SysWOW64\oleacc.dll 2016-06-23 11:43:31 ----A---- C:\Windows\SysWOW64\Magnification.dll 2016-06-23 11:43:30 ----A---- C:\Windows\SysWOW64\npmproxy.dll 2016-06-23 11:43:30 ----A---- C:\Windows\SysWOW64\imapi2fs.dll 2016-06-23 11:43:30 ----A---- C:\Windows\SysWOW64\cscobj.dll 2016-06-23 11:43:29 ----A---- C:\Windows\SysWOW64\dxmasf.dll 2016-06-23 11:43:29 ----A---- C:\Windows\splwow64.exe 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\UIAutomationCore.dll 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\rastls.dll 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\mtxoci.dll 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\eapphost.dll 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\eappgnui.dll 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\eappcfg.dll 2016-06-23 11:43:28 ----A---- C:\Windows\SysWOW64\eapp3hst.dll 2016-06-23 11:43:27 ----A---- C:\Windows\SysWOW64\wlaninst.dll 2016-06-23 11:43:27 ----A---- C:\Windows\SysWOW64\wlanhlp.dll 2016-06-23 11:43:27 ----A---- C:\Windows\SysWOW64\wlanapi.dll 2016-06-23 11:43:27 ----A---- C:\Windows\SysWOW64\nci.dll 2016-06-23 11:43:27 ----A---- C:\Windows\SysWOW64\IPHLPAPI.DLL 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\winnsi.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\wincredprovider.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\spwmp.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\iprtprio.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\fdBth.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\dpnhupnp.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\dpnhpast.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\dpapiprovider.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\docprop.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\cngprovider.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\capiprovider.dll 2016-06-23 11:43:26 ----A---- C:\Windows\SysWOW64\adprovider.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\wmi.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\vsstrace.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\rrinstaller.exe 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\mfpmp.exe 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\mfplat.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\FXSAPI.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\dpnlobby.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\dpnaddr.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\dnscmmc.dll 2016-06-23 11:43:25 ----A---- C:\Windows\SysWOW64\apphelp.dll 2016-06-23 11:43:24 ----A---- C:\Windows\SysWOW64\msctf.dll 2016-06-23 11:43:24 ----A---- C:\Windows\SysWOW64\d3d10warp.dll 2016-06-23 11:43:23 ----A---- C:\Windows\SysWOW64\XpsGdiConverter.dll 2016-06-23 11:43:23 ----A---- C:\Windows\SysWOW64\w32tm.exe 2016-06-23 11:43:23 ----A---- C:\Windows\SysWOW64\objsel.dll 2016-06-23 11:43:23 ----A---- C:\Windows\SysWOW64\msvbvm60.dll 2016-06-23 11:43:23 ----A---- C:\Windows\SysWOW64\dpnet.dll 2016-06-23 11:43:23 ----A---- C:\Windows\SysWOW64\dpnathlp.dll 2016-06-23 11:43:22 ----A---- C:\Windows\SysWOW64\rasdiag.dll 2016-06-23 11:43:22 ----A---- C:\Windows\SysWOW64\ntshrui.dll 2016-06-23 11:43:22 ----A---- C:\Windows\SysWOW64\netcorehc.dll 2016-06-23 11:43:22 ----A---- C:\Windows\SysWOW64\IMJP10K.DLL 2016-06-23 11:43:21 ----A---- C:\Windows\SysWOW64\ubpm.dll 2016-06-23 11:43:21 ----A---- C:\Windows\SysWOW64\shlwapi.dll 2016-06-23 11:43:21 ----A---- C:\Windows\SysWOW64\SearchFolder.dll 2016-06-23 11:43:21 ----A---- C:\Windows\SysWOW64\propsys.dll 2016-06-23 11:43:21 ----A---- C:\Windows\SysWOW64\msdrm.dll 2016-06-23 11:43:20 ----A---- C:\Windows\SysWOW64\TpmInit.exe 2016-06-23 11:43:20 ----A---- C:\Windows\SysWOW64\tpmcompc.dll 2016-06-23 11:43:20 ----A---- C:\Windows\SysWOW64\mssprxy.dll 2016-06-23 11:43:18 ----A---- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2016-06-23 11:43:18 ----A---- C:\Windows\SysWOW64\RMActivate_ssp.exe 2016-06-23 11:43:18 ----A---- C:\Windows\SysWOW64\RMActivate_isv.exe 2016-06-23 11:43:18 ----A---- C:\Windows\SysWOW64\RMActivate.exe 2016-06-23 11:43:17 ----A---- C:\Windows\SysWOW64\drvstore.dll 2016-06-23 11:43:15 ----A---- C:\Windows\SysWOW64\appmgmts.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\sbe.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\qedit.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\MP3DMOD.DLL 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\mfreadwrite.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\mfds.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\mfAACEnc.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\colbact.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\clbcatq.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\catsrvut.dll 2016-06-23 11:43:14 ----A---- C:\Windows\SysWOW64\catsrv.dll 2016-06-23 11:43:13 ----A---- C:\Windows\SysWOW64\taskschd.dll 2016-06-23 11:43:13 ----A---- C:\Windows\SysWOW64\taskeng.exe 2016-06-23 11:43:13 ----A---- C:\Windows\SysWOW64\taskcomp.dll 2016-06-23 11:43:13 ----A---- C:\Windows\SysWOW64\ir32_32.dll 2016-06-23 11:43:12 ----A---- C:\Windows\SysWOW64\wmpeffects.dll 2016-06-23 11:43:12 ----A---- C:\Windows\SysWOW64\WebClnt.dll 2016-06-23 11:43:12 ----A---- C:\Windows\SysWOW64\msscntrs.dll 2016-06-23 11:43:12 ----A---- C:\Windows\SysWOW64\mfvdsp.dll 2016-06-23 11:43:11 ----A---- C:\Windows\SysWOW64\Wldap32.dll 2016-06-23 11:43:11 ----A---- C:\Windows\SysWOW64\adsldpc.dll 2016-06-23 11:43:10 ----A---- C:\Windows\SysWOW64\twext.dll 2016-06-23 11:43:10 ----A---- C:\Windows\SysWOW64\qdvd.dll 2016-06-23 11:43:10 ----A---- C:\Windows\SysWOW64\pdhui.dll 2016-06-23 11:43:10 ----A---- C:\Windows\SysWOW64\icmui.dll 2016-06-23 11:43:10 ----A---- C:\Windows\SysWOW64\evr.dll 2016-06-23 11:43:09 ----A---- C:\Windows\SysWOW64\quartz.dll 2016-06-23 11:43:09 ----A---- C:\Windows\SysWOW64\pku2u.dll 2016-06-23 11:43:09 ----A---- C:\Windows\SysWOW64\gpprnext.dll 2016-06-23 11:43:09 ----A---- C:\Windows\SysWOW64\cscdll.dll 2016-06-23 11:43:09 ----A---- C:\Windows\SysWOW64\cscapi.dll 2016-06-23 11:43:09 ----A---- C:\Windows\SysWOW64\crypt32.dll 2016-06-23 11:43:08 ----A---- C:\Windows\SysWOW64\WsmRes.dll 2016-06-23 11:43:08 ----A---- C:\Windows\SysWOW64\shsvcs.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\wsmplpxy.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\wlansec.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\wlanmsm.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\wiatrace.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\wiaaut.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\vds_ps.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\sxproxy.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\spp.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\rasser.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\rasmxs.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\p2pnetsh.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\p2pcollab.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\P2P.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\nlmsprep.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\mprddm.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\lsmproxy.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\iprtrmgr.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\fdBthProxy.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\drvinst.exe 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\dot3msm.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\dot3gpclnt.dll 2016-06-23 11:43:07 ----A---- C:\Windows\SysWOW64\dot3api.dll 2016-06-23 11:43:06 ----A---- C:\Windows\SysWOW64\pdh.dll 2016-06-23 11:43:06 ----A---- C:\Windows\SysWOW64\MediaMetadataHandler.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\scrptadm.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\perfproc.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\perfos.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\perfnet.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\perfdisk.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\perfctrs.dll 2016-06-23 11:43:05 ----A---- C:\Windows\SysWOW64\AdmTmpl.dll 2016-06-23 11:43:04 ----A---- C:\Windows\SysWOW64\colorcpl.exe 2016-06-23 11:43:03 ----A---- C:\Windows\SysWOW64\msxml6r.dll 2016-06-23 11:43:03 ----A---- C:\Windows\SysWOW64\msxml3r.dll 2016-06-23 11:43:03 ----A---- C:\Windows\SysWOW64\iologmsg.dll 2016-06-23 11:43:03 ----A---- C:\Windows\SysWOW64\dwmapi.dll 2016-06-23 11:43:02 ----A---- C:\Windows\SysWOW64\ncsi.dll 2016-06-23 11:43:02 ----A---- C:\Windows\SysWOW64\dnsapi.dll 2016-06-23 11:43:02 ----A---- C:\Windows\SysWOW64\dhcpcsvc6.dll 2016-06-23 11:43:02 ----A---- C:\Windows\SysWOW64\dhcpcore6.dll 2016-06-23 11:43:02 ----A---- C:\Windows\SysWOW64\dhcpcore.dll 2016-06-23 11:43:01 ----A---- C:\Windows\SysWOW64\PresentationHostProxy.dll 2016-06-23 11:43:01 ----A---- C:\Windows\SysWOW64\PresentationHost.exe 2016-06-23 11:43:01 ----A---- C:\Windows\SysWOW64\FXSXP32.dll 2016-06-23 11:43:00 ----A---- C:\Windows\SysWOW64\WinSATAPI.dll 2016-06-23 11:43:00 ----A---- C:\Windows\SysWOW64\FXSRESM.dll 2016-06-23 11:42:59 ----A---- C:\Windows\SysWOW64\netprofm.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\WMPhoto.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\vssapi.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\sbeio.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\resutils.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\mtxclu.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\msscp.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\msdtcprx.dll 2016-06-23 11:42:58 ----A---- C:\Windows\SysWOW64\clusapi.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\win32spl.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\scksp.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\pla.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\P2PGraph.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\netlogon.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\netapi32.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\logoncli.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\CPFilters.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\browcli.dll 2016-06-23 11:42:57 ----A---- C:\Windows\SysWOW64\basecsp.dll 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\ROUTE.EXE 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\resmon.exe 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\netiougc.exe 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\mssrch.dll 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\ftp.exe 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\dnscacheugc.exe 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\diskperf.exe 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\certutil.exe 2016-06-23 11:42:56 ----A---- C:\Windows\SysWOW64\CertEnroll.dll 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\wdc.dll 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\tracerpt.exe 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\tquery.dll 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\TCPSVCS.EXE 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\Query.dll 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\perfmon.exe 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\NETSTAT.EXE 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\logman.exe 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\HOSTNAME.EXE 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\finger.exe 2016-06-23 11:42:55 ----A---- C:\Windows\SysWOW64\ARP.EXE 2016-06-23 11:42:54 ----A---- C:\Windows\SysWOW64\wlangpui.dll 2016-06-23 11:42:54 ----A---- C:\Windows\SysWOW64\pnidui.dll 2016-06-23 11:42:54 ----A---- C:\Windows\SysWOW64\ole32.dll 2016-06-23 11:42:54 ----A---- C:\Windows\SysWOW64\mfps.dll 2016-06-23 11:42:54 ----A---- C:\Windows\SysWOW64\dispex.dll 2016-06-23 11:42:54 ----A---- C:\Windows\SysWOW64\actxprxy.dll 2016-06-23 11:42:52 ----A---- C:\Windows\SysWOW64\rasapi32.dll 2016-06-23 11:42:52 ----A---- C:\Windows\SysWOW64\d3d11.dll 2016-06-23 11:42:51 ----A---- C:\Windows\SysWOW64\rasplap.dll 2016-06-23 11:42:51 ----A---- C:\Windows\SysWOW64\PerfCenterCPL.dll 2016-06-23 11:42:51 ----A---- C:\Windows\SysWOW64\InkEd.dll 2016-06-23 11:42:51 ----A---- C:\Windows\SysWOW64\dui70.dll 2016-06-23 11:42:51 ----A---- C:\Windows\SysWOW64\comctl32.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\rasdlg.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\printui.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\networkexplorer.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\netcfgx.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\FXSCOMEX.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\FXSCOM.dll 2016-06-23 11:42:50 ----A---- C:\Windows\SysWOW64\colorui.dll 2016-06-23 11:42:49 ----A---- C:\Windows\SysWOW64\netshell.dll 2016-06-23 11:42:49 ----A---- C:\Windows\SysWOW64\msvcrt.dll 2016-06-23 11:42:49 ----A---- C:\Windows\SysWOW64\icmp.dll 2016-06-23 11:42:48 ----A---- C:\Windows\SysWOW64\wsecedit.dll 2016-06-23 11:42:48 ----A---- C:\Windows\SysWOW64\wpdshext.dll 2016-06-23 11:42:48 ----A---- C:\Windows\SysWOW64\mssvp.dll 2016-06-23 11:42:45 ----A---- C:\Windows\SysWOW64\setupapi.dll 2016-06-23 11:42:45 ----A---- C:\Windows\SysWOW64\mfc42u.dll 2016-06-23 11:42:45 ----A---- C:\Windows\SysWOW64\mfc42.dll 2016-06-23 11:42:44 ----A---- C:\Windows\SysWOW64\tdh.dll 2016-06-23 11:42:44 ----A---- C:\Windows\SysWOW64\esent.dll 2016-06-23 11:42:42 ----A---- C:\Windows\SysWOW64\usp10.dll 2016-06-23 11:42:41 ----A---- C:\Windows\SysWOW64\gpedit.dll 2016-06-23 11:42:41 ----A---- C:\Windows\SysWOW64\DWrite.dll 2016-06-23 11:42:40 ----A---- C:\Windows\SysWOW64\msmpeg2vdec.dll 2016-06-23 11:42:40 ----A---- C:\Windows\SysWOW64\MSMPEG2ENC.DLL 2016-06-23 11:42:40 ----A---- C:\Windows\SysWOW64\msmpeg2adec.dll 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\WMVSENCD.DLL 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\VIDRESZR.DLL 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\MPG4DECD.DLL 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\MP4SDECD.DLL 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\MP43DECD.DLL 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\EncDec.dll 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\COLORCNV.DLL 2016-06-23 11:42:39 ----A---- C:\Windows\SysWOW64\AudioEng.dll 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMVXENCD.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMVSDECD.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMVENCOD.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMVDECOD.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMSPDMOE.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMSPDMOD.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMADMOE.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\WMADMOD.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\RESAMPLEDMO.DLL 2016-06-23 11:42:38 ----A---- C:\Windows\SysWOW64\MFWMAAEC.DLL 2016-06-23 11:42:37 ----A---- C:\Windows\SysWOW64\wmpmde.dll 2016-06-23 11:42:37 ----A---- C:\Windows\SysWOW64\wmdrmsdk.dll 2016-06-23 11:42:37 ----A---- C:\Windows\SysWOW64\drmv2clt.dll 2016-06-23 11:42:37 ----A---- C:\Windows\SysWOW64\drmmgrtn.dll 2016-06-23 11:42:37 ----A---- C:\Windows\SysWOW64\blackbox.dll 2016-06-23 11:42:36 ----A---- C:\Windows\SysWOW64\rdpcore.dll 2016-06-23 11:42:36 ----A---- C:\Windows\SysWOW64\mf.dll 2016-06-23 11:42:35 ----A---- C:\Windows\SysWOW64\GameUXLegacyGDFs.dll 2016-06-23 11:42:34 ----A---- C:\Windows\SysWOW64\WsmWmiPl.dll 2016-06-23 11:42:34 ----A---- C:\Windows\SysWOW64\WsmAuto.dll 2016-06-23 11:42:34 ----A---- C:\Windows\SysWOW64\msxml6.dll 2016-06-23 11:42:34 ----A---- C:\Windows\SysWOW64\msxml3.dll 2016-06-23 11:42:33 ----A---- C:\Windows\SysWOW64\ReAgent.dll 2016-06-23 11:42:33 ----A---- C:\Windows\SysWOW64\gameux.dll 2016-06-23 11:42:33 ----A---- C:\Windows\SysWOW64\dwmcore.dll 2016-06-23 11:42:32 ----A---- C:\Windows\SysWOW64\d2d1.dll 2016-06-23 11:42:30 ----A---- C:\Windows\SysWOW64\MSVidCtl.dll 2016-06-23 11:42:30 ----A---- C:\Windows\SysWOW64\comsvcs.dll 2016-06-23 11:42:29 ----A---- C:\Windows\SysWOW64\sethc.exe 2016-06-23 11:42:28 ----A---- C:\Windows\SysWOW64\WsmSvc.dll 2016-06-23 11:42:28 ----A---- C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2016-06-23 11:42:28 ----A---- C:\Windows\SysWOW64\WSManHTTPConfig.exe 2016-06-23 11:42:28 ----A---- C:\Windows\SysWOW64\azroles.dll 2016-06-23 11:42:27 ----A---- C:\Windows\SysWOW64\wmp.dll 2016-06-23 11:42:27 ----A---- C:\Windows\SysWOW64\korwbrkr.dll 2016-06-23 11:42:26 ----A---- C:\Windows\SysWOW64\nshwfp.dll 2016-06-23 11:42:25 ----A---- C:\Windows\SysWOW64\xpsrchvw.exe 2016-06-23 11:42:24 ----A---- C:\Windows\SysWOW64\networkmap.dll 2016-06-23 11:42:24 ----A---- C:\Windows\SysWOW64\Display.dll 2016-06-23 11:42:23 ----A---- C:\Windows\SysWOW64\TSWorkspace.dll 2016-06-23 11:42:21 ----A---- C:\Windows\SysWOW64\msieftp.dll 2016-06-23 11:42:20 ----A---- C:\Windows\SysWOW64\zipfldr.dll 2016-06-23 11:42:20 ----A---- C:\Windows\SysWOW64\wmploc.DLL 2016-06-23 11:42:20 ----A---- C:\Windows\SysWOW64\user32.dll 2016-06-23 11:42:20 ----A---- C:\Windows\SysWOW64\themeui.dll 2016-06-23 11:42:20 ----A---- C:\Windows\SysWOW64\psr.exe 2016-06-23 10:51:05 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-06-23 09:38:29 ----D---- C:\b03cdae9783440eef1 2016-06-23 00:15:41 ----D---- C:\7684975caf4634a7d503dd69a5d65d 2016-06-22 16:31:05 ----A---- C:\Windows\SysWOW64\MRT.exe 2016-06-22 16:30:06 ----D---- C:\Program Files (x86)\MSECache 2016-06-22 02:15:59 ----D---- C:\18bdf7d74cf62c7610 2016-06-21 12:26:01 ----D---- C:\Users\galyfa\AppData\Roaming\Macromedia 2016-06-20 18:35:45 ----D---- C:\Users\galyfa\AppData\Roaming\Avira 2016-06-20 18:26:03 ----D---- C:\ProgramData\Avira 2016-06-20 18:26:03 ----D---- C:\Program Files (x86)\Avira 2016-06-17 09:47:47 ----A---- C:\WinUpdateFix.txt 2016-06-15 23:19:11 ----D---- C:\Windows\SysWOW64\Wat 2016-06-15 23:07:21 ----D---- C:\Windows\pss 2016-06-15 17:13:39 ----D---- C:\Users\galyfa\AppData\Roaming\Adobe 2016-06-15 17:13:31 ----D---- C:\Users\galyfa\AppData\Roaming\HP 2016-06-15 17:13:31 ----D---- C:\ProgramData\WEBREG 2016-06-15 17:06:25 ----D---- C:\ProgramData\Hewlett-Packard 2016-06-15 16:59:58 ----D---- C:\ProgramData\HP Product Assistant 2016-06-15 16:59:38 ----D---- C:\Windows\SysWOW64\Macromed 2016-06-15 16:59:17 ----D---- C:\Program Files (x86)\Common Files\HP 2016-06-15 16:59:17 ----D---- C:\Program Files (x86)\Common Files\Hewlett-Packard 2016-06-15 16:59:09 ----HD---- C:\Config.Msi 2016-06-15 16:59:09 ----D---- C:\Program Files (x86)\HP 2016-06-15 16:58:41 ----N---- C:\Windows\hpomdl14.dat 2016-06-15 16:58:41 ----A---- C:\Windows\hpoins14.dat 2016-06-15 16:58:37 ----D---- C:\ProgramData\HP 2016-06-15 08:28:51 ----D---- C:\751b9ee4ffdcb1bca6b812e6941c 2016-06-15 02:31:18 ----A---- C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-06-15 02:16:53 ----A---- C:\Windows\SysWOW64\elshyph.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\wextract.exe 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\url.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\SetIEInstalledDate.exe 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\pngfilt.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\msls31.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\mshtmler.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\mshta.exe 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\msfeedssync.exe 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\licmgr10.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\jsIntl.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\imgutil.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\iexpress.exe 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\iesysprep.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\iepeers.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\ieapfltr.dat 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\IEAdvpack.dll 2016-06-15 02:16:50 ----A---- C:\Windows\SysWOW64\icardie.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2016-06-15 02:08:07 ----AH---- C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2016-06-15 02:08:07 ----A---- C:\Windows\SysWOW64\XpsPrint.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\WindowsCodecsExt.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\UIAnimation.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\dxgi.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\d3d10core.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\d3d10_1core.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\d3d10_1.dll 2016-06-15 02:08:06 ----A---- C:\Windows\SysWOW64\d3d10.dll 2016-06-15 01:33:07 ----D---- C:\Windows\CheckSur 2016-06-15 00:39:38 ----A---- C:\Windows\SysWOW64\infocardapi.dll 2016-06-15 00:39:38 ----A---- C:\Windows\SysWOW64\icardagt.exe 2016-06-15 00:39:37 ----A---- C:\Windows\SysWOW64\icardres.dll 2016-06-15 00:39:35 ----A---- C:\Windows\SysWOW64\TsWpfWrp.exe 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\ucrtbase.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2016-06-15 00:16:00 ----A---- C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2016-06-15 00:15:03 ----A---- C:\Windows\SysWOW64\mscories.dll 2016-06-15 00:15:03 ----A---- C:\Windows\SysWOW64\mscorier.dll 2016-06-15 00:15:03 ----A---- C:\Windows\SysWOW64\dfshim.dll 2016-06-15 00:08:07 ----A---- C:\Windows\SysWOW64\poqexec.exe 2016-06-14 21:08:50 ----D---- C:\Program Files (x86)\Mozilla Firefox 2016-06-14 17:15:34 ----D---- C:\Users\galyfa\AppData\Roaming\.minecraft 2016-06-14 17:09:20 ----D---- C:\Users\galyfa\AppData\Roaming\NVIDIA 2016-06-14 17:03:10 ----D---- C:\Program Files (x86)\Common Files\Java 2016-06-14 17:03:04 ----D---- C:\Users\galyfa\AppData\Roaming\Sun 2016-06-14 17:02:59 ----A---- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2016-06-14 17:02:50 ----D---- C:\ProgramData\Oracle 2016-06-14 17:02:48 ----D---- C:\Program Files (x86)\Java 2016-06-14 09:01:47 ----D---- C:\70c2d45113e0277217 2016-06-14 08:34:52 ----A---- C:\Windows\SysWOW64\nvStreaming.exe 2016-06-14 08:34:26 ----A---- C:\Windows\SysWOW64\vulkaninfo.exe 2016-06-14 08:34:26 ----A---- C:\Windows\SysWOW64\vulkan-1.dll 2016-06-14 08:34:15 ----D---- C:\Program Files (x86)\VulkanRT 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvwgf2um.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvumdshim.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvptxJitCompiler.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvopencl.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvoglv32.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvoglshim32.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvinit.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\NvIFROpenGL.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\NvIFR.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\NvFBC.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvEncodeAPI.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvcuvid.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvcuda.dll 2016-06-14 08:33:08 ----A---- C:\Windows\SysWOW64\nvaudcap32v.dll 2016-06-14 08:33:07 ----A---- C:\Windows\SysWOW64\nvcompiler.dll 2016-06-14 08:05:08 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll 2016-06-14 08:05:08 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll 2016-06-14 08:04:56 ----A---- C:\Windows\SysWOW64\nvspcap.dll 2016-06-14 08:04:56 ----A---- C:\Windows\SysWOW64\nvspbridge.dll 2016-06-14 08:03:34 ----D---- C:\ProgramData\Package Cache 2016-06-14 08:03:06 ----A---- C:\Windows\SysWOW64\nvapi.dll 2016-06-14 00:43:18 ----D---- C:\Users\galyfa\AppData\Roaming\Leadertech 2016-06-14 00:42:58 ----D---- C:\Program Files (x86)\Logitech 2016-06-14 00:42:58 ----D---- C:\Program Files (x86)\Common Files\LogiShrd 2016-06-14 00:39:22 ----A---- C:\Windows\SysWOW64\UMonit.exe 2016-06-14 00:39:19 ----D---- C:\Windows\SysWOW64\sda 2016-06-14 00:39:19 ----A---- C:\Windows\SysWOW64\ustor.dll 2016-06-14 00:39:19 ----A---- C:\Windows\SysWOW64\ProductName.ini 2016-06-14 00:39:19 ----A---- C:\Windows\SysWOW64\NoMSGuninstall.exe 2016-06-14 00:39:19 ----A---- C:\Windows\SysWOW64\IconCfg0.ini 2016-06-14 00:39:19 ----A---- C:\Windows\SysWOW64\_IconCfg0.ini 2016-06-14 00:37:56 ----D---- C:\Users\galyfa\AppData\Roaming\sp6_log 2016-06-14 00:34:50 ----A---- C:\Windows\PidVid_List.txt 2016-06-14 00:34:33 ----D---- C:\ProgramData\Realtek 2016-06-14 00:18:28 ----D---- C:\Windows\SysWOW64\x64 2016-06-14 00:18:28 ----D---- C:\Windows\SysWOW64\Lang 2016-06-14 00:18:28 ----A---- C:\Windows\SysWOW64\heciudlg.exe 2016-06-14 00:15:00 ----D---- C:\VIA_XHCI 2016-06-14 00:13:29 ----D---- C:\Program Files (x86)\VIA 2016-06-14 00:13:21 ----D---- C:\Program Files (x86)\Common Files\InstallShield 2016-06-14 00:10:10 ----D---- C:\Program Files (x86)\Intel 2016-06-14 00:10:10 ----A---- C:\Windows\SysWOW64\CSVer.dll 2016-06-14 00:09:52 ----D---- C:\Intel 2016-06-13 17:35:15 ----D---- C:\Users\galyfa\AppData\Roaming\DAEMON Tools Lite 2016-06-13 17:34:41 ----D---- C:\ProgramData\DAEMON Tools Lite 2016-06-13 17:34:01 ----D---- C:\ProgramData\ElectricSheep 2016-06-13 17:34:01 ----D---- C:\Program Files (x86)\Electric Sheep 2016-06-13 17:34:01 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll 2016-06-13 17:34:01 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll 2016-06-13 17:30:49 ----D---- C:\ProgramData\Logishrd 2016-06-13 17:30:31 ----D---- C:\Users\galyfa\AppData\Roaming\Logitech 2016-06-13 17:30:31 ----D---- C:\Users\galyfa\AppData\Roaming\Logishrd 2016-06-13 17:29:39 ----D---- C:\Users\galyfa\AppData\Roaming\IcoFX 2016-06-13 17:14:11 ----D---- C:\ProgramData\Betternet 2016-06-13 16:47:46 ----D---- C:\Users\galyfa\AppData\Roaming\vlc 2016-06-13 16:47:40 ----D---- C:\Program Files (x86)\VideoLAN 2016-06-13 16:24:51 ----D---- C:\ProgramData\Malwarebytes 2016-06-13 16:19:17 ----D---- C:\Program Files (x86)\Microsoft Works 2016-06-13 16:19:13 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 2016-06-13 16:19:13 ----D---- C:\Program Files (x86)\Common Files\DESIGNER 2016-06-13 16:19:06 ----D---- C:\Windows\PCHEALTH 2016-06-13 16:17:51 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8 2016-06-13 16:17:41 ----D---- C:\ProgramData\Microsoft Help 2016-06-13 16:17:41 ----D---- C:\Program Files (x86)\Microsoft Office 2016-06-13 16:17:29 ----RHD---- C:\MSOCache 2016-06-13 16:13:55 ----D---- C:\ProgramData\NVIDIA 2016-06-13 16:13:31 ----A---- C:\Windows\SysWOW64\OpenCL.dll 2016-06-13 16:13:29 ----D---- C:\ProgramData\NVIDIA Corporation 2016-06-13 16:13:26 ----D---- C:\Program Files (x86)\NVIDIA Corporation 2016-06-13 16:12:39 ----A---- C:\Windows\SysWOW64\nvd3dum.dll 2016-06-13 16:08:13 ----A---- C:\Windows\SysWOW64\PerfStringBackup.INI 2016-06-13 16:07:56 ----D---- C:\Windows\Migration 2016-06-13 16:07:56 ----D---- C:\Program Files (x86)\Microsoft.NET 2016-06-13 15:06:33 ----D---- C:\Users\galyfa\AppData\Roaming\SumatraPDF 2016-06-13 15:06:30 ----D---- C:\Program Files (x86)\SumatraPDF 2016-06-13 15:04:33 ----D---- C:\Program Files (x86)\SoftChris 2016-06-13 15:01:21 ----D---- C:\Program Files (x86)\WinRAR 2016-06-13 14:58:28 ----D---- C:\9936a9358d9f8da54ac3 2016-06-13 14:55:25 ----D---- C:\Windows\SysWOW64\RTCOM 2016-06-13 14:55:16 ----A---- C:\Windows\SysWOW64\SRCOM.dll 2016-06-13 14:55:16 ----A---- C:\Windows\SysWOW64\SFCOM.dll 2016-06-13 14:55:13 ----HD---- C:\Program Files (x86)\InstallShield Installation Information 2016-06-13 14:55:13 ----D---- C:\Program Files (x86)\Realtek 2016-06-13 14:55:02 ----HD---- C:\Program Files (x86)\Temp 2016-06-13 14:55:02 ----A---- C:\Windows\RtlExUpd.dll 2016-06-13 14:46:53 ----D---- C:\Program Files (x86)\Google 2016-06-13 14:44:45 ----D---- C:\ProgramData\Canneverbe Limited 2016-06-13 14:44:42 ----D---- C:\Users\galyfa\AppData\Roaming\Canneverbe Limited 2016-06-13 14:44:41 ----D---- C:\Program Files (x86)\CDBurnerXP 2016-06-13 14:44:12 ----D---- C:\Users\galyfa\AppData\Roaming\PhotoFiltre 2016-06-13 14:44:11 ----D---- C:\Program Files (x86)\PhotoFiltre 2016-06-13 14:39:22 ----D---- C:\ProgramData\DriversCloud.com 2016-06-13 14:38:52 ----SHD---- C:\Windows\Installer 2016-06-13 14:32:55 ----D---- C:\Users\galyfa\AppData\Roaming\Mozilla 2016-06-13 14:32:53 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2016-06-13 12:01:38 ----D---- C:\Windows\Panther 2016-06-13 11:06:30 ----D---- C:\Users\galyfa\AppData\Roaming\Identities 2016-06-13 11:06:26 ----SD---- C:\Users\galyfa\AppData\Roaming\Microsoft 2016-06-13 11:06:26 ----D---- C:\Users\galyfa\AppData\Roaming\Media Center Programs 2016-06-13 11:06:17 ----SHD---- C:\Recovery 2016-06-13 11:06:17 ----SHD---- C:\ProgramData\Modèles 2016-06-13 11:06:17 ----SHD---- C:\ProgramData\Menu Démarrer 2016-06-13 11:06:17 ----SHD---- C:\ProgramData\Favoris 2016-06-13 11:06:17 ----SHD---- C:\ProgramData\Bureau 2016-06-13 11:06:11 ----D---- C:\Windows\SoftwareDistribution 2016-06-13 11:02:40 ----D---- C:\Windows\Prefetch 2016-06-13 11:02:31 ----SHD---- C:\System Volume Information 2016-06-13 11:02:31 ----ASH---- C:\hiberfil.sys ======List of files/folders modified in the last 1 month====== 2016-06-27 19:15:58 ----D---- C:\Windows\Temp 2016-06-27 19:15:54 ----RD---- C:\Program Files (x86) 2016-06-27 18:33:27 ----D---- C:\Windows\System32 2016-06-27 18:33:27 ----D---- C:\Windows\inf 2016-06-26 18:16:12 ----D---- C:\Windows\Tasks 2016-06-26 18:16:12 ----D---- C:\Windows\SysWOW64 2016-06-24 16:18:41 ----HD---- C:\$WINDOWS.~BT 2016-06-24 15:00:14 ----D---- C:\Windows\Logs 2016-06-24 07:55:47 ----D---- C:\Windows\AppCompat 2016-06-24 03:18:02 ----D---- C:\Windows 2016-06-24 03:13:07 ----D---- C:\Windows\Downloaded Program Files 2016-06-23 18:03:26 ----D---- C:\Windows\winsxs 2016-06-23 17:53:39 ----D---- C:\Windows\SysWOW64\fr-FR 2016-06-23 17:04:13 ----D---- C:\Windows\rescache 2016-06-23 16:41:50 ----D---- C:\Windows\Microsoft.NET 2016-06-23 16:09:36 ----D---- C:\Windows\SysWOW64\wbem 2016-06-23 16:09:35 ----D---- C:\Windows\PolicyDefinitions 2016-06-23 16:09:34 ----D---- C:\Windows\AppPatch 2016-06-23 16:09:33 ----D---- C:\Windows\SysWOW64\en-US 2016-06-23 16:09:32 ----D---- C:\Program Files (x86)\Internet Explorer 2016-06-23 16:00:32 ----D---- C:\Windows\debug 2016-06-23 15:49:02 ----RSD---- C:\Windows\assembly 2016-06-23 15:35:19 ----D---- C:\Windows\tracing 2016-06-23 15:35:19 ----D---- C:\Windows\ehome 2016-06-23 11:56:19 ----D---- C:\Windows\fr-FR 2016-06-23 11:56:14 ----D---- C:\Windows\SysWOW64\Setup 2016-06-23 11:56:14 ----D---- C:\Windows\SysWOW64\migration 2016-06-23 11:56:13 ----D---- C:\Windows\SysWOW64\drivers\fr-FR 2016-06-23 11:56:13 ----D---- C:\Windows\SysWOW64\Dism 2016-06-23 11:55:53 ----RSD---- C:\Windows\Fonts 2016-06-23 11:55:52 ----D---- C:\Program Files (x86)\Windows Photo Viewer 2016-06-23 11:55:52 ----D---- C:\Program Files (x86)\Windows Media Player 2016-06-23 11:55:52 ----D---- C:\Program Files (x86)\Windows Mail 2016-06-23 11:55:48 ----D---- C:\Program Files (x86)\Windows Defender 2016-06-23 11:55:48 ----D---- C:\Program Files (x86)\Common Files\System 2016-06-23 11:55:46 ----SD---- C:\ProgramData\Microsoft 2016-06-23 11:52:21 ----A---- C:\Windows\SysWOW64\msclmd.dll 2016-06-23 10:37:53 ----RD---- C:\Program Files 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\zh-TW 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\zh-HK 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\zh-CN 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\tr-TR 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\sv-SE 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\ru-RU 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\pt-PT 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\pt-BR 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\pl-PL 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\nl-NL 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\nb-NO 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\ko-KR 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\ja-JP 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\it-IT 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\hu-HU 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\fi-FI 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\es-ES 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\el-GR 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\de-DE 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\da-DK 2016-06-21 12:14:58 ----D---- C:\Windows\SysWOW64\cs-CZ 2016-06-20 18:26:03 ----HD---- C:\ProgramData 2016-06-15 17:11:46 ----N---- C:\Windows\win.ini 2016-06-15 17:06:20 ----D---- C:\Windows\twain_32 2016-06-15 16:59:17 ----D---- C:\Program Files (x86)\Common Files 2016-06-14 00:34:54 ----D---- C:\Program Files (x86)\Common Files\microsoft shared 2016-06-13 16:19:15 ----D---- C:\Program Files (x86)\MSBuild 2016-06-13 16:19:13 ----D---- C:\Windows\ShellNew 2016-06-13 16:13:38 ----D---- C:\Windows\Help 2016-06-13 11:06:29 ----SHD---- C:\$Recycle.Bin 2016-06-13 11:06:23 ----RD---- C:\Users 2016-06-13 11:02:39 ----D---- C:\Windows\CSC ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [] R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [] R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [] R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [] R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [] R2 avnetflt;avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [] R2 speedfan;speedfan; \??\C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664] R3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [] R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [] R3 e1kexpress;Intel(R) Network Connections Driver K; C:\Windows\system32\DRIVERS\e1k62x64.sys [] R3 GeneStor;Genesys Logic Storage Driver; C:\Windows\system32\DRIVERS\GeneStor.sys [] R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [] R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [] R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [] R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [] R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-06-03 28216] R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [] R3 RtkBtFilter;Realtek Bluetooth Filter Driver; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [] R3 TPM;Module de plateforme sécurisée (TPM); C:\Windows\system32\drivers\tpm.sys [] R3 VUSB3HUB;VIA USB 3 Root Hub Service; C:\Windows\system32\DRIVERS\ViaHub3.sys [] R3 xhcdrv;VIA USB eXtensible Host Controller Service; C:\Windows\system32\DRIVERS\xhcdrv.sys [] S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\Windows\system32\drivers\BthEnum.sys [] S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\drivers\bthpan.sys [] S3 BTHPORT;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [] S3 dmvsc;dmvsc; C:\Windows\system32\DRIVERS\dmvsc.sys [] S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [] S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [] S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [] S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [] S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [] S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [] S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [] S3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [] S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\drivers\usbscan.sys [] S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [] S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [] S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AntiVirSchedulerService;Avira Planificateur; C:\Program Files (x86)\Avira\Antivirus\sched.exe [2016-04-10 467016] R2 AntiVirService;Avira Protection temps réel; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [2016-04-10 467016] R2 Avira.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [2016-06-01 302680] R2 AvrcpService;AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [2013-05-07 35328] R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2014-01-06 79872] R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2016-03-25 21504] R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2016-03-25 21504] R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-06-03 1165368] R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2016-03-25 21504] R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2016-03-25 21504] R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-06-03 1881144] R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-06-03 2522680] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [] R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2016-03-25 21504] R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-05-22 294616] R2 RtkBleServ;RtkBleServ; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [2013-04-25 42496] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe [2016-06-03 426040] R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2016-03-25 21504] R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-06-03 3634232] S2 AntiVirMailService;Avira Protection e-mail; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [2016-04-10 970656] S2 AntiVirWebService;Avira Protection Web; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [2016-04-10 1435704] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112] S2 gupdate;Service Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-13 154440] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-26 270016] S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2016-03-25 21504] S3 gupdatem;Service Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-13 154440] S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe /V [] S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2015-07-02 356808] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-14 146888] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2016-03-25 21504] S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2016-03-25 21504] S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2016-03-25 21504] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [] S3 WiaRpc;@%SystemRoot%\system32\wiarpc.dll,-2; C:\Windows\system32\svchost.exe [2016-03-25 21504] S4 aspnet_state;Service d'état ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848] S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848] S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848] -----------------EOF-----------------