AVZ 4.46 http://z-oleg.com/secur/avz/
File name | PID | Description | Copyright | MD5 | Information
C:\Program Files (x86)\Acer\Care Center\ACCStd.exe | Script: Quarantine, Delete, Delete via BC, Terminate 9532 | ACCStd | (C)All rights reserved | B36FFC4A3571D97BAB46C4C79348A0DE | 4535.41 kb, rsAh,created: 20.01.2016 11:50:56,modified: 20.01.2016 11:50:56 | Command line: c:\program files (x86)\easeus\todo backup\bin\agent.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2940 | EaseUS Todo Backup Agent Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | F8F1E7CE66C872DBCC8C9B0F8E41365D | 38.69 kb, rsAh,created: 16.03.2017 08:08:13,modified: 06.12.2016 02:46:06 | Command line: "C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe" c:\program files (x86)\common files\adobe\adobegcclient\agsservice.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1980 | Adobe Genuine Software Integrity Service | Copyright 2014 Adobe Systems Incorporated. All rights reserved. | A32EA26C90A47B2BC93D7B0B94994B11 | 2175.11 kb, rsAh,created: 20.08.2015 18:04:56,modified: 27.02.2017 10:55:02 | Command line: "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe" c:\program files (x86)\kaspersky lab\kaspersky internet security 17.0.0\avp.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2308 | Kaspersky Anti-Virus | © 2016 AO Kaspersky Lab. All Rights Reserved. | 03B45C52179E8DAE51A0F685C30D06D6 | 235.88 kb, rsAh,created: 28.06.2016 01:54:28,modified: 28.06.2016 01:54:28 | Command line: c:\program files (x86)\kaspersky lab\kaspersky internet security 17.0.0\avpui.exe | Script: Quarantine, Delete, Delete via BC, Terminate 7660 | Kaspersky Anti-Virus | © 2016 AO Kaspersky Lab. All Rights Reserved. | E14F3C1C1833A0BB3B639D1BD5F55BF5 | 218.46 kb, rsAh,created: 29.03.2017 12:11:48,modified: 29.03.2017 12:11:48 | Command line: C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe | Script: Quarantine, Delete, Delete via BC, Terminate 1796 | Realtek Bluetooth AVRCP Service | Realtek All Rights Reserved | 4B2469B9858FF03AA83947A05BE60447 | 40.21 kb, rsAh,created: 05.10.2015 18:23:34,modified: 02.03.2015 22:26:38 | Command line: c:\users\utilis~1\appdata\local\temp\lt33ixbj.iwg\getsysteminfodllcache\avz\avz.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3700 | | | FF6D0AE888488259B661DCCA3F1DBF44 | 5508.45 kb, rsAh,created: 22.01.2016 06:59:26,modified: 01.03.2016 04:43:13 | Command line: "C:\Users\UTILIS~1\AppData\Local\Temp\lt33ixbj.iwg\GetSystemInfoDllCache\avz\avz.exe" Script="C:\Users\UTILIS~1\AppData\Local\Temp\lt33ixbj.iwg\GetSystemInfoDllCache\avz\asa.avz" HiddenMode="3" SpoolLog="C:\Users\UTILIS~1\AppData\Local\Temp\lt33ixbj.iwg\GetSystemInfo\avz.log" TempFolder="C:\Users\UTILIS~1\AppData\Local\Temp\lt33ixbj.iwg\GetSystemInfo\AvzTemp" c:\program files (x86)\acer\aop framework\backgroundagent.exe | Script: Quarantine, Delete, Delete via BC, Terminate 11120 | Background Agent | Copyright (C) 2014 | ED6F057311A3EBF137897DDD1F37249C | 64.21 kb, rsAh,created: 17.11.2015 12:11:46,modified: 17.11.2015 12:11:46 | Command line: "C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe" task C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2324 | Realtek Bluetooth BTDevManager Service Application | Realtek All Rights Reserved | 06E59719C1A85041CE668AF1F4ABE8D8 | 115.21 kb, rsAh,created: 05.10.2015 18:23:34,modified: 02.06.2015 13:25:48 | Command line: C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2144 | Realtek Bluetooth BTDevManager Service Application | Realtek All Rights Reserved | 06E59719C1A85041CE668AF1F4ABE8D8 | 115.21 kb, rsAh,created: 05.10.2015 18:23:34,modified: 02.06.2015 13:25:48 | Command line: C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe | Script: Quarantine, Delete, Delete via BC, Terminate 8244 | Realtek Bluetooth BTServer Application | Realtek All Rights Reserved | BCD340300881BF94AB1C23C4D1D0E82C | 223.71 kb, rsAh,created: 05.10.2015 18:23:34,modified: 02.06.2015 13:25:48 | Command line: C:\Program Files\CCleaner\CCleaner64.exe | Script: Quarantine, Delete, Delete via BC, Terminate 7784 | CCleaner | Copyright © 2005-2017 Piriform Ltd | B85C64056D37839D3E99D3F3CECA988C | 9543.21 kb, rsAh,created: 05.05.2017 13:08:22,modified: 05.05.2017 13:08:22 | Command line: C:\Windows\System32\DbxSvc.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3004 | Dropbox Service | Dropbox, Inc. | 85E71BD98A72996A00C71EB7B537A631 | error getting file info | Command line: c:\program files (x86)\dropbox\update\dropboxupdate.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6592 | Dropbox Update | Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.) | A1F58FFF448E4099297D6EE0641D4D0E | 139.79 kb, rsAh,created: 04.01.2017 18:20:41,modified: 04.01.2017 18:20:37 | Command line: "C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /c c:\program files (x86)\faststone capture\fscapture.exe | Script: Quarantine, Delete, Delete via BC, Terminate 9260 | | | 795A332E62D8113FDD7EFBC1DBF2FD48 | 1089.00 kb, rsAh,created: 23.02.2007 17:49:58,modified: 23.02.2007 17:49:58 | Command line: "C:\Program Files (x86)\FastStone Capture\FSCapture.exe" c:\users\utilisateur\appdata\local\temp\temp1_getsysteminfo6.1.zip\getsysteminfo6.1.exe | Script: Quarantine, Delete, Delete via BC, Terminate 10440 | Kaspersky Get System Info | © 2016 AO Kaspersky Lab. All Rights Reserved. | B1274ADF56907D8D1B85985D21576D2F | 10753.57 kb, rsAh,created: 01.03.2016 19:16:58,modified: 19.05.2017 06:10:05 | Command line: "C:\Users\Utilisateur\AppData\Local\Temp\Temp1_GetSystemInfo6.1.zip\GetSystemInfo6.1.exe" c:\program files (x86)\google\update\1.3.33.5\googlecrashhandler.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3792 | Google Crash Handler | Copyright 2007-2010 Google Inc. | 33E6E5822E22A5E1DEA523C06155FD07 | 282.08 kb, rsAh,created: 15.05.2017 14:27:58,modified: 15.05.2017 14:27:31 | Command line: "C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe" C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3536 | Google Crash Handler | Copyright 2007-2010 Google Inc. | 27BEAF3F308ED2276F3863C2F2597556 | 358.08 kb, rsAh,created: 15.05.2017 14:27:58,modified: 15.05.2017 14:27:31 | Command line: c:\users\utilisateur\appdata\local\temp\sa68\gsi.exe | Script: Quarantine, Delete, Delete via BC, Terminate 9484 | Kaspersky Get System Info | 2016 AO Kaspersky Lab. All Rights Reserved. | A729EFCD89A0C3F802A00397163C0903 | 3333.58 kb, rsAh,created: 19.05.2017 06:10:10,modified: 01.03.2016 04:40:56 | Command line: C:\Users\Utilisateur\AppData\Local\Temp\sa68\GSI.exe c:\program files (x86)\kaspersky lab\kaspersky secure connection 1.0\ksde.exe | Script: Quarantine, Delete, Delete via BC, Terminate 3304 | Kaspersky Secure Connection | © 2016 AO Kaspersky Lab. All Rights Reserved. | EFF5EA6088DB81C6EF6EDCDA5EE79909 | 235.88 kb, rsAh,created: 28.06.2016 01:54:28,modified: 28.06.2016 01:54:28 | Command line: "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe" -r c:\program files (x86)\kaspersky lab\kaspersky secure connection 1.0\ksdeui.exe | Script: Quarantine, Delete, Delete via BC, Terminate 5288 | Kaspersky Secure Connection | © 2016 AO Kaspersky Lab. All Rights Reserved. | BDB3D8437752EBCD11DB04082B1FE8A5 | 468.96 kb, rsAh,created: 29.03.2017 12:11:48,modified: 29.03.2017 12:11:48 | Command line: "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe" -hidden c:\program files (x86)\pop peeper\poppeeper.exe | Script: Quarantine, Delete, Delete via BC, Terminate 4388 | POP Peeper Email Notifier | Copyright (C) 2001-2016 Esumsoft | 710D0C12003832B3FBC16787794514A1 | 2625.70 kb, rsAh,created: 23.10.2016 17:05:38,modified: 23.10.2016 17:05:38 | Command line: "C:\Program Files (x86)\POP Peeper\POPPeeper.exe" -min c:\program files (x86)\easeus\todo backup\bin\todobackupservice.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6044 | | | 8B8767C8344C7CB86582B848978ED336 | 253.19 kb, rsAh,created: 16.03.2017 08:08:16,modified: 06.12.2016 02:46:30 | Command line: "C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe" c:\program files (x86)\western digital\wd security\wddriveautounlock.exe | Script: Quarantine, Delete, Delete via BC, Terminate 8424 | WD Drive Auto Unlock | © 2015 Western Digital Technologies, Inc. All rights reserved. | DE9A76F5ECAA1EDC2D4D2836E8148475 | 1719.84 kb, RsAh,created: 07.12.2015 17:04:22,modified: 07.12.2015 17:04:22 | Command line: "C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe" c:\program files (x86)\western digital\wd drive manager\wddriveservice.exe | Script: Quarantine, Delete, Delete via BC, Terminate 2392 | WD Drive Service | © 2016 Western Digital Technologies, Inc. All rights reserved. | E84CF717E854D02DF30BD1BCC612BEAC | 300.87 kb, RsAh,created: 14.01.2016 11:27:44,modified: 14.01.2016 11:27:44 | Command line: "C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe" c:\program files (x86)\western digital\wd utilities\wddriveutilitieshelper.exe | Script: Quarantine, Delete, Delete via BC, Terminate 6872 | WD Drive Utilities Helper | © 2016 Western Digital Technologies, Inc. All rights reserved. | E93FDA336764BBE2CB05C924AEF834B4 | 1846.35 kb, RsAh,created: 14.01.2016 11:26:20,modified: 14.01.2016 11:26:20 | Command line: "C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe" Detected:135, recognized as trusted 111
| |
Module name | Handle | Description | Copyright | AVZ0311 | Used by processes
C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll | Script: Quarantine, Delete, Delete via BC 1750859776 | Dropbox Shell Extension | (c) Dropbox, Inc. All rights reserved | MD5=6C35442D217BCEAF167D15C352A502F2 | 225.32 kb, rsAh, created: 17.05.2017 16:36:18, modified: 16.05.2017 16:50:18 9260
| C:\Program Files (x86)\Dropbox\Update\1.3.59.1\goopdate.dll | Script: Quarantine, Delete, Delete via BC 1885601792 | Dropbox Update | Copyright: Dropbox, Inc. 2015 (Omaha Copyright Google Inc.) | MD5=815713B523B84B3BDFBEEDE424E8DAE2 | 1108.79 kb, rsAh, created: 04.01.2017 18:26:34, modified: 04.01.2017 18:26:33 6592
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll | Script: Quarantine, Delete, Delete via BC 1889271808 | | | MD5=5A61F0A42BC1FD6391A62C9C47E5FA6B | 26.19 kb, rsAh, created: 16.03.2017 08:08:13, modified: 06.12.2016 02:43:04 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll | Script: Quarantine, Delete, Delete via BC 1914568704 | | | MD5=C70EA1787D5A56DD98837975C63F370C | 120.69 kb, rsAh, created: 16.03.2017 08:08:13, modified: 01.03.2017 17:44:32 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll | Script: Quarantine, Delete, Delete via BC 1869217792 | | | MD5=B707A0BF947E307B403CE039E364B2E7 | 20.19 kb, rsAh, created: 16.03.2017 08:08:13, modified: 06.12.2016 02:43:06 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll | Script: Quarantine, Delete, Delete via BC 1868955648 | | | MD5=82240A724F483E8D279790AAAD5A2F9A | 21.19 kb, rsAh, created: 16.03.2017 08:08:13, modified: 06.12.2016 02:43:08 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll | Script: Quarantine, Delete, Delete via BC 1897136128 | | | MD5=17101299B8816922C44259F76E08236B | 404.69 kb, rsAh, created: 16.03.2017 08:08:13, modified: 06.12.2016 02:43:08 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll | Script: Quarantine, Delete, Delete via BC 1921843200 | | | MD5=DE9E9C1C52C48F1FE997514F4C9DA720 | 39.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:12 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CallbackOperator.dll | Script: Quarantine, Delete, Delete via BC 1907294208 | | | MD5=DD7FC791735A9F71F170B00277B36A8C | 25.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:16 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll | Script: Quarantine, Delete, Delete via BC 1921646592 | | | MD5=CA8BF9CA618648AD176B0EB184B75D48 | 72.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:16 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll | Script: Quarantine, Delete, Delete via BC 1869283328 | | | MD5=D90E17F01A2B16AD435BC22FB06B0A09 | 77.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:18 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt.dll | Script: Quarantine, Delete, Delete via BC 1915617280 | | | MD5=2B727D4DD4F2AC7A617E93361DB73384 | 178.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:20 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt_RTTO.dll | Script: Quarantine, Delete, Delete via BC 1915420672 | | | MD5=2CF5BBD62FBE015917A65BA11D667D37 | 159.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:20 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCNetTokenProxy.dll | Script: Quarantine, Delete, Delete via BC 1914699776 | | | MD5=4B3BD1C0A80917CB2ECDAF03B6AB8ADC | 17.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:20 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCPipeCenter.dll | Script: Quarantine, Delete, Delete via BC 1921122304 | | | MD5=EAD66065EA1A87FE9CD52C2D63B644E9 | 184.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:22 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmcTbProxy.dll | Script: Quarantine, Delete, Delete via BC 1921777664 | | | MD5=386E7A4513D56C3368CEDEFBC9288434 | 24.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:22 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmdManager.dll | Script: Quarantine, Delete, Delete via BC 1927413760 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=BE661FCA55FA9231885CB79AA6287992 | 537.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 07.12.2016 09:02:44 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll | Script: Quarantine, Delete, Delete via BC 1928265728 | | | MD5=3470D1043F9EF41B83DCB438C808FEDC | 79.04 kb, rsAh, created: 16.03.2017 08:08:14, modified: 01.03.2016 14:00:50 2940, 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Common.dll | Script: Quarantine, Delete, Delete via BC 1835663360 | | | MD5=99766005A2A3A4532B833ABD21EF4F03 | 89.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:24 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll | Script: Quarantine, Delete, Delete via BC 1926365184 | | | MD5=BAA2535AF565085244D32880FC2CAF14 | 19.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:24 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ControlPxe.dll | Script: Quarantine, Delete, Delete via BC 1869414400 | EaseUS Todo Backup | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=95BA82946556EF6BB75753FF66DA7FA1 | 21.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:26 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll | Script: Quarantine, Delete, Delete via BC 1890582528 | | | MD5=CB62A144198D0E83A1C8B9BB4AB617BE | 22.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:26 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Device.dll | Script: Quarantine, Delete, Delete via BC 1838809088 | | | MD5=F6E4BC8062329C676D765A5202FC59F7 | 138.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:30 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceAdapter.dll | Script: Quarantine, Delete, Delete via BC 1915813888 | | | MD5=6D6E4896E7E02BD2D38F9CD430CDA701 | 28.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:30 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceManager.dll | Script: Quarantine, Delete, Delete via BC 1839136768 | | | MD5=1C332EC9D112B340CB42D71E7A6D65E1 | 359.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:32 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll | Script: Quarantine, Delete, Delete via BC 1909522432 | | | MD5=C8F17B6ED1DCEE438AEDBE3C63A68CC8 | 32.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:34 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll | Script: Quarantine, Delete, Delete via BC 1908211712 | | | MD5=C018781CE5752C7D317460FEB3D889FB | 289.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:34 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\EMail.dll | Script: Quarantine, Delete, Delete via BC 1891893248 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=56B23B8FACD68825F7B14EB3188A3942 | 676.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:38 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll | Script: Quarantine, Delete, Delete via BC 1897594880 | | | MD5=501A6F0EE452C72A44EEBD0C046DAEDA | 191.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:40 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll | Script: Quarantine, Delete, Delete via BC 1869479936 | | | MD5=17809B64C66F20DCE54C2ED7F6DD28C5 | 216.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:40 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll | Script: Quarantine, Delete, Delete via BC 1896742912 | | | MD5=26B5A8D1D1C6982CA8FE5E540AE2119D | 158.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:42 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll | Script: Quarantine, Delete, Delete via BC 1889992704 | | | MD5=16EF42A912DE2AAE967DC14935B46EE6 | 33.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:44 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\EuPipe.dll | Script: Quarantine, Delete, Delete via BC 1919614976 | EaseUS Todo Backup Pipe Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=19C7E57CD5B6EB97942693BD50BBABEE | 44.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:48 2940, 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll | Script: Quarantine, Delete, Delete via BC 1905655808 | EaseUS Todo Backup ExImage Dynamic Link Library | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved | MD5=559552AB30BAB1440E5DBBC3B2D8E3DD | 720.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:54 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FATFileSystemAnalyser.dll | Script: Quarantine, Delete, Delete via BC 1835794432 | | | MD5=30920CB77313D99B8E1CECF959EB7A05 | 62.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:58 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll | Script: Quarantine, Delete, Delete via BC 1907687424 | | | MD5=EFBC3AEA9D3E417A45096FC6AA58A9C4 | 76.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:43:58 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileStorage.dll | Script: Quarantine, Delete, Delete via BC 1893924864 | | | MD5=6D6A13B2D4563C5F1D7A4D029C1954BD | 111.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:02 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileSystemAnalyser.dll | Script: Quarantine, Delete, Delete via BC 1835925504 | | | MD5=3E118457A57A418A6EB58D97A8700687 | 51.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:02 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FlBackup.dll | Script: Quarantine, Delete, Delete via BC 1868431360 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=3FED70AE9F61F8B50BDD4B8355726025 | 214.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:04 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FlBackupSize.dll | Script: Quarantine, Delete, Delete via BC 1909719040 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=5DFF62E327DDE5F72CCD963A814E78E6 | 100.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:04 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FlImgFile.dll | Script: Quarantine, Delete, Delete via BC 1893335040 | EaseUS Todo Backup FLImgFile Dynamic Link Library | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=CB5E7753CF43E5FF4B39582F31407C96 | 547.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:04 2940, 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FlSearchImg.dll | Script: Quarantine, Delete, Delete via BC 1911357440 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=9A942D4CE8C72B7EA42D7DADDEA5160C | 45.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:06 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Ftp.dll | Script: Quarantine, Delete, Delete via BC 1890910208 | EaseUS Todo Backup Application | Copyright (C) 2004-2010 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=7BFFA76A1D7490F433D6E4C5784EE6C7 | 157.69 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:10 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\FTPTest.dll | Script: Quarantine, Delete, Delete via BC 1891106816 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=D387BED7B9AC22E6AFCB0EE070FB6C4D | 19.19 kb, rsAh, created: 16.03.2017 08:08:14, modified: 06.12.2016 02:44:10 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll | Script: Quarantine, Delete, Delete via BC 1893138432 | | | MD5=3512A9711EAE4DCA677205634868DB58 | 26.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:10 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImageFileInfo.dll | Script: Quarantine, Delete, Delete via BC 1894121472 | EaseUS Todo Backup ImageFileInfo Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=FCD28E444B87DD0DE1654148A4DF5680 | 78.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:12 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll | Script: Quarantine, Delete, Delete via BC 1908539392 | | | MD5=9974E0AF619E0C87EC1B9B053494B52C | 156.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:14 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFileHlp.dll | Script: Quarantine, Delete, Delete via BC 1909260288 | EaseUS Todo Backup ImgFileHlp Dynamic Link Library | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=EEE20D20F0890CE33AE215D468E5C677 | 244.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:16 2940, 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll | Script: Quarantine, Delete, Delete via BC 1909587968 | | | MD5=CB9C1F5ADB3C358E8294DFD5CAA1F82A | 83.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:20 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\MatchStr.dll | Script: Quarantine, Delete, Delete via BC 1911422976 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=3B7F62332512D9BB1DAA5AB7AA86FDB7 | 135.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:20 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll | Script: Quarantine, Delete, Delete via BC 1908736000 | | | MD5=B906F4012CFD2DBCBEDFD022CBAC3E39 | 68.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:22 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll | Script: Quarantine, Delete, Delete via BC 1870266368 | | | MD5=04DB9EB17AD4928CAA56235B6FDB06D0 | 73.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:24 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSFileSystemAnalyser.dll | Script: Quarantine, Delete, Delete via BC 1835532288 | | | MD5=ED10C6E1E665B150CF63887696AA7DBA | 57.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:26 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll | Script: Quarantine, Delete, Delete via BC 1906966528 | | | MD5=B33E5E37DB2CB70793A8C8BEF8E3FC03 | 205.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:28 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSUtil.dll | Script: Quarantine, Delete, Delete via BC 1907359744 | | | MD5=AE5B64171F8D7CC4378B9CEF983608B9 | 298.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 09.12.2016 09:09:26 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Options.dll | Script: Quarantine, Delete, Delete via BC 1923416064 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=5C35482676512DB2F0D960F7906BDD70 | 28.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:30 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Partition.dll | Script: Quarantine, Delete, Delete via BC 1835991040 | | | MD5=2E0593816E21403F4781DB68C2FF3228 | 145.69 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:30 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\PolicyManage.dll | Script: Quarantine, Delete, Delete via BC 1889468416 | PolicyManage Dynamic Link Library | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=5B0D31C5056C327664BFEFAC1E84196E | 93.19 kb, rsAh, created: 16.03.2017 08:08:15, modified: 06.12.2016 02:44:34 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll | Script: Quarantine, Delete, Delete via BC 1889337344 | | | MD5=2DD409E4BF6FF6456E3DD0CB6E666ABB | 64.69 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:36 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll | Script: Quarantine, Delete, Delete via BC 1868693504 | | | MD5=DE2EB056D13BFEA79BC3D06EBC9EC253 | 205.19 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:38 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll | Script: Quarantine, Delete, Delete via BC 1868365824 | | | MD5=EEFFE91103EF9DD2B4585C01409E1F73 | 44.19 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:42 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll | Script: Quarantine, Delete, Delete via BC 268435456 | | | MD5=AA2BD345190CE5CB14CF27E16E27261B | 88.69 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:46 2940, 6044
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBInfo.dll | Script: Quarantine, Delete, Delete via BC 1914765312 | | | MD5=23079016993DD6C431D8E645B0BC7B82 | 54.69 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:48 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll | Script: Quarantine, Delete, Delete via BC 1889730560 | | | MD5=14CA2374A5E5E1B6A62D12A34ADEA704 | 53.19 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:48 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Thread.dll | Script: Quarantine, Delete, Delete via BC 1839005696 | EaseUS Todo Backup Thread Dynamic Link Library | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=03E71479CC5BD78115ED0F8A96644F3F | 121.19 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:50 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\Transmit.dll | Script: Quarantine, Delete, Delete via BC 1868234752 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=1E653B918BCE357FD8D3DEC5286BA4A7 | 110.69 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:50 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll | Script: Quarantine, Delete, Delete via BC 1916403712 | | | MD5=4320090C6600B55D3BCACEC32983BC88 | 138.69 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:54 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll | Script: Quarantine, Delete, Delete via BC 1869021184 | | | MD5=A834BF2A6E25911A5434D73E11927BFE | 135.19 kb, rsAh, created: 16.03.2017 08:08:16, modified: 06.12.2016 02:44:54 2940
| C:\Program Files (x86)\EaseUS\Todo Backup\bin\XmlWrapper.dll | Script: Quarantine, Delete, Delete via BC 1927217152 | EaseUS Todo Backup Application | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved. | MD5=05FAD84FB9C735AD919BAB6A96A27E66 | 43.69 kb, rsAh, created: 16.03.2017 08:08:17, modified: 06.12.2016 02:44:58 2940
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ac_facade.dll | Script: Quarantine, Delete, Delete via BC 1691746304 | Application Control Product Facade | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=54D244F8A2EBCC8CDDA565BA99555EF8 | 157.95 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ac_meta.dll | Script: Quarantine, Delete, Delete via BC 1898512384 | Application Control Meta Information | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=BBE446BAB5CCD555A75A9D925AD7B7F8 | 267.95 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\acassembler.dll | Script: Quarantine, Delete, Delete via BC 1867776000 | Application Control Assembler | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=5A92260C913CAFD1E0F1494EC7BA8E4D | 431.45 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ahids.ppl | Script: Quarantine, Delete, Delete via BC 1884880896 | ids task | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=752D8A748D03FC7BB4A6AE71EEC2E2A0 | 101.45 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\am_facade.dll | Script: Quarantine, Delete, Delete via BC 1859452928 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=5303FA8BF338A30B76999F9D2E6AC4F4 | 382.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\am_patch_management.dll | Script: Quarantine, Delete, Delete via BC 1788542976 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=02F57688FBDA667DF92A749A3F7FF28E | 267.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\antispam.ppl | Script: Quarantine, Delete, Delete via BC 1785659392 | AntiSpam mail fiter | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=43E676EA933BD814995F1754E7463630 | 587.45 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\app_core_legacy.dll | Script: Quarantine, Delete, Delete via BC 1899429888 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=2E0A86BA6C2FEF58A04446D0E8805F92 | 899.35 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\application_categorizer.dll | Script: Quarantine, Delete, Delete via BC 1853947904 | Application Control Application Categorizer | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=43E7F46E3CB0C5C1ABD9EB1AB7ED218C | 164.52 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\application_investigator.dll | Script: Quarantine, Delete, Delete via BC 1841430528 | Application Control Application Investigator | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=3E545BC58B98D99625B9DA54F8287A67 | 555.45 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpmain.dll | Script: Quarantine, Delete, Delete via BC 1924464640 | Kaspersky Anti-Virus | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=20F94B39C6FDDDE805E3D42DD1F217D3 | 841.31 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpservice.dll | Script: Quarantine, Delete, Delete via BC 1927282688 | Kaspersky Anti-Virus Service library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=F0546AC68BA65F3C73F319C256CD5C72 | 83.36 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpuimain.dll | Script: Quarantine, Delete, Delete via BC 1808465920 | Kaspersky Anti-Virus | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=096856C40CB4B7A8C218DCEEA83E789B | 2719.00 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avs_eka.dll | Script: Quarantine, Delete, Delete via BC 1864630272 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=8726CA220E8C19C00C642E75F44C04F3 | 1106.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avstream_monitor.dll | Script: Quarantine, Delete, Delete via BC 1850408960 | Audio Video Stream Monitor | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=A7656A54FF1AF47FD1718B7372A61BAD | 83.95 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\backup_facade_metainfo.dll | Script: Quarantine, Delete, Delete via BC 1898381312 | Backup facade metainfo | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=74FE11E3A943677DACA5D810F148D282 | 107.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\bi_facade.dll | Script: Quarantine, Delete, Delete via BC 1846214656 | Browser Integration PDK facade | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=69D3BEF59176C44C43BE51405D375190 | 1088.13 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\bi_meta.dll | Script: Quarantine, Delete, Delete via BC 1891500032 | Browser Integration PDK meta | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=EAC90F7F824172C26EF79A3B4C21A125 | 89.45 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\bl.ppl | Script: Quarantine, Delete, Delete via BC 1870987264 | Product Business Logic | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=44F84CD974127B5CD626E59F604BFF1B | 7941.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 15.05.2017 17:12:45 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\browser_integration.dll | Script: Quarantine, Delete, Delete via BC 1777598464 | Browser Integration | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=15D85D9C2560D7B456A9B51BA619B807 | 163.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\cbi.dll | Script: Quarantine, Delete, Delete via BC 1865809920 | KAV CBI DLL | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=2771D4ABA7BCEE690EAA4BD04698E8AF | 43.21 kb, rsAh, created: 29.03.2017 12:13:46, modified: 29.03.2017 12:13:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\cf_dnt.dll | Script: Quarantine, Delete, Delete via BC 1884487680 | CF dnt component | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=A8538FCC9B5571475410E16EB12084D3 | 384.45 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\cf_engines.dll | Script: Quarantine, Delete, Delete via BC 1838284800 | Content Filtering Engines | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=EF5D263145407BF2E5A148F3B048E3B4 | 487.35 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\cf_engines_meta.dll | Script: Quarantine, Delete, Delete via BC 1893203968 | Content Filtering Engines Meta | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=8FAAB9F278F371557648866C36BE61CA | 71.95 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\cf_facade.dll | Script: Quarantine, Delete, Delete via BC 1843593216 | Content filtering facade component | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B34502122C342CA5B79C5D31AEC743E0 | 2390.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ckahcomm.dll | Script: Quarantine, Delete, Delete via BC 1890123776 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=5488BFB3E04C21F832A8BF5362A91286 | 54.52 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ckahrule.dll | Script: Quarantine, Delete, Delete via BC 1890058240 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=2931917D54A35A8F7BFC6B222E7122B7 | 67.02 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ckahum.dll | Script: Quarantine, Delete, Delete via BC 1890254848 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=49BC261B033C99386B8B75802E22A3F4 | 255.63 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\content_filtering_meta.dll | Script: Quarantine, Delete, Delete via BC 1898840064 | Kaspersky content filtering pdk meta | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=7A2D25FBC9D615898BAA56897088AE1B | 418.95 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\crpthlpr.ppl | Script: Quarantine, Delete, Delete via BC 1796014080 | CryptoHelper | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=4CA5E2F905D30F523106394AD84C3D3D | 113.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\crypto_provider_meta.dll | Script: Quarantine, Delete, Delete via BC 1896939520 | Crypto Provider Metadata | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=F7DEF5DEF30E66CF4CFF64BB4E1AEA6D | 167.92 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\crypto_ssl.dll | Script: Quarantine, Delete, Delete via BC 1862926336 | OpenSSL Shared Library | Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved. | MD5=CB8C2AA16B277AD0B932D65A311EFCB3 | 1604.98 kb, rsAh, created: 15.05.2017 17:10:53, modified: 11.05.2017 08:09:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\dblite.dll | Script: Quarantine, Delete, Delete via BC 1914830848 | dblite | Copyright (C) 2010 | MD5=57579FB647D45F6287D2C78BF3CE7A23 | 544.45 kb, rsAh, created: 28.06.2016 01:50:04, modified: 28.06.2016 01:50:04 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\dmap.ppl | Script: Quarantine, Delete, Delete via BC 1847328768 | Direct Mapper plugin | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D5025FFAB1F1F88836D30FCD5E9E9DEC | 25.95 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\dtreg.ppl | Script: Quarantine, Delete, Delete via BC 1886781440 | DTREG | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=797B68FBF17FAC2EE57C157232354ACA | 71.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\DumpWriter.dll | Script: Quarantine, Delete, Delete via BC 1921908736 | Kaspersky Dump Writer DLL | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=45A916A97A898D9BA9F5F30658CB33EF | 304.95 kb, rsAh, created: 28.06.2016 01:48:02, modified: 28.06.2016 01:48:02 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ekasyswatch.dll | Script: Quarantine, Delete, Delete via BC 1786314752 | System Watcher EKA Task | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D5B2B308267C645863204F286209D6EE | 117.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FileCategorizer.dll | Script: Quarantine, Delete, Delete via BC 1853620224 | File Categorizer | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=824EE1361CC2D6706A23617D1A988E97 | 305.45 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\fsdrvplg.ppl | Script: Quarantine, Delete, Delete via BC 1921384448 | Plugin for FSDrv | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=CB843952E1FC6965D608CDBC06BCB142 | 39.95 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\fssync.dll | Script: Quarantine, Delete, Delete via BC 1916207104 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=BE34149FB013FCA19318A8FEB67FF5E8 | 143.95 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\hashmd5.ppl | Script: Quarantine, Delete, Delete via BC 1805910016 | HASHMD5 | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=F3A8A5B3CC9B2A6ED0B1F12A64C05398 | 26.95 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\hips.ppl | Script: Quarantine, Delete, Delete via BC 1847394304 | Application Control HIPS | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=3CC083257CCBAC3A5DA661E2DAFE020A | 1093.64 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\icudt40.dll | Script: Quarantine, Delete, Delete via BC 256311296 | ICU Data DLL | Copyright (C) 2008, International Business Machines Corporation and others. All Rights Reserved. | MD5=B94A753E5F2ED54DD34DDC76F42EA532 | 2899.52 kb, rsAh, created: 28.06.2016 01:50:52, modified: 28.06.2016 01:50:52 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\icuin40.dll | Script: Quarantine, Delete, Delete via BC 1836187648 | IBM ICU I18N DLL | Copyright (C) 2008, International Business Machines Corporation and others. All Rights Reserved. | MD5=F2D90F823A91D4E4BC2C07A6AA6E1E77 | 1048.02 kb, rsAh, created: 28.06.2016 01:50:48, modified: 28.06.2016 01:50:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\icuio40.dll | Script: Quarantine, Delete, Delete via BC 1837301760 | IBM ICU I/O DLL | Copyright (C) 2008, International Business Machines Corporation and others. All Rights Reserved. | MD5=82B77E33D5173E97D923CDCBC439FF28 | 50.52 kb, rsAh, created: 28.06.2016 01:50:46, modified: 28.06.2016 01:50:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\icuuc40.dll | Script: Quarantine, Delete, Delete via BC 1842610176 | IBM ICU Common DLL | Copyright (C) 2008, International Business Machines Corporation and others. All Rights Reserved. | MD5=88361D785CAC3BAAE192703E3754D03A | 947.02 kb, rsAh, created: 28.06.2016 01:50:42, modified: 28.06.2016 01:50:42 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\installation_assistant.dll | Script: Quarantine, Delete, Delete via BC 1766719488 | Installation assistant | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=1505AB59EE13F539A01AFD0A5100E8BB | 259.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\instrumental_meta.DLL | Script: Quarantine, Delete, Delete via BC 1648427008 | Instrumental Meta Library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=90084FC1F40D78F7E6CCE6FE87D1C084 | 105.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\instrumental_services.dll | Script: Quarantine, Delete, Delete via BC 1916600320 | Instrumental services | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=24337596076711FA682D9B09DB85863F | 2850.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\integrity_control.dll | Script: Quarantine, Delete, Delete via BC 1811873792 | Application Integrity Control | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=148D6F98E9E1EAF841EDFB254F33E651 | 99.45 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\KasperskyLab.Kis.UI.Loader.dll | Script: Quarantine, Delete, Delete via BC 1780350976 | Loader | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=8EFD22FBCF5EEFAE0757E8A07D0B0EF0 | 577.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\KasperskyLab.Platform.NativeInterop.dll | Script: Quarantine, Delete, Delete via BC 1668939776 | Native interop assembly | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=8D6A04C65C3D6B2C2435985A06E46549 | 6523.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\kl_service.dll | Script: Quarantine, Delete, Delete via BC 1806958592 | Component service provider | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D4FF6AE1C7FED7E6B7B14B8E309BF4F9 | 667.95 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\kpcengine.2.3.dll | Script: Quarantine, Delete, Delete via BC 1837367296 | | | MD5=91603B1DCBFA4F442B53C87300E13AB4 | 844.95 kb, rsAh, created: 28.06.2016 00:19:46, modified: 28.06.2016 00:19:46 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ksn_facade.dll | Script: Quarantine, Delete, Delete via BC 1855193088 | Facade for KSN PDK | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=0A8A67B428B54F09FCFE2B2B57E4CA17 | 1347.46 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\licensing_product_facade.dll | Script: Quarantine, Delete, Delete via BC 1794703360 | Licensing PDK facade | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=0DA78554A450D3F26C66612C83BD7B1C | 1282.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\localization_manager.dll | Script: Quarantine, Delete, Delete via BC 1858863104 | Localization Manager | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=503E441C06541ADEEE3F77A575EB6E72 | 529.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\msoe.ppl | Script: Quarantine, Delete, Delete via BC 1851457536 | MSOE | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B8D35127B16496A566BD033E480FFFCD | 108.52 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ndetect.ppl | Script: Quarantine, Delete, Delete via BC 1884094464 | Nertwork Detection | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=F6F5B32D0808D7B7DC30D6CE30FBB0E2 | 57.46 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\netwatch.ppl | Script: Quarantine, Delete, Delete via BC 1806761984 | Network Watcher | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=1531CABD322FD581495998750481A396 | 160.95 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\nfio.ppl | Script: Quarantine, Delete, Delete via BC 1921449984 | NFIO | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B06F090CB632925BB2ED424C27DF1594 | 149.46 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\oas.ppl | Script: Quarantine, Delete, Delete via BC 1850605568 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=40BF419027268A538AF7CEFF4108EFAF | 346.45 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\params.ppl | Script: Quarantine, Delete, Delete via BC 1904214016 | Structure Serializer | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=93860B9EB93BE36D5F1931F956A40A23 | 1391.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\plugins_facade.dll | Script: Quarantine, Delete, Delete via BC 1849491456 | Kaspersky Anti-Virus Plugins PDK facade | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=EA6FA3FEE0753E5578DA45BD1DBE3B31 | 876.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\plugins_meta.dll | Script: Quarantine, Delete, Delete via BC 1891631104 | Kaspersky plugins pdk meta | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D78F94AC95BB8C877452C670E7134A6B | 216.45 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\prcore.dll | Script: Quarantine, Delete, Delete via BC 1907818496 | Prague Core | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=245FEF3E4016EF7E18F82CF0329DC540 | 329.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\processmonitor.dll | Script: Quarantine, Delete, Delete via BC 1854144512 | Process Monitor | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=C411DE999F0B1BFC549E31B57558197E | 617.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\product_info.dll | Script: Quarantine, Delete, Delete via BC 1928003584 | Kaspersky Product Info library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=41EF67375937A8FD7793C0314E320A9D | 202.62 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\product_metainfo.dll | Script: Quarantine, Delete, Delete via BC 1894252544 | Product Metainformation | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=6541324477510AED23EC2B7E8FB03D77 | 2368.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\propmap.ppl | Script: Quarantine, Delete, Delete via BC 1889599488 | PROPMAP | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D37DDC1C27C0EEC0E9E500D7008E02D9 | 86.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\prremote.DLL | Script: Quarantine, Delete, Delete via BC 1908867072 | PR_REMOTE | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=8AEC2240F4FAA92CA12F2DCC8ABCD8B2 | 348.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\pxstub.ppl | Script: Quarantine, Delete, Delete via BC 1919549440 | Proxy Stubs | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=EC17C566F088A9C44C4AA9051C482004 | 42.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660, 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\qb.ppl | Script: Quarantine, Delete, Delete via BC 1858797568 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=9744253F3D1544B76A83AB0442CA46F0 | 64.45 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\regmap.ppl | Script: Quarantine, Delete, Delete via BC 1870725120 | REGISTRY_MAPPER | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=56A379C81E560A3936B3DCAF7252B339 | 28.02 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\remote_eka_prague_loader.dll | Script: Quarantine, Delete, Delete via BC 1936785408 | Helper Library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=78999CBA9AB96123EF27D16F70056794 | 199.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\report.ppl | Script: Quarantine, Delete, Delete via BC 1854799872 | Report System | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=51C89FD297C916CF684741A9747D1954 | 38.02 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\reportdb.ppl | Script: Quarantine, Delete, Delete via BC 1854996480 | Report DB System | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=7C51463A22BB94C5DBFF7E88C538044C | 163.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\safe_banking.dll | Script: Quarantine, Delete, Delete via BC 1796276224 | Safe Banking | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=DC36B937A621DB86954C64167C126362 | 1548.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\sax_xml_parser.dll | Script: Quarantine, Delete, Delete via BC 1853423616 | SAX XML Parser | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=C5BA024BB9F4E372C15ECB5BA62F025D | 160.95 kb, rsAh, created: 28.06.2016 00:19:38, modified: 28.06.2016 00:19:38 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\schedule.ppl | Script: Quarantine, Delete, Delete via BC 1854930944 | Scheduler | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B8C44E0E00D241A8AD6B08C01099626D | 51.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\storage.dll | Script: Quarantine, Delete, Delete via BC 1870397440 | Storage library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=233DFE39942E7E68EE80E4FC9484AEED | 279.45 kb, rsAh, created: 28.06.2016 00:19:44, modified: 28.06.2016 00:19:44 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\sw_meta.dll | Script: Quarantine, Delete, Delete via BC 1892614144 | System Watcher Meta Information | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=7C516156D1E95B53692B2453ABBE1125 | 142.45 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\swpragueplugin.dll | Script: Quarantine, Delete, Delete via BC 1777926144 | System Watcher PRAGUE proxy | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=5074A8DEEA39FB50DD34F2F726A1468A | 86.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\system_interceptors.dll | Script: Quarantine, Delete, Delete via BC 1865940992 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=368AA6C24DDE39BFFDB780A56472B7F1 | 1732.13 kb, rsAh, created: 29.03.2017 12:11:48, modified: 15.05.2017 17:12:44 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\system_interceptors_meta.dll | Script: Quarantine, Delete, Delete via BC 1891368960 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=2C3EB829545FE1874D7D14111EA9DFD6 | 97.63 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\thpimpl.ppl | Script: Quarantine, Delete, Delete via BC 1889796096 | Thread Pool | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=CA5717481BAB3AA498601C9F661E6A8A | 46.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\threats_disinfection.dll | Script: Quarantine, Delete, Delete via BC 1859846144 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B11021EE599AC089125044E56BDCBF03 | 505.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\timer.ppl | Script: Quarantine, Delete, Delete via BC 1854865408 | Timer | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=A97242D28AE6A1E58BE47790A397DC92 | 28.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\tm.ppl | Script: Quarantine, Delete, Delete via BC 1888944128 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=0F23E15632C06AA7381226B79C30B43E | 292.91 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\traffic_processing.dll | Script: Quarantine, Delete, Delete via BC 1856634880 | Traffic Processing PDK | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=0091DBAA7A65E43EECC9B3729C021879 | 2079.13 kb, rsAh, created: 29.03.2017 12:11:48, modified: 15.05.2017 17:12:45 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\traffic_processing_external.dll | Script: Quarantine, Delete, Delete via BC 1839529984 | Traffic Processing External Protocollers DLL | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=9E5D2569250BC5BC12BDAF42E758CC4E | 521.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ucp_agent.dll | Script: Quarantine, Delete, Delete via BC 1790181376 | UCP agent service | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=28F64DA5C012D0A537A2D231F20E1C32 | 1635.35 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\uninstallation_assistant.dll | Script: Quarantine, Delete, Delete via BC 1786445824 | Uninstallation assistant | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=87108BAD1371E114DF46193D403E09E1 | 697.45 kb, rsAh, created: 28.06.2016 01:51:58, modified: 28.06.2016 01:51:58 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\updater_facade.dll | Script: Quarantine, Delete, Delete via BC 1791885312 | Updater library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=ED30055B216B7A2857A091A6FF41AB94 | 1808.95 kb, rsAh, created: 28.06.2016 00:19:44, modified: 28.06.2016 00:19:44 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\ushata.dll | Script: Quarantine, Delete, Delete via BC 1928790016 | Ushata module | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=348BBEA1D2BEC8545EA94D4843B21987 | 168.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\vkbd.dll | Script: Quarantine, Delete, Delete via BC 1563885568 | Virtual Keyboard | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=AC6A5C25CDE65CDF226B0067F32F6869 | 267.95 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\volenum.ppl | Script: Quarantine, Delete, Delete via BC 1850540032 | Volume enumeration | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=39B23843FDA32B66F4F65E223A3C163F | 34.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\wdiskio.ppl | Script: Quarantine, Delete, Delete via BC 1813053440 | WDiskIO | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=A041F36A6D4F24D3E1DAA1C20C26ECDF | 48.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\winevent_interceptor_controller.dll | Script: Quarantine, Delete, Delete via BC 1796145152 | WinEvent Interceptor Controller | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=C5C8CEB789FA5D81F149B69A158BA287 | 79.45 kb, rsAh, created: 28.06.2016 00:19:40, modified: 28.06.2016 00:19:40 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\winreg.ppl | Script: Quarantine, Delete, Delete via BC 1921318912 | WINREG | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=CD51FE428282DB6D916AAC46EF3A40CE | 44.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 2308, 7660
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\wmihlpr.ppl | Script: Quarantine, Delete, Delete via BC 1870790656 | wmi helper | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=58419702924C68EE2D11C2C0C5E2187D | 144.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 2308
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\app_core_legacy.dll | Script: Quarantine, Delete, Delete via BC 1651703808 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=2E0A86BA6C2FEF58A04446D0E8805F92 | 899.35 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\avpmain.dll | Script: Quarantine, Delete, Delete via BC 1658978304 | Kaspersky Anti-Virus | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=20F94B39C6FDDDE805E3D42DD1F217D3 | 841.31 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\avpservice.dll | Script: Quarantine, Delete, Delete via BC 1899298816 | Kaspersky Anti-Virus Service library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=F0546AC68BA65F3C73F319C256CD5C72 | 83.36 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\bl_ksde.ppl | Script: Quarantine, Delete, Delete via BC 1646002176 | KL Product Business Logic | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=339447769F57C7042337652251B5EA91 | 2177.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 15.05.2017 17:33:38 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\cbi.dll | Script: Quarantine, Delete, Delete via BC 1645543424 | KAV CBI DLL | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=32DD6FFE22DA6FAE8C3D52C56FF27FE2 | 43.21 kb, rsAh, created: 29.03.2017 12:13:46, modified: 29.03.2017 12:13:46 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\crypto_ssl.dll | Script: Quarantine, Delete, Delete via BC 1641807872 | OpenSSL Shared Library | Copyright © 1998-2005 The OpenSSL Project. Copyright © 1995-1998 Eric A. Young, Tim J. Hudson. All rights reserved. | MD5=CB8C2AA16B277AD0B932D65A311EFCB3 | 1604.98 kb, rsAh, created: 15.05.2017 17:11:25, modified: 15.05.2017 17:33:38 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\dblite.dll | Script: Quarantine, Delete, Delete via BC 1655111680 | dblite | Copyright (C) 2010 | MD5=57579FB647D45F6287D2C78BF3CE7A23 | 544.45 kb, rsAh, created: 28.06.2016 01:50:04, modified: 28.06.2016 01:50:04 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\dtreg.ppl | Script: Quarantine, Delete, Delete via BC 1648295936 | DTREG | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=797B68FBF17FAC2EE57C157232354ACA | 71.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\DumpWriter.dll | Script: Quarantine, Delete, Delete via BC 1658650624 | Kaspersky Dump Writer DLL | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=45A916A97A898D9BA9F5F30658CB33EF | 304.95 kb, rsAh, created: 28.06.2016 01:48:02, modified: 28.06.2016 01:48:02 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\instrumental_services.dll | Script: Quarantine, Delete, Delete via BC 1655701504 | Instrumental services | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=24337596076711FA682D9B09DB85863F | 2850.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\KasperskyLab.Ksde.NativeInterop.dll | Script: Quarantine, Delete, Delete via BC 1758461952 | | | MD5=47673771F6F3D52D13321193F0A7D1AA | 1327.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\KasperskyLab.Ksde.UI.Loader.dll | Script: Quarantine, Delete, Delete via BC 1850998784 | Loader | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=052A1D0D82B1BC749D4D6D2E565B397A | 132.52 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\kl_service.DLL | Script: Quarantine, Delete, Delete via BC 1634533376 | Component service provider | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D4FF6AE1C7FED7E6B7B14B8E309BF4F9 | 667.95 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeuimain.dll | Script: Quarantine, Delete, Delete via BC 1635254272 | Kaspersky Secure Connection | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=E0BA64172DBCC6F3B35D0CBEF9E7F2C0 | 1177.68 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksn_facade.dll | Script: Quarantine, Delete, Delete via BC 1640300544 | Facade for KSN PDK | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=0A8A67B428B54F09FCFE2B2B57E4CA17 | 1347.46 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ndetect.ppl | Script: Quarantine, Delete, Delete via BC 1641742336 | Nertwork Detection | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=F6F5B32D0808D7B7DC30D6CE30FBB0E2 | 57.46 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\nfio.ppl | Script: Quarantine, Delete, Delete via BC 1654128640 | NFIO | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B06F090CB632925BB2ED424C27DF1594 | 149.46 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\params.ppl | Script: Quarantine, Delete, Delete via BC 1652621312 | Structure Serializer | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=93860B9EB93BE36D5F1931F956A40A23 | 1391.09 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\prcore.dll | Script: Quarantine, Delete, Delete via BC 1654325248 | Prague Core | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=245FEF3E4016EF7E18F82CF0329DC540 | 329.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\product_info.dll | Script: Quarantine, Delete, Delete via BC 1661075456 | Kaspersky Product Info library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B3E72EE73BA5438CB2C72F1BE34EC561 | 224.91 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\product_metainfo.dll | Script: Quarantine, Delete, Delete via BC 1649082368 | Product Metainformation | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=6541324477510AED23EC2B7E8FB03D77 | 2368.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\propmap.ppl | Script: Quarantine, Delete, Delete via BC 1648885760 | PROPMAP | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=D37DDC1C27C0EEC0E9E500D7008E02D9 | 86.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\prremote.DLL | Script: Quarantine, Delete, Delete via BC 1654718464 | PR_REMOTE | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=8AEC2240F4FAA92CA12F2DCC8ABCD8B2 | 348.85 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\pxstub.ppl | Script: Quarantine, Delete, Delete via BC 1654063104 | Proxy Stubs | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=EC17C566F088A9C44C4AA9051C482004 | 42.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\regmap.ppl | Script: Quarantine, Delete, Delete via BC 1645936640 | REGISTRY_MAPPER | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=56A379C81E560A3936B3DCAF7252B339 | 28.02 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\reportdb.ppl | Script: Quarantine, Delete, Delete via BC 1645346816 | Report DB System | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=7C51463A22BB94C5DBFF7E88C538044C | 163.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\schedule.ppl | Script: Quarantine, Delete, Delete via BC 1645281280 | Scheduler | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=B8C44E0E00D241A8AD6B08C01099626D | 51.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\storage.dll | Script: Quarantine, Delete, Delete via BC 1645608960 | Storage library | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=233DFE39942E7E68EE80E4FC9484AEED | 279.45 kb, rsAh, created: 28.06.2016 00:19:44, modified: 28.06.2016 00:19:44 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\thpimpl.ppl | Script: Quarantine, Delete, Delete via BC 1649016832 | Thread Pool | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=CA5717481BAB3AA498601C9F661E6A8A | 46.96 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\timer.ppl | Script: Quarantine, Delete, Delete via BC 1645215744 | Timer | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=A97242D28AE6A1E58BE47790A397DC92 | 28.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\tm.ppl | Script: Quarantine, Delete, Delete via BC 1648558080 | | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=0F23E15632C06AA7381226B79C30B43E | 292.91 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ucp_agent.dll | Script: Quarantine, Delete, Delete via BC 1643511808 | UCP agent service | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=28F64DA5C012D0A537A2D231F20E1C32 | 1635.35 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ushata.dll | Script: Quarantine, Delete, Delete via BC 1936326656 | Ushata module | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=348BBEA1D2BEC8545EA94D4843B21987 | 168.59 kb, rsAh, created: 29.03.2017 12:11:48, modified: 29.03.2017 12:11:48 3304, 5288
| C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\winreg.ppl | Script: Quarantine, Delete, Delete via BC 1756823552 | WINREG | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=CD51FE428282DB6D916AAC46EF3A40CE | 44.45 kb, rsAh, created: 28.06.2016 00:19:56, modified: 28.06.2016 00:19:56 3304, 5288
| C:\Program Files (x86)\POP Peeper\Imap.dll | Script: Quarantine, Delete, Delete via BC 268435456 | POP Peeper IMAP Plugin | Copyright (C) 2006-2016 Esumsoft | MD5=2BEB3A0ACB7562842BE0386C69F62EAE | 241.70 kb, rsAh, created: 23.10.2016 17:05:14, modified: 23.10.2016 17:05:14 4388
| C:\Program Files (x86)\POP Peeper\Plugins\ProfilePicture.dll | Script: Quarantine, Delete, Delete via BC 1554710528 | POP Peeper Profile Picture Plugin | Copyright (C) 2015-2016 Esumsoft | MD5=6D86AE76D9E921F998FA23DECEB9F4BC | 487.20 kb, rsAh, created: 23.10.2016 17:04:42, modified: 23.10.2016 17:04:42 4388
| C:\Program Files (x86)\POP Peeper\SendMail.dll | Script: Quarantine, Delete, Delete via BC 28180480 | POP Peeper SendMail Plugin | Copyright (C) 2006-2016 Esumsoft | MD5=9400C3F95C88FA613B8F855BDA53860E | 891.70 kb, rsAh, created: 23.10.2016 17:05:08, modified: 23.10.2016 17:05:08 4388
| C:\Program Files (x86)\POP Peeper\sqlite3.dll | Script: Quarantine, Delete, Delete via BC 1554317312 | | | MD5=FBBC9F0803C3E477D816133608248408 | 346.58 kb, rsAh, created: 06.07.2014 22:19:36, modified: 06.07.2014 22:19:36 4388
| C:\Program Files (x86)\POP Peeper\zip.dll | Script: Quarantine, Delete, Delete via BC 1555234816 | | | MD5=5278CD0CDB512CCCFA076226CEA345E0 | 139.08 kb, rsAh, created: 28.08.2014 16:23:58, modified: 28.08.2014 16:23:58 4388
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\Cache\apuhttps.dll.ee3a2911a89cfca2b0ed923d16905d83 | Script: Quarantine, Delete, Delete via BC 1754595328 | Content Filtering Suspicious Domain Analyzer Engine | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=EE3A2911A89CFCA2B0ED923D16905D83 | 547.91 kb, rsAh, created: 15.05.2017 17:12:44, modified: 15.05.2017 17:12:44 2308
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\Cache\avengine.dll.8c5674dfc3aeb36eca46c32ef3dabf3f | Script: Quarantine, Delete, Delete via BC 1852506112 | AV engine component | © 2017 AO Kaspersky Lab. All Rights Reserved. | MD5=8C5674DFC3AEB36ECA46C32EF3DABF3F | 857.09 kb, rsAh, created: 15.05.2017 17:11:50, modified: 15.05.2017 17:11:50 2308
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\Cache\kavbase.kdl.ce087e839e26d441438632fe25f4dbb4 | Script: Quarantine, Delete, Delete via BC 1848508416 | AV engine | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=CE087E839E26D441438632FE25F4DBB4 | 700.82 kb, rsAh, created: 15.05.2017 17:11:50, modified: 15.05.2017 17:11:50 2308
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\Cache\uds.dll.000000000006d768-01d2cdbfbb75c587-01d2ca4f381fc900 | Script: Quarantine, Delete, Delete via BC 1842151424 | Urgent Detection System | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=AF02D2AB29AD41FEF8ECB1B9B214A4EB | 437.85 kb, rsAh, created: 15.05.2017 17:11:49, modified: 15.05.2017 17:11:50 2308
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\Cache\vlns.kdl.db182bcb4448fbc74e68b313838a64b4 | Script: Quarantine, Delete, Delete via BC 1779236864 | Vulnerability scanner | © 2016 AO Kaspersky Lab. All Rights Reserved. | MD5=DB182BCB4448FBC74E68B313838A64B4 | 191.82 kb, rsAh, created: 15.05.2017 17:12:43, modified: 15.05.2017 17:12:43 2308
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\Cache\wlengine.dll.000000000006e880-01d2cdbfbb9e415c-01d2ca4f381fc900 | Script: Quarantine, Delete, Delete via BC 1840054272 | White list engine | © 2017 AO Kaspersky Lab. All Rights Reserved. | MD5=C4332772988B3F86524A925790738B64 | 442.13 kb, rsAh, created: 15.05.2017 17:12:36, modified: 15.05.2017 17:12:36 2308
| C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\FileSyncShell.dll | Script: Quarantine, Delete, Delete via BC 1748762624 | Microsoft OneDrive Shell Extension | © Microsoft Corporation. All rights reserved. | MD5=22B2E9F4137FE00B618B9D57136D1ED3 | 2044.63 kb, rsAh, created: 11.04.2017 09:24:35, modified: 11.04.2017 09:24:35 9260
| C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\LoggingPlatform.DLL | Script: Quarantine, Delete, Delete via BC 1756692480 | Logging Platform | © Microsoft Corporation. All rights reserved. | MD5=68E44D5FE87F61FA6D2A0A85385EC29A | 96.12 kb, rsAh, created: 11.04.2017 09:24:37, modified: 11.04.2017 09:24:37 9260
| C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\MSVCP120.dll | Script: Quarantine, Delete, Delete via BC 1748238336 | Microsoft® C Runtime Library | © Microsoft Corporation. All rights reserved. | MD5=B6C1C378A78262A78D72F2F5B156E73E | 444.13 kb, rsAh, created: 11.04.2017 09:24:37, modified: 11.04.2017 09:24:37 9260
| C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\MSVCR120.dll | Script: Quarantine, Delete, Delete via BC 1747255296 | Microsoft® C Runtime Library | © Microsoft Corporation. All rights reserved. | MD5=ADAC6DB8C3EB1F8A60039B596497974F | 947.62 kb, rsAh, created: 11.04.2017 09:24:37, modified: 11.04.2017 09:24:37 9260
| C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\Telemetry.dll | Script: Quarantine, Delete, Delete via BC 1746927616 | Telemetry Library | © Microsoft Corporation. All rights reserved. | MD5=76896B8275D164E428ADB4CE1B09088B | 310.63 kb, rsAh, created: 11.04.2017 09:24:56, modified: 11.04.2017 09:25:00 9260
| C:\WINDOWS\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll | Script: Quarantine, Delete, Delete via BC 33292288 | MyService | Copyright © 2014 | MD5=0FA8501FD25DD598F9F47E8674CB2C09 | 14.71 kb, rsAh, created: 11.04.2017 08:52:14, modified: 11.04.2017 08:52:14 11120
| C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\e4dd7588a2ee2a2525fd997ab32777d3\mscorlib.ni.dll | Script: Quarantine, Delete, Delete via BC 1616379904 | Microsoft Common Language Runtime Class Library | © Microsoft Corporation. All rights reserved. | MD5=D9459CA88A8803B6F800356A93A3F113 | 11231.00 kb, rsAh, created: 11.04.2017 09:43:24, modified: 11.04.2017 09:43:24 11120
| C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\4d801f572be8725e20b3adaf8ddfc496\System.Drawing.ni.dll | Script: Quarantine, Delete, Delete via BC 1600913408 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=7DD833048E1DA9BC30DFA3A0A3BD340F | 1556.00 kb, rsAh, created: 11.04.2017 09:44:02, modified: 11.04.2017 09:44:02 11120
| C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\221c33a7843111817f4301d0b0a065c1\System.Windows.Forms.ni.dll | Script: Quarantine, Delete, Delete via BC 1588461568 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=7289482464C117A1186E5D65F261F9C4 | 12147.00 kb, rsAh, created: 11.04.2017 09:44:08, modified: 11.04.2017 09:44:08 11120
| C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\8c98687edea39fdc935a23fd501920f5\System.ni.dll | Script: Quarantine, Delete, Delete via BC 1602551808 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=5D83EA93C966D0BA1E66BBCF98E82F9A | 7814.50 kb, rsAh, created: 11.04.2017 09:43:28, modified: 11.04.2017 09:43:28 11120
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\32e0e41519922a216f6d8ca9cbfc4d9b\System.Configuration.ni.dll | Script: Quarantine, Delete, Delete via BC 1694892032 | System.Configuration.dll | © Microsoft Corporation. All rights reserved. | MD5=486D178B53575874444B67678694317E | 994.73 kb, rsAh, created: 18.03.2017 16:12:21, modified: 04.03.2017 00:11:13 9484
| C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\dbe59c8ba58a2b4221504038249fa853\System.Xml.ni.dll | Script: Quarantine, Delete, Delete via BC 1491927040 | .NET Framework | © Microsoft Corporation. All rights reserved. | MD5=EBA64D090620ED36BE660BCC2932426C | 7422.66 kb, rsAh, created: 18.03.2017 16:12:22, modified: 04.03.2017 00:11:14 9484
| Modules found:492, recognized as trusted 265
| |
Module | Base address | Size in memory | Description | Manufacturer
C:\WINDOWS\System32\Drivers\dump_diskdump.sys | error getting file info Script: Quarantine, Delete, Delete via BC 32EB0000 | 00F000 (61440) |
| C:\WINDOWS\System32\Drivers\dump_dumpfve.sys | error getting file info Script: Quarantine, Delete, Delete via BC 32F40000 | 01D000 (118784) |
| C:\WINDOWS\System32\Drivers\dump_storahci.sys | error getting file info Script: Quarantine, Delete, Delete via BC 32EF0000 | 027000 (159744) |
| C:\WINDOWS\system32\drivers\eubakup.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2ECB0000 | 013000 (77824) | Disk Backup Driver | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved.
| C:\WINDOWS\system32\drivers\EUBKMON.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2ECA0000 | 010000 (65536) |
| C:\WINDOWS\system32\drivers\eudskacs.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2E1E0000 | 009000 (36864) | Disk Access Driver | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved.
| C:\WINDOWS\system32\drivers\EuFdDisk.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2E1A0000 | 032000 (204800) | Disk Backup Image Preview Driver | Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved.
| C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys | 167.30 kb, rsAh, created: 15.05.2017 17:12:41, modified: 15.05.2017 17:12:41 Script: Quarantine, Delete, Delete via BC 2E160000 | 02C000 (180224) | IDS Engine [fre_wnet_x64] | © 2016 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\system32\DRIVERS\klif.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2D9D0000 | 0FE000 (1040384) | Core System Interceptors [fre_win8_x64] | © 2016 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2C890000 | 039000 (233472) | Kaspersky Lab Anti-Rootkit Monitor | © 2017 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys | error getting file info Script: Quarantine, Delete, Delete via BC 32C00000 | 017000 (94208) | Kernel heuristics engine | © 2017 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys | error getting file info Script: Quarantine, Delete, Delete via BC 32C50000 | 03E000 (253952) | Kaspersky Lab Anti-Rootkit | © 2017 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2D500000 | 01C000 (114688) | Kaspersky Lab Boot Guard Driver | © 2017 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys | error getting file info Script: Quarantine, Delete, Delete via BC 32C20000 | 02B000 (176128) | Kaspersky Lab Anti-Rootkit Engine | © 2017 AO Kaspersky Lab. All Rights Reserved.
| C:\WINDOWS\system32\DRIVERS\kneps.sys | error getting file info Script: Quarantine, Delete, Delete via BC 2E130000 | 02D000 (184320) | Network Processor [fre_wnet_x64] | © 2016 AO Kaspersky Lab. All Rights Reserved.
| Modules found - 201, recognized as trusted - 186
| |
Service | Description | Status | File | Group | Dependencies
AGSService | Service: Stop, Delete, Disable, Delete via BC Adobe Genuine Software Integrity Service | Running | C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe | 2175.11 kb, rsAh, created: 20.08.2015 18:04:56, modified: 27.02.2017 10:55:02 Script: Quarantine, Delete, Delete via BC |
| AVP17.0.0 | Service: Stop, Delete, Disable, Delete via BC Kaspersky Anti-Virus Service 17.0.0 | Running | C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe | 235.88 kb, rsAh, created: 28.06.2016 01:54:28, modified: 28.06.2016 01:54:28 Script: Quarantine, Delete, Delete via BC |
| AvrcpService | Service: Stop, Delete, Disable, Delete via BC AvrcpService | Running | C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe | 40.21 kb, rsAh, created: 05.10.2015 18:23:34, modified: 02.03.2015 22:26:38 Script: Quarantine, Delete, Delete via BC |
| BTDevManager | Service: Stop, Delete, Disable, Delete via BC BTDevManager | Running | C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe | 115.21 kb, rsAh, created: 05.10.2015 18:23:34, modified: 02.06.2015 13:25:48 Script: Quarantine, Delete, Delete via BC |
| DbxSvc | Service: Stop, Delete, Disable, Delete via BC DbxSvc | Running | C:\WINDOWS\system32\DbxSvc.exe | 47.80 kb, rsAh, created: 16.05.2017 17:01:28, modified: 16.05.2017 17:01:28 Script: Quarantine, Delete, Delete via BC |
| EaseUS Agent | Service: Stop, Delete, Disable, Delete via BC Service Agent EaseUS | Running | C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe | 38.69 kb, rsAh, created: 16.03.2017 08:08:13, modified: 06.12.2016 02:46:06 Script: Quarantine, Delete, Delete via BC |
| KSDE1.0.0 | Service: Stop, Delete, Disable, Delete via BC Kaspersky Secure Connection Service 1.0.0 | Running | C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe | 235.88 kb, rsAh, created: 28.06.2016 01:54:28, modified: 28.06.2016 01:54:28 Script: Quarantine, Delete, Delete via BC |
| WDDriveService | Service: Stop, Delete, Disable, Delete via BC WD Drive Manager | Running | C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe | 300.87 kb, RsAh, created: 14.01.2016 11:27:44, modified: 14.01.2016 11:27:44 Script: Quarantine, Delete, Delete via BC | RPCSS
| AdobeFlashPlayerUpdateSvc | Service: Stop, Delete, Disable, Delete via BC Adobe Flash Player Update Service | Not started | C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe | 265.49 kb, rsAh, created: 22.01.2016 17:50:06, modified: 15.05.2017 14:26:20 Script: Quarantine, Delete, Delete via BC |
| amdacpusrsvc | Service: Stop, Delete, Disable, Delete via BC ACP User Service | Not started | C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe | 119.00 kb, rsAh, created: 09.06.2015 00:17:56, modified: 09.06.2015 00:17:56 Script: Quarantine, Delete, Delete via BC |
| FoxitReaderService | Service: Stop, Delete, Disable, Delete via BC Foxit Reader Service | Not started | C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe | 1620.70 kb, rsAh, created: 17.04.2017 06:20:00, modified: 24.02.2017 19:03:42 Script: Quarantine, Delete, Delete via BC |
| Garmin Device Interaction Service | Service: Stop, Delete, Disable, Delete via BC Garmin Device Interaction Service | Not started | C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe | 1073.52 kb, rsAh, created: 28.03.2017 15:34:38, modified: 28.03.2017 15:34:38 Script: Quarantine, Delete, Delete via BC |
| klvssbrigde64 | Service: Stop, Delete, Disable, Delete via BC klvssbrigde64 | Not started | C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe | 75.52 kb, rsAh, created: 28.06.2016 01:53:14, modified: 28.06.2016 01:53:14 Script: Quarantine, Delete, Delete via BC | RPCSS
| MozillaMaintenance | Service: Stop, Delete, Disable, Delete via BC Mozilla Maintenance Service | Not started | C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe | 169.45 kb, rsAh, created: 18.12.2015 22:13:32, modified: 15.05.2017 16:31:37 Script: Quarantine, Delete, Delete via BC |
| ose | Service: Stop, Delete, Disable, Delete via BC Office Source Engine | Not started | C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE | 207.20 kb, rsAh, created: 28.02.2016 06:24:44, modified: 28.02.2016 06:24:44 Script: Quarantine, Delete, Delete via BC |
| Detected - 245, recognized as trusted - 230
| |
Service | Description | Status | File | Group | Dependencies
EUBAKUP | Driver: Unload, Delete, Disable, Delete via BC EUBAKUP | Running | C:\WINDOWS\system32\drivers\eubakup.sys | 63.66 kb, rsAh, created: 03.03.2016 18:13:56, modified: 28.11.2016 14:13:56 Script: Quarantine, Delete, Delete via BC |
| EUBKMON | Driver: Unload, Delete, Disable, Delete via BC EUBKMON | Running | C:\WINDOWS\system32\drivers\EUBKMON.sys | 51.16 kb, rsAh, created: 03.03.2016 18:13:56, modified: 28.11.2016 14:13:58 Script: Quarantine, Delete, Delete via BC |
| EUDSKACS | Driver: Unload, Delete, Disable, Delete via BC EUDSKACS | Running | C:\WINDOWS\system32\drivers\eudskacs.sys | 22.16 kb, rsAh, created: 03.03.2016 18:13:57, modified: 28.11.2016 14:13:56 Script: Quarantine, Delete, Delete via BC |
| EUFDDISK | Driver: Unload, Delete, Disable, Delete via BC EUFDDISK | Running | C:\WINDOWS\system32\drivers\EuFdDisk.sys | 192.16 kb, rsAh, created: 03.03.2016 18:13:57, modified: 28.11.2016 14:13:56 Script: Quarantine, Delete, Delete via BC |
| klids | Driver: Unload, Delete, Disable, Delete via BC klids | Running | C:\ProgramData\Kaspersky Lab\AVP17.0.0\Bases\klids.sys | 167.30 kb, rsAh, created: 15.05.2017 17:12:41, modified: 15.05.2017 17:12:41 Script: Quarantine, Delete, Delete via BC |
| KLIF | Driver: Unload, Delete, Disable, Delete via BC Kaspersky Lab Driver | Running | C:\WINDOWS\system32\DRIVERS\klif.sys | 994.72 kb, rsAh, created: 15.05.2017 17:10:30, modified: 15.05.2017 17:13:08 Script: Quarantine, Delete, Delete via BC FSFilter Activity Monitor | FltMgr
| klupd_klif_arkmon | Driver: Unload, Delete, Disable, Delete via BC klupd_klif_arkmon | Running | C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys | 223.91 kb, rsAh, created: 15.05.2017 17:12:10, modified: 15.05.2017 17:12:10 Script: Quarantine, Delete, Delete via BC Boot Bus Extender |
| klupd_klif_kimul | Driver: Unload, Delete, Disable, Delete via BC klupd_klif_kimul | Running | C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys | 85.53 kb, rsAh, created: 15.05.2017 17:12:08, modified: 15.05.2017 17:12:08 Script: Quarantine, Delete, Delete via BC |
| klupd_klif_klark | Driver: Unload, Delete, Disable, Delete via BC klupd_klif_klark | Running | C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys | 245.77 kb, rsAh, created: 15.05.2017 17:14:50, modified: 15.05.2017 17:14:50 Script: Quarantine, Delete, Delete via BC |
| klupd_klif_klbg | Driver: Unload, Delete, Disable, Delete via BC klupd_klif_klbg | Running | C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys | 110.27 kb, rsAh, created: 15.05.2017 17:12:14, modified: 15.05.2017 17:12:14 Script: Quarantine, Delete, Delete via BC |
| klupd_klif_mark | Driver: Unload, Delete, Disable, Delete via BC klupd_klif_mark | Running | C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys | 169.09 kb, rsAh, created: 15.05.2017 17:12:09, modified: 15.05.2017 17:12:09 Script: Quarantine, Delete, Delete via BC |
| kneps | Driver: Unload, Delete, Disable, Delete via BC kneps | Running | C:\WINDOWS\system32\DRIVERS\kneps.sys | 194.72 kb, rsAh, created: 14.06.2016 17:47:52, modified: 15.05.2017 17:13:07 Script: Quarantine, Delete, Delete via BC |
| dbx | Driver: Unload, Delete, Disable, Delete via BC dbx | Not started | C:\WINDOWS\system32\DRIVERS\dbx.sys | error getting file info Script: Quarantine, Delete, Delete via BC FSFilter HSM | FltMgr
| LHidFilt | Driver: Unload, Delete, Disable, Delete via BC Logitech SetPoint KMDF HID Filter Driver | Not started | C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys | 84.64 kb, rsAh, created: 17.06.2015 22:25:00, modified: 17.06.2015 22:25:00 Script: Quarantine, Delete, Delete via BC Pointer Port |
| LMouFilt | Driver: Unload, Delete, Disable, Delete via BC Logitech SetPoint KMDF Mouse Filter Driver | Not started | C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys | 67.64 kb, rsAh, created: 17.06.2015 22:25:00, modified: 17.06.2015 22:25:00 Script: Quarantine, Delete, Delete via BC Pointer Port |
| LUsbFilt | Driver: Unload, Delete, Disable, Delete via BC Logitech SetPoint KMDF USB Filter | Not started | C:\WINDOWS\System32\Drivers\LUsbFilt.Sys | 49.64 kb, rsAh, created: 17.06.2015 22:25:00, modified: 17.06.2015 22:25:00 Script: Quarantine, Delete, Delete via BC Extended Base |
| Detected - 370, recognized as trusted - 354
| |
File name | Status | Startup method | Description
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe | 573.52 kb, rsAh, created: 15.03.2017 02:43:06, modified: 15.03.2017 02:43:06 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, SunJavaUpdateSched | Delete C:\Program Files (x86)\Dropbox\Client\Dropbox.exe | 28060.99 kb, rsAh, created: 17.05.2017 16:36:18, modified: 16.05.2017 17:00:04 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Run, Dropbox | Delete C:\Program Files\CCleaner\CCleaner64.exe | 9543.21 kb, rsAh, created: 05.05.2017 13:08:22, modified: 05.05.2017 13:08:22 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Run, CCleaner Monitoring | Delete C:\Users\Utilisateur\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe | 587.08 kb, rsAh, created: 15.05.2017 14:30:53, modified: 15.05.2017 14:30:53 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Run, Google Update | Delete C:\Program Files (x86)\Sticky Password\stpass.exe | 62.50 kb, rsAh, created: 16.05.2017 14:41:56, modified: 23.02.2017 11:49:14 Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_CURRENT_USER, Software\Microsoft\Windows\CurrentVersion\Run, StickyPassword | Delete C:\WINDOWS\System32\AJRouter.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AJRouter\Parameters, ServiceDll | Delete C:\WINDOWS\System32\appidsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AppIDSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\appinfo.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Appinfo\Parameters, ServiceDll | Delete C:\WINDOWS\system32\AppReadiness.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AppReadiness\Parameters, ServiceDll | Delete C:\WINDOWS\system32\appxdeploymentserver.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AppXSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\AudioEndpointBuilder.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AudioEndpointBuilder\Parameters, ServiceDll | Delete C:\WINDOWS\System32\Audiosrv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Audiosrv\Parameters, ServiceDll | Delete C:\WINDOWS\System32\AxInstSV.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\AxInstSV\Parameters, ServiceDll | Delete C:\WINDOWS\System32\bdesvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BDESVC\Parameters, ServiceDll | Delete C:\WINDOWS\System32\bfe.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BFE\Parameters, ServiceDll | Delete C:\WINDOWS\System32\qmgr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BITS\Parameters, ServiceDll | Delete C:\WINDOWS\System32\bisrv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BrokerInfrastructure\Parameters, ServiceDll | Delete C:\WINDOWS\System32\browser.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Browser\Parameters, ServiceDll | Delete C:\WINDOWS\System32\BthHFSrv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\BthHFSrv\Parameters, ServiceDll | Delete C:\WINDOWS\system32\bthserv.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\bthserv\Parameters, ServiceDll | Delete C:\WINDOWS\System32\CDPSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CDPSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\CDPUserSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CDPUserSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\certprop.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CertPropSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ClipSVC.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\ClipSVC\Parameters, ServiceDll | Delete C:\WINDOWS\system32\cryptsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\CryptSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\rpcss.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DcomLaunch\Parameters, ServiceDll | Delete C:\WINDOWS\System32\defragsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\defragsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\das.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DeviceAssociationService\Parameters, ServiceDll | Delete C:\WINDOWS\system32\umpnpmgr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DeviceInstall\Parameters, ServiceDll | Delete C:\WINDOWS\System32\DevicesFlowBroker.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DevicesFlowUserSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\DevQueryBroker.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DevQueryBroker\Parameters, ServiceDll | Delete C:\WINDOWS\system32\diagtrack.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DiagTrack\Parameters, ServiceDll | Delete C:\WINDOWS\system32\dmwappushsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\dmwappushservice\Parameters, ServiceDll | Delete C:\WINDOWS\System32\dnsrslvr.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Dnscache\Parameters, ServiceDll | Delete C:\WINDOWS\System32\dot3svc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\dot3svc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\dps.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DPS\Parameters, ServiceDll | Delete C:\WINDOWS\System32\DeviceSetupManager.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DsmSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\DsSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DsSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\dusmsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\DusmSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\eapsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\EapHost\Parameters, ServiceDll | Delete C:\WINDOWS\system32\efssvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\EFS\Parameters, ServiceDll | Delete C:\WINDOWS\System32\embeddedmodesvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\embeddedmode\Parameters, ServiceDll | Delete C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\EntAppSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\fdPHost.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\fdPHost\Parameters, ServiceDll | Delete C:\WINDOWS\system32\fdrespub.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\FDResPub\Parameters, ServiceDll | Delete C:\WINDOWS\system32\fhsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\fhsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\FntCache.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\FontCache\Parameters, ServiceDll | Delete C:\WINDOWS\system32\FrameServer.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\FrameServer\Parameters, ServiceDll | Delete C:\WINDOWS\System32\gpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\gpsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\ListSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\HomeGroupListener\Parameters, ServiceDll | Delete C:\WINDOWS\System32\hvhostsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\HvHost\Parameters, ServiceDll | Delete C:\WINDOWS\System32\tetheringservice.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\icssvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ikeext.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\IKEEXT\Parameters, ServiceDll | Delete C:\WINDOWS\System32\iphlpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\iphlpsvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\IpxlatCfg.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\IpxlatCfgSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\irmon.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\irmon\Parameters, ServiceDll | Delete C:\WINDOWS\system32\msdtckrm.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\KtmRm\Parameters, ServiceDll | Delete C:\WINDOWS\system32\srvsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters, ServiceDll | Delete C:\WINDOWS\System32\wkssvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lfsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\lfsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\LicenseManagerSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LicenseManager\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lltdsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\lltdsvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lmhsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\lmhosts\Parameters, ServiceDll | Delete C:\WINDOWS\System32\lsm.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\LSM\Parameters, ServiceDll | Delete C:\WINDOWS\System32\moshost.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MapsBroker\Parameters, ServiceDll | Delete C:\WINDOWS\System32\MessagingService.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MessagingService\Parameters, ServiceDll | Delete C:\WINDOWS\system32\mpssvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MpsSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\iscsiexe.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\MSiSCSI\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NaturalAuth.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NaturalAuthentication\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ncasvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NcaSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\ncbservice.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NcbService\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NcdAutoSetup.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NcdAutoSetup\Parameters, ServiceDll | Delete C:\WINDOWS\System32\netman.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\Netman\Parameters, ServiceDll | Delete C:\WINDOWS\System32\netprofmsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\netprofm\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NetSetupSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NetSetupSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\NgcCtnrSvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NgcCtnrSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\ngcsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NgcSvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\nlasvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\nsisvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\nsi\Parameters, ServiceDll | Delete C:\WINDOWS\System32\APHostService.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\OneSyncSvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\pnrpsvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\p2pimsvc\Parameters, ServiceDll | Delete C:\WINDOWS\system32\p2psvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\p2psvc\Parameters, ServiceDll | Delete C:\WINDOWS\System32\pcasvc.dll | error getting file info Script: Quarantine, Delete, Delete via BC Active | Registry key | HKEY_LOCAL_MACHINE, SYSTEM\CurrentControlSet\Services\PcaSvc\Parameters, ServiceDll | Delete |