Jump to content

Computer all messed up - not sure what's going on. Please help!


Recommended Posts

Computer is running really slow - I think there are viruses but not sure. There may be more than viruses, who knows. :) Please help.

I ran the dds and below are the logs.

Thanks!!!!!

DDS (Ver_2012-11-20.01) - NTFS_x86

Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_30

Run by Angel at 10:53:25 on 2013-03-12

Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.1024.421 [GMT -4:00]

.

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

============== Running Processes ================

.

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\System32\spoolsv.exe

C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files\Windows Live\Family Safety\fsssvc.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\system32\SearchIndexer.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Windows\soundman.exe

C:\Program Files\Windows Live\Family Safety\fsui.exe

C:\Program Files\Real\realplayer\Update\realsched.exe

C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

c:\program files\real\realplayer\RealPlay.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Windows\soundman.exe

C:\Program Files\Windows Live\Family Safety\fsui.exe

C:\Program Files\Real\realplayer\Update\realsched.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

C:\Windows\system32\consent.exe

C:\Windows\system32\wuauclt.exe

C:\Windows\system32\taskhost.exe

C:\Windows\system32\msiexec.exe

C:\Windows\system32\conhost.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\System32\svchost.exe -k Akamai

C:\Windows\System32\svchost.exe -k HPZ12

C:\Windows\System32\svchost.exe -k HPZ12

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\System32\svchost.exe -k secsvcs

C:\Windows\System32\svchost.exe -k swprv

.

============== Pseudo HJT Report ===============

.

BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll

BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll

BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll

BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll

BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - c:\program files\windows live\companion\companioncore.dll

BHO: AVG Security Toolbar: {A057A204-BACC-4D26-9990-79A187E2698E} -

BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll

TB: AVG Security Toolbar: {A057A204-BACC-4D26-9990-79A187E2698E} -

uRun: [MobileDocuments] c:\program files\common files\apple\internet services\ubd.exe

uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil11c_Plugin.exe -update plugin

mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"

mRun: [soundMan] SOUNDMAN.EXE

mRun: [fssui] "c:\program files\windows live\family safety\fsui.exe" -autorun

mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot

mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"

mRun: [sunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"

mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime

StartupFolder: c:\users\angel\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\angel\appdata\roaming\dropbox\bin\Dropbox.exe

StartupFolder: c:\users\angel\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE

uPolicies-Explorer: NoDriveTypeAutoRun = dword:145

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html

IE: Append to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html

IE: Convert Link Target to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html

IE: Convert to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html

IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000

IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab

DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

TCP: NameServer = 192.168.1.1

TCP: Interfaces\{183E40F6-037A-4DAF-A7BB-4078CDF176ED} : DHCPNameServer = 192.168.1.1

Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll

Handler: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - <orphaned>

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll

SSODL: WebCheck - <orphaned>

SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll

.

================= FIREFOX ===================

.

FF - ProfilePath - c:\users\angel\appdata\roaming\mozilla\firefox\profiles\k595umuk.default\

FF - prefs.js: browser.startup.homepage - chrome://speeddial/content/speeddial.xul

FF - component: c:\program files\adobe\acrobat 10.0\acrobat\browser\wcfirefoxextn\components\WCFirefoxExtn.dll

FF - component: c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll

FF - component: c:\users\angel\appdata\roaming\mozilla\firefox\profiles\k595umuk.default\extensions\{340c2bbc-ce74-4362-90b5-7c26312808ef}\platform\winnt_x86-msvc\components\WeaveCrypto.dll

FF - component: c:\users\angel\appdata\roaming\mozilla\firefox\profiles\k595umuk.default\extensions\support@lastpass.com\platform\winnt_x86-msvc\components\lpxpcom.dll

FF - plugin: c:\program files\adobe\acrobat 10.0\acrobat\air\nppdf32.dll

FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll

FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll

FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll

FF - plugin: c:\program files\nos\bin\np_gp.dll

FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll

.

============= SERVICES / DRIVERS ===============

.

R0 AVGIDSErHrw7x;AVG9IDSErHr;c:\windows\system32\drivers\AVGIDSwx.sys [2010-5-31 25168]

R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [2010-5-31 52872]

R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2010-5-31 24856]

R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2010-5-31 226016]

R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2010-5-31 29712]

R1 AvgTdiX;AVG Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2010-5-31 243152]

R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2009-7-13 20992]

R2 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2011-6-12 39272]

R2 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-9-23 1493352]

R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-3-8 398184]

R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-3-8 682344]

R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-3-8 21104]

R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2009-7-13 311296]

S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-7-13 160944]

S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]

S3 nosGetPlusHelper;getPlus® Helper 3004;c:\windows\system32\svchost.exe -k nosGetPlusHelper [2009-7-13 20992]

S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2011-6-8 15872]

S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-6-8 52224]

S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-6-2 1343400]

S4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]

.

=============== Created Last 30 ================

.

2013-03-12 14:40:42 -------- d-----w- c:\users\angel\appdata\local\Avg2013

2013-03-12 14:40:41 -------- d-----w- c:\users\angel\appdata\local\MFAData

2013-03-12 14:40:41 -------- d-----w- c:\programdata\MFAData

2013-03-12 14:28:00 6954968 ----a-w- c:\programdata\microsoft\windows defender\definition updates\backup\mpengine.dll

2013-03-12 14:27:42 6954968 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{02e881f5-665e-4fa2-a1ca-69b04bf3b1e9}\mpengine.dll

2013-03-12 14:15:29 -------- d-----w- c:\users\angel\appdata\local\{AB47D800-EA70-4DC8-8090-E6F2E4F76153}

2013-03-08 18:49:47 34304 ----a-w- c:\windows\system32\atmlib.dll

2013-03-08 18:49:47 295424 ----a-w- c:\windows\system32\atmfd.dll

2013-03-08 17:47:00 21104 ----a-w- c:\windows\system32\drivers\mbam.sys

2013-03-08 17:46:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2013-03-08 17:36:32 232336 ------w- c:\windows\system32\MpSigStub.exe

2013-03-08 17:30:48 2048 ----a-w- c:\windows\system32\tzres.dll

2013-03-08 17:30:32 2347008 ----a-w- c:\windows\system32\win32k.sys

2013-03-08 17:29:54 172544 ----a-w- c:\windows\system32\wintrust.dll

2013-03-08 17:29:11 376832 ----a-w- c:\windows\system32\dpnet.dll

2013-03-08 17:27:23 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe

2013-03-08 17:27:22 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe

2013-03-08 17:27:17 542208 ----a-w- c:\windows\system32\kerberos.dll

2013-03-08 17:27:13 1389568 ----a-w- c:\windows\system32\msxml6.dll

2013-03-08 17:27:10 41984 ----a-w- c:\windows\system32\browcli.dll

2013-03-08 17:27:10 102912 ----a-w- c:\windows\system32\browser.dll

2013-03-08 17:27:01 240496 ----a-w- c:\windows\system32\drivers\netio.sys

2013-03-08 17:27:01 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys

2013-03-08 17:26:59 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS

2013-03-08 17:24:52 220160 ----a-w- c:\windows\system32\ncrypt.dll

2013-03-08 17:24:41 78336 ----a-w- c:\windows\system32\synceng.dll

2013-03-08 17:24:32 769024 ----a-w- c:\windows\system32\localspl.dll

2013-03-08 17:24:24 760320 ----a-w- c:\program files\common files\microsoft shared\vgx\VGX.dll

2013-03-08 17:24:17 49152 ----a-w- c:\windows\system32\taskhost.exe

.

==================== Find3M ====================

.

2013-01-04 04:50:52 169984 ----a-w- c:\windows\system32\winsrv.dll

2012-12-20 12:53:51 981504 ----a-w- c:\windows\system32\wininet.dll

2012-12-20 11:20:29 1638912 ----a-w- c:\windows\system32\mshtml.tlb

.

============= FINISH: 10:55:17.53 ===============

Link to post
Share on other sites

  • Replies 69
  • Created
  • Last Reply

Top Posters In This Topic

.

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2012-11-20.01)

.

Microsoft Windows 7 Ultimate

Boot Device: \Device\HarddiskVolume1

Install Date: 5/31/2010 1:47:54 AM

System Uptime: 3/12/2013 10:02:46 AM (0 hours ago)

.

Motherboard: Gigabyte Technology Co., Ltd. | | 8I848P775-G

Processor: Intel® Celeron® CPU 2.53GHz | Socket 775 | 2545/133mhz

.

==== Disk Partitions =========================

.

A: is Removable

C: is FIXED (NTFS) - 74 GiB total, 40.386 GiB free.

D: is CDROM (CDFS)

.

==== Disabled Device Manager Items =============

.

Class GUID:

Description:

Device ID: ROOT\LEGACY_AVGIDSDRIVERW7X\0000

Manufacturer:

Name:

PNP Device ID: ROOT\LEGACY_AVGIDSDRIVERW7X\0000

Service:

.

Class GUID:

Description:

Device ID: ROOT\LEGACY_AVGIDSFILTERW7X\0000

Manufacturer:

Name:

PNP Device ID: ROOT\LEGACY_AVGIDSFILTERW7X\0000

Service:

.

Class GUID:

Description:

Device ID: ROOT\LEGACY_AVGIDSSHIMW7X\0000

Manufacturer:

Name:

PNP Device ID: ROOT\LEGACY_AVGIDSSHIMW7X\0000

Service:

.

Class GUID:

Description: Video Controller

Device ID: PCI\VEN_1002&DEV_5940&SUBSYS_0131174B&REV_01\4&299CCBFA&0&0108

Manufacturer:

Name: Video Controller

PNP Device ID: PCI\VEN_1002&DEV_5940&SUBSYS_0131174B&REV_01\4&299CCBFA&0&0108

Service:

.

==== System Restore Points ===================

.

RP322: 1/10/2005 2:50:55 AM - Revo Uninstaller Pro's restore point - Revo Uninstaller Pro 2.5.3

RP324: 3/8/2013 11:31:00 AM - Revo Uninstaller's restore point - Apple Application Support

RP326: 3/8/2013 11:35:18 AM - Revo Uninstaller's restore point - Apple Mobile Device Support

RP328: 3/8/2013 11:39:21 AM - Revo Uninstaller's restore point - Apple Software Update

RP330: 3/8/2013 11:45:40 AM - Revo Uninstaller's restore point - Coupon Printer for Windows

RP332: 3/8/2013 11:48:06 AM - Revo Uninstaller's restore point - iCloud

RP333: 3/8/2013 11:48:37 AM - Removed iCloud

RP335: 3/8/2013 11:51:48 AM - Revo Uninstaller's restore point - iTunes

RP337: 3/8/2013 12:01:05 PM - Revo Uninstaller's restore point - Bonjour

RP338: 3/8/2013 12:01:44 PM - Removed Bonjour

RP340: 3/8/2013 12:07:05 PM - Revo Uninstaller's restore point - Revo Uninstaller Pro 2.5.3

RP342: 3/8/2013 12:11:36 PM - Revo Uninstaller's restore point - VersaCheck Messenger for PayCycle

RP344: 3/8/2013 12:19:36 PM - Revo Uninstaller's restore point - AVG 9.0

RP345: 3/8/2013 12:23:44 PM - Removed AVG 9.0

RP347: 3/8/2013 12:31:38 PM - Revo Uninstaller's restore point - AVG 9.0

RP348: 3/8/2013 12:35:40 PM - Windows Update

RP349: 3/8/2013 1:22:56 PM - Windows Update

RP350: 3/12/2013 10:17:54 AM - Windows Update

RP351: 3/12/2013 10:44:44 AM - Installed AVG 2013

RP352: 3/12/2013 10:45:42 AM - Installed AVG 2013

RP353: 3/12/2013 10:47:23 AM - Removed AVG 2013

.

==== Installed Programs ======================

.

Update for Microsoft Office 2007 (KB2508958)

32 Bit HP CIO Components Installer

Adobe AIR

Adobe Download Manager

Adobe Flash Player 11 Plugin

Adobe Reader X (10.1.1)

Akamai NetSession Interface Service

Brother HL-5250DN

Classic Menu for Office

D3DX10

Dropbox

Java Auto Updater

Java 6 Update 3

Java 6 Update 30

Junk Mail filter update

Malwarebytes Anti-Malware version 1.70.0.1100

Mesh Runtime

Messenger Companion

Microsoft Application Error Reporting

Microsoft Office 2007 Primary Interop Assemblies

Microsoft Office 2007 Service Pack 3 (SP3)

Microsoft Office Access MUI (English) 2007

Microsoft Office Access Setup Metadata MUI (English) 2007

Microsoft Office Enterprise 2007

Microsoft Office Excel MUI (English) 2007

Microsoft Office Groove MUI (English) 2007

Microsoft Office Groove Setup Metadata MUI (English) 2007

Microsoft Office InfoPath MUI (English) 2007

Microsoft Office OneNote MUI (English) 2007

Microsoft Office Outlook Connector

Microsoft Office Outlook MUI (English) 2007

Microsoft Office PowerPoint MUI (English) 2007

Microsoft Office Proof (English) 2007

Microsoft Office Proof (French) 2007

Microsoft Office Proof (Spanish) 2007

Microsoft Office Proofing (English) 2007

Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

Microsoft Office Publisher MUI (English) 2007

Microsoft Office Shared MUI (English) 2007

Microsoft Office Shared Setup Metadata MUI (English) 2007

Microsoft Office Word MUI (English) 2007

Microsoft Silverlight

Microsoft SQL Server 2005 Compact Edition [ENU]

Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219

Microsoft Visual Studio 2005 Tools for Office Runtime

Moffsoft FreeCalc

Mozilla Firefox 7.0.1 (x86 en-US)

MSVCRT

MSXML 4.0 SP2 (KB954430)

MSXML 4.0 SP2 (KB973688)

MSXML 4.0 SP2 Parser and SDK

ODF Add-in for Microsoft Office

OGA Notifier 2.0.0048.0

Pdf995

PdfEdit995

QuickTime

RealNetworks - Microsoft Visual C++ 2008 Runtime

RealPlayer

Realtek AC'97 Audio

RealUpgrade 1.0

Revo Uninstaller 1.94

Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition

Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition

Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition

Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition

Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition

Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition

Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition

Signature995

Skype™ 5.10

SupportSoft Assisted Service

Update for 2007 Microsoft Office System (KB967642)

Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition

Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition

Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2767848) 32-Bit Edition

Visual Studio 2005 Tools for Office Second Edition Runtime

Windows Live Communications Platform

Windows Live Essentials

Windows Live Family Safety

Windows Live ID Sign-in Assistant

Windows Live Installer

Windows Live Mail

Windows Live Mesh

Windows Live Messenger

Windows Live Messenger Companion Core

Windows Live MIME IFilter

Windows Live Movie Maker

Windows Live Photo Common

Windows Live Photo Gallery

Windows Live PIMT Platform

Windows Live Remote Client

Windows Live Remote Client Resources

Windows Live Remote Service

Windows Live Remote Service Resources

Windows Live SOXE

Windows Live SOXE Definitions

Windows Live UX Platform

Windows Live UX Platform Language Pack

Windows Live Writer

Windows Live Writer Resources

.

==== Event Viewer Messages From Past Week ========

.

3/8/2013 11:33:00 AM, Error: Service Control Manager [7000] - The Apple Mobile Device service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

3/8/2013 11:32:59 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device service to connect.

3/8/2013 11:30:28 AM, Error: Service Control Manager [7031] - The Akamai NetSession Interface service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service.

3/8/2013 1:56:30 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the avg9wd service.

3/12/2013 10:22:27 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB915597 (Definition 1.145.1584.0).

3/12/2013 10:14:02 AM, Error: Microsoft-Windows-GroupPolicy [1096] - The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the file name and path that caused the failure.

.

==== End Of File ===========================

Link to post
Share on other sites

Hello again,

I see that recently AVG2013 was removed, and also, that there appears to be no antivirus installed at this point.

Get & Save & then run the AVG Remover tool

AVG Remover tool download page http://www.avg.com/us-en/utilities

When that is all done, Logoff and Restart Windows fresh.

Download and install an antivirus program, and make sure that you keep it updated

New viruses come out every minute, so it is essential that you have the latest signatures for your antivirus program to provide you with the best possible protection from malicious software.

Two good antivirus programs free for non-commercial home use are Avira Free Antivirus and Microsoft Security Essentials

Note: You should only have one antivirus installed at a time. Having more than one antivirus program installed at once is likely to cause conflicts and may well decrease your overall protection as well as impairing the performance of your PC.

Advise me after you have completed these tasks. There will be a lot more to follow.

Link to post
Share on other sites

Step 1

1. Go >> Here << and download ERUNT

(ERUNT (Emergency Recovery Utility NT) is a free program that allows you to keep a complete backup of your registry and restore it when needed.)

2. Install ERUNT by following the prompts

(use the default install settings but say no to the portion that asks you to add ERUNT to the start-up folder, if you like you can enable this option later)

3. Start ERUNT

(either by double clicking on the desktop icon or choosing to start the program at the end of the setup)

4. Choose a location for the backup

(the default location is C:\WINDOWS\ERDNT which is acceptable).

5. Make sure that at least the first two check boxes are ticked

6. Press OK

7. Press YES to create the folder.

Step 2

To show all files:

  • Press Windows-key +R key on your keyboard to get RUN option.
  • Type in
    explorer.exe

    and press Enter to start Windows Explorer.

  • From the menu options, Select Tools, then Folder Options.
  • Next click the View tab.
  • Locate and uncheck Hide file extensions for known file types.
  • Locate and uncheck Hide protected operating system files (Recommended).
  • Locate and click Show hidden files and folders and drives.
  • Click Apply > OK.

Step 3

Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools

For directions on how, see How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs

Do NOT turn off the firewall

Please download AdwCleaner © Xplode from >>here<< and save it on your Desktop.

If your are running Windows XP, double click adwcleaner.exe to start it.

Otherwise, Right-click on adwcleaner.exe and select Run As Administrator to launch the application.

Now click on the Search tab.

Please post the contents of the log-file created in your next post.

Note: The log can also be located at C:\AdwCleaner[XX].txt where XX Denotes the number of times the application has been ran, so in this should be something like R1.

Step 4

Please read carefully and follow these steps.

  • Download TDSSKiller and save it to your Desktop.
  • Double-Click on TDSSKiller.exe to run the application, then on Start Scan.
    If running Vista or Windows 7, do a RIGHT-Click and select Run as Administrator to start TDSSKILLER.exe.
  • If an infected file is detected, the default action will be Cure, click on Continue.
    TDSSKillerMal-1.png
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • If you get the warning about a file UnsignedFile.Multi.Generic or LockedFile.Multi.Generic please choose
    Skip and click on Continue
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
    TDSSKillerCompleted.png
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.

Step 5

  • Download & SAVE to your Desktop >> Tigzy's RogueKillerfrom here << or
    >> from here <<
  • Quit all programs that you may have started.
  • Please disconnect any USB or external drives from the computer before you run this scan!
  • For Vista or Windows 7, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.
    For Windows XP, double-click to start.
  • Wait until Prescan has finished ...
  • Then Click on Scan button at upper right of screen.
  • Wait until the Status box shows "Scan Finished"
  • Click on Report and copy/paste the content of the Notepad into your next reply.
  • The log should be found in RKreport[1].txt on your Desktop
  • Exit/Close RogueKiller

Do NOT click any FIX buttons !

Step 6

RE-Enable your antivirus program. excl.png

Then copy/paste the following into your post (in order):

  • the contents of C:\AdwCleaner[R1].txt;
  • the contents of TDSSKILLER log;
  • the contents of RKReport log;

Be sure to do a Preview prior to pressing Submit because all reports may not fit into 1 single reply. You may have to do more than 1 reply.

Do not use the attachment feature to place any of your reports. Always put them in-line inside the body of reply.

Link to post
Share on other sites

# AdwCleaner v2.114 - Logfile created 03/12/2013 at 13:06:20

# Updated 05/03/2013 by Xplode

# Operating system : Windows 7 Ultimate Service Pack 1 (32 bits)

# User : Angel - ANGEL-PC

# Boot Mode : Normal

# Running from : C:\Users\Angel\Downloads\adwcleaner.exe

# Option [search]

***** [services] *****

***** [Files / Folders] *****

Folder Found : C:\ProgramData\~0

Folder Found : C:\Users\Angel\AppData\Roaming\Mozilla\Firefox\Profiles\k595umuk.default\extensions\staged

***** [Registry] *****

***** [internet Browsers] *****

-\\ Internet Explorer v8.0.7601.17514

[OK] Registry is clean.

-\\ Mozilla Firefox v7.0.1 (en-US)

File : C:\Users\Angel\AppData\Roaming\Mozilla\Firefox\Profiles\k595umuk.default\prefs.js

Found : user_pref("extensions.speeddial.thumbnail-1-url", "hxxps://mail.google.com/mail/?hl=en&shva=1#inbox"[...]

File : C:\Users\Tony\AppData\Roaming\Mozilla\Firefox\Profiles\bewz6msf.default\prefs.js

Found : user_pref("betterfacebook.cecesaucer/typeahead", "for (;;);{\"__ar\":1,\"payload\":{\"entries\":[{\"[...]

File : C:\Users\Siejja\AppData\Roaming\Mozilla\Firefox\Profiles\826y04i1.default\prefs.js

[OK] File is clean.

File : C:\Users\Sierra\AppData\Roaming\Mozilla\Firefox\Profiles\brbk72co.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [1341 octets] - [12/03/2013 13:06:20]

########## EOF - C:\AdwCleaner[R1].txt - [1401 octets] ##########

Link to post
Share on other sites

13:09:22.0076 4044 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42

13:09:22.0591 4044 ============================================================

13:09:22.0591 4044 Current date / time: 2013/03/12 13:09:22.0591

13:09:22.0591 4044 SystemInfo:

13:09:22.0591 4044

13:09:22.0591 4044 OS Version: 6.1.7601 ServicePack: 1.0

13:09:22.0591 4044 Product type: Workstation

13:09:22.0591 4044 ComputerName: ANGEL-PC

13:09:22.0591 4044 UserName: Angel

13:09:22.0591 4044 Windows directory: C:\Windows

13:09:22.0591 4044 System windows directory: C:\Windows

13:09:22.0591 4044 Processor architecture: Intel x86

13:09:22.0591 4044 Number of processors: 1

13:09:22.0591 4044 Page size: 0x1000

13:09:22.0591 4044 Boot type: Normal boot

13:09:22.0591 4044 ============================================================

13:09:24.0169 4044 Drive \Device\Harddisk0\DR0 - Size: 0x12A04E9E00 (74.50 Gb), SectorSize: 0x200, Cylinders: 0x25FD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050

13:09:24.0169 4044 ============================================================

13:09:24.0169 4044 \Device\Harddisk0\DR0:

13:09:24.0169 4044 MBR partitions:

13:09:24.0169 4044 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x94FE97E

13:09:24.0169 4044 ============================================================

13:09:24.0201 4044 C: <-> \Device\Harddisk0\DR0\Partition1

13:09:24.0201 4044 ============================================================

13:09:24.0201 4044 Initialize success

13:09:24.0201 4044 ============================================================

13:09:34.0466 2832 ============================================================

13:09:34.0466 2832 Scan started

13:09:34.0466 2832 Mode: Manual;

13:09:34.0466 2832 ============================================================

13:09:35.0201 2832 ================ Scan system memory ========================

13:09:35.0201 2832 System memory - ok

13:09:35.0201 2832 ================ Scan services =============================

13:09:35.0529 2832 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys

13:09:35.0544 2832 1394ohci - ok

13:09:35.0623 2832 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys

13:09:35.0638 2832 ACPI - ok

13:09:35.0701 2832 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys

13:09:35.0701 2832 AcpiPmi - ok

13:09:35.0810 2832 [ 11A52CF7B265631DEEB24C6149309EFF ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe

13:09:35.0810 2832 AdobeARMservice - ok

13:09:35.0888 2832 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys

13:09:35.0904 2832 adp94xx - ok

13:09:35.0935 2832 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys

13:09:35.0966 2832 adpahci - ok

13:09:36.0013 2832 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys

13:09:36.0013 2832 adpu320 - ok

13:09:36.0076 2832 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll

13:09:36.0076 2832 AeLookupSvc - ok

13:09:36.0154 2832 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys

13:09:36.0169 2832 AFD - ok

13:09:36.0232 2832 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys

13:09:36.0248 2832 agp440 - ok

13:09:36.0279 2832 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys

13:09:36.0279 2832 aic78xx - ok

13:09:36.0560 2832 [ B9B98E08EC127900025F42462D3D0A66 ] Akamai c:\program files\common files\akamai/netsession_win_ce5ba24.dll

13:09:36.0560 2832 Suspicious file (Hidden): c:\program files\common files\akamai/netsession_win_ce5ba24.dll. md5: B9B98E08EC127900025F42462D3D0A66

13:09:36.0591 2832 Akamai ( HiddenFile.Multi.Generic ) - warning

13:09:36.0591 2832 Akamai - detected HiddenFile.Multi.Generic (1)

13:09:36.0763 2832 [ 34149A136B2B7525113950233F259EC1 ] ALCXWDM C:\Windows\system32\drivers\ALCXWDM.SYS

13:09:36.0873 2832 ALCXWDM - ok

13:09:36.0919 2832 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe

13:09:36.0919 2832 ALG - ok

13:09:36.0998 2832 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys

13:09:37.0013 2832 aliide - ok

13:09:37.0044 2832 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys

13:09:37.0044 2832 amdagp - ok

13:09:37.0076 2832 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys

13:09:37.0091 2832 amdide - ok

13:09:37.0138 2832 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys

13:09:37.0138 2832 AmdK8 - ok

13:09:37.0169 2832 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys

13:09:37.0169 2832 AmdPPM - ok

13:09:37.0248 2832 [ E7F4D42D8076EC60E21715CD11743A0D ] amdsata C:\Windows\system32\drivers\amdsata.sys

13:09:37.0263 2832 amdsata - ok

13:09:37.0310 2832 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys

13:09:37.0310 2832 amdsbs - ok

13:09:37.0341 2832 [ 146459D2B08BFDCBFA856D9947043C81 ] amdxata C:\Windows\system32\drivers\amdxata.sys

13:09:37.0357 2832 amdxata - ok

13:09:37.0419 2832 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys

13:09:37.0435 2832 AppID - ok

13:09:37.0498 2832 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll

13:09:37.0498 2832 AppIDSvc - ok

13:09:37.0576 2832 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll

13:09:37.0576 2832 Appinfo - ok

13:09:37.0638 2832 [ A45D184DF6A8803DA13A0B329517A64A ] AppMgmt C:\Windows\System32\appmgmts.dll

13:09:37.0638 2832 AppMgmt - ok

13:09:37.0669 2832 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys

13:09:37.0669 2832 arc - ok

13:09:37.0701 2832 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys

13:09:37.0701 2832 arcsas - ok

13:09:37.0763 2832 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys

13:09:37.0763 2832 AsyncMac - ok

13:09:37.0826 2832 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys

13:09:37.0826 2832 atapi - ok

13:09:37.0904 2832 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll

13:09:37.0919 2832 AudioEndpointBuilder - ok

13:09:37.0951 2832 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll

13:09:37.0951 2832 Audiosrv - ok

13:09:37.0998 2832 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll

13:09:37.0998 2832 AxInstSV - ok

13:09:38.0044 2832 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys

13:09:38.0060 2832 b06bdrv - ok

13:09:38.0123 2832 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys

13:09:38.0138 2832 b57nd60x - ok

13:09:38.0185 2832 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll

13:09:38.0201 2832 BDESVC - ok

13:09:38.0216 2832 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys

13:09:38.0216 2832 Beep - ok

13:09:38.0310 2832 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll

13:09:38.0326 2832 BFE - ok

13:09:38.0404 2832 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll

13:09:38.0435 2832 BITS - ok

13:09:38.0466 2832 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys

13:09:38.0466 2832 blbdrive - ok

13:09:38.0529 2832 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys

13:09:38.0529 2832 bowser - ok

13:09:38.0560 2832 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys

13:09:38.0560 2832 BrFiltLo - ok

13:09:38.0591 2832 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys

13:09:38.0591 2832 BrFiltUp - ok

13:09:38.0654 2832 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll

13:09:38.0654 2832 Browser - ok

13:09:38.0732 2832 [ 2FE6D5BE0629F706197B30C0AA05DE30 ] BrPar C:\Windows\System32\drivers\BrPar.sys

13:09:38.0732 2832 BrPar - ok

13:09:38.0763 2832 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys

13:09:38.0779 2832 Brserid - ok

13:09:38.0826 2832 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys

13:09:38.0826 2832 BrSerWdm - ok

13:09:38.0857 2832 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys

13:09:38.0857 2832 BrUsbMdm - ok

13:09:38.0888 2832 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys

13:09:38.0888 2832 BrUsbSer - ok

13:09:38.0919 2832 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys

13:09:38.0935 2832 BTHMODEM - ok

13:09:38.0982 2832 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll

13:09:38.0982 2832 bthserv - ok

13:09:39.0044 2832 [ 248DFA5762DDE38DFDDBBD44149E9D7A ] BVRPMPR5 C:\Windows\system32\drivers\BVRPMPR5.SYS

13:09:39.0044 2832 BVRPMPR5 - ok

13:09:39.0107 2832 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys

13:09:39.0107 2832 cdfs - ok

13:09:39.0185 2832 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys

13:09:39.0185 2832 cdrom - ok

13:09:39.0263 2832 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll

13:09:39.0279 2832 CertPropSvc - ok

13:09:39.0310 2832 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys

13:09:39.0310 2832 circlass - ok

13:09:39.0357 2832 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys

13:09:39.0373 2832 CLFS - ok

13:09:39.0482 2832 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

13:09:39.0482 2832 clr_optimization_v2.0.50727_32 - ok

13:09:39.0513 2832 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys

13:09:39.0513 2832 CmBatt - ok

13:09:39.0591 2832 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys

13:09:39.0591 2832 cmdide - ok

13:09:39.0638 2832 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys

13:09:39.0654 2832 CNG - ok

13:09:39.0685 2832 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys

13:09:39.0685 2832 Compbatt - ok

13:09:39.0748 2832 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys

13:09:39.0748 2832 CompositeBus - ok

13:09:39.0779 2832 COMSysApp - ok

13:09:39.0826 2832 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys

13:09:39.0826 2832 crcdisk - ok

13:09:39.0935 2832 [ 96C0E38905CFD788313BE8E11DAE3F2F ] CryptSvc C:\Windows\system32\cryptsvc.dll

13:09:39.0935 2832 CryptSvc - ok

13:09:39.0998 2832 [ 3C2177A897B4CA2788C6FB0C3FD81D4B ] CSC C:\Windows\system32\drivers\csc.sys

13:09:40.0029 2832 CSC - ok

13:09:40.0091 2832 [ 15F93B37F6801943360D9EB42485D5D3 ] CscService C:\Windows\System32\cscsvc.dll

13:09:40.0123 2832 CscService - ok

13:09:40.0169 2832 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll

13:09:40.0185 2832 DcomLaunch - ok

13:09:40.0232 2832 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll

13:09:40.0248 2832 defragsvc - ok

13:09:40.0341 2832 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys

13:09:40.0373 2832 DfsC - ok

13:09:40.0451 2832 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll

13:09:40.0466 2832 Dhcp - ok

13:09:40.0513 2832 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys

13:09:40.0513 2832 discache - ok

13:09:40.0560 2832 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys

13:09:40.0576 2832 Disk - ok

13:09:40.0638 2832 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll

13:09:40.0638 2832 Dnscache - ok

13:09:40.0716 2832 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll

13:09:40.0716 2832 dot3svc - ok

13:09:40.0794 2832 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll

13:09:40.0794 2832 DPS - ok

13:09:40.0841 2832 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys

13:09:40.0857 2832 drmkaud - ok

13:09:40.0919 2832 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys

13:09:40.0951 2832 DXGKrnl - ok

13:09:40.0998 2832 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll

13:09:40.0998 2832 EapHost - ok

13:09:41.0138 2832 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys

13:09:41.0232 2832 ebdrv - ok

13:09:41.0279 2832 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe

13:09:41.0294 2832 EFS - ok

13:09:41.0341 2832 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe

13:09:41.0373 2832 ehRecvr - ok

13:09:41.0404 2832 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe

13:09:41.0419 2832 ehSched - ok

13:09:41.0482 2832 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys

13:09:41.0498 2832 elxstor - ok

13:09:41.0560 2832 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys

13:09:41.0560 2832 ErrDev - ok

13:09:41.0638 2832 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll

13:09:41.0654 2832 EventSystem - ok

13:09:41.0701 2832 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys

13:09:41.0701 2832 exfat - ok

13:09:41.0748 2832 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys

13:09:41.0748 2832 fastfat - ok

13:09:41.0841 2832 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe

13:09:41.0857 2832 Fax - ok

13:09:41.0888 2832 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys

13:09:41.0888 2832 fdc - ok

13:09:41.0935 2832 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll

13:09:41.0951 2832 fdPHost - ok

13:09:41.0966 2832 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll

13:09:41.0966 2832 FDResPub - ok

13:09:42.0013 2832 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys

13:09:42.0013 2832 FileInfo - ok

13:09:42.0029 2832 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys

13:09:42.0029 2832 Filetrace - ok

13:09:42.0076 2832 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys

13:09:42.0076 2832 flpydisk - ok

13:09:42.0107 2832 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys

13:09:42.0107 2832 FltMgr - ok

13:09:42.0201 2832 [ FA6C66E4364D7DA57AADE5DCC03BB999 ] FontCache C:\Windows\system32\FntCache.dll

13:09:42.0232 2832 FontCache - ok

13:09:42.0310 2832 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe

13:09:42.0310 2832 FontCache3.0.0.0 - ok

13:09:42.0357 2832 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys

13:09:42.0357 2832 FsDepends - ok

13:09:42.0451 2832 [ D909075FA72C090F27AA926C32CB4612 ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys

13:09:42.0451 2832 fssfltr - ok

13:09:42.0623 2832 [ 4CE9DAC1518FF7E77BD213E6394B9D77 ] fsssvc C:\Program Files\Windows Live\Family Safety\fsssvc.exe

13:09:42.0669 2832 fsssvc - ok

13:09:42.0732 2832 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys

13:09:42.0732 2832 Fs_Rec - ok

13:09:42.0810 2832 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys

13:09:42.0826 2832 fvevol - ok

13:09:42.0873 2832 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys

13:09:42.0873 2832 gagp30kx - ok

13:09:42.0935 2832 [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys

13:09:42.0935 2832 GEARAspiWDM - ok

13:09:42.0998 2832 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll

13:09:43.0029 2832 gpsvc - ok

13:09:43.0060 2832 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys

13:09:43.0060 2832 hcw85cir - ok

13:09:43.0123 2832 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys

13:09:43.0138 2832 HDAudBus - ok

13:09:43.0169 2832 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys

13:09:43.0169 2832 HidBatt - ok

13:09:43.0201 2832 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys

13:09:43.0216 2832 HidBth - ok

13:09:43.0263 2832 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys

13:09:43.0263 2832 HidIr - ok

13:09:43.0310 2832 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll

13:09:43.0310 2832 hidserv - ok

13:09:43.0388 2832 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys

13:09:43.0388 2832 HidUsb - ok

13:09:43.0451 2832 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll

13:09:43.0451 2832 hkmsvc - ok

13:09:43.0529 2832 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll

13:09:43.0544 2832 HomeGroupListener - ok

13:09:43.0607 2832 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll

13:09:43.0623 2832 HomeGroupProvider - ok

13:09:43.0669 2832 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys

13:09:43.0669 2832 HpSAMD - ok

13:09:43.0732 2832 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys

13:09:43.0748 2832 HTTP - ok

13:09:43.0810 2832 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys

13:09:43.0810 2832 hwpolicy - ok

13:09:43.0888 2832 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys

13:09:43.0888 2832 i8042prt - ok

13:09:43.0935 2832 [ A3CAE5D281DB4CFF7CFF8233507EE5AD ] iaStorV C:\Windows\system32\drivers\iaStorV.sys

13:09:43.0951 2832 iaStorV - ok

13:09:44.0044 2832 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe

13:09:44.0076 2832 idsvc - ok

13:09:44.0154 2832 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys

13:09:44.0154 2832 iirsp - ok

13:09:44.0232 2832 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll

13:09:44.0248 2832 IKEEXT - ok

13:09:44.0294 2832 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys

13:09:44.0294 2832 intelide - ok

13:09:44.0357 2832 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys

13:09:44.0357 2832 intelppm - ok

13:09:44.0404 2832 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll

13:09:44.0404 2832 IPBusEnum - ok

13:09:44.0451 2832 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys

13:09:44.0451 2832 IpFilterDriver - ok

13:09:44.0513 2832 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll

13:09:44.0544 2832 iphlpsvc - ok

13:09:44.0607 2832 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys

13:09:44.0607 2832 IPMIDRV - ok

13:09:44.0638 2832 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys

13:09:44.0654 2832 IPNAT - ok

13:09:44.0685 2832 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys

13:09:44.0701 2832 IRENUM - ok

13:09:44.0732 2832 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys

13:09:44.0732 2832 isapnp - ok

13:09:44.0810 2832 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys

13:09:44.0810 2832 iScsiPrt - ok

13:09:44.0888 2832 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys

13:09:44.0888 2832 kbdclass - ok

13:09:44.0935 2832 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys

13:09:44.0935 2832 kbdhid - ok

13:09:44.0966 2832 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe

13:09:44.0966 2832 KeyIso - ok

13:09:45.0013 2832 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys

13:09:45.0013 2832 KSecDD - ok

13:09:45.0060 2832 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys

13:09:45.0060 2832 KSecPkg - ok

13:09:45.0123 2832 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll

13:09:45.0138 2832 KtmRm - ok

13:09:45.0216 2832 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll

13:09:45.0232 2832 LanmanServer - ok

13:09:45.0294 2832 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll

13:09:45.0310 2832 LanmanWorkstation - ok

13:09:45.0388 2832 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys

13:09:45.0388 2832 lltdio - ok

13:09:45.0435 2832 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll

13:09:45.0451 2832 lltdsvc - ok

13:09:45.0482 2832 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll

13:09:45.0482 2832 lmhosts - ok

13:09:45.0529 2832 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys

13:09:45.0544 2832 LSI_FC - ok

13:09:45.0560 2832 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys

13:09:45.0576 2832 LSI_SAS - ok

13:09:45.0607 2832 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys

13:09:45.0607 2832 LSI_SAS2 - ok

13:09:45.0638 2832 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys

13:09:45.0638 2832 LSI_SCSI - ok

13:09:45.0701 2832 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys

13:09:45.0701 2832 luafv - ok

13:09:45.0794 2832 [ 629CABB0421668C9D3D402A3C3D77E14 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys

13:09:45.0794 2832 MBAMProtector - ok

13:09:45.0873 2832 [ 1ACAA67676E9E7BDA5E0C41B6E0DECAF ] MBAMScheduler C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

13:09:45.0888 2832 MBAMScheduler - ok

13:09:45.0951 2832 [ 916B8954AC3E06DC9E898AFFB41F3FB6 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

13:09:45.0982 2832 MBAMService - ok

13:09:46.0044 2832 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll

13:09:46.0060 2832 Mcx2Svc - ok

13:09:46.0123 2832 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys

13:09:46.0123 2832 megasas - ok

13:09:46.0154 2832 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys

13:09:46.0169 2832 MegaSR - ok

13:09:46.0279 2832 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe

13:09:46.0279 2832 Microsoft Office Groove Audit Service - ok

13:09:46.0341 2832 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll

13:09:46.0341 2832 MMCSS - ok

13:09:46.0373 2832 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys

13:09:46.0388 2832 Modem - ok

13:09:46.0451 2832 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys

13:09:46.0451 2832 monitor - ok

13:09:46.0544 2832 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys

13:09:46.0544 2832 mouclass - ok

13:09:46.0591 2832 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys

13:09:46.0591 2832 mouhid - ok

13:09:46.0654 2832 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys

13:09:46.0669 2832 mountmgr - ok

13:09:46.0763 2832 [ CF105EE42E3F71E648CEBB3F666E1CF0 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys

13:09:46.0779 2832 MpFilter - ok

13:09:46.0810 2832 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys

13:09:46.0826 2832 mpio - ok

13:09:46.0951 2832 [ A69630D039C38018689190234F866D77 ] MpKsle7708f63 c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2FEB5A73-87D0-4122-9379-6AC88B696E91}\MpKsle7708f63.sys

13:09:46.0966 2832 MpKsle7708f63 - ok

13:09:46.0998 2832 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys

13:09:46.0998 2832 mpsdrv - ok

13:09:47.0076 2832 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll

13:09:47.0107 2832 MpsSvc - ok

13:09:47.0154 2832 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys

13:09:47.0169 2832 MRxDAV - ok

13:09:47.0232 2832 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys

13:09:47.0232 2832 mrxsmb - ok

13:09:47.0294 2832 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys

13:09:47.0310 2832 mrxsmb10 - ok

13:09:47.0326 2832 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys

13:09:47.0341 2832 mrxsmb20 - ok

13:09:47.0373 2832 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys

13:09:47.0373 2832 msahci - ok

13:09:47.0435 2832 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys

13:09:47.0435 2832 msdsm - ok

13:09:47.0482 2832 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe

13:09:47.0498 2832 MSDTC - ok

13:09:47.0544 2832 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys

13:09:47.0544 2832 Msfs - ok

13:09:47.0576 2832 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys

13:09:47.0576 2832 mshidkmdf - ok

13:09:47.0654 2832 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys

13:09:47.0654 2832 msisadrv - ok

13:09:47.0701 2832 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll

13:09:47.0701 2832 MSiSCSI - ok

13:09:47.0716 2832 msiserver - ok

13:09:47.0763 2832 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys

13:09:47.0763 2832 MSKSSRV - ok

13:09:47.0857 2832 [ C1F19D2BACBEE9AB64D9AE69E9859AC0 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe

13:09:47.0857 2832 MsMpSvc - ok

13:09:47.0888 2832 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys

13:09:47.0904 2832 MSPCLOCK - ok

13:09:47.0951 2832 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys

13:09:47.0951 2832 MSPQM - ok

13:09:47.0982 2832 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys

13:09:47.0998 2832 MsRPC - ok

13:09:48.0029 2832 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys

13:09:48.0029 2832 mssmbios - ok

13:09:48.0060 2832 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys

13:09:48.0060 2832 MSTEE - ok

13:09:48.0091 2832 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys

13:09:48.0091 2832 MTConfig - ok

13:09:48.0138 2832 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys

13:09:48.0138 2832 Mup - ok

13:09:48.0216 2832 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll

13:09:48.0232 2832 napagent - ok

13:09:48.0294 2832 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys

13:09:48.0310 2832 NativeWifiP - ok

13:09:48.0373 2832 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys

13:09:48.0404 2832 NDIS - ok

13:09:48.0451 2832 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys

13:09:48.0451 2832 NdisCap - ok

13:09:48.0498 2832 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys

13:09:48.0498 2832 NdisTapi - ok

13:09:48.0560 2832 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys

13:09:48.0576 2832 Ndisuio - ok

13:09:48.0638 2832 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys

13:09:48.0638 2832 NdisWan - ok

13:09:48.0716 2832 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys

13:09:48.0716 2832 NDProxy - ok

13:09:48.0779 2832 [ 90EB97C8DBF11BB0016C51946AC5ECD6 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll

13:09:48.0794 2832 Net Driver HPZ12 - ok

13:09:48.0810 2832 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys

13:09:48.0826 2832 NetBIOS - ok

13:09:48.0888 2832 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys

13:09:48.0888 2832 NetBT - ok

13:09:48.0919 2832 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe

13:09:48.0935 2832 Netlogon - ok

13:09:48.0982 2832 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll

13:09:49.0013 2832 Netman - ok

13:09:49.0044 2832 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll

13:09:49.0060 2832 netprofm - ok

13:09:49.0123 2832 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe

13:09:49.0138 2832 NetTcpPortSharing - ok

13:09:49.0185 2832 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys

13:09:49.0185 2832 nfrd960 - ok

13:09:49.0248 2832 [ 832E098BCA8235436FE2D8AE50AC3718 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys

13:09:49.0263 2832 NisDrv - ok

13:09:49.0294 2832 [ E570ECA850F30EB740C2E9699DF3D2BD ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe

13:09:49.0310 2832 NisSrv - ok

13:09:49.0373 2832 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll

13:09:49.0404 2832 NlaSvc - ok

13:09:49.0466 2832 [ 25D6B2EB0A1FC4AB413AFE7EC4793EC1 ] nosGetPlusHelper C:\Program Files\NOS\bin\getPlus_Helper_3004.dll

13:09:49.0466 2832 nosGetPlusHelper - ok

13:09:49.0513 2832 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys

13:09:49.0513 2832 Npfs - ok

13:09:49.0544 2832 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll

13:09:49.0544 2832 nsi - ok

13:09:49.0591 2832 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys

13:09:49.0591 2832 nsiproxy - ok

13:09:49.0716 2832 [ 33C3093D09017CFE2E219F2472BFF6EB ] Ntfs C:\Windows\system32\drivers\Ntfs.sys

13:09:49.0748 2832 Ntfs - ok

13:09:49.0779 2832 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys

13:09:49.0794 2832 Null - ok

13:09:49.0857 2832 [ AF2EEC9580C1D32FB7EAF105D9784061 ] nvraid C:\Windows\system32\drivers\nvraid.sys

13:09:49.0857 2832 nvraid - ok

13:09:49.0904 2832 [ 9283C58EBAA2618F93482EB5DABCEC82 ] nvstor C:\Windows\system32\drivers\nvstor.sys

13:09:49.0904 2832 nvstor - ok

13:09:49.0935 2832 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys

13:09:49.0935 2832 nv_agp - ok

13:09:50.0044 2832 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE

13:09:50.0060 2832 odserv - ok

13:09:50.0123 2832 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys

13:09:50.0123 2832 ohci1394 - ok

13:09:50.0185 2832 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

13:09:50.0201 2832 ose - ok

13:09:50.0248 2832 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll

13:09:50.0263 2832 p2pimsvc - ok

13:09:50.0310 2832 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll

13:09:50.0326 2832 p2psvc - ok

13:09:50.0388 2832 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys

13:09:50.0404 2832 Parport - ok

13:09:50.0451 2832 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys

13:09:50.0466 2832 partmgr - ok

13:09:50.0498 2832 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys

13:09:50.0498 2832 Parvdm - ok

13:09:50.0529 2832 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll

13:09:50.0544 2832 PcaSvc - ok

13:09:50.0591 2832 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys

13:09:50.0591 2832 pci - ok

13:09:50.0623 2832 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys

13:09:50.0623 2832 pciide - ok

13:09:50.0669 2832 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys

13:09:50.0669 2832 pcmcia - ok

13:09:50.0716 2832 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys

13:09:50.0716 2832 pcw - ok

13:09:50.0779 2832 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys

13:09:50.0794 2832 PEAUTH - ok

13:09:50.0873 2832 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll

13:09:50.0904 2832 PeerDistSvc - ok

13:09:51.0060 2832 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll

13:09:51.0107 2832 pla - ok

13:09:51.0169 2832 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll

13:09:51.0185 2832 PlugPlay - ok

13:09:51.0232 2832 [ F0EFAF6000E9FCBD77F769D527CE5F9D ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll

13:09:51.0232 2832 Pml Driver HPZ12 - ok

13:09:51.0279 2832 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll

13:09:51.0279 2832 PNRPAutoReg - ok

13:09:51.0310 2832 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll

13:09:51.0341 2832 PNRPsvc - ok

13:09:51.0373 2832 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll

13:09:51.0388 2832 PolicyAgent - ok

13:09:51.0466 2832 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll

13:09:51.0482 2832 Power - ok

13:09:51.0529 2832 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys

13:09:51.0529 2832 PptpMiniport - ok

13:09:51.0576 2832 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys

13:09:51.0576 2832 Processor - ok

13:09:51.0654 2832 [ 43CA4CCC22D52FB58E8988F0198851D0 ] ProfSvc C:\Windows\system32\profsvc.dll

13:09:51.0669 2832 ProfSvc - ok

13:09:51.0701 2832 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe

13:09:51.0701 2832 ProtectedStorage - ok

13:09:51.0748 2832 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys

13:09:51.0748 2832 Psched - ok

13:09:51.0826 2832 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys

13:09:51.0888 2832 ql2300 - ok

13:09:51.0919 2832 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys

13:09:51.0919 2832 ql40xx - ok

13:09:51.0966 2832 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll

13:09:51.0998 2832 QWAVE - ok

13:09:52.0029 2832 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys

13:09:52.0029 2832 QWAVEdrv - ok

13:09:52.0060 2832 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys

13:09:52.0060 2832 RasAcd - ok

13:09:52.0107 2832 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys

13:09:52.0107 2832 RasAgileVpn - ok

13:09:52.0138 2832 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll

13:09:52.0138 2832 RasAuto - ok

13:09:52.0185 2832 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys

13:09:52.0185 2832 Rasl2tp - ok

13:09:52.0263 2832 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll

13:09:52.0279 2832 RasMan - ok

13:09:52.0326 2832 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys

13:09:52.0326 2832 RasPppoe - ok

13:09:52.0357 2832 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys

13:09:52.0357 2832 RasSstp - ok

13:09:52.0435 2832 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys

13:09:52.0451 2832 rdbss - ok

13:09:52.0482 2832 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys

13:09:52.0482 2832 rdpbus - ok

13:09:52.0560 2832 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys

13:09:52.0560 2832 RDPCDD - ok

13:09:52.0607 2832 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys

13:09:52.0607 2832 RDPDR - ok

13:09:52.0654 2832 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys

13:09:52.0654 2832 RDPENCDD - ok

13:09:52.0701 2832 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys

13:09:52.0701 2832 RDPREFMP - ok

13:09:52.0779 2832 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys

13:09:52.0779 2832 RdpVideoMiniport - ok

13:09:52.0841 2832 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys

13:09:52.0841 2832 RDPWD - ok

13:09:52.0935 2832 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys

13:09:52.0935 2832 rdyboost - ok

13:09:52.0982 2832 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll

13:09:52.0982 2832 RemoteAccess - ok

13:09:53.0029 2832 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll

13:09:53.0044 2832 RemoteRegistry - ok

13:09:53.0076 2832 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll

13:09:53.0091 2832 RpcEptMapper - ok

13:09:53.0123 2832 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe

13:09:53.0138 2832 RpcLocator - ok

13:09:53.0169 2832 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll

13:09:53.0185 2832 RpcSs - ok

13:09:53.0232 2832 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys

13:09:53.0232 2832 rspndr - ok

13:09:53.0294 2832 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys

13:09:53.0310 2832 s3cap - ok

13:09:53.0341 2832 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe

13:09:53.0341 2832 SamSs - ok

13:09:53.0419 2832 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys

13:09:53.0419 2832 sbp2port - ok

13:09:53.0466 2832 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll

13:09:53.0482 2832 SCardSvr - ok

13:09:53.0513 2832 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys

13:09:53.0513 2832 scfilter - ok

13:09:53.0591 2832 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll

13:09:53.0638 2832 Schedule - ok

13:09:53.0669 2832 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll

13:09:53.0669 2832 SCPolicySvc - ok

13:09:53.0732 2832 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll

13:09:53.0732 2832 SDRSVC - ok

13:09:53.0779 2832 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys

13:09:53.0794 2832 secdrv - ok

13:09:53.0826 2832 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll

13:09:53.0826 2832 seclogon - ok

13:09:53.0873 2832 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll

13:09:53.0873 2832 SENS - ok

13:09:53.0919 2832 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll

13:09:53.0935 2832 SensrSvc - ok

13:09:53.0982 2832 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys

13:09:53.0982 2832 Serenum - ok

13:09:54.0013 2832 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys

13:09:54.0013 2832 Serial - ok

13:09:54.0044 2832 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys

13:09:54.0044 2832 sermouse - ok

13:09:54.0138 2832 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll

13:09:54.0154 2832 SessionEnv - ok

13:09:54.0216 2832 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys

13:09:54.0216 2832 sffdisk - ok

13:09:54.0248 2832 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys

13:09:54.0248 2832 sffp_mmc - ok

13:09:54.0279 2832 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys

13:09:54.0279 2832 sffp_sd - ok

13:09:54.0310 2832 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys

13:09:54.0310 2832 sfloppy - ok

13:09:54.0357 2832 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll

13:09:54.0373 2832 SharedAccess - ok

13:09:54.0419 2832 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll

13:09:54.0435 2832 ShellHWDetection - ok

13:09:54.0498 2832 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys

13:09:54.0498 2832 sisagp - ok

13:09:54.0544 2832 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys

13:09:54.0544 2832 SiSRaid2 - ok

13:09:54.0591 2832 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys

13:09:54.0591 2832 SiSRaid4 - ok

13:09:54.0701 2832 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe

13:09:54.0701 2832 SkypeUpdate - ok

13:09:54.0748 2832 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys

13:09:54.0748 2832 Smb - ok

13:09:54.0794 2832 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe

13:09:54.0810 2832 SNMPTRAP - ok

13:09:54.0857 2832 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys

13:09:54.0857 2832 spldr - ok

13:09:54.0966 2832 [ 866A43013535DC8587C258E43579C764 ] Spooler C:\Windows\System32\spoolsv.exe

13:09:54.0982 2832 Spooler - ok

13:09:55.0138 2832 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe

13:09:55.0232 2832 sppsvc - ok

13:09:55.0310 2832 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll

13:09:55.0326 2832 sppuinotify - ok

13:09:55.0388 2832 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys

13:09:55.0404 2832 srv - ok

13:09:55.0451 2832 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys

13:09:55.0466 2832 srv2 - ok

13:09:55.0498 2832 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys

13:09:55.0498 2832 srvnet - ok

13:09:55.0544 2832 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll

13:09:55.0560 2832 SSDPSRV - ok

13:09:55.0591 2832 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll

13:09:55.0591 2832 SstpSvc - ok

13:09:55.0638 2832 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys

13:09:55.0638 2832 stexstor - ok

13:09:55.0732 2832 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll

13:09:55.0748 2832 StiSvc - ok

13:09:55.0779 2832 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys

13:09:55.0779 2832 storflt - ok

13:09:55.0841 2832 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys

13:09:55.0857 2832 storvsc - ok

13:09:55.0888 2832 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys

13:09:55.0904 2832 swenum - ok

13:09:55.0935 2832 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll

13:09:55.0951 2832 swprv - ok

13:09:55.0998 2832 Synth3dVsc - ok

13:09:56.0091 2832 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll

13:09:56.0123 2832 SysMain - ok

13:09:56.0201 2832 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll

13:09:56.0201 2832 TabletInputService - ok

13:09:56.0279 2832 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll

13:09:56.0294 2832 TapiSrv - ok

13:09:56.0341 2832 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll

13:09:56.0341 2832 TBS - ok

13:09:56.0435 2832 [ 7C0507D2391AF5933600CBCED799F277 ] Tcpip C:\Windows\system32\drivers\tcpip.sys

13:09:56.0482 2832 Tcpip - ok

13:09:56.0576 2832 [ 7C0507D2391AF5933600CBCED799F277 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys

13:09:56.0576 2832 TCPIP6 - ok

13:09:56.0654 2832 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys

13:09:56.0654 2832 tcpipreg - ok

13:09:56.0732 2832 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys

13:09:56.0732 2832 TDPIPE - ok

13:09:56.0794 2832 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys

13:09:56.0794 2832 TDTCP - ok

13:09:56.0873 2832 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys

13:09:56.0873 2832 tdx - ok

13:09:56.0904 2832 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys

13:09:56.0904 2832 TermDD - ok

13:09:56.0982 2832 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll

13:09:57.0013 2832 TermService - ok

13:09:57.0044 2832 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll

13:09:57.0044 2832 Themes - ok

13:09:57.0076 2832 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll

13:09:57.0091 2832 THREADORDER - ok

13:09:57.0123 2832 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll

13:09:57.0138 2832 TrkWks - ok

13:09:57.0232 2832 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe

13:09:57.0248 2832 TrustedInstaller - ok

13:09:57.0326 2832 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys

13:09:57.0326 2832 tssecsrv - ok

13:09:57.0388 2832 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys

13:09:57.0388 2832 TsUsbFlt - ok

13:09:57.0404 2832 tsusbhub - ok

13:09:57.0482 2832 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys

13:09:57.0498 2832 tunnel - ok

13:09:57.0529 2832 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys

13:09:57.0544 2832 uagp35 - ok

13:09:57.0576 2832 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys

13:09:57.0763 2832 udfs - ok

13:09:57.0841 2832 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe

13:09:57.0841 2832 UI0Detect - ok

13:09:57.0888 2832 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys

13:09:57.0888 2832 uliagpkx - ok

13:09:58.0029 2832 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys

13:09:58.0029 2832 umbus - ok

13:09:58.0076 2832 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys

13:09:58.0076 2832 UmPass - ok

13:09:58.0154 2832 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll

13:09:58.0169 2832 UmRdpService - ok

13:09:58.0216 2832 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll

13:09:58.0232 2832 upnphost - ok

13:09:58.0310 2832 [ EAFE1E00739AFE6C51487A050E772E17 ] USBAAPL C:\Windows\system32\Drivers\usbaapl.sys

13:09:58.0310 2832 USBAAPL - ok

13:09:58.0404 2832 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys

13:09:58.0404 2832 usbaudio - ok

13:09:58.0466 2832 [ 7E72E7D7E0757D59481D530FD2B0BFAE ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys

13:09:58.0466 2832 usbccgp - ok

13:09:58.0529 2832 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys

13:09:58.0529 2832 usbcir - ok

13:09:58.0591 2832 [ CFBCE999C057D78979A181C9C60F208E ] usbehci C:\Windows\system32\drivers\usbehci.sys

13:09:58.0591 2832 usbehci - ok

13:09:58.0654 2832 [ 9D22AAD9AC6A07C691A1113E5F860868 ] usbhub C:\Windows\system32\drivers\usbhub.sys

13:09:58.0669 2832 usbhub - ok

13:09:58.0701 2832 [ A6FB7957EA7AFB1165991E54CE934B74 ] usbohci C:\Windows\system32\drivers\usbohci.sys

13:09:58.0701 2832 usbohci - ok

13:09:58.0748 2832 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys

13:09:58.0748 2832 usbprint - ok

13:09:58.0794 2832 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys

13:09:58.0794 2832 usbscan - ok

13:09:58.0841 2832 [ BF63EBFC6979FEFB2BC03DF7989A0C1A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS

13:09:58.0841 2832 USBSTOR - ok

13:09:58.0888 2832 [ 78780C3EBCE17405B1CCD07A3A8A7D72 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys

13:09:58.0888 2832 usbuhci - ok

13:09:58.0919 2832 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll

13:09:58.0919 2832 UxSms - ok

13:09:58.0951 2832 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe

13:09:58.0951 2832 VaultSvc - ok

13:09:58.0998 2832 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys

13:09:58.0998 2832 vdrvroot - ok

13:09:59.0091 2832 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe

13:09:59.0107 2832 vds - ok

13:09:59.0154 2832 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys

13:09:59.0154 2832 vga - ok

13:09:59.0201 2832 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys

13:09:59.0201 2832 VgaSave - ok

13:09:59.0216 2832 VGPU - ok

13:09:59.0263 2832 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys

13:09:59.0263 2832 vhdmp - ok

13:09:59.0310 2832 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys

13:09:59.0326 2832 viaagp - ok

13:09:59.0373 2832 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys

13:09:59.0373 2832 ViaC7 - ok

13:09:59.0404 2832 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys

13:09:59.0404 2832 viaide - ok

13:09:59.0482 2832 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys

13:09:59.0498 2832 vmbus - ok

13:09:59.0529 2832 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys

13:09:59.0529 2832 VMBusHID - ok

13:09:59.0576 2832 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys

13:09:59.0576 2832 volmgr - ok

13:09:59.0607 2832 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys

13:09:59.0623 2832 volmgrx - ok

13:09:59.0654 2832 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys

13:09:59.0654 2832 volsnap - ok

13:09:59.0701 2832 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys

13:09:59.0716 2832 vsmraid - ok

13:09:59.0794 2832 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe

13:09:59.0841 2832 VSS - ok

13:09:59.0873 2832 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys

13:09:59.0873 2832 vwifibus - ok

13:09:59.0919 2832 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll

13:09:59.0935 2832 W32Time - ok

13:09:59.0982 2832 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys

13:09:59.0982 2832 WacomPen - ok

13:10:00.0060 2832 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys

13:10:00.0060 2832 WANARP - ok

13:10:00.0076 2832 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys

13:10:00.0091 2832 Wanarpv6 - ok

13:10:00.0201 2832 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe

13:10:00.0232 2832 WatAdminSvc - ok

13:10:00.0341 2832 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe

13:10:00.0388 2832 wbengine - ok

13:10:00.0435 2832 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll

13:10:00.0451 2832 WbioSrvc - ok

13:10:00.0482 2832 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll

13:10:00.0498 2832 wcncsvc - ok

13:10:00.0529 2832 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll

13:10:00.0544 2832 WcsPlugInService - ok

13:10:00.0576 2832 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys

13:10:00.0591 2832 Wd - ok

13:10:00.0654 2832 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys

13:10:00.0669 2832 Wdf01000 - ok

13:10:00.0701 2832 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll

13:10:00.0701 2832 WdiServiceHost - ok

13:10:00.0732 2832 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll

13:10:00.0732 2832 WdiSystemHost - ok

13:10:00.0794 2832 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll

13:10:00.0810 2832 WebClient - ok

13:10:00.0857 2832 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll

13:10:00.0873 2832 Wecsvc - ok

13:10:00.0919 2832 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll

13:10:00.0919 2832 wercplsupport - ok

13:10:00.0951 2832 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll

13:10:00.0966 2832 WerSvc - ok

13:10:00.0998 2832 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys

13:10:01.0013 2832 WfpLwf - ok

13:10:01.0044 2832 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys

13:10:01.0044 2832 WIMMount - ok

13:10:01.0107 2832 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll

13:10:01.0138 2832 WinDefend - ok

13:10:01.0169 2832 WinHttpAutoProxySvc - ok

13:10:01.0263 2832 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll

13:10:01.0263 2832 Winmgmt - ok

13:10:01.0357 2832 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll

13:10:01.0404 2832 WinRM - ok

13:10:01.0482 2832 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys

13:10:01.0482 2832 WinUsb - ok

13:10:01.0560 2832 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll

13:10:01.0591 2832 Wlansvc - ok

13:10:01.0669 2832 [ 6067ACEF367E79914AF628FA1E9B5330 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe

13:10:01.0685 2832 wlcrasvc - ok

13:10:01.0841 2832 [ 0A70F4022EC2E14C159EFC4F69AA2477 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

13:10:01.0904 2832 wlidsvc - ok

13:10:01.0982 2832 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys

13:10:01.0982 2832 WmiAcpi - ok

13:10:02.0029 2832 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe

13:10:02.0029 2832 wmiApSrv - ok

13:10:02.0123 2832 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe

13:10:02.0154 2832 WMPNetworkSvc - ok

13:10:02.0185 2832 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll

13:10:02.0201 2832 WPCSvc - ok

13:10:02.0279 2832 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll

13:10:02.0279 2832 WPDBusEnum - ok

13:10:02.0326 2832 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys

13:10:02.0326 2832 ws2ifsl - ok

13:10:02.0373 2832 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll

13:10:02.0373 2832 wscsvc - ok

13:10:02.0404 2832 WSearch - ok

13:10:02.0529 2832 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll

13:10:02.0591 2832 wuauserv - ok

13:10:02.0623 2832 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys

13:10:02.0623 2832 WudfPf - ok

13:10:02.0716 2832 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys

13:10:02.0716 2832 WUDFRd - ok

13:10:02.0794 2832 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll

13:10:02.0794 2832 wudfsvc - ok

13:10:02.0841 2832 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll

13:10:02.0873 2832 WwanSvc - ok

13:10:02.0935 2832 [ B07C5B7EFDF936FF93D4F540938725BE ] yukonw7 C:\Windows\system32\DRIVERS\yk62x86.sys

13:10:02.0951 2832 yukonw7 - ok

13:10:02.0966 2832 ================ Scan global ===============================

13:10:03.0029 2832 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll

13:10:03.0091 2832 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll

13:10:03.0123 2832 [ 1F5F07091D50244F17DD8D5147A628CC ] C:\Windows\system32\winsrv.dll

13:10:03.0169 2832 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll

13:10:03.0216 2832 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe

13:10:03.0232 2832 [Global] - ok

13:10:03.0232 2832 ================ Scan MBR ==================================

13:10:03.0248 2832 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0

13:10:03.0826 2832 \Device\Harddisk0\DR0 - ok

13:10:03.0841 2832 ================ Scan VBR ==================================

13:10:03.0841 2832 [ B76049860FB155A55255BA334D62CA5E ] \Device\Harddisk0\DR0\Partition1

13:10:03.0841 2832 \Device\Harddisk0\DR0\Partition1 - ok

13:10:03.0857 2832 ============================================================

13:10:03.0857 2832 Scan finished

13:10:03.0857 2832 ============================================================

13:10:03.0873 2744 Detected object count: 1

13:10:03.0873 2744 Actual detected object count: 1

13:11:02.0357 2744 Akamai ( HiddenFile.Multi.Generic ) - skipped by user

13:11:02.0357 2744 Akamai ( HiddenFile.Multi.Generic ) - User select action: Skip

Link to post
Share on other sites

RogueKiller V8.5.2 [Mar 9 2013] by Tigzy

mail : tigzyRK<at>gmail<dot>com

Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/

Website : http://tigzy.geekstogo.com/roguekiller.php

Blog : http://tigzyrk.blogspot.com/

Operating System : Windows 7 (6.1.7601 Service Pack 1) 32 bits version

Started in : Normal mode

User : Angel [Admin rights]

Mode : Scan -- Date : 03/12/2013 13:15:22

| ARK || FAK || MBR |

¤¤¤ Bad processes : 1 ¤¤¤

[Microsoft][HJNAME] notepad.exe -- C:\Windows\System32\notepad.exe [7] -> KILLED [TermProc]

¤¤¤ Registry Entries : 2 ¤¤¤

[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND

[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [LOADED] ¤¤¤

¤¤¤ HOSTS File: ¤¤¤

--> C:\Windows\system32\drivers\etc\hosts

¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: WDC WD800JD-75MSA3 ATA Device +++++

--- User ---

[MBR] 526b0f8f0a210ef20d2b7f90751c657e

[bSP] f9ec633a279682a9da890416d1153a10 : Windows 7/8 MBR Code

Partition table:

0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 76285 Mo

User = LL1 ... OK!

User = LL2 ... OK!

Finished : << RKreport[1]_S_03122013_02d1315.txt >>

RKreport[1]_S_03122013_02d1315.txt

Link to post
Share on other sites

Close any open work documents, if any, saving your work.

Make sure to close any other programs that you started before.

Please download Junkware Removal Tool by Thisisu to your Desktop.

  • Please close your security software to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or 7 or 8, right-mouse click JRT.exe and select Run as administrator.
  • The tool will open and display information and disclaimer in a Command prompt window.
  • I'd suggest you close all internet browsers at this point.
  • Press a key on keyboard to start scanning your system.
  • Please be very patient as this will take several minutes to complete, depending on your system's specifications.
  • There are approximatly 12 phases or so in this tool. You will see each phase listed in the Command prompt window.
  • On completion, a log (JRT.txt) is saved to your Desktop and will automatically open. And the command prompt will have been closed.
  • Please post the contents of JRT.txt into a new reply.
  • Re-enable your security software.

Link to post
Share on other sites

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Thisisu

Version: 4.7.0 (03.11.2013:1)

OS: Windows 7 Ultimate x86

Ran by Angel on Tue 03/12/2013 at 15:42:13.30

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~ Services

~~~ Registry Values

~~~ Registry Keys

~~~ Files

~~~ Folders

~~~ FireFox

Successfully deleted the following from C:\Users\Angel\AppData\Roaming\mozilla\firefox\profiles\k595umuk.default\prefs.js

user_pref("services.sync.client.syncID", "Oav9AkUVzgPO");

Emptied folder: C:\Users\Angel\AppData\Roaming\mozilla\firefox\profiles\k595umuk.default\minidumps [3 files]

~~~ Event Viewer Logs were cleared

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Scan was completed on Tue 03/12/2013 at 15:52:29.42

End of JRT log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Link to post
Share on other sites

So far nothing found as far as infections.

Download TFC by OldTimer and SAVE it to your desktop

  • Double-click TFC.exe to run it. (Note: If you are running on Vista or Windows 7, right-click on the file and choose Run As Administrator).
  • It will close all programs when run, so make sure you have saved all your work before you begin.
  • Click the Start button to begin the process. Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two. Let it run uninterrupted to completion.
  • Once it's finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.

Next

Download Dr.Web CureIt to the desktop.

The download is nearly 104.6 MB in size

  • Turn OFF your antivirus program.
    How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs
  • Turn off any other add-on security app {if you have them} like MBAM File System Protection.
  • If this system is Windows 8/7 or VISTA, then Right-click on Drweb-cureit-9_zpsa6b7b265.gifdrweb-cureit.exe and select Run as Administrator.
  • Otherwise, on Windows XP, doubleclick on Drweb-cureit-9_zpsa6b7b265.gifdrweb-cureit.exe file to start the tool.
  • You will see a screen similar to this:
    Drweb-cureit-1_zps34a2f747.gif
    Click the checkbox to participate, and then click on Continue button.
  • Next
    Drweb-cureit-2_zpsee7bdcb6.gif
    Click on Select onjects for scanning
  • Next
    Drweb-cureit-3_zps137b4332.gif
    Put a checkmark by clicking on the boxes as shown.
    Do not select Temporary files or System Restore points.
    Then click on Start scanning button
  • The scan in progress will be shown like this
    Drweb-cureit-4_zps211037d0.gif
  • IF something is detected, you will see a screen similar to this
    Drweb-cureit-5_zpsd7be6acf.gif
    For each item "detected", click on the Action column down arrow, like this
    Drweb-cureit-8_zpsb099f9d5.gif
    Your options will be Cure or Ignore
    IF you see an item that you are very sure is ok, then un-check the checkbox for that item.
    Typically, you will keep the Cute default.
    Then click on the Neutralize button.
  • When the actions are completed, you will see this
    Drweb-cureit-7_zpsd290a127.gif
  • Click on the green Open Report line. It will pop-up the report in NOTEPAD.
    Save the report to your desktop. The report will be called Cureit.log
  • Close Dr.Web Cureit.
  • Reboot your computer to allow files that were in use to be moved/deleted during reboot.
  • After reboot, attach the log Cureit.log you saved previously in your next reply.

Re-Enable your antivirus program when all done.

Link to post
Share on other sites

=============================================================================

Dr.Web Scanner SE for Windows v7.0.100.12030

© Doctor Web, Ltd., 1992-2012

Scan session started 2013/03/12 16:34:23

Module location : C:\Users\Angel\AppData\Local\Temp\C4247C2A-9B246FEB-82ED3CA0-9D6F92DF\

=============================================================================

OPTION [Automatic Apply Actions] NO

OPTION [Turn Off Computer After Scan] NO

OPTION [use Sound Alerts] NO

OPTION [block Network] NO

OPTION [Protect Process] NO

OPTION [Protect Raw Disk] NO

Using language: "English"

Available instances: 2

Instances used: 2

Platform: Windows 7 Ultimate x86 (Build 7601), Service Pack 1

API Version: 2.2

Scanning Engine version: 8.0.2.12140

Virus Finding Engine version: 7.0.4.9250

Total 101 virus bases are loaded from C:\Users\Angel\AppData\Local\Temp\C4247C2A-9B246FEB-82ED3CA0-9D6F92DF

i4x88pk8 7.0 ad87b482200f6a385889940e33c5367b87590774 2013/03/12 10:10:20 1777 records - OK

gqa4fzl3 7.0 f5d1425097a34628f8d752212dabf9732d209c98 2011/07/25 10:20:03 1 record - OK

jxi8v7p9 7.0 55e70fd1d6c3d2a979c24771e5d0cc33c71d123b 2013/03/11 15:02:35 1391 records - OK

sicx675h 7.0 d196879775b0dc0ee8286f2e4def9adedb5b88df 2013/03/10 23:05:36 12046 records - OK

eb4swr3r 7.0 0db61d4e3235481da8493523538ced712db362c2 2013/03/03 22:05:18 21747 records - OK

0816gm4x 7.0 65f99faf227b51883c9f1c854a3f76806b60affb 2013/02/24 22:06:28 11540 records - OK

txub45i2 7.0 17bd7383b9c4b214c5c9029171db8ae1455984a0 2013/02/17 22:06:38 15568 records - OK

cqgmjz94 7.0 cbe8774953ae403e49370d552b522a5839aa9fdb 2013/02/10 22:06:00 18805 records - OK

mcmno4sq 7.0 fb6865c02a3680338e4ee0603579107227313b2b 2013/02/03 22:06:01 32488 records - OK

orvdilna 7.0 95fcd2e24cd9b2ec2610656ffa70b8bf46e86a8b 2013/01/27 22:04:52 15470 records - OK

zfxclz5h 7.0 3d710b3dd4580a7eca8c74d2c886d48f5b8b5172 2013/01/20 22:06:27 30093 records - OK

ubolsapb 7.0 bddde0b5426b7e5bebd61e1239ca529c87ae6e36 2013/01/13 22:04:41 16158 records - OK

28m6gz2r 7.0 bc40bd9330301e8d7796f489d03357fb711b3121 2013/01/06 22:04:45 19597 records - OK

5whaszx6 7.0 805b6089c867549c75f843eac96b759c3f8d101f 2012/12/30 22:05:41 18184 records - OK

9m51su2o 7.0 c12a817c1f95bb9fd8238ef0d5f68868a8d95686 2012/12/23 22:05:33 30183 records - OK

iapd0zr0 7.0 33def496782eb5b7b1cc93fdb036a1b62fa6a2fd 2012/12/16 22:06:21 25519 records - OK

dyd0kyii 7.0 422abae03c588822f412aa9aae50578a1d61737e 2012/12/09 22:05:04 20358 records - OK

8tzy1lbo 7.0 a4f0d0ecad4fb6e0afdb1925f4e0b7863b9d03fa 2012/12/02 22:06:19 20133 records - OK

r0283h2k 7.0 86daa918ee3de1e4c1e5dea6f9b5f63544cf8814 2012/11/25 22:05:22 27311 records - OK

nud9desz 7.0 6556881c748e1f894eb9c7943ebae67017e1aec2 2012/11/18 22:06:09 29434 records - OK

5n5hz2jo 7.0 559141ef34f9e6226bb58560e9b52e4cc5165150 2012/11/11 22:06:22 26900 records - OK

8luld9jj 7.0 cc55013e63ff89319ec772e34d77056c7108cd3b 2012/11/04 22:05:22 25164 records - OK

7sp0ph3f 7.0 f477dc247d9b562bb64fd4f46a7dcbdf7124eb60 2012/10/28 23:06:37 30226 records - OK

gu39uy7e 7.0 abaf5f7fda7308fcf7573b193bbf2116723e9802 2012/10/21 23:04:37 16441 records - OK

krozrbwe 7.0 5adc85528fb49e201d4bc61eca580d6839cc4a4c 2012/10/14 23:05:04 26289 records - OK

d4voo334 7.0 da8cf3fbd81206bb3d8103347a439f920a74bbe2 2012/10/07 23:05:51 27278 records - OK

horziz6k 7.0 5988744d3cb357f1a013427d466e2d79ab5f8907 2012/09/30 23:05:11 17444 records - OK

5gq3m7k0 7.0 d4a0dabf4a4df0f79805c6ccdc025f796765e786 2012/09/23 23:06:30 21205 records - OK

1lt32h6m 7.0 82ed005784d9e258213070a0cd8bfceff345018d 2012/09/16 23:05:43 11686 records - OK

88g63jun 7.0 a95ae63004b8d857c2db055f4e47c15bfc97f626 2012/09/09 23:04:34 12677 records - OK

5y3dvs71 7.0 c39bf233d25242ae9ed8cf204b9b788c8f45ab79 2012/09/02 23:05:28 10118 records - OK

39oieac3 7.0 d37b5484b009947b7cdd3837dafe8148615401c2 2012/08/26 23:05:26 12602 records - OK

8c2o8733 7.0 41bf1347794ab7060dec7aaecc1d1d95cf6fecb5 2012/08/19 23:04:05 18298 records - OK

439x6dvx 7.0 1a997511e5892aaeb69b3db70e06676af36382e3 2012/08/12 23:05:19 17126 records - OK

vzy85shh 7.0 f7226c59914e3683e538e668c3b664af3232654d 2012/08/05 23:03:53 20539 records - OK

gs6akdvm 7.0 4035c8d3b617bf935a317a8c57efaa8e835a61f4 2012/07/29 23:05:26 19330 records - OK

0zn7sfve 7.0 09b55bc000f184ed426f1d8b9665669346fe5e71 2012/07/22 23:05:34 19692 records - OK

a217gcnh 7.0 f746c097f298e94faa9db94e6f64ef9fd4a7b010 2012/07/15 23:05:43 14727 records - OK

2y0xbbbf 7.0 792a6a25a17e764390440cd4c2c6ca5a97ab162f 2012/07/08 23:04:33 19485 records - OK

i4o7f9jq 7.0 ca9905c39e3d93428a4db65a192debe9fbd7acf7 2012/07/01 23:04:55 22898 records - OK

upridk4p 7.0 dc29c610b866c66ba5327e7830452b2460149a35 2012/06/24 23:05:17 20551 records - OK

4jopluts 7.0 c28739bea153508d12942ac9a61abd475d0a0404 2012/06/17 23:03:35 9661 records - OK

h6znjb9a 7.0 e5b5835a7c512120c5348e31483a4caa2a845d28 2012/06/10 23:04:32 23632 records - OK

5kj6k96e 7.0 61853ce89026ef0ebbd80174f1b7dd5d25bbc63a 2012/06/03 23:04:41 12423 records - OK

77dy7ajn 7.0 4e6c9897e153b47ca97b7da48ceed23e555a7761 2012/05/27 23:04:26 15493 records - OK

pwhsoebx 7.0 35f4c105cecd8ec1fd01714abebf30f8f3efb96e 2012/05/20 23:03:29 13065 records - OK

l1lty9js 7.0 3522aa84677411aa7d67796bb05ea3ab62f02a71 2012/05/13 23:04:24 16238 records - OK

qv79k974 7.0 7597333540eda537bd42c0a17d4a6526ad247a2e 2012/05/06 23:04:33 11570 records - OK

581bv5ws 7.0 867814380363bc6ad605acf4b96e02c54dbd60f7 2012/04/29 23:03:28 15478 records - OK

j0wgfp7m 7.0 3c04f402d91a19039cb9c223c435dc4ea1bb3da4 2012/04/22 23:05:05 11881 records - OK

agpv8j4i 7.0 8d0220a2a50b367e61a51d3b29c2659cde41bb7f 2012/04/15 23:03:29 13578 records - OK

96zu6grr 7.0 b79dc6f5832ad390108d1880694ec538e8b34bb0 2012/04/08 23:05:02 14292 records - OK

wu74wdhp 7.0 8ff7cc095c43c2154275b7a54a89bf365e8daf4a 2012/04/01 23:03:24 14084 records - OK

efem7l4l 7.0 9502a428b32be4ad08556134e271c9ba03195398 2012/03/25 23:04:43 19126 records - OK

220h55aa 7.0 28c2fabbc645aff41baac12b911a8499ea163536 2012/03/18 23:03:23 14920 records - OK

cs392kds 7.0 86de597ff06e58206f94263f2eef33cb41b2530c 2012/03/11 23:03:25 19017 records - OK

iy81m373 7.0 5bd1d666e7c9ca70c34e591dc6c55314ce4b11af 2012/03/04 22:04:32 19691 records - OK

lgurfgie 7.0 15a9d10c451d2fcf124700f29f557d9bf338e671 2012/02/26 22:03:21 23605 records - OK

qwkpe16k 7.0 5647d941e5358105ca6558dce78873f06c48d5dc 2012/02/19 22:03:45 19067 records - OK

wqzrwnbp 7.0 c9b2600cb665ce34e0ccd0f19e0a88cd44437f51 2012/02/12 22:04:49 19019 records - OK

ukeq9atz 7.0 9df2e129e78a9d9ab491186da1329c1dd1190e17 2012/02/05 22:05:25 28028 records - OK

zam3i07b 7.0 b69b9504a51b8777b8e95a4680dc8ac1d8d8c25d 2012/01/29 22:08:41 29444 records - OK

jfkycjzi 7.0 3d7431bdee1a22d6329e017f348db7760f2645ac 2012/01/23 03:22:13 19353 records - OK

jodvjbv7 7.0 e04570f78fb00d758abdf77c534a460980e102c0 2012/01/15 22:12:31 20747 records - OK

0ew0yi0x 7.0 2de2479b112c4416e2375343f57ca789b042aecc 2012/01/08 22:04:30 28052 records - OK

7pvwzi2j 7.0 c4bd9612ff1f71d8bd23b4f1bc114eed1ae2ee6b 2012/01/01 22:04:40 12183 records - OK

yhwiq2ep 7.0 28b1d218ade8f05fdc8550c7456ac3b74f705208 2011/12/25 22:03:33 19984 records - OK

6dk6a54q 7.0 539e41e8f3d97a6f347600c7cef903d9f34e0518 2011/12/18 22:08:45 22627 records - OK

swpss0im 7.0 f8e81968965f555bce0d02fc9933fee840b97aaf 2011/12/12 15:20:22 49580 records - OK

kwrfyq6p 7.0 14751e0f442bba3efc08ee12d82a2815c61cfeb6 2011/12/04 03:00:00 45195 records - OK

kmbep7iu 7.0 5bc1f5e30792d018658f2dcdb35fc0bcbdcf4e1e 2011/12/04 02:00:00 171075 records - OK

xm98y89d 7.0 0f948a7d416c556bfc8a8be2c2c39f998fee6d9e 2011/12/04 01:00:00 170820 records - OK

94jdi998 7.0 9357c3cc73a4a374346a678f197daa22496c7ae5 2011/12/04 00:00:00 171279 records - OK

1lv1izny 7.0 ae56b06b3d6f1e13c5f10cce4ed68f2cccbf3298 2011/12/03 23:00:00 170253 records - OK

awkxx9ky 7.0 fdaab5c1079d02c94f20d07c39d638cad79d8771 2011/12/03 22:00:00 170291 records - OK

Link to post
Share on other sites

d8f8yolr 7.0 b59d8841e65d7670b2aae7f2b65734269f6c4fe3 2011/12/03 21:00:00 170501 records - OK

n33w1eky 7.0 3946b1d195434cf7a70d144da71c87559475c58f 2011/12/03 20:00:00 353582 records - OK

du43jqib 7.0 8df4695f74ea5949551df6044720694e204b13d7 2011/12/03 19:00:00 852776 records - OK

2j3asqix 7.0 df5134d85bfe4c3592f2dd07802f52dc6ec900b9 2013/03/12 10:10:45 552 records - OK

6ca1m0uv 7.0 6cb68b8fab821702ef054f864ff44917414e50fa 2013/02/03 22:13:43 2078 records - OK

limhauyh 7.0 cfbe9cf43615f7856e4c35f0fc02e2baf12e39e7 2012/12/16 22:14:14 1725 records - OK

fsid6lgt 7.0 047694e79b1a8d295f27ea9c6565062404f84a57 2012/11/11 22:12:52 2050 records - OK

3xy7hyny 7.0 f3413603f4ee1c88018a78c1f6faf2abeb8fa8c1 2012/09/23 23:13:14 1456 records - OK

wq0ci5dh 7.0 8871f579eeb7e5e7b70c6dd898afd27391d7daf4 2012/06/24 23:12:36 1421 records - OK

jkqv66nd 7.0 3ee43130fe7fec4b367a791892a444d0a791b29b 2012/03/25 23:12:30 1385 records - OK

07dxgm9r 7.0 fddc5d687537580c7166dbf117d591593bc62261 2012/01/22 23:56:09 1653 records - OK

l5gealsf 7.0 38395fbfe267484449c078dcfc8892068aab26e1 2013/03/12 10:10:37 1592 records - OK

6hyppfdo 7.0 8893c0d254eb40c78b5c78ea17fbc3be60ea6304 2013/01/20 22:24:33 2016 records - OK

qaxs182c 7.0 cdf3a9d2dcab57f90c378d9eefacbfd358a42699 2012/12/09 22:23:23 1620 records - OK

9jsj3uf5 7.0 c0726ba000e840272f0810b89051e6daa8799084 2012/11/04 22:23:16 1658 records - OK

3lrsmgdm 7.0 216611859de0125bf130d6324d43c9115cb05def 2012/10/07 23:23:20 1465 records - OK

6hu499un 7.0 264c14ad60c4423ec292f5f8b182e4448504dfa9 2012/09/09 23:23:14 1588 records - OK

swmnstf2 7.0 33197bfe9efefa9db33725d240757103c625b601 2012/07/22 23:22:36 1702 records - OK

bw5baua0 7.0 74d8e114edb84b95bc09d5a2a36191d15a61e2cb 2012/06/10 23:22:36 1659 records - OK

w7mm2scf 7.0 79ca8239f310688d2b9c314fa3d738a34985cce3 2012/04/29 23:22:34 1670 records - OK

ilg1ddkd 7.0 aac27e986e3731e5260cb76f5b14558e36660dec 2012/03/11 23:22:28 1729 records - OK

7b2t8bv6 7.0 fa5c96b8be693a20c2a295e3545419e6f117fdc4 2012/01/29 22:23:00 1523 records - OK

ziet0mfm 7.0 e9b21e0a3578ef2e2067f4876309671ddc78f65f 2011/12/18 22:22:29 1805 records - OK

hm99ecue 7.0 8f7a8f6f55130f6becc5331ab38dc2108746b8aa 2011/12/03 18:00:00 26456 records - OK

3wt2ivf8 7.0 e6d52b11d2f7d405ccd31347da3b6fde69825168 2011/12/03 17:00:00 74279 records - OK

pu8qq3cx 7.0 e20ffde4bbc58e0585b0b3b2f324bc91272c2360 2011/12/03 16:00:00 1 record - OK

Total records count: 3723172

Anti-rootkit module version (API 5.00 / 5.00)

Using C:\Users\Angel\AppData\Local\Temp\C4247C2A-9B246FEB-82ED3CA0-9D6F92DF\ns2cecbp.key as Dr.Web ® Key file

This Dr.Web ® Key is for 1 computer (A User)

-----------------------------------------------------------------------------

Start scanning

-----------------------------------------------------------------------------

Command line used:-rpcep:\pipe\6127E7F8 -rpcpr:np /protmode

Link to post
Share on other sites

Object(s) to scan:

- Scan processes in memory

- Scan boot sectors

- Scan startup directory

- Scanning for rootkits

- C:\AdwCleaner[R1].txt

- C:\autoexec.bat

- C:\Boot.BAK

- C:\Boot.ini.saved

- C:\bootmgr

- C:\BOOTSECT.BAK

- C:\config.sys

- C:\grldr

- C:\hiberfil.sys

- C:\IO.SYS

- C:\M1319.log

- C:\MSDOS.SYS

- C:\NTDETECT.COM

- C:\ntldr

- C:\pagefile.sys

- C:\TDSSKiller.2.8.16.0_12.03.2013_13.09.22_log.txt

- C:\win7ldr

- C:\Windows\system32\

- C:\Users\Angel\Documents\

- C:\Windows\TEMP\

- C:\Users\Angel\AppData\Local\Temp\

>Computer\Motherboard\SYSTEM BIOS is LHA archive

Computer\Motherboard\SYSTEM BIOS\848p775g.BIN - Ok

Computer\Motherboard\SYSTEM BIOS\awardext.rom - Ok

Computer\Motherboard\SYSTEM BIOS\ACPITBL.BIN - Ok

Computer\Motherboard\SYSTEM BIOS\AwardBmp.bmp - Ok

Computer\Motherboard\SYSTEM BIOS\awardeyt.rom - Ok

Computer\Motherboard\SYSTEM BIOS\_EN_CODE.BIN - Ok

Computer\Motherboard\SYSTEM BIOS\PPMINIT.ROM - Ok

Computer\Motherboard\SYSTEM BIOS\SBF.BIN - Ok

Computer\Motherboard\SYSTEM BIOS - Ok

Computer\Motherboard\SYSTEM BIOS - archive

c:\windows\system32\drivers\ntfs.sys - Ok

=============================================================================

Dr.Web Scanner SE for Windows v7.0.100.12030

© Doctor Web, Ltd., 1992-2012

Scan session started 2013/03/12 16:41:44

Module location : C:\Users\Angel\AppData\Local\Temp\5FBB9B3C-8B297DFC-555CA7B8-FFFF6DE0\

=============================================================================

OPTION [Automatic Apply Actions] NO

OPTION [Turn Off Computer After Scan] NO

OPTION [use Sound Alerts] NO

OPTION [block Network] NO

OPTION [Protect Process] NO

OPTION [Protect Raw Disk] NO

Using language: "English"

Available instances: 2

Instances used: 2

Platform: Windows 7 Ultimate x86 (Build 7601), Service Pack 1

API Version: 2.2

Scanning Engine version: 8.0.2.12140

Virus Finding Engine version: 7.0.4.9250

Total 101 virus bases are loaded from C:\Users\Angel\AppData\Local\Temp\5FBB9B3C-8B297DFC-555CA7B8-FFFF6DE0

i4x88pk8 7.0 ad87b482200f6a385889940e33c5367b87590774 2013/03/12 10:10:20 1777 records - OK

gqa4fzl3 7.0 f5d1425097a34628f8d752212dabf9732d209c98 2011/07/25 10:20:03 1 record - OK

jxi8v7p9 7.0 55e70fd1d6c3d2a979c24771e5d0cc33c71d123b 2013/03/11 15:02:35 1391 records - OK

sicx675h 7.0 d196879775b0dc0ee8286f2e4def9adedb5b88df 2013/03/10 23:05:36 12046 records - OK

eb4swr3r 7.0 0db61d4e3235481da8493523538ced712db362c2 2013/03/03 22:05:18 21747 records - OK

0816gm4x 7.0 65f99faf227b51883c9f1c854a3f76806b60affb 2013/02/24 22:06:28 11540 records - OK

txub45i2 7.0 17bd7383b9c4b214c5c9029171db8ae1455984a0 2013/02/17 22:06:38 15568 records - OK

cqgmjz94 7.0 cbe8774953ae403e49370d552b522a5839aa9fdb 2013/02/10 22:06:00 18805 records - OK

mcmno4sq 7.0 fb6865c02a3680338e4ee0603579107227313b2b 2013/02/03 22:06:01 32488 records - OK

orvdilna 7.0 95fcd2e24cd9b2ec2610656ffa70b8bf46e86a8b 2013/01/27 22:04:52 15470 records - OK

zfxclz5h 7.0 3d710b3dd4580a7eca8c74d2c886d48f5b8b5172 2013/01/20 22:06:27 30093 records - OK

ubolsapb 7.0 bddde0b5426b7e5bebd61e1239ca529c87ae6e36 2013/01/13 22:04:41 16158 records - OK

28m6gz2r 7.0 bc40bd9330301e8d7796f489d03357fb711b3121 2013/01/06 22:04:45 19597 records - OK

5whaszx6 7.0 805b6089c867549c75f843eac96b759c3f8d101f 2012/12/30 22:05:41 18184 records - OK

9m51su2o 7.0 c12a817c1f95bb9fd8238ef0d5f68868a8d95686 2012/12/23 22:05:33 30183 records - OK

iapd0zr0 7.0 33def496782eb5b7b1cc93fdb036a1b62fa6a2fd 2012/12/16 22:06:21 25519 records - OK

dyd0kyii 7.0 422abae03c588822f412aa9aae50578a1d61737e 2012/12/09 22:05:04 20358 records - OK

8tzy1lbo 7.0 a4f0d0ecad4fb6e0afdb1925f4e0b7863b9d03fa 2012/12/02 22:06:19 20133 records - OK

r0283h2k 7.0 86daa918ee3de1e4c1e5dea6f9b5f63544cf8814 2012/11/25 22:05:22 27311 records - OK

nud9desz 7.0 6556881c748e1f894eb9c7943ebae67017e1aec2 2012/11/18 22:06:09 29434 records - OK

5n5hz2jo 7.0 559141ef34f9e6226bb58560e9b52e4cc5165150 2012/11/11 22:06:22 26900 records - OK

8luld9jj 7.0 cc55013e63ff89319ec772e34d77056c7108cd3b 2012/11/04 22:05:22 25164 records - OK

7sp0ph3f 7.0 f477dc247d9b562bb64fd4f46a7dcbdf7124eb60 2012/10/28 23:06:37 30226 records - OK

gu39uy7e 7.0 abaf5f7fda7308fcf7573b193bbf2116723e9802 2012/10/21 23:04:37 16441 records - OK

krozrbwe 7.0 5adc85528fb49e201d4bc61eca580d6839cc4a4c 2012/10/14 23:05:04 26289 records - OK

d4voo334 7.0 da8cf3fbd81206bb3d8103347a439f920a74bbe2 2012/10/07 23:05:51 27278 records - OK

horziz6k 7.0 5988744d3cb357f1a013427d466e2d79ab5f8907 2012/09/30 23:05:11 17444 records - OK

5gq3m7k0 7.0 d4a0dabf4a4df0f79805c6ccdc025f796765e786 2012/09/23 23:06:30 21205 records - OK

1lt32h6m 7.0 82ed005784d9e258213070a0cd8bfceff345018d 2012/09/16 23:05:43 11686 records - OK

88g63jun 7.0 a95ae63004b8d857c2db055f4e47c15bfc97f626 2012/09/09 23:04:34 12677 records - OK

5y3dvs71 7.0 c39bf233d25242ae9ed8cf204b9b788c8f45ab79 2012/09/02 23:05:28 10118 records - OK

39oieac3 7.0 d37b5484b009947b7cdd3837dafe8148615401c2 2012/08/26 23:05:26 12602 records - OK

8c2o8733 7.0 41bf1347794ab7060dec7aaecc1d1d95cf6fecb5 2012/08/19 23:04:05 18298 records - OK

439x6dvx 7.0 1a997511e5892aaeb69b3db70e06676af36382e3 2012/08/12 23:05:19 17126 records - OK

vzy85shh 7.0 f7226c59914e3683e538e668c3b664af3232654d 2012/08/05 23:03:53 20539 records - OK

gs6akdvm 7.0 4035c8d3b617bf935a317a8c57efaa8e835a61f4 2012/07/29 23:05:26 19330 records - OK

0zn7sfve 7.0 09b55bc000f184ed426f1d8b9665669346fe5e71 2012/07/22 23:05:34 19692 records - OK

a217gcnh 7.0 f746c097f298e94faa9db94e6f64ef9fd4a7b010 2012/07/15 23:05:43 14727 records - OK

2y0xbbbf 7.0 792a6a25a17e764390440cd4c2c6ca5a97ab162f 2012/07/08 23:04:33 19485 records - OK

i4o7f9jq 7.0 ca9905c39e3d93428a4db65a192debe9fbd7acf7 2012/07/01 23:04:55 22898 records - OK

upridk4p 7.0 dc29c610b866c66ba5327e7830452b2460149a35 2012/06/24 23:05:17 20551 records - OK

4jopluts 7.0 c28739bea153508d12942ac9a61abd475d0a0404 2012/06/17 23:03:35 9661 records - OK

h6znjb9a 7.0 e5b5835a7c512120c5348e31483a4caa2a845d28 2012/06/10 23:04:32 23632 records - OK

5kj6k96e 7.0 61853ce89026ef0ebbd80174f1b7dd5d25bbc63a 2012/06/03 23:04:41 12423 records - OK

77dy7ajn 7.0 4e6c9897e153b47ca97b7da48ceed23e555a7761 2012/05/27 23:04:26 15493 records - OK

pwhsoebx 7.0 35f4c105cecd8ec1fd01714abebf30f8f3efb96e 2012/05/20 23:03:29 13065 records - OK

l1lty9js 7.0 3522aa84677411aa7d67796bb05ea3ab62f02a71 2012/05/13 23:04:24 16238 records - OK

qv79k974 7.0 7597333540eda537bd42c0a17d4a6526ad247a2e 2012/05/06 23:04:33 11570 records - OK

581bv5ws 7.0 867814380363bc6ad605acf4b96e02c54dbd60f7 2012/04/29 23:03:28 15478 records - OK

j0wgfp7m 7.0 3c04f402d91a19039cb9c223c435dc4ea1bb3da4 2012/04/22 23:05:05 11881 records - OK

agpv8j4i 7.0 8d0220a2a50b367e61a51d3b29c2659cde41bb7f 2012/04/15 23:03:29 13578 records - OK

96zu6grr 7.0 b79dc6f5832ad390108d1880694ec538e8b34bb0 2012/04/08 23:05:02 14292 records - OK

wu74wdhp 7.0 8ff7cc095c43c2154275b7a54a89bf365e8daf4a 2012/04/01 23:03:24 14084 records - OK

efem7l4l 7.0 9502a428b32be4ad08556134e271c9ba03195398 2012/03/25 23:04:43 19126 records - OK

220h55aa 7.0 28c2fabbc645aff41baac12b911a8499ea163536 2012/03/18 23:03:23 14920 records - OK

cs392kds 7.0 86de597ff06e58206f94263f2eef33cb41b2530c 2012/03/11 23:03:25 19017 records - OK

iy81m373 7.0 5bd1d666e7c9ca70c34e591dc6c55314ce4b11af 2012/03/04 22:04:32 19691 records - OK

lgurfgie 7.0 15a9d10c451d2fcf124700f29f557d9bf338e671 2012/02/26 22:03:21 23605 records - OK

qwkpe16k 7.0 5647d941e5358105ca6558dce78873f06c48d5dc 2012/02/19 22:03:45 19067 records - OK

wqzrwnbp 7.0 c9b2600cb665ce34e0ccd0f19e0a88cd44437f51 2012/02/12 22:04:49 19019 records - OK

ukeq9atz 7.0 9df2e129e78a9d9ab491186da1329c1dd1190e17 2012/02/05 22:05:25 28028 records - OK

zam3i07b 7.0 b69b9504a51b8777b8e95a4680dc8ac1d8d8c25d 2012/01/29 22:08:41 29444 records - OK

jfkycjzi 7.0 3d7431bdee1a22d6329e017f348db7760f2645ac 2012/01/23 03:22:13 19353 records - OK

jodvjbv7 7.0 e04570f78fb00d758abdf77c534a460980e102c0 2012/01/15 22:12:31 20747 records - OK

0ew0yi0x 7.0 2de2479b112c4416e2375343f57ca789b042aecc 2012/01/08 22:04:30 28052 records - OK

7pvwzi2j 7.0 c4bd9612ff1f71d8bd23b4f1bc114eed1ae2ee6b 2012/01/01 22:04:40 12183 records - OK

yhwiq2ep 7.0 28b1d218ade8f05fdc8550c7456ac3b74f705208 2011/12/25 22:03:33 19984 records - OK

6dk6a54q 7.0 539e41e8f3d97a6f347600c7cef903d9f34e0518 2011/12/18 22:08:45 22627 records - OK

swpss0im 7.0 f8e81968965f555bce0d02fc9933fee840b97aaf 2011/12/12 15:20:22 49580 records - OK

kwrfyq6p 7.0 14751e0f442bba3efc08ee12d82a2815c61cfeb6 2011/12/04 03:00:00 45195 records - OK

kmbep7iu 7.0 5bc1f5e30792d018658f2dcdb35fc0bcbdcf4e1e 2011/12/04 02:00:00 171075 records - OK

xm98y89d 7.0 0f948a7d416c556bfc8a8be2c2c39f998fee6d9e 2011/12/04 01:00:00 170820 records - OK

94jdi998 7.0 9357c3cc73a4a374346a678f197daa22496c7ae5 2011/12/04 00:00:00 171279 records - OK

1lv1izny 7.0 ae56b06b3d6f1e13c5f10cce4ed68f2cccbf3298 2011/12/03 23:00:00 170253 records - OK

awkxx9ky 7.0 fdaab5c1079d02c94f20d07c39d638cad79d8771 2011/12/03 22:00:00 170291 records - OK

d8f8yolr 7.0 b59d8841e65d7670b2aae7f2b65734269f6c4fe3 2011/12/03 21:00:00 170501 records - OK

n33w1eky 7.0 3946b1d195434cf7a70d144da71c87559475c58f 2011/12/03 20:00:00 353582 records - OK

du43jqib 7.0 8df4695f74ea5949551df6044720694e204b13d7 2011/12/03 19:00:00 852776 records - OK

2j3asqix 7.0 df5134d85bfe4c3592f2dd07802f52dc6ec900b9 2013/03/12 10:10:45 552 records - OK

6ca1m0uv 7.0 6cb68b8fab821702ef054f864ff44917414e50fa 2013/02/03 22:13:43 2078 records - OK

limhauyh 7.0 cfbe9cf43615f7856e4c35f0fc02e2baf12e39e7 2012/12/16 22:14:14 1725 records - OK

fsid6lgt 7.0 047694e79b1a8d295f27ea9c6565062404f84a57 2012/11/11 22:12:52 2050 records - OK

3xy7hyny 7.0 f3413603f4ee1c88018a78c1f6faf2abeb8fa8c1 2012/09/23 23:13:14 1456 records - OK

wq0ci5dh 7.0 8871f579eeb7e5e7b70c6dd898afd27391d7daf4 2012/06/24 23:12:36 1421 records - OK

jkqv66nd 7.0 3ee43130fe7fec4b367a791892a444d0a791b29b 2012/03/25 23:12:30 1385 records - OK

07dxgm9r 7.0 fddc5d687537580c7166dbf117d591593bc62261 2012/01/22 23:56:09 1653 records - OK

l5gealsf 7.0 38395fbfe267484449c078dcfc8892068aab26e1 2013/03/12 10:10:37 1592 records - OK

6hyppfdo 7.0 8893c0d254eb40c78b5c78ea17fbc3be60ea6304 2013/01/20 22:24:33 2016 records - OK

qaxs182c 7.0 cdf3a9d2dcab57f90c378d9eefacbfd358a42699 2012/12/09 22:23:23 1620 records - OK

9jsj3uf5 7.0 c0726ba000e840272f0810b89051e6daa8799084 2012/11/04 22:23:16 1658 records - OK

3lrsmgdm 7.0 216611859de0125bf130d6324d43c9115cb05def 2012/10/07 23:23:20 1465 records - OK

6hu499un 7.0 264c14ad60c4423ec292f5f8b182e4448504dfa9 2012/09/09 23:23:14 1588 records - OK

swmnstf2 7.0 33197bfe9efefa9db33725d240757103c625b601 2012/07/22 23:22:36 1702 records - OK

bw5baua0 7.0 74d8e114edb84b95bc09d5a2a36191d15a61e2cb 2012/06/10 23:22:36 1659 records - OK

w7mm2scf 7.0 79ca8239f310688d2b9c314fa3d738a34985cce3 2012/04/29 23:22:34 1670 records - OK

ilg1ddkd 7.0 aac27e986e3731e5260cb76f5b14558e36660dec 2012/03/11 23:22:28 1729 records - OK

7b2t8bv6 7.0 fa5c96b8be693a20c2a295e3545419e6f117fdc4 2012/01/29 22:23:00 1523 records - OK

ziet0mfm 7.0 e9b21e0a3578ef2e2067f4876309671ddc78f65f 2011/12/18 22:22:29 1805 records - OK

hm99ecue 7.0 8f7a8f6f55130f6becc5331ab38dc2108746b8aa 2011/12/03 18:00:00 26456 records - OK

3wt2ivf8 7.0 e6d52b11d2f7d405ccd31347da3b6fde69825168 2011/12/03 17:00:00 74279 records - OK

pu8qq3cx 7.0 e20ffde4bbc58e0585b0b3b2f324bc91272c2360 2011/12/03 16:00:00 1 record - OK

Total records count: 3723172

Anti-rootkit module version (API 5.00 / 5.00)

Using C:\Users\Angel\AppData\Local\Temp\5FBB9B3C-8B297DFC-555CA7B8-FFFF6DE0\ns2cecbp.key as Dr.Web ® Key file

This Dr.Web ® Key is for 1 computer (A User)

-----------------------------------------------------------------------------

Start scanning

-----------------------------------------------------------------------------

Command line used:-rpcep:\pipe\24232F73 -rpcpr:np /protmode

Link to post
Share on other sites

Object(s) to scan:

- Scan processes in memory

- Scan boot sectors

- Scan startup directory

- Scanning for rootkits

- C:\AdwCleaner[R1].txt

- C:\autoexec.bat

- C:\Boot.BAK

- C:\Boot.ini.saved

- C:\bootmgr

- C:\BOOTSECT.BAK

- C:\config.sys

- C:\grldr

- C:\hiberfil.sys

- C:\IO.SYS

- C:\M1319.log

- C:\MSDOS.SYS

- C:\NTDETECT.COM

- C:\ntldr

- C:\pagefile.sys

- C:\TDSSKiller.2.8.16.0_12.03.2013_13.09.22_log.txt

- C:\win7ldr

- C:\Windows\system32\

- C:\Users\Angel\Documents\

>Computer\Motherboard\SYSTEM BIOS is LHA archive

Computer\Motherboard\SYSTEM BIOS\848p775g.BIN - Ok

Computer\Motherboard\SYSTEM BIOS\awardext.rom - Ok

Computer\Motherboard\SYSTEM BIOS\ACPITBL.BIN - Ok

Computer\Motherboard\SYSTEM BIOS\AwardBmp.bmp - Ok

Computer\Motherboard\SYSTEM BIOS\awardeyt.rom - Ok

Computer\Motherboard\SYSTEM BIOS\_EN_CODE.BIN - Ok

Computer\Motherboard\SYSTEM BIOS\PPMINIT.ROM - Ok

Computer\Motherboard\SYSTEM BIOS\SBF.BIN - Ok

Computer\Motherboard\SYSTEM BIOS - Ok

Computer\Motherboard\SYSTEM BIOS - archive

c:\windows\system32\drivers\ntfs.sys - Ok

c:\windows\system32\drivers\fastfat.sys - Ok

c:\windows\system32\drivers\rdpbus.sys - Ok

c:\windows\system32\drivers\beep.sys - Ok

c:\windows\system32\drivers\ndis.sys - Ok

c:\windows\system32\drivers\ksecdd.sys - Ok

c:\windows\system32\drivers\mouclass.sys - Ok

c:\windows\system32\drivers\vmstorfl.sys - Ok

>c:\windows\system32\drivers\ksecpkg.sys - packed by FLY-CODE

c:\windows\system32\drivers\ksecpkg.sys - Ok

c:\windows\system32\drivers\kbdclass.sys - Ok

>c:\windows\system32\drivers\monitor.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\monitor.sys - packed by FLY-CODE

c:\windows\system32\drivers\monitor.sys - Ok

c:\windows\system32\drivers\ndproxy.sys - Ok

c:\windows\system32\drivers\vga.sys - Ok

c:\windows\system32\drivers\vmbus.sys - Ok

c:\windows\system32\drivers\msisadrv.sys - Ok

c:\windows\system32\drivers\mountmgr.sys - Ok

c:\windows\system32\drivers\pcw.sys - Ok

c:\windows\system32\drivers\blbdrive.sys - Ok

c:\windows\system32\drivers\hwpolicy.sys - Ok

c:\windows\system32\drivers\atapi.sys - Ok

>c:\windows\system32\drivers\peauth.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\peauth.sys - packed by FLY-CODE

c:\windows\system32\drivers\peauth.sys - Ok

c:\windows\system32\drivers\volmgrx.sys - Ok

>c:\windows\system32\drivers\pacer.sys - packed by FLY-CODE

c:\windows\system32\drivers\pacer.sys - Ok

c:\windows\system32\drivers\mouhid.sys - Ok

c:\windows\system32\drivers\usbuhci.sys - Ok

c:\windows\system32\drivers\amdxata.sys - Ok

c:\windows\system32\win32k.sys - Ok

c:\windows\system32\drivers\wudfpf.sys - Ok

c:\windows\system32\drivers\usbhub.sys - Ok

c:\windows\system32\drivers\swenum.sys - Ok

c:\windows\system32\drivers\rassstp.sys - Ok

>c:\windows\system32\drivers\tunnel.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\tunnel.sys - packed by FLY-CODE

c:\windows\system32\drivers\tunnel.sys - Ok

c:\windows\system32\drivers\brpar.sys - Ok

c:\windows\system32\drivers\usbccgp.sys - Ok

c:\windows\system32\drivers\raspppoe.sys - Ok

>c:\windows\system32\drivers\rdpcdd.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\rdpcdd.sys - packed by FLY-CODE

c:\windows\system32\drivers\rdpcdd.sys - Ok

>c:\windows\system32\drivers\http.sys is BINARYRES container

c:\windows\system32\drivers\http.sys - container

c:\windows\system32\drivers\termdd.sys - Ok

c:\windows\system32\drivers\rasl2tp.sys - Ok

c:\windows\system32\drivers\fdc.sys - Ok

>c:\windows\system32\drivers\rdprefmp.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\rdprefmp.sys - packed by FLY-CODE

c:\windows\system32\drivers\rdprefmp.sys - Ok

c:\windows\system32\drivers\cng.sys - Ok

c:\windows\system32\drivers\fssfltr.sys - Ok

c:\windows\system32\drivers\parvdm.sys - Ok

>c:\windows\system32\drivers\umbus.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\umbus.sys - packed by FLY-CODE

c:\windows\system32\drivers\umbus.sys - Ok

c:\windows\system32\drivers\raspptp.sys - Ok

c:\windows\system32\drivers\alcxwdm.sys - Ok

c:\windows\system32\drivers\serenum.sys - Ok

c:\windows\system32\clfs.sys - Ok

c:\windows\system32\halmacpi.dll - Ok

c:\windows\system32\drivers\secdrv.sys - Ok

c:\windows\system32\drivers\spldr.sys - Ok

c:\windows\system32\drivers\agp440.sys - Ok

c:\windows\system32\drivers\netbt.sys - Ok

>c:\windows\system32\drivers\tcpipreg.sys - packed by FLY-CODE

c:\windows\system32\drivers\tcpipreg.sys - Ok

c:\windows\system32\drivers\mssmbios.sys - Ok

c:\windows\system32\drivers\cdrom.sys - Ok

>c:\windows\system32\drivers\rdpencdd.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\rdpencdd.sys - packed by FLY-CODE

c:\windows\system32\drivers\rdpencdd.sys - Ok

c:\windows\system32\drivers\wfplwf.sys - Ok

c:\windows\system32\drivers\tdx.sys - Ok

>c:\windows\system32\drivers\rspndr.sys - packed by FLY-CODE

c:\windows\system32\drivers\rspndr.sys - Ok

c:\windows\system32\drivers\kbdhid.sys - Ok

c:\windows\system32\drivers\fvevol.sys - Ok

c:\windows\system32\drivers\tcpip.sys - Ok

c:\windows\system32\drivers\mpsdrv.sys - Ok

c:\windows\system32\drivers\nsiproxy.sys - Ok

c:\windows\system32\drivers\volsnap.sys - Ok

c:\windows\system32\drivers\volmgr.sys - Ok

c:\windows\system32\drivers\intelppm.sys - Ok

c:\windows\system32\drivers\wanarp.sys - Ok

>c:\windows\system32\drivers\winhv.sys - packed by FLY-CODE

c:\windows\system32\drivers\winhv.sys - Ok

c:\windows\system32\drivers\lltdio.sys - Ok

c:\windows\system32\drivers\usbehci.sys - Ok

c:\windows\system32\drivers\discache.sys - Ok

>c:\windows\system32\drivers\null.sys - packed by FLY-CODE

c:\windows\system32\drivers\null.sys - Ok

c:\windows\system32\drivers\disk.sys - Ok

c:\windows\system32\drivers\pci.sys - Ok

c:\windows\system32\drivers\gearaspiwdm.sys - Ok

c:\windows\system32\drivers\csc.sys - Ok

c:\windows\system32\drivers\ndiswan.sys - Ok

c:\windows\system32\drivers\ndistapi.sys - Ok

c:\windows\system32\drivers\serial.sys - Ok

c:\windows\system32\drivers\partmgr.sys - Ok

c:\windows\system32\drivers\acpi.sys - Ok

>c:\windows\system32\drivers\wdf01000.sys - packed by FLY-CODE

c:\windows\system32\drivers\wdf01000.sys - Ok

c:\windows\system32\drivers\flpydisk.sys - Ok

>c:\windows\system32\drivers\compositebus.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\compositebus.sys - packed by FLY-CODE

c:\windows\system32\drivers\compositebus.sys - Ok

c:\windows\system32\drivers\afd.sys - Ok

c:\windows\system32\drivers\vdrvroot.sys - Ok

c:\windows\system32\drivers\hidusb.sys - Ok

c:\windows\system32\drivers\vgapnp.sys - Ok

c:\windows\system32\drivers\parport.sys - Ok

c:\windows\system32\drivers\yk62x86.sys - Ok

c:\windows\system32\drivers\agilevpn.sys - Ok

c:\windows\system32\drivers\rdyboost.sys - Ok

>c:\windows\system32\drivers\intelide.sys - packed by FLY-CODE

c:\windows\system32\drivers\intelide.sys - Ok

c:\windows\system32\drivers\srvnet.sys - Ok

c:\windows\system32\drivers\netbios.sys - Ok

c:\windows\system32\drivers\dfsc.sys - Ok

c:\windows\system32\drivers\rdbss.sys - Ok

c:\users\angel\appdata\local\temp\2480d27b.sys - file not found

c:\windows\system32\drivers\mup.sys - Ok

c:\windows\system32\drivers\srv.sys - Ok

c:\windows\system32\drivers\srv2.sys - Ok

c:\users\angel\appdata\local\temp\2bf2b0c9.sys - file not found

c:\windows\system32\drivers\bowser.sys - Ok

c:\windows\system32\drivers\npfs.sys - Ok

c:\windows\system32\drivers\mbam.sys - Ok

c:\windows\system32\drivers\msfs.sys - Ok

c:\windows\system32\drivers\fileinfo.sys - Ok

c:\windows\system32\drivers\fs_rec.sys - Ok

c:\windows\system32\drivers\mrxsmb.sys - Ok

c:\windows\system32\drivers\fltmgr.sys - Ok

c:\windows\system32\drivers\mrxsmb10.sys - Ok

c:\windows\system32\drivers\cdfs.sys - Ok

c:\windows\system32\drivers\mrxsmb20.sys - Ok

c:\windows\system32\drivers\mpfilter.sys - Ok

c:\windows\system32\drivers\luafv.sys - Ok

c:\windows\system32\ntkrnlpa.exe - Ok

c:\windows\system32\kdcom.dll - Ok

c:\windows\system32\mcupdate_genuineintel.dll - Ok

c:\windows\system32\pshed.dll - Ok

c:\windows\system32\bootvid.dll - Ok

c:\windows\system32\ci.dll - Ok

c:\windows\system32\drivers\wdfldr.sys - Ok

>c:\windows\system32\drivers\wmilib.sys - packed by FLY-CODE

c:\windows\system32\drivers\wmilib.sys - Ok

>c:\windows\system32\drivers\pciidex.sys - packed by FLY-CODE

c:\windows\system32\drivers\pciidex.sys - Ok

>c:\windows\system32\drivers\ataport.sys - packed by FLY-CODE

c:\windows\system32\drivers\ataport.sys - Ok

c:\windows\system32\drivers\msrpc.sys - Ok

>c:\windows\system32\drivers\netio.sys - packed by FLY-CODE

c:\windows\system32\drivers\netio.sys - Ok

c:\windows\system32\drivers\fwpkclnt.sys - Ok

>c:\windows\system32\drivers\classpnp.sys - packed by FLY-CODE

c:\windows\system32\drivers\classpnp.sys - Ok

>c:\windows\system32\drivers\videoprt.sys - packed by FLY-CODE

c:\windows\system32\drivers\videoprt.sys - Ok

>c:\windows\system32\drivers\watchdog.sys - packed by FLY-CODE

c:\windows\system32\drivers\watchdog.sys - Ok

>c:\windows\system32\drivers\tdi.sys - packed by FLY-CODE

c:\windows\system32\drivers\tdi.sys - Ok

c:\windows\system32\drivers\usbport.sys - Ok

c:\windows\system32\drivers\portcls.sys - Ok

>c:\windows\system32\drivers\drmk.sys - packed by FLY-CODE

c:\windows\system32\drivers\drmk.sys - Ok

c:\windows\system32\drivers\ks.sys - Ok

>c:\windows\system32\drivers\dxapi.sys - packed by FLY-CODE

c:\windows\system32\drivers\dxapi.sys - Ok

>c:\windows\system32\drivers\dxg.sys - packed by FLY-CODE

c:\windows\system32\drivers\dxg.sys - Ok

c:\windows\system32\tsddd.dll - Ok

c:\windows\system32\drivers\usbd.sys - Ok

c:\windows\system32\framebuf.dll - Ok

c:\windows\system32\drivers\hidclass.sys - Ok

c:\windows\system32\drivers\hidparse.sys - Ok

c:\windows\system32\drivers\crashdmp.sys - Ok

c:\windows\system32\drivers\dump_dumpata.sys - file not found

c:\windows\system32\drivers\dump_atapi.sys - file not found

c:\windows\system32\drivers\dump_dumpfve.sys - file not found

>c:\windows\system32\drivers\spsys.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\spsys.sys - packed by FLY-CODE

c:\windows\system32\drivers\spsys.sys - Ok

System Process - file not found

c:\windows\system32\smss.exe - Ok

c:\windows\system32\wbem\wmiprvse.exe - Ok

c:\windows\system32\csrss.exe - Ok

c:\windows\explorer.exe - Ok

c:\windows\system32\wininit.exe - Ok

c:\windows\system32\winlogon.exe - Ok

c:\windows\system32\services.exe - Ok

c:\windows\system32\lsass.exe - Ok

c:\program files\common files\microsoft shared\windows live\wlidsvc.exe - Ok

c:\windows\system32\lsm.exe - Ok

c:\windows\system32\svchost.exe - Ok

c:\program files\microsoft security client\msmpeng.exe - Ok

c:\program files\malwarebytes' anti-malware\mbamgui.exe - Ok

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\53u355v8.exe - Ok

c:\windows\system32\audiodg.exe - Ok

c:\windows\system32\ctfmon.exe - Ok

c:\windows\system32\spoolsv.exe - Ok

c:\windows\system32\taskeng.exe - Ok

c:\program files\common files\adobe\arm\1.0\armsvc.exe - Ok

>c:\program files\windows live\family safety\fsssvc.exe is BINARYRES container

>>c:\program files\windows live\family safety\fsssvc.exe\data001 is JS-HTML container

>>c:\program files\windows live\family safety\fsssvc.exe\data002 is ZLIB container

c:\program files\windows live\family safety\fsssvc.exe - container

c:\program files\malwarebytes' anti-malware\mbamscheduler.exe - Ok

c:\program files\malwarebytes' anti-malware\mbamservice.exe - Ok

c:\windows\system32\taskhost.exe - Ok

c:\windows\system32\dwm.exe - Ok

c:\program files\common files\microsoft shared\windows live\wlidsvcm.exe - Ok

c:\windows\system32\wbem\wmiadap.exe - Ok

>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\6j0pdyhm.exe is BINARYRES container

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\6j0pdyhm.exe - container

>c:\users\angel\downloads\drweb-cureit.exe is BINARYRES container

>>c:\users\angel\downloads\drweb-cureit.exe\data001 - packed by BINARYRES

>>c:\users\angel\downloads\drweb-cureit.exe\data002 - packed by BINARYRES

c:\users\angel\downloads\drweb-cureit.exe - container

c:\users\angel\downloads\drweb-cureit.exe:Zone.Identifier - Ok

c:\program files\microsoft office\office12\groovemonitor.exe - Ok

>c:\windows\soundman.exe - packed by BINARYRES

c:\windows\soundman.exe - Ok

c:\program files\windows live\family safety\fsui.exe - Ok

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\f8qd0br3.exe - Ok

c:\program files\microsoft office\office12\onenotem.exe - Ok

c:\program files\real\realplayer\update\realsched.exe - Ok

c:\program files\common files\adobe\arm\1.0\adobearm.exe - Ok

c:\program files\windows media player\wmpnetwk.exe - Ok

>c:\windows\system32\sppsvc.exe - packed by FLY-CODE

c:\windows\system32\sppsvc.exe - Ok

c:\windows\system32\searchindexer.exe - Ok

c:\program files\common files\java\java update\jusched.exe - Ok

c:\program files\microsoft security client\msseces.exe - Ok

c:\windows\system32\ntdll.dll - Ok

c:\windows\system32\apisetschema.dll - Ok

c:\windows\system32\cryptbase.dll - Ok

c:\windows\system32\sxs.dll - Ok

c:\windows\system32\sxssrv.dll - Ok

c:\windows\system32\winsrv.dll - Ok

c:\windows\system32\basesrv.dll - Ok

c:\windows\system32\csrsrv.dll - Ok

c:\windows\system32\kernelbase.dll - Ok

c:\windows\system32\msvcrt.dll - Ok

c:\windows\system32\lpk.dll - Ok

c:\windows\system32\rpcrt4.dll - Ok

c:\windows\system32\kernel32.dll - Ok

c:\windows\system32\user32.dll - Ok

c:\windows\system32\advapi32.dll - Ok

c:\windows\system32\usp10.dll - Ok

c:\windows\system32\gdi32.dll - Ok

c:\windows\system32\sechost.dll - Ok

c:\users\angel\appdata\roaming\dropbox\bin\dropboxext.14.dll - Ok

c:\windows\system32\werconcpl.dll - Ok

>c:\windows\system32\wscui.cpl is ZLIB container

c:\windows\system32\wscui.cpl - container

c:\windows\system32\wercplsupport.dll - Ok

c:\windows\system32\wscinterop.dll - Ok

c:\program files\microsoft office\office12\1033\grooveintlresource.dll - Ok

c:\windows\system32\structuredquery.dll - Ok

c:\windows\system32\imapi2.dll - Ok

c:\program files\internet explorer\ieproxy.dll - Ok

c:\windows\system32\bthprops.cpl - Ok

c:\windows\system32\hgcpl.dll - Ok

c:\windows\system32\wwanapi.dll - Ok

c:\windows\system32\fxsresm.dll - Ok

c:\windows\system32\fxsst.dll - Ok

c:\windows\system32\hcproviders.dll - Ok

c:\windows\system32\uianimation.dll - Ok

c:\windows\system32\qagent.dll - Ok

c:\windows\system32\ehstorapi.dll - Ok

c:\windows\system32\actioncenter.dll - Ok

c:\windows\system32\srchadmin.dll - Ok

c:\windows\system32\wwapi.dll - Ok

c:\windows\system32\wlanapi.dll - Ok

c:\windows\system32\l3codeca.acm - Ok

c:\windows\system32\pnidui.dll - Ok

c:\windows\system32\netshell.dll - Ok

c:\windows\system32\fxsapi.dll - Ok

c:\windows\system32\msacm32.dll - Ok

c:\windows\system32\cscobj.dll - Ok

c:\windows\system32\wlanutil.dll - Ok

c:\windows\system32\mssprxy.dll - Ok

c:\windows\system32\midimap.dll - Ok

c:\windows\system32\msacm32.drv - Ok

c:\windows\system32\portabledevicetypes.dll - Ok

c:\windows\system32\portabledeviceapi.dll - Ok

c:\windows\system32\wpdshserviceobj.dll - Ok

c:\program files\microsoft office\office12\msohevi.dll - Ok

c:\windows\system32\ieframe.dll - Ok

>c:\windows\system32\timedate.cpl is ZLIB container

c:\windows\system32\timedate.cpl - container

c:\windows\system32\qutil.dll - Ok

c:\windows\system32\actxprxy.dll - Ok

c:\windows\system32\winspool.drv - Ok

c:\windows\system32\ntshrui.dll - Ok

c:\windows\system32\cscui.dll - Ok

c:\windows\system32\gameux.dll - Ok

c:\windows\system32\netprofm.dll - Ok

c:\program files\microsoft office\office12\grooveshellextensions.dll - Ok

c:\windows\system32\msxml3.dll - Ok

c:\program files\microsoft office\office12\grooveutil.dll - Ok

c:\windows\system32\iconcodecservice.dll - Ok

c:\windows\system32\cscapi.dll - Ok

c:\windows\system32\msi.dll - Ok

c:\windows\system32\dbghelp.dll - Ok

c:\windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\atl80.dll - Ok

c:\windows\system32\ehstorshell.dll - Ok

c:\windows\system32\wer.dll - Ok

c:\windows\system32\explorerframe.dll - Ok

>c:\windows\system32\msimg32.dll - packed by FLY-CODE

c:\windows\system32\msimg32.dll - Ok

c:\windows\system32\cscdll.dll - Ok

c:\windows\system32\msutb.dll - Ok

c:\windows\system32\msiltcfg.dll - Ok

c:\program files\microsoft office\office12\groovenew.dll - Ok

c:\windows\system32\wscapi.dll - Ok

c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - Ok

c:\windows\system32\mpr.dll - Ok

c:\windows\system32\msxml6.dll - Ok

c:\windows\system32\dhcpcsvc.dll - Ok

c:\windows\system32\dhcpcsvc6.dll - Ok

>c:\windows\system32\winnsi.dll - packed by FLY-CODE

c:\windows\system32\winnsi.dll - Ok

c:\windows\system32\iphlpapi.dll - Ok

c:\windows\system32\es.dll - Ok

c:\windows\system32\dxp.dll - Ok

c:\windows\system32\mlang.dll - Ok

c:\windows\system32\provsvc.dll - Ok

c:\windows\ehome\ehsso.dll - Ok

c:\windows\system32\networkexplorer.dll - Ok

c:\windows\system32\synccenter.dll - Ok

c:\windows\system32\prnfldr.dll - Ok

c:\windows\system32\fundisc.dll - Ok

c:\windows\system32\syncreg.dll - Ok

c:\windows\system32\wdmaud.drv - Ok

c:\windows\system32\alttab.dll - Ok

c:\windows\system32\fdproxy.dll - Ok

c:\program files\microsoft office\office12\groovemisc.dll - Ok

>c:\windows\system32\cryptui.dll - packed by FLY-CODE

c:\windows\system32\cryptui.dll - Ok

>c:\windows\system32\authui.dll is ZLIB container

c:\windows\system32\authui.dll - container

c:\windows\system32\davclnt.dll - Ok

c:\windows\system32\batmeter.dll - Ok

c:\windows\system32\ntlanman.dll - Ok

c:\windows\system32\audioses.dll - Ok

c:\windows\system32\slc.dll - Ok

c:\windows\system32\atl.dll - Ok

c:\windows\system32\nlaapi.dll - Ok

c:\windows\system32\taskschd.dll - Ok

c:\windows\system32\ksuser.dll - Ok

c:\windows\system32\davhlpr.dll - Ok

c:\windows\system32\winmm.dll - Ok

c:\windows\system32\powrprof.dll - Ok

c:\windows\system32\avrt.dll - Ok

c:\windows\system32\ntmarta.dll - Ok

c:\windows\system32\oleacc.dll - Ok

c:\windows\system32\stobject.dll - Ok

c:\windows\system32\drprov.dll - Ok

c:\program files\common files\microsoft shared\ink\tiptsf.dll - Ok

c:\windows\system32\msftedit.dll - Ok

c:\windows\system32\samcli.dll - Ok

c:\windows\system32\wkscli.dll - Ok

>c:\windows\system32\netutils.dll - packed by FLY-CODE

c:\windows\system32\netutils.dll - Ok

c:\windows\system32\framedynos.dll - Ok

c:\windows\system32\windowscodecs.dll - Ok

c:\windows\system32\xmllite.dll - Ok

c:\windows\system32\dwmapi.dll - Ok

c:\windows\system32\mmdevapi.dll - Ok

c:\windows\system32\hid.dll - Ok

c:\windows\system32\sndvolsso.dll - Ok

c:\windows\system32\duser.dll - Ok

c:\windows\system32\dui70.dll - Ok

c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll - Ok

c:\windows\system32\uxtheme.dll - Ok

c:\windows\system32\propsys.dll - Ok

c:\windows\system32\samlib.dll - Ok

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Ok

c:\program files\microsoft office\office12\groovesystemservices.dll - Ok

c:\windows\system32\msls31.dll - Ok

c:\windows\system32\shacct.dll - Ok

c:\windows\system32\shdocvw.dll - Ok

c:\windows\system32\linkinfo.dll - Ok

c:\windows\system32\npmproxy.dll - Ok

c:\windows\system32\wtsapi32.dll - Ok

c:\windows\system32\version.dll - Ok

c:\windows\system32\userenv.dll - Ok

c:\windows\system32\credssp.dll - Ok

c:\windows\system32\devrtl.dll - Ok

c:\windows\system32\rsaenh.dll - Ok

c:\windows\system32\cryptsp.dll - Ok

c:\windows\system32\wevtapi.dll - Ok

c:\windows\system32\srvcli.dll - Ok

>c:\windows\system32\secur32.dll - packed by FLY-CODE

c:\windows\system32\secur32.dll - Ok

c:\windows\system32\sspicli.dll - Ok

c:\windows\system32\winsta.dll - Ok

c:\windows\system32\apphelp.dll - Ok

c:\windows\system32\rpcrtremote.dll - Ok

c:\windows\system32\profapi.dll - Ok

c:\windows\system32\msasn1.dll - Ok

>c:\windows\system32\wintrust.dll - packed by FLY-CODE

c:\windows\system32\wintrust.dll - Ok

c:\windows\system32\devobj.dll - Ok

c:\windows\system32\cfgmgr32.dll - Ok

c:\windows\system32\crypt32.dll - Ok

c:\windows\system32\clbcatq.dll - Ok

c:\windows\system32\urlmon.dll - Ok

c:\windows\system32\shell32.dll - Ok

c:\windows\system32\imm32.dll - Ok

c:\windows\system32\ws2_32.dll - Ok

c:\windows\system32\iertutil.dll - Ok

c:\windows\system32\oleaut32.dll - Ok

>c:\windows\system32\nsi.dll - packed by FLY-CODE

c:\windows\system32\nsi.dll - Ok

c:\windows\system32\psapi.dll - Ok

c:\windows\system32\msctf.dll - Ok

c:\windows\system32\setupapi.dll - Ok

c:\windows\system32\shlwapi.dll - Ok

>c:\windows\system32\ole32.dll is BINARYRES container

c:\windows\system32\ole32.dll - container

c:\windows\system32\wininet.dll - Ok

c:\windows\system32\wldap32.dll - Ok

c:\users\angel\appdata\roaming\dropbox\bin\msvcr71.dll - Ok

c:\users\angel\appdata\roaming\dropbox\bin\msvcp71.dll - Ok

c:\windows\system32\wshtcpip.dll - Ok

c:\windows\system32\wship6.dll - Ok

c:\windows\system32\mswsock.dll - Ok

c:\windows\system32\uxinit.dll - Ok

c:\windows\system32\netjoin.dll - Ok

c:\windows\system32\ubpm.dll - Ok

c:\windows\system32\authz.dll - Ok

c:\windows\system32\scesrv.dll - Ok

c:\windows\system32\scext.dll - Ok

c:\windows\system32\certpoleng.dll - Ok

c:\windows\system32\dssenh.dll - Ok

c:\windows\system32\gpapi.dll - Ok

c:\windows\system32\scecli.dll - Ok

c:\windows\system32\bcryptprimitives.dll - Ok

c:\windows\system32\livessp.dll - Ok

c:\windows\system32\pku2u.dll - Ok

c:\windows\system32\tspkg.dll - Ok

c:\windows\system32\efslsaext.dll - Ok

c:\windows\system32\wdigest.dll - Ok

c:\windows\system32\schannel.dll - Ok

c:\windows\system32\logoncli.dll - Ok

c:\windows\system32\dnsapi.dll - Ok

c:\windows\system32\netlogon.dll - Ok

c:\windows\system32\msv1_0.dll - Ok

c:\windows\system32\kerberos.dll - Ok

c:\windows\system32\negoexts.dll - Ok

c:\windows\system32\msprivs.dll - Ok

c:\windows\system32\bcrypt.dll - Ok

c:\windows\system32\ncrypt.dll - Ok

c:\windows\system32\cngaudit.dll - Ok

c:\windows\system32\cryptdll.dll - Ok

c:\windows\system32\samsrv.dll - Ok

c:\windows\system32\lsasrv.dll - Ok

>c:\windows\system32\sspisrv.dll - packed by FLY-CODE

c:\windows\system32\sspisrv.dll - Ok

c:\windows\system32\wbem\fastprox.dll - Ok

c:\program files\common files\microsoft shared\windows live\sqmapi.dll - Ok

c:\windows\system32\ntdsapi.dll - Ok

c:\windows\system32\sensapi.dll - Ok

c:\windows\system32\wbem\wbemsvc.dll - Ok

c:\windows\system32\rasadhlp.dll - Ok

c:\program files\common files\microsoft shared\windows live\wlidnsp.dll - Ok

c:\windows\system32\wbemcomn.dll - Ok

c:\windows\system32\wbem\wbemprox.dll - Ok

c:\windows\system32\winscard.dll - Ok

c:\windows\system32\cryptnet.dll - Ok

c:\windows\system32\winhttp.dll - Ok

Link to post
Share on other sites

c:\windows\system32\webio.dll - Ok

c:\windows\system32\wshqos.dll - Ok

c:\windows\system32\fwpuclnt.dll - Ok

c:\windows\system32\netapi32.dll - Ok

c:\windows\system32\pcwum.dll - Ok

c:\windows\system32\wmsgapi.dll - Ok

c:\windows\system32\sysntfy.dll - Ok

c:\windows\system32\wbem\wmiutils.dll - Ok

c:\windows\system32\wbem\wmidcprv.dll - Ok

c:\windows\system32\rpcss.dll - Ok

c:\windows\system32\umpo.dll - Ok

c:\windows\system32\spinf.dll - Ok

c:\windows\system32\umpnpmgr.dll - Ok

c:\windows\system32\sfc_os.dll - Ok

c:\windows\system32\sfc.dll - Ok

c:\windows\system32\firewallapi.dll - Ok

c:\windows\system32\rpcepmap.dll - Ok

>c:\programdata\microsoft\microsoft antimalware\definition updates\{78a3e5fe-5ca3-4141-9ccd-5c436b2b85e5}\mpengine.dll is BINARYRES container

c:\programdata\microsoft\microsoft antimalware\definition updates\{78a3e5fe-5ca3-4141-9ccd-5c436b2b85e5}\mpengine.dll - container

c:\windows\system32\fltlib.dll - Ok

c:\program files\microsoft security client\mprtp.dll - Ok

c:\program files\microsoft security client\mpclient.dll - Ok

c:\program files\microsoft security client\mpsvc.dll - Ok

c:\program files\malwarebytes' anti-malware\mbamnet.dll - Ok

c:\program files\malwarebytes' anti-malware\mbam.dll - Ok

c:\windows\system32\wuapi.dll - Ok

c:\windows\system32\wscsvc.dll - Ok

c:\windows\system32\tquery.dll - Ok

c:\windows\system32\pnrpnsp.dll - Ok

c:\windows\system32\cabinet.dll - Ok

c:\windows\system32\winrnr.dll - Ok

c:\windows\system32\wbem\winmgmtr.dll - Ok

c:\windows\system32\dhcpcore6.dll - Ok

c:\windows\system32\dhcpcore.dll - Ok

c:\windows\system32\nrpsrv.dll - Ok

c:\windows\system32\lmhsvc.dll - Ok

c:\windows\system32\napinsp.dll - Ok

c:\windows\system32\audiosrv.dll - Ok

c:\windows\system32\wevtsvc.dll - Ok

c:\windows\system32\imagehlp.dll - Ok

c:\windows\system32\pcasvc.dll - Ok

c:\windows\system32\rasdlg.dll - Ok

c:\windows\system32\rasapi32.dll - Ok

c:\windows\system32\mprapi.dll - Ok

c:\windows\system32\netman.dll - Ok

c:\windows\system32\rasman.dll - Ok

c:\windows\system32\aepic.dll - Ok

c:\windows\system32\hnetcfg.dll - Ok

c:\windows\system32\netcfgx.dll - Ok

c:\windows\system32\sysmain.dll - Ok

c:\windows\system32\trkwks.dll - Ok

c:\windows\system32\wudfplatform.dll - Ok

c:\windows\system32\wudfsvc.dll - Ok

c:\windows\system32\uxsms.dll - Ok

c:\windows\system32\apphlpdm.dll - Ok

c:\windows\system32\portabledeviceconnectapi.dll - Ok

c:\windows\system32\wdi.dll - Ok

c:\windows\system32\hidserv.dll - Ok

c:\windows\system32\dsrole.dll - Ok

c:\windows\system32\mstask.dll - Ok

c:\windows\system32\peerdist.dll - Ok

c:\windows\system32\cscsvc.dll - Ok

c:\windows\system32\rtutils.dll - Ok

c:\windows\system32\wuaueng.dll - Ok

>c:\windows\system32\mspatcha.dll - packed by FLY-CODE

c:\windows\system32\mspatcha.dll - Ok

c:\windows\system32\esent.dll - Ok

c:\windows\system32\appinfo.dll - Ok

c:\windows\system32\qmgr.dll - Ok

c:\windows\system32\resutils.dll - Ok

c:\windows\system32\wbem\ncprov.dll - Ok

c:\windows\system32\tschannel.dll - Ok

c:\windows\system32\clusapi.dll - Ok

c:\windows\system32\iphlpsvc.dll - Ok

c:\windows\system32\nci.dll - Ok

c:\windows\system32\wdscore.dll - Ok

c:\windows\system32\sqmapi.dll - Ok

c:\windows\system32\browser.dll - Ok

c:\windows\system32\wbem\wmiprvsd.dll - Ok

c:\windows\system32\srvsvc.dll - Ok

c:\windows\system32\wbem\wbemess.dll - Ok

c:\windows\system32\wbem\repdrvfs.dll - Ok

c:\windows\system32\wbem\wbemcore.dll - Ok

c:\windows\system32\sscore.dll - Ok

c:\windows\system32\wbem\esscli.dll - Ok

c:\windows\system32\wbem\wmisvc.dll - Ok

c:\windows\system32\ncobjapi.dll - Ok

c:\windows\system32\ikeext.dll - Ok

c:\windows\system32\vsstrace.dll - Ok

c:\windows\system32\vssapi.dll - Ok

c:\windows\system32\sens.dll - Ok

c:\windows\system32\wiarpc.dll - Ok

c:\windows\system32\taskcomp.dll - Ok

c:\windows\system32\fvecerts.dll - Ok

>c:\windows\system32\tbs.dll - packed by FLY-CODE

c:\windows\system32\tbs.dll - Ok

c:\windows\system32\fveapi.dll - Ok

c:\windows\system32\ktmw32.dll - Ok

c:\windows\system32\schedsvc.dll - Ok

c:\windows\system32\shsvcs.dll - Ok

c:\windows\system32\bitsigd.dll - Ok

c:\windows\system32\bitsperf.dll - Ok

c:\windows\system32\themeservice.dll - Ok

c:\windows\system32\profsvc.dll - Ok

c:\windows\system32\gpsvc.dll - Ok

c:\windows\system32\wups2.dll - Ok

c:\windows\system32\perftrack.dll - Ok

c:\windows\system32\nsisvc.dll - Ok

c:\windows\system32\msctfmonitor.dll - Ok

c:\windows\system32\ssdpapi.dll - Ok

c:\windows\system32\ncsi.dll - Ok

c:\windows\system32\nlasvc.dll - Ok

c:\windows\system32\cryptsvc.dll - Ok

c:\windows\system32\wkssvc.dll - Ok

c:\windows\system32\dnsext.dll - Ok

c:\windows\system32\dnsrslvr.dll - Ok

>c:\windows\system32\e_flbeja.dll - packed by PESTUB

c:\windows\system32\e_flbeja.dll - Ok

c:\windows\system32\zlhp1020.dll - Ok

c:\windows\system32\hppmopjl.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\zimfprnt.dll - Ok

c:\windows\system32\zimf.dll - Ok

c:\windows\system32\ztag.dll - Ok

c:\windows\system32\zspool.dll - Ok

c:\windows\system32\cpwmon2k.dll - Ok

c:\windows\system32\hpmpm081.dll - Ok

c:\windows\system32\hpmpw081.dll - Ok

c:\windows\system32\pdf995mon.dll - Ok

c:\windows\system32\webservices.dll - Ok

c:\windows\system32\wls0wndh.dll - Ok

c:\windows\system32\win32spl.dll - Ok

c:\windows\system32\browcli.dll - Ok

c:\windows\system32\inetpp.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\hpcpp104.dll - Ok

c:\windows\system32\wsdapi.dll - Ok

c:\windows\system32\localspl.dll - Ok

c:\windows\system32\wsdmon.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\msonpppr.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\winprint.dll - Ok

c:\windows\system32\fdpnp.dll - Ok

c:\windows\system32\usbmon.dll - Ok

c:\windows\system32\tcpmon.dll - Ok

c:\windows\system32\wsnmp32.dll - Ok

c:\windows\system32\snmpapi.dll - Ok

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - Ok

c:\windows\system32\msonpmon.dll - Ok

>c:\windows\system32\ep0slm01.dll - packed by PESTUB

c:\windows\system32\ep0slm01.dll - Ok

c:\windows\system32\fxsmon.dll - Ok

c:\windows\system32\printisolationproxy.dll - Ok

c:\windows\system32\spoolss.dll - Ok

c:\windows\system32\umb.dll - Ok

c:\windows\system32\comdlg32.dll - Ok

c:\windows\system32\radardt.dll - Ok

c:\windows\system32\diagperf.dll - Ok

c:\windows\system32\dps.dll - Ok

c:\windows\system32\wfapigp.dll - Ok

c:\windows\system32\mpssvc.dll - Ok

c:\windows\system32\bfe.dll - Ok

c:\windows\system32\wdiasqmmodule.dll - Ok

c:\windows\system32\pnpts.dll - Ok

c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - Ok

c:\program files\common files\akamai\netsession_win_ce5ba24.dll - Ok

c:\windows\system32\security.dll - Ok

c:\windows\system32\pdh.dll - Ok

c:\windows\system32\upnphost.dll - Ok

c:\windows\system32\fntcache.dll - Ok

c:\windows\system32\udhisapi.dll - Ok

c:\windows\system32\ssdpsrv.dll - Ok

c:\windows\system32\httpapi.dll - Ok

c:\program files\windows live\family safety\fsssvcps.dll - Ok

c:\windows\system32\wpc.dll - Ok

c:\windows\system32\dxgi.dll - Ok

>c:\windows\system32\winsatapi.dll is ZLIB container

c:\windows\system32\winsatapi.dll - container

c:\program files\common files\microsoft shared\windows live\wlidcli.dll - Ok

c:\windows\system32\d2d1.dll - Ok

c:\windows\system32\wsock32.dll - Ok

c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - Ok

>c:\program files\malwarebytes' anti-malware\mbamcore.dll is BINARYRES container

c:\program files\malwarebytes' anti-malware\mbamcore.dll - container

c:\windows\system32\hpzinw12.dll - Ok

c:\windows\system32\hpzipm12.dll - Ok

>c:\windows\system32\wiatrace.dll - packed by FLY-CODE

c:\windows\system32\wiatrace.dll - Ok

c:\windows\system32\wiaservc.dll - Ok

c:\windows\system32\wpcumi.dll - Ok

c:\windows\system32\taskschdps.dll - Ok

c:\windows\system32\playsndsrv.dll - Ok

c:\windows\system32\hotstartuseragent.dll - Ok

c:\windows\system32\dimsjob.dll - Ok

c:\windows\system32\d3d10_1core.dll - Ok

c:\windows\system32\dwmcore.dll - Ok

c:\windows\system32\dwmredir.dll - Ok

c:\windows\system32\d3d10_1.dll - Ok

c:\windows\system32\fwremotesvr.dll - Ok

c:\windows\system32\ipsecsvc.dll - Ok

c:\windows\system32\normaliz.dll - Ok

c:\windows\system32\d3d10warp.dll - Ok

c:\program files\windows live\family safety\fsuires.dll - Ok

c:\program files\windows live\shared\wlbici.dll - Ok

>c:\program files\windows live\shared\wlidux.dll is ZLIB container

c:\program files\windows live\shared\wlidux.dll - container

c:\windows\system32\dwrite.dll - Ok

c:\program files\windows live\shared\uxcore.dll - Ok

c:\program files\windows live\family safety\en\fsui.dll.mui - Ok

>c:\windows\system32\d3dx10_41.dll - packed by PESTUB

c:\windows\system32\d3dx10_41.dll - Ok

c:\program files\windows live\shared\wldcore.dll - Ok

>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll is BINARYRES container

>>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll\data003 - packed by BINARYRES

>>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll\data004 - packed by BINARYRES

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll - container

c:\program files\microsoft office\office12\1033\onintl.dll - Ok

c:\windows\system32\oledlg.dll - Ok

c:\windows\system32\wmploc.dll - Ok

c:\windows\system32\wmp.dll - Ok

c:\windows\system32\msmpeg2enc.dll - Ok

c:\windows\system32\blackbox.dll - Ok

c:\windows\system32\wmpmde.dll - Ok

>c:\windows\system32\drmv2clt.dll is BINARYRES container

>>c:\windows\system32\drmv2clt.dll\data001 is JS-HTML container

c:\windows\system32\drmv2clt.dll - container

c:\windows\system32\wmdrmdev.dll - Ok

>c:\windows\system32\mfplat.dll - packed by FLY-CODE

c:\windows\system32\mfplat.dll - Ok

c:\windows\system32\devenum.dll - Ok

c:\windows\system32\msdmo.dll - Ok

c:\windows\system32\wmpps.dll - Ok

c:\windows\system32\upnp.dll - Ok

c:\windows\system32\nlslexicons001a.dll - Ok

c:\windows\system32\nlsdata001a.dll - Ok

c:\windows\system32\nlsdata0009.dll - Ok

c:\windows\system32\elslad.dll - Ok

c:\windows\system32\nlslexicons0009.dll - Ok

c:\windows\system32\naturallanguage6.dll - Ok

c:\windows\system32\en-us\tquery.dll.mui - Ok

c:\windows\system32\mssrch.dll - Ok

c:\windows\system32\msidle.dll - Ok

c:\windows\system32\elscore.dll - Ok

c:\windows\system32\wbem\wmiprov.dll - Ok

c:\program files\microsoft security client\sqmapi.dll - Ok

>c:\program files\microsoft security client\msmpres.dll is ZLIB container

c:\program files\microsoft security client\msmpres.dll - container

c:\program files\microsoft security client\eppmanifest.dll - Ok

c:\users\sierra\appdata\roaming\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

c:\users\siejja\appdata\roaming\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

c:\users\tony\appdata\roaming\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

c:\users\angel\appdata\roaming\microsoft\windows\start menu\programs\startup\onenote 2007 screen clipper and launcher.lnk - Ok

c:\users\angel\appdata\roaming\microsoft\windows\start menu\programs\startup\dropbox.lnk - Ok

c:\users\angel\appdata\roaming\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

c:\programdata\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

c:\windows\system32\dshowrdpfilter.dll - Ok

c:\windows\system32\wwanadvui.dll - Ok

c:\windows\system32\dfdwiz.exe - Ok

c:\windows\system32\wabsyncprovider.dll - Ok

c:\windows\system32\shwebsvc.dll - Ok

c:\windows\system32\oobefldr.dll - Ok

c:\windows\system32\stikynot.exe - Ok

>c:\program files\common files\microsoft shared\ink\tabskb.dll is ZLIB container

c:\program files\common files\microsoft shared\ink\tabskb.dll - container

c:\windows\system32\sdiageng.dll - Ok

>c:\windows\system32\oobe\msoobeui.dll is ZLIB container

c:\windows\system32\oobe\msoobeui.dll - container

c:\windows\system32\deviceuxres.dll - Ok

c:\windows\system32\apds.dll - Ok

c:\windows\system32\mscms.dll - Ok

c:\windows\system32\spool\tools\printbrmengine.exe - Ok

c:\windows\system32\wlanpref.dll - Ok

c:\windows\system32\documentperformanceevents.dll - Ok

c:\windows\system32\magnification.dll - Ok

c:\windows\system32\intl.cpl - Ok

>c:\windows\system32\drivers\storport.sys - packed by FLY-CODE

c:\windows\system32\drivers\storport.sys - Ok

c:\program files\common files\microsoft shared\ink\mshwlatin.dll - Ok

c:\windows\system32\connect.dll - Ok

c:\program files\common files\microsoft shared\ink\mraut.dll - Ok

c:\windows\system32\apilogen.dll - Ok

c:\windows\system32\mfplay.dll - Ok

c:\windows\system32\wisptis.exe - Ok

c:\windows\system32\powercpl.dll - Ok

c:\windows\system32\mssha.dll - Ok

c:\windows\system32\taskmgr.exe - Ok

c:\windows\system32\werfault.exe - Ok

c:\windows\system32\onex.dll - Ok

c:\windows\system32\ocsetup.exe - Ok

c:\program files\common files\microsoft shared\ink\inputpersonalization.exe - Ok

c:\windows\system32\wsmres.dll - Ok

c:\windows\system32\setupetw.dll - Ok

c:\windows\system32\msdt.exe - Ok

c:\windows\system32\wsqmcons.exe - Ok

c:\windows\system32\windowspowershell\v1.0\psevents.dll - Ok

c:\windows\system32\powercfg.cpl - Ok

c:\windows\system32\udwm.dll - Ok

c:\windows\system32\actioncentercpl.dll - Ok

c:\windows\system32\sdiagprv.dll - Ok

c:\windows\system32\mblctr.exe - Ok

c:\windows\system32\portabledevicestatus.dll - Ok

c:\windows\system32\dsound.dll - Ok

c:\windows\system32\uiribbon.dll - Ok

c:\windows\system32\l2nacp.dll - Ok

>c:\program files\common files\microsoft shared\ink\mip.exe is ZLIB container

c:\program files\common files\microsoft shared\ink\mip.exe - container

c:\windows\system32\uiautomationcore.dll - Ok

c:\windows\system32\napipsec.dll - Ok

c:\windows\system32\p2phost.exe - Ok

c:\windows\system32\mp4sdecd.dll - Ok

c:\program files\windows media player\wmpnssui.dll - Ok

c:\windows\system32\mcxdriv.dll - Ok

c:\windows\system32\setupcl.exe - Ok

c:\windows\system32\oobe\windeploy.exe - Ok

c:\windows\system32\oobe\oobeldr.exe - Ok

c:\windows\system32\sysprep\sysprep.exe - Ok

c:\windows\system32\oobe\cmisetup.dll - Ok

c:\windows\system32\oobe\audit.exe - Ok

c:\windows\system32\setupugc.exe - Ok

c:\windows\system32\dxpserver.exe - Ok

c:\windows\system32\adsldpc.dll - Ok

c:\windows\system32\display.dll - Ok

c:\windows\system32\netcenter.dll - Ok

c:\windows\system32\wevtfwd.dll - Ok

c:\windows\system32\efssvc.dll - Ok

c:\program files\windows media player\wmpdmccore.dll - Ok

c:\windows\system32\sud.dll - Ok

c:\windows\system32\eqossnap.dll - Ok

c:\windows\system32\bdehdcfglib.dll - Ok

c:\windows\system32\themecpl.dll - Ok

c:\program files\windows media player\wmpmediasharing.dll - Ok

c:\windows\system32\osbaseln.dll - Ok

c:\windows\system32\rdrleakdiag.exe - Ok

c:\windows\system32\credui.dll - Ok

c:\program files\windows nt\accessories\wordpad.exe - Ok

c:\windows\system32\firewallcontrolpanel.dll - Ok

c:\windows\system32\pcaevts.dll - Ok

c:\windows\system32\racengn.dll - Ok

c:\windows\system32\mfreadwrite.dll - Ok

c:\windows\system32\drt.dll - Ok

c:\windows\system32\sdiagschd.dll - Ok

>c:\program files\windows media player\wmpdmc.exe is ZLIB container

c:\program files\windows media player\wmpdmc.exe - container

c:\windows\system32\tsmf.dll - Ok

c:\windows\system32\dxptaskringtone.dll - Ok

c:\windows\system32\appidapi.dll - Ok

c:\windows\system32\idlisten.dll - Ok

c:\windows\system32\wbem\ntevt.dll - Ok

c:\windows\system32\dccw.exe - Ok

c:\windows\system32\usercpl.dll - Ok

c:\windows\system32\drivers\vwififlt.sys - Ok

c:\program files\common files\microsoft shared\ink\rtscom.dll - Ok

c:\windows\system32\tzutil.exe - Ok

c:\windows\system32\rpchttp.dll - Ok

c:\windows\system32\dxptasksync.dll - Ok

c:\windows\system32\wlanconn.dll - Ok

c:\windows\system32\zipfldr.dll - Ok

c:\windows\system32\mspaint.exe - Ok

c:\windows\system32\oleres.dll - Ok

c:\windows\system32\energy.dll - Ok

c:\windows\system32\diagcpl.dll - Ok

c:\windows\system32\oleaccrc.dll - Ok

c:\windows\system32\displayswitch.exe - Ok

c:\windows\system32\portabledevicesyncprovider.dll - Ok

c:\windows\system32\msdtcvsp1res.dll - Ok

c:\windows\system32\prflbmsg.dll - Ok

>c:\windows\system32\speech\speechux\speechux.dll is ZLIB container

c:\windows\system32\speech\speechux\speechux.dll - container

c:\windows\system32\rdpcorets.dll - Ok

c:\windows\system32\comres.dll - Ok

c:\windows\system32\actionqueue.dll - Ok

c:\program files\windows media player\setup_wm.exe - Ok

c:\windows\system32\cttune.exe - Ok

c:\windows\system32\syncinfrastructure.dll - Ok

c:\windows\system32\wusa.exe - Ok

c:\windows\system32\taskbarcpl.dll - Ok

c:\windows\system32\wdc.dll - Ok

c:\windows\system32\wpd_ci.dll - Ok

c:\windows\system32\sharemediacpl.dll - Ok

c:\windows\system32\van.dll - Ok

c:\program files\microsoft office\office12\olsideshow.dll - Ok

c:\program files\windows media player\wmpsideshowgadget.exe - Ok

c:\program files\windows media player\wmpnscfg.exe - Ok

c:\windows\system32\p2pcollab.dll - Ok

c:\windows\system32\peerdistsh.dll - Ok

c:\windows\system32\wwancfg.dll - Ok

c:\windows\system32\wlancfg.dll - Ok

c:\windows\system32\p2pnetsh.dll - Ok

c:\windows\system32\wcnnetsh.dll - Ok

c:\windows\system32\nettrace.dll - Ok

c:\windows\system32\nshipsec.dll - Ok

c:\windows\system32\napmontr.dll - Ok

c:\windows\system32\dot3cfg.dll - Ok

c:\windows\system32\rpcnsh.dll - Ok

>c:\windows\system32\hnetmon.dll - packed by FLY-CODE

c:\windows\system32\hnetmon.dll - Ok

c:\windows\system32\whhelper.dll - Ok

c:\windows\system32\netiohlp.dll - Ok

c:\windows\system32\ifmon.dll - Ok

c:\windows\system32\authfwcfg.dll - Ok

c:\windows\system32\fwcfg.dll - Ok

c:\windows\system32\nshhttp.dll - Ok

c:\windows\system32\wshelper.dll - Ok

>c:\windows\system32\dhcpcmonitor.dll - packed by FLY-CODE

c:\windows\system32\dhcpcmonitor.dll - Ok

c:\windows\system32\nshwfp.dll - Ok

c:\windows\system32\rasmontr.dll - Ok

c:\windows\system32\rasplap.dll - Ok

c:\program files\common files\microsoft shared\windows live\wlidcredprov.dll - Ok

c:\windows\system32\certcredprovider.dll - Ok

c:\windows\system32\biocredprov.dll - Ok

c:\windows\system32\smartcardcredentialprovider.dll - Ok

c:\windows\system32\vaultcredprovider.dll - Ok

c:\windows\system32\chkwudrv.dll - Ok

>c:\windows\system32\dfrgui.exe is ZLIB container

c:\windows\system32\dfrgui.exe - container

c:\windows\system32\cleanmgr.exe - Ok

c:\windows\system32\sdclt.exe - Ok

>c:\windows\system32\calc.exe is ZLIB container

c:\windows\system32\calc.exe - container

c:\windows\system32\rdpwsx.dll - Ok

c:\windows\system32\rdpclip.exe - Ok

c:\windows\system32\rdpcfgex.dll - Ok

c:\windows\system32\rdpendp.dll - Ok

c:\windows\system32\osk.exe - Ok

c:\windows\system32\narrator.exe - Ok

>c:\windows\system32\magnify.exe is ZLIB container

c:\windows\system32\magnify.exe - container

c:\windows\system32\wfs.exe - Ok

c:\windows\system32\msicofire.dll - Ok

c:\windows\system32\radarrs.dll - Ok

c:\windows\system32\pcadm.dll - Ok

c:\windows\system32\cmd.exe - Ok

c:\windows\system32\msobjs.dll - Ok

c:\windows\system32\adtschema.dll - Ok

c:\windows\system32\msaudite.dll - Ok

c:\windows\system32\iassvcs.dll - Ok

c:\program files\windows defender\mpevmsg.dll - Ok

c:\windows\system32\vdsvd.dll - Ok

c:\windows\system32\vdsdyn.dll - Ok

c:\windows\system32\vdsbas.dll - Ok

c:\windows\system32\ntprint.dll - Ok

c:\windows\system32\netmsg.dll - Ok

c:\windows\system32\whealogr.dll - Ok

c:\windows\system32\wbem\win32_tpm.dll - Ok

c:\windows\system32\reagent.dll - Ok

c:\windows\system32\oobe\winsetup.dll - Ok

c:\windows\servicing\cbsmsg.dll - Ok

c:\windows\system32\eventproviders\spcmsg.dll - Ok

c:\windows\system32\recovery.dll - Ok

c:\windows\system32\pots.dll - Ok

c:\windows\system32\mdsched.exe - Ok

c:\windows\system32\relpost.exe - Ok

c:\windows\system32\lpksetup.exe - Ok

c:\windows\system32\microsoft-windows-kernel-processor-power-events.dll - Ok

c:\windows\system32\microsoft-windows-kernel-power-events.dll - Ok

c:\windows\system32\microsoft-windows-hal-events.dll - Ok

c:\windows\system32\fms.dll - Ok

Link to post
Share on other sites

c:\windows\system32\fthsvc.dll - Ok

c:\windows\system32\ehstorauthn.exe - Ok

c:\windows\system32\dfdts.dll - Ok

c:\windows\system32\netdiagfx.dll - Ok

c:\windows\system32\cofiredm.dll - Ok

c:\program files\microsoft security client\mpevmsg.dll - Ok

c:\windows\system32\iscsilog.dll - Ok

c:\windows\system32\rtm.dll - Ok

c:\windows\system32\dispci.dll - Ok

c:\windows\system32\dhcpqec.dll - Ok

c:\windows\system32\netevent.dll - Ok

c:\windows\system32\iologmsg.dll - Ok

c:\windows\system32\wshext.dll - Ok

c:\windows\system32\wsepno.dll - Ok

c:\windows\system32\sdengin2.dll - Ok

c:\windows\system32\wat\watux.exe - Ok

c:\program files\microsoft visual studio 8\common7\ide\vsta.exe - Ok

>c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe is BINARYRES container

>>c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe\data001 is JS-HTML container

c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe - container

c:\windows\system32\msvbvm60.dll - Ok

>c:\windows\system32\usbperf.dll - packed by FLY-CODE

c:\windows\system32\usbperf.dll - Ok

c:\windows\system32\srcore.dll - Ok

c:\windows\system32\sxproxy.dll - Ok

c:\windows\system32\appmgr.dll - Ok

c:\windows\system32\mprmsg.dll - Ok

c:\windows\microsoft.net\framework\v2.0.50727\eventlogmessages.dll - Ok

c:\program files\microsoft office\office12\1033\mapir.dll - Ok

c:\windows\system32\msimsg.dll - Ok

c:\windows\system32\xwizards.dll - Ok

c:\windows\system32\winsat.exe - Ok

c:\windows\system32\mciavi32.dll - Ok

c:\windows\system32\mstscax.dll - Ok

c:\windows\system32\rstrtmgr.dll - Ok

c:\windows\system32\msra.exe - Ok

c:\windows\system32\tsworkspace.dll - Ok

c:\windows\system32\perfctrs.dll - Ok

c:\windows\system32\loadperf.dll - Ok

c:\windows\system32\efscore.dll - Ok

c:\windows\system32\ksproxy.ax - Ok

c:\windows\system32\quartz.dll - Ok

c:\windows\system32\certcli.dll - Ok

c:\windows\system32\dimsroam.dll - Ok

c:\windows\system32\certenroll.dll - Ok

c:\windows\system32\pautoenr.dll - Ok

c:\windows\system32\blbevents.dll - Ok

c:\windows\system32\aeevts.dll - Ok

c:\windows\system32\eventcreate.exe - Ok

c:\program files\common files\microsoft shared\dw\dw20.exe - Ok

c:\windows\system32\locationnotifications.exe - Ok

c:\program files\dvd maker\dvdmaker.exe - Ok

c:\windows\system32\ulib.dll - Ok

c:\program files\common files\microsoft shared\office12\mssoap30.dll - Ok

c:\program files\common files\system\ole db\msdmine.dll - Ok

c:\windows\microsoft.net\framework\v3.0\windows communication foundation\servicemodelevents.dll - Ok

c:\windows\system32\fxsevent.dll - Ok

c:\program files\common files\microsoft shared\ink\ipseventlogmsg.dll - Ok

c:\windows\system32\icardres.dll - Ok

c:\windows\microsoft.net\framework\v2.0.50727\aspnet_rc.dll - Ok

c:\program files\java\jre6\bin\jp2ssv.dll - Ok

c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll - Ok

c:\program files\java\jre6\bin\ssv.dll - Ok

c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll - Ok

c:\program files\common files\adobe\acrobat\activex\pdfshell.dll - Ok

c:\program files\microsoft security client\shellext.dll - Ok

c:\program files\real\realplayer\rpshell.dll - Ok

c:\program files\windows live\photo gallery\photoviewershim.dll - Ok

c:\program files\common files\microsoft shared\office12\msoshext.dll - Ok

c:\program files\microsoft office\office12\onfilter.dll - Ok

c:\program files\microsoft office\office12\mlshext.dll - Ok

c:\program files\microsoft office\office12\olkfstub.dll - Ok

c:\windows\system32\mf.dll - Ok

c:\program files\windows live\photo gallery\albumdownloadprotocolhandler.dll - Ok

c:\program files\windows live\mail\mailcomm.dll - Ok

c:\program files\common files\skype\skype4com.dll - Ok

c:\program files\common files\microsoft shared\help\hxds.dll - Ok

c:\windows\system32\inetcomm.dll - Ok

c:\program files\windows live\messenger\msgrapp.dll - Ok

c:\windows\system32\itss.dll - Ok

c:\windows\system32\msvidctl.dll - Ok

c:\windows\system32\mshtml.dll - Ok

c:\program files\common files\microsoft shared\office12\msoxmlmf.dll - Ok

c:\windows\system32\mscoree.dll - Ok

c:\windows\system32\wwansvc.dll - Ok

c:\windows\system32\drivers\wudfrd.sys - Ok

c:\windows\system32\drivers\ws2ifsl.sys - Ok

c:\windows\system32\wpdbusenum.dll - Ok

c:\windows\system32\wpcsvc.dll - Ok

c:\windows\system32\wbem\wmiapsrv.exe - Ok

c:\windows\system32\wbem\wmiaprpl.dll - Ok

c:\windows\system32\drivers\wmiacpi.sys - Ok

c:\program files\windows live\mesh\wlcrasvc.exe - Ok

c:\windows\system32\wlansvc.dll - Ok

c:\windows\system32\drivers\winusb.sys - Ok

c:\windows\system32\winsock.dll - Ok

c:\windows\system32\wsmsvc.dll - Ok

c:\program files\windows defender\mpsvc.dll - Ok

>c:\windows\system32\drivers\wimmount.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\wimmount.sys - packed by FLY-CODE

c:\windows\system32\drivers\wimmount.sys - Ok

c:\windows\system32\wersvc.dll - Ok

c:\windows\system32\wecsvc.dll - Ok

c:\windows\system32\webclnt.dll - Ok

c:\windows\system32\drivers\wd.sys - Ok

c:\windows\system32\wcspluginservice.dll - Ok

c:\windows\system32\wcncsvc.dll - Ok

c:\windows\system32\wbiosrvc.dll - Ok

c:\windows\system32\wbengine.exe - Ok

>c:\windows\system32\wat\watadminsvc.exe - packed by FLY-CODE

>>c:\windows\system32\wat\watadminsvc.exe - packed by PECRYPT

c:\windows\system32\wat\watadminsvc.exe - Ok

c:\windows\system32\drivers\wacompen.sys - Ok

c:\windows\system32\w32time.dll - Ok

c:\windows\system32\drivers\vwifibus.sys - Ok

c:\windows\system32\vssvc.exe - Ok

c:\windows\system32\drivers\vsmraid.sys - Ok

c:\windows\system32\drivers\vmbushid.sys - Ok

c:\windows\system32\drivers\viaide.sys - Ok

c:\windows\system32\drivers\viac7.sys - Ok

c:\windows\system32\drivers\viaagp.sys - Ok

c:\windows\system32\drivers\vhdmp.sys - Ok

c:\windows\system32\vds.exe - Ok

c:\windows\system32\drivers\usbstor.sys - Ok

c:\windows\system32\drivers\usbscan.sys - Ok

c:\windows\system32\drivers\usbprint.sys - Ok

c:\windows\system32\drivers\usbohci.sys - Ok

c:\windows\system32\drivers\usbcir.sys - Ok

c:\windows\system32\drivers\usbaudio.sys - Ok

c:\windows\system32\drivers\usbaapl.sys - Ok

c:\windows\system32\umrdp.dll - Ok

>c:\windows\system32\drivers\umpass.sys - packed by FLY-CODE

c:\windows\system32\drivers\umpass.sys - Ok

c:\windows\system32\drivers\uliagpkx.sys - Ok

c:\windows\system32\ui0detect.exe - Ok

c:\windows\system32\drivers\udfs.sys - Ok

c:\windows\system32\drivers\uagp35.sys - Ok

c:\windows\system32\drivers\tsusbflt.sys - Ok

c:\windows\system32\drivers\tssecsrv.sys - Ok

c:\windows\servicing\trustedinstaller.exe - Ok

c:\windows\system32\termsrv.dll - Ok

c:\windows\system32\drivers\tdtcp.sys - Ok

c:\windows\system32\drivers\tdpipe.sys - Ok

c:\windows\system32\tbssvc.dll - Ok

c:\windows\system32\tapisrv.dll - Ok

c:\windows\system32\tabsvc.dll - Ok

c:\windows\system32\swprv.dll - Ok

c:\windows\system32\drivers\storvsc.sys - Ok

c:\windows\system32\drivers\stexstor.sys - Ok

c:\windows\system32\sstpsvc.dll - Ok

c:\windows\system32\sppuinotify.dll - Ok

>c:\windows\system32\snmptrap.exe - packed by FLY-CODE

c:\windows\system32\snmptrap.exe - Ok

c:\windows\system32\drivers\smb.sys - Ok

>c:\program files\skype\updater\updater.exe - packed by UPX

c:\program files\skype\updater\updater.exe - Ok

c:\windows\system32\drivers\sisraid4.sys - Ok

c:\windows\system32\drivers\sisraid2.sys - Ok

c:\windows\system32\drivers\sisagp.sys - Ok

c:\windows\system32\ipnathlp.dll - Ok

c:\windows\system32\drivers\sfloppy.sys - Ok

c:\windows\system32\drivers\sffp_sd.sys - Ok

c:\windows\system32\drivers\sffp_mmc.sys - Ok

c:\windows\system32\drivers\sffdisk.sys - Ok

c:\windows\system32\sessenv.dll - Ok

c:\windows\system32\drivers\sermouse.sys - Ok

c:\windows\system32\sensrsvc.dll - Ok

c:\windows\system32\seclogon.dll - Ok

c:\windows\system32\sdrsvc.dll - Ok

>c:\windows\system32\drivers\scfilter.sys - packed by FLY-CODE

c:\windows\system32\drivers\scfilter.sys - Ok

c:\windows\system32\scardsvr.dll - Ok

c:\windows\system32\drivers\sbp2port.sys - Ok

c:\windows\system32\drivers\vms3cap.sys - Ok

c:\windows\system32\locator.exe - Ok

c:\windows\system32\regsvc.dll - Ok

c:\windows\system32\mprdim.dll - Ok

c:\windows\system32\drivers\rdpwd.sys - Ok

c:\windows\system32\drivers\rdpvideominiport.sys - Ok

c:\windows\system32\rdpudd.dll - Ok

c:\windows\system32\drivers\rdpdr.sys - Ok

c:\windows\system32\rdpdd.dll - Ok

c:\windows\system32\rasmans.dll - Ok

c:\windows\system32\rasauto.dll - Ok

c:\windows\system32\drivers\rasacd.sys - Ok

c:\windows\system32\drivers\qwavedrv.sys - Ok

c:\windows\system32\qwave.dll - Ok

c:\windows\system32\drivers\ql40xx.sys - Ok

c:\windows\system32\drivers\ql2300.sys - Ok

c:\windows\system32\drivers\processr.sys - Ok

c:\windows\system32\pnrpauto.dll - Ok

c:\windows\system32\pla.dll - Ok

c:\windows\system32\perfproc.dll - Ok

c:\windows\system32\perfos.dll - Ok

c:\windows\system32\perfnet.dll - Ok

c:\windows\system32\perfdisk.dll - Ok

c:\windows\system32\peerdistsvc.dll - Ok

c:\windows\system32\drivers\pcmcia.sys - Ok

>c:\windows\system32\drivers\pciide.sys - packed by FLY-CODE

c:\windows\system32\drivers\pciide.sys - Ok

c:\windows\system32\p2psvc.dll - Ok

c:\windows\system32\pnrpsvc.dll - Ok

c:\program files\common files\microsoft shared\source engine\ose.exe - Ok

c:\windows\system32\drivers\ohci1394.sys - Ok

c:\program files\common files\microsoft shared\office12\odserv.exe - Ok

c:\windows\system32\drivers\nv_agp.sys - Ok

c:\windows\system32\drivers\nvstor.sys - Ok

c:\windows\system32\drivers\nvraid.sys - Ok

>c:\program files\nos\bin\getplus_helper_3004.dll - packed by FLY-CODE

>>c:\program files\nos\bin\getplus_helper_3004.dll - packed by BINARYRES

c:\program files\nos\bin\getplus_helper_3004.dll - Ok

c:\program files\microsoft security client\nissrv.exe - Ok

c:\windows\system32\drivers\nisdrvwfp.sys - Ok

c:\windows\system32\drivers\nfrd960.sys - Ok

c:\windows\microsoft.net\framework\v3.0\windows communication foundation\smsvchost.exe - Ok

c:\windows\system32\drivers\ndisuio.sys - Ok

c:\windows\system32\drivers\ndiscap.sys - Ok

c:\windows\system32\drivers\nwifi.sys - Ok

c:\windows\system32\qagentrt.dll - Ok

>c:\windows\system32\drivers\mtconfig.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\mtconfig.sys - packed by FLY-CODE

c:\windows\system32\drivers\mtconfig.sys - Ok

c:\windows\system32\drivers\mstee.sys - Ok

c:\windows\system32\msscntrs.dll - Ok

c:\windows\system32\drivers\mspqm.sys - Ok

c:\windows\system32\drivers\mspclock.sys - Ok

c:\windows\system32\drivers\mskssrv.sys - Ok

c:\windows\system32\msiexec.exe - Ok

c:\windows\system32\iscsiexe.dll - Ok

c:\windows\system32\drivers\mshidkmdf.sys - Ok

>c:\windows\system32\drivers\bridge.sys - packed by FLY-CODE

c:\windows\system32\drivers\bridge.sys - Ok

c:\windows\system32\msdtc.exe - Ok

c:\windows\system32\drivers\msdsm.sys - Ok

c:\windows\system32\drivers\msahci.sys - Ok

c:\windows\system32\drivers\mrxdav.sys - Ok

c:\windows\system32\drivers\mpio.sys - Ok

c:\windows\system32\drivers\modem.sys - Ok

c:\windows\system32\mmcss.dll - Ok

c:\program files\microsoft office\office12\grooveauditservice.exe - Ok

c:\windows\system32\drivers\megasr.sys - Ok

c:\windows\system32\drivers\megasas.sys - Ok

c:\windows\system32\mcx2svc.dll - Ok

c:\windows\system32\drivers\lsi_scsi.sys - Ok

c:\windows\system32\drivers\lsi_sas2.sys - Ok

c:\windows\system32\drivers\lsi_sas.sys - Ok

c:\windows\system32\drivers\lsi_fc.sys - Ok

c:\windows\system32\lltdsvc.dll - Ok

c:\windows\system32\msdtckrm.dll - Ok

c:\windows\system32\drivers\msiscsi.sys - Ok

c:\windows\system32\drivers\isapnp.sys - Ok

c:\windows\system32\drivers\irenum.sys - Ok

c:\windows\system32\drivers\ipnat.sys - Ok

c:\windows\system32\drivers\ipmidrv.sys - Ok

c:\windows\system32\drivers\ipfltdrv.sys - Ok

c:\windows\system32\ipbusenum.dll - Ok

c:\windows\system32\drivers\iirsp.sys - Ok

c:\windows\microsoft.net\framework\v3.0\windows communication foundation\infocard.exe - Ok

c:\windows\system32\drivers\iastorv.sys - Ok

c:\windows\system32\drivers\i8042prt.sys - Ok

c:\windows\system32\drivers\hpsamd.sys - Ok

c:\windows\system32\listsvc.dll - Ok

c:\windows\system32\kmsvc.dll - Ok

c:\windows\system32\drivers\hidir.sys - Ok

c:\windows\system32\drivers\hidbth.sys - Ok

c:\windows\system32\drivers\hidbatt.sys - Ok

c:\windows\system32\drivers\hdaudbus.sys - Ok

c:\windows\system32\drivers\hcw85cir.sys - Ok

c:\windows\system32\drivers\gagp30kx.sys - Ok

c:\windows\system32\drivers\fsdepends.sys - Ok

c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe - Ok

>c:\windows\system32\drivers\filetrace.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\filetrace.sys - packed by FLY-CODE

c:\windows\system32\drivers\filetrace.sys - Ok

c:\windows\system32\fdrespub.dll - Ok

c:\windows\system32\fdphost.dll - Ok

c:\windows\system32\fxssvc.exe - Ok

c:\windows\system32\drivers\exfat.sys - Ok

c:\windows\system32\drivers\errdev.sys - Ok

c:\windows\system32\drivers\elxstor.sys - Ok

c:\windows\ehome\ehsched.exe - Ok

c:\windows\ehome\ehrecvr.exe - Ok

c:\windows\system32\drivers\evbdx.sys - Ok

c:\windows\system32\eapsvc.dll - Ok

c:\windows\system32\drivers\dxgkrnl.sys - Ok

>c:\windows\system32\drivers\drmkaud.sys - packed by FLY-CODE

c:\windows\system32\drivers\drmkaud.sys - Ok

c:\windows\system32\dot3svc.dll - Ok

c:\windows\system32\defragsvc.dll - Ok

c:\windows\system32\drivers\crcdisk.sys - Ok

c:\windows\system32\dllhost.exe - Ok

c:\windows\system32\drivers\compbatt.sys - Ok

c:\windows\system32\drivers\cmdide.sys - Ok

c:\windows\system32\drivers\cmbatt.sys - Ok

c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe - Ok

c:\windows\system32\drivers\circlass.sys - Ok

c:\windows\system32\certprop.dll - Ok

c:\windows\system32\drivers\bvrpmpr5.sys - Ok

c:\windows\system32\bthserv.dll - Ok

c:\windows\system32\drivers\bthmodem.sys - Ok

c:\windows\system32\drivers\brusbser.sys - Ok

c:\windows\system32\drivers\brusbmdm.sys - Ok

c:\windows\system32\drivers\brserwdm.sys - Ok

c:\windows\system32\drivers\brserid.sys - Ok

c:\windows\system32\drivers\brfiltup.sys - Ok

c:\windows\system32\drivers\brfiltlo.sys - Ok

c:\windows\system32\bdesvc.dll - Ok

>c:\windows\system32\drivers\battc.sys - packed by FLY-CODE

c:\windows\system32\drivers\battc.sys - Ok

c:\windows\system32\drivers\b57nd60x.sys - Ok

c:\windows\system32\drivers\bxvbdx.sys - Ok

c:\windows\system32\axinstsv.dll - Ok

c:\windows\system32\drivers\asyncmac.sys - Ok

c:\windows\system32\drivers\arcsas.sys - Ok

c:\windows\system32\drivers\arc.sys - Ok

c:\windows\system32\appidsvc.dll - Ok

c:\windows\system32\drivers\appid.sys - Ok

c:\windows\system32\drivers\amdsbs.sys - Ok

c:\windows\system32\drivers\amdsata.sys - Ok

c:\windows\system32\drivers\amdppm.sys - Ok

c:\windows\system32\drivers\amdk8.sys - Ok

c:\windows\system32\drivers\amdide.sys - Ok

c:\windows\system32\drivers\amdagp.sys - Ok

>c:\windows\system32\drivers\aliide.sys - packed by FLY-CODE

c:\windows\system32\drivers\aliide.sys - Ok

c:\windows\system32\alg.exe - Ok

c:\program files\common files\akamai\netsession_win_ce5ba24.dll - Ok

c:\windows\system32\drivers\djsvs.sys - Ok

c:\windows\system32\aelupsvc.dll - Ok

>c:\windows\system32\drivers\adpu320.sys - packed by FLY-CODE

c:\windows\system32\drivers\adpu320.sys - Ok

c:\windows\system32\drivers\adpahci.sys - Ok

c:\windows\system32\drivers\adp94xx.sys - Ok

>c:\windows\system32\drivers\acpipmi.sys - packed by FLY-CODE

c:\windows\system32\drivers\acpipmi.sys - Ok

c:\windows\system32\drivers\1394ohci.sys - Ok

c:\windows\system32\mscories.dll - Ok

c:\program files\windows mail\winmail.exe - Ok

c:\windows\system32\themeui.dll - Ok

>c:\windows\system32\regsvr32.exe - packed by FLY-CODE

c:\windows\system32\regsvr32.exe - Ok

c:\windows\system32\rundll32.exe - Ok

>c:\windows\system32\ie4uinit.exe - packed by FLY-CODE

c:\windows\system32\ie4uinit.exe - Ok

c:\windows\system32\unregmp2.exe - Ok

c:\windows\system32\difxapi.dll - Ok

c:\windows\system32\mctadmin.exe - Ok

c:\users\siejja\appdata\local\akamai\netsession_win.exe - Ok

c:\program files\windows sidebar\sidebar.exe - Ok

c:\program files\quicktime\qttask.exe - Ok

c:\windows\system32\auditcse.dll - Ok

c:\windows\system32\polstore.dll - Ok

c:\windows\system32\appmgmts.dll - Ok

c:\windows\system32\dot3gpclnt.dll - Ok

c:\windows\system32\gpprnext.dll - Ok

c:\windows\system32\iedkcs32.dll - Ok

c:\windows\system32\tsusbredirectiongrouppolicyextension.dll - Ok

c:\windows\system32\gpscript.dll - Ok

c:\windows\system32\gptext.dll - Ok

c:\windows\system32\dskquota.dll - Ok

c:\windows\system32\fdeploy.dll - Ok

c:\windows\system32\gpprefcl.dll - Ok

c:\windows\system32\wlgpclnt.dll - Ok

c:\program files\java\jre6\bin\npjpi160_30.dll - Ok

c:\program files\java\jre6\bin\jp2iexp.dll - Ok

c:\program files\microsoft office\office12\onbttnie.dll - Ok

c:\program files\windows live\writer\writerbrowserextension.dll - Ok

c:\program files\windows live\companion\companioncore.dll - Ok

c:\program files\quicktime\qtsystem\quicktime.cpl - Ok

c:\program files\microsoft office\office12\mlcfg32.cpl - Ok

c:\windows\system32\autochk.exe - Ok

c:\windows\system32\userinit.exe - Ok

c:\windows\system32\sirenacm.dll - Ok

c:\windows\system32\iccvid.dll - Ok

c:\windows\system32\tsbyuv.dll - Ok

>c:\windows\system32\iyuv_32.dll - packed by FLY-CODE

c:\windows\system32\iyuv_32.dll - Ok

c:\windows\system32\msyuv.dll - Ok

c:\windows\system32\msadp32.acm - Ok

c:\windows\system32\msgsm32.acm - Ok

c:\windows\system32\msg711.acm - Ok

>c:\windows\system32\imaadp32.acm - packed by FLY-CODE

c:\windows\system32\imaadp32.acm - Ok

c:\windows\system32\msvidc32.dll - Ok

c:\windows\system32\msrle32.dll - Ok

Process :0 - read error

Process System:4 - read error

Process C:\Windows\System32\smss.exe:260 - Ok

Process C:\Windows\System32\csrss.exe:348 - Ok

Process C:\Windows\System32\wininit.exe:396 - Ok

Process C:\Windows\System32\csrss.exe:408 - Ok

Process C:\Windows\System32\winlogon.exe:448 - Ok

Process C:\Windows\System32\services.exe:476 - Ok

Process C:\Windows\System32\lsass.exe:492 - Ok

Process C:\Windows\System32\lsm.exe:500 - Ok

Process C:\Windows\System32\svchost.exe:620 - Ok

Process C:\Windows\System32\svchost.exe:688 - Ok

Process C:\Program Files\Microsoft Security Client\MsMpEng.exe:740 - Ok

Process C:\Windows\System32\svchost.exe:876 - Ok

Process C:\Windows\System32\svchost.exe:916 - Ok

Process C:\Windows\System32\svchost.exe:964 - Ok

Process C:\Windows\System32\svchost.exe:1108 - Ok

Process C:\Windows\System32\svchost.exe:1268 - Ok

Process C:\Windows\System32\spoolsv.exe:1364 - Ok

Process C:\Windows\System32\svchost.exe:1404 - Ok

Process C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe:1484 - Ok

Process C:\Windows\System32\svchost.exe:1504 - Ok

Process C:\Program Files\Windows Live\Family Safety\fsssvc.exe:1560 - Ok

Process C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe:1600 - Ok

Process C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe:1636 - Ok

Process C:\Windows\System32\svchost.exe:1660 - Ok

Process C:\Windows\System32\svchost.exe:1732 - Ok

Process C:\Windows\System32\svchost.exe:1780 - Ok

Process C:\Windows\System32\taskhost.exe:1868 - Ok

Process C:\Windows\System32\dwm.exe:1972 - Ok

Process C:\Windows\explorer.exe:368 - Ok

Process C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE:496 - Ok

Process C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:776 - Ok

Process C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE:2028 - Ok

Process C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe:2920 - Ok

Process C:\Windows\soundman.exe:2948 - Ok

Process C:\Program Files\Windows Live\Family Safety\fsui.exe:3048 - Ok

Process C:\Program Files\Real\realplayer\Update\realsched.exe:3256 - Ok

Process C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe:3352 - Ok

Process C:\Program Files\Common Files\Java\Java Update\jusched.exe:3728 - Ok

Process C:\Program Files\Microsoft Security Client\msseces.exe:4004 - Ok

Process C:\Windows\System32\svchost.exe:2500 - Ok

Process C:\Windows\System32\svchost.exe:1516 - Ok

Process C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE:3228 - Ok

Process C:\Windows\System32\SearchIndexer.exe:3620 - Ok

Process C:\Program Files\Windows Media Player\wmpnetwk.exe:3580 - Ok

Process C:\Windows\System32\wbem\WmiPrvSE.exe:3900 - Ok

Process C:\Users\Angel\Downloads\drweb-cureit.exe:2812 - Ok

Process C:\Users\Angel\AppData\Local\Temp\5FBB9B3C-8B297DFC-555CA7B8-FFFF6DE0\53u355v8.exe:988 - Ok

Process C:\Users\Angel\AppData\Local\Temp\5FBB9B3C-8B297DFC-555CA7B8-FFFF6DE0\6j0pdyhm.exe:2684 - Ok

Process C:\Windows\System32\ctfmon.exe:1196 - Ok

Process C:\Users\Angel\AppData\Local\Temp\5FBB9B3C-8B297DFC-555CA7B8-FFFF6DE0\f8qd0br3.exe:3136 - Ok

Process C:\Windows\System32\wuauclt.exe:2448 - Ok

Process C:\Windows\System32\SearchProtocolHost.exe:2184 - Ok

Process C:\Windows\System32\SearchFilterHost.exe:284 - Ok

HDD0 MBR - Ok

HDD0 Active OS\2 or WinNT Boot Sector - Ok

c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll - Ok

c:\program files\common files\adobe\acrobat\activex\pdfshell.dll - Ok

c:\program files\common files\adobe\arm\1.0\armsvc.exe - Ok

c:\program files\common files\adobe\arm\1.0\adobearm.exe - Ok

c:\program files\common files\java\java update\jusched.exe - Ok

c:\program files\common files\microsoft shared\dw\dw20.exe - Ok

c:\program files\common files\microsoft shared\help\hxds.dll - Ok

c:\program files\common files\microsoft shared\ink\ipseventlogmsg.dll - Ok

c:\program files\common files\microsoft shared\ink\tiptsf.dll - Ok

c:\program files\common files\akamai\netsession_win_ce5ba24.dll - Ok

c:\program files\common files\microsoft shared\office12\msoxmlmf.dll - Ok

c:\program files\common files\microsoft shared\office12\msoshext.dll - Ok

c:\program files\common files\microsoft shared\office12\mssoap30.dll - Ok

c:\program files\common files\microsoft shared\office12\odserv.exe - Ok

c:\program files\common files\microsoft shared\windows live\sqmapi.dll - Ok

c:\program files\common files\microsoft shared\source engine\ose.exe - Ok

c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll - Ok

c:\program files\common files\microsoft shared\windows live\wlidnsp.dll - Ok

c:\program files\common files\microsoft shared\windows live\wlidcli.dll - Ok

c:\program files\common files\microsoft shared\windows live\wlidsvcm.exe - Ok

c:\program files\common files\microsoft shared\windows live\wlidsvc.exe - Ok

c:\program files\common files\skype\skype4com.dll - Ok

c:\program files\common files\system\ole db\msdmine.dll - Ok

c:\program files\internet explorer\ieproxy.dll - Ok

c:\program files\java\jre6\bin\jp2iexp.dll - Ok

c:\program files\java\jre6\bin\jp2ssv.dll - Ok

c:\program files\dvd maker\dvdmaker.exe - Ok

c:\program files\java\jre6\bin\npjpi160_30.dll - Ok

c:\program files\java\jre6\bin\ssv.dll - Ok

c:\program files\malwarebytes' anti-malware\mbam.dll - Ok

c:\program files\malwarebytes' anti-malware\mbamgui.exe - Ok

>c:\program files\malwarebytes' anti-malware\mbamcore.dll is BINARYRES container

c:\program files\malwarebytes' anti-malware\mbamcore.dll - container

c:\program files\malwarebytes' anti-malware\mbamscheduler.exe - Ok

c:\program files\malwarebytes' anti-malware\mbamservice.exe - Ok

c:\program files\malwarebytes' anti-malware\mbamnet.dll - Ok

c:\program files\microsoft office\office12\1033\grooveintlresource.dll - Ok

c:\program files\microsoft office\office12\1033\mapir.dll - Ok

c:\program files\microsoft office\office12\grooveauditservice.exe - Ok

c:\program files\microsoft office\office12\groovemisc.dll - Ok

c:\program files\microsoft office\office12\1033\onintl.dll - Ok

c:\program files\microsoft office\office12\groovenew.dll - Ok

c:\program files\microsoft office\office12\groovemonitor.exe - Ok

c:\program files\microsoft office\office12\groovesystemservices.dll - Ok

c:\program files\microsoft office\office12\grooveutil.dll - Ok

c:\program files\microsoft office\office12\mlcfg32.cpl - Ok

c:\program files\microsoft office\office12\mlshext.dll - Ok

c:\program files\microsoft office\office12\msohevi.dll - Ok

c:\program files\microsoft office\office12\olkfstub.dll - Ok

c:\program files\microsoft office\office12\grooveshellextensions.dll - Ok

c:\program files\microsoft office\office12\onenotem.exe - Ok

c:\program files\microsoft office\office12\onbttnie.dll - Ok

c:\program files\microsoft office\office12\onfilter.dll - Ok

c:\program files\microsoft security client\eppmanifest.dll - Ok

c:\program files\microsoft security client\mpcmdrun.exe - Ok

c:\program files\microsoft security client\mpevmsg.dll - Ok

c:\program files\microsoft security client\mpclient.dll - Ok

c:\program files\microsoft security client\mprtp.dll - Ok

c:\program files\microsoft security client\msmpeng.exe - Ok

>c:\program files\microsoft security client\msmpres.dll is ZLIB container

c:\program files\microsoft security client\mpsvc.dll - Ok

c:\program files\microsoft security client\msmpres.dll - container

c:\program files\microsoft security client\msseces.exe - Ok

c:\program files\microsoft security client\nissrv.exe - Ok

c:\program files\microsoft security client\shellext.dll - Ok

c:\program files\microsoft security client\sqmapi.dll - Ok

c:\program files\microsoft visual studio 8\common7\ide\vsta.exe - Ok

>c:\program files\nos\bin\getplus_helper_3004.dll - packed by FLY-CODE

>c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe is BINARYRES container

>>c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe\data001 is JS-HTML container

c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe - container

>>c:\program files\nos\bin\getplus_helper_3004.dll - packed by BINARYRES

c:\program files\nos\bin\getplus_helper_3004.dll - Ok

c:\program files\quicktime\qttask.exe - Ok

c:\program files\quicktime\qtsystem\quicktime.cpl - Ok

c:\program files\real\realplayer\rpshell.dll - Ok

c:\program files\real\realplayer\update\realsched.exe - Ok

c:\program files\real\realupgrade\realupgrade.exe - Ok

>c:\program files\skype\updater\updater.exe - packed by UPX

c:\program files\skype\updater\updater.exe - Ok

c:\program files\windows defender\mpevmsg.dll - Ok

c:\program files\windows defender\mpsvc.dll - Ok

c:\program files\windows live\companion\companioncore.dll - Ok

c:\program files\windows live\family safety\en\fsui.dll.mui - Ok

>c:\program files\windows live\family safety\fsssvc.exe is BINARYRES container

>>c:\program files\windows live\family safety\fsssvc.exe\data001 is JS-HTML container

>>c:\program files\windows live\family safety\fsssvc.exe\data002 is ZLIB container

c:\program files\windows live\family safety\fsssvc.exe - container

c:\program files\windows live\family safety\fsssvcps.dll - Ok

c:\program files\windows live\family safety\fsui.exe - Ok

c:\program files\windows live\mail\mailcomm.dll - Ok

c:\program files\windows live\mesh\wlcrasvc.exe - Ok

c:\program files\windows live\messenger\msgrapp.dll - Ok

c:\program files\windows live\photo gallery\albumdownloadprotocolhandler.dll - Ok

c:\program files\windows live\photo gallery\photoviewershim.dll - Ok

c:\program files\windows live\shared\uxcore.dll - Ok

c:\program files\windows live\shared\wlbici.dll - Ok

c:\program files\windows live\shared\wldcore.dll - Ok

>c:\program files\windows live\shared\wlidux.dll is ZLIB container

c:\program files\windows live\shared\wlidux.dll - container

c:\program files\windows live\writer\writerbrowserextension.dll - Ok

c:\program files\windows mail\winmail.exe - Ok

>c:\program files\skype\phone\skype.exe - packed by FLY-CODE

>>c:\program files\skype\phone\skype.exe - packed by SKYPE BUCKLER

c:\program files\windows media player\wmpnetwk.exe - Ok

c:\program files\windows media player\wmpnscfg.exe - Ok

c:\program files\skype\phone\skype.exe - Ok

Link to post
Share on other sites

c:\programdata\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\53u355v8.exe - Ok

>c:\programdata\microsoft\microsoft antimalware\definition updates\{78a3e5fe-5ca3-4141-9ccd-5c436b2b85e5}\mpengine.dll is BINARYRES container

c:\programdata\microsoft\microsoft antimalware\definition updates\{78a3e5fe-5ca3-4141-9ccd-5c436b2b85e5}\mpengine.dll - container

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\f8qd0br3.exe - Ok

>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\6j0pdyhm.exe is BINARYRES container

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\6j0pdyhm.exe - container

>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll is BINARYRES container

>>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll\data003 - packed by BINARYRES

>>c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll\data004 - packed by BINARYRES

c:\users\angel\appdata\local\temp\5fbb9b3c-8b297dfc-555ca7b8-ffff6de0\lqfb7ika.dll - container

c:\users\angel\appdata\roaming\dropbox\bin\dropboxext.14.dll - Ok

c:\users\angel\appdata\roaming\dropbox\bin\msvcp71.dll - Ok

c:\users\angel\appdata\roaming\dropbox\bin\msvcr71.dll - Ok

c:\users\angel\appdata\roaming\microsoft\windows\start menu\programs\startup\desktop.ini - Ok

>c:\users\angel\downloads\drweb-cureit.exe is BINARYRES container

>>c:\users\angel\downloads\drweb-cureit.exe\data001 - packed by BINARYRES

>>c:\users\angel\downloads\drweb-cureit.exe\data002 - packed by BINARYRES

c:\users\angel\downloads\drweb-cureit.exe - container

c:\windows\ehome\ehprivjob.exe - Ok

c:\windows\ehome\ehrecvr.exe - Ok

c:\windows\ehome\ehsched.exe - Ok

c:\windows\ehome\ehsso.dll - Ok

c:\windows\ehome\mcupdate.exe - Ok

c:\windows\explorer.exe - Ok

c:\windows\microsoft.net\framework\v2.0.50727\aspnet_rc.dll - Ok

c:\windows\microsoft.net\framework\v2.0.50727\eventlogmessages.dll - Ok

c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe - Ok

c:\windows\microsoft.net\framework\v3.0\windows communication foundation\infocard.exe - Ok

c:\windows\microsoft.net\framework\v3.0\windows communication foundation\servicemodelevents.dll - Ok

c:\windows\microsoft.net\framework\v3.0\windows communication foundation\smsvchost.exe - Ok

c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe - Ok

c:\windows\servicing\cbsmsg.dll - Ok

c:\windows\servicing\trustedinstaller.exe - Ok

>c:\users\angel\appdata\roaming\dropbox\bin\dropbox.exe is BINARYRES container

>c:\windows\soundman.exe - packed by BINARYRES

>>c:\users\angel\appdata\roaming\dropbox\bin\dropbox.exe\data003 is ZIP archive

c:\users\angel\appdata\roaming\dropbox\bin\dropbox.exe\data003 - Ok

c:\users\angel\appdata\roaming\dropbox\bin\dropbox.exe - Ok

c:\users\angel\appdata\roaming\dropbox\bin\dropbox.exe - container

c:\windows\soundman.exe - Ok

c:\windows\system32\actxprxy.dll - Ok

c:\windows\system32\actioncenter.dll - Ok

c:\windows\system32\adtschema.dll - Ok

c:\windows\system32\aeevts.dll - Ok

c:\windows\system32\aelupsvc.dll - Ok

c:\windows\system32\advapi32.dll - Ok

c:\windows\system32\aepic.dll - Ok

c:\windows\system32\aitagent.exe - Ok

c:\windows\system32\alttab.dll - Ok

c:\windows\system32\alg.exe - Ok

c:\windows\system32\apphlpdm.dll - Ok

c:\windows\system32\appidcertstorecheck.exe - Ok

c:\windows\system32\apphelp.dll - Ok

c:\windows\system32\appidsvc.dll - Ok

c:\windows\system32\appidpolicyconverter.exe - Ok

c:\windows\system32\appinfo.dll - Ok

c:\windows\system32\appmgmts.dll - Ok

c:\windows\system32\atl.dll - Ok

c:\windows\system32\appmgr.dll - Ok

c:\windows\system32\audioses.dll - Ok

c:\windows\system32\auditcse.dll - Ok

c:\windows\system32\audiosrv.dll - Ok

c:\windows\system32\authz.dll - Ok

c:\windows\system32\autochk.exe - Ok

c:\windows\system32\avrt.dll - Ok

c:\windows\system32\axinstsv.dll - Ok

c:\windows\system32\basesrv.dll - Ok

>c:\windows\system32\authui.dll is ZLIB container

c:\windows\system32\authui.dll - container

c:\windows\system32\bcrypt.dll - Ok

c:\windows\system32\bcryptprimitives.dll - Ok

c:\windows\system32\batmeter.dll - Ok

c:\windows\system32\bdesvc.dll - Ok

c:\windows\system32\bitsigd.dll - Ok

c:\windows\system32\bitsperf.dll - Ok

c:\windows\system32\bfe.dll - Ok

c:\windows\system32\blbevents.dll - Ok

c:\windows\system32\browcli.dll - Ok

c:\windows\system32\blackbox.dll - Ok

c:\windows\system32\browser.dll - Ok

c:\windows\system32\bthserv.dll - Ok

c:\windows\system32\bthudtask.exe - Ok

c:\windows\system32\cabinet.dll - Ok

c:\windows\system32\certcli.dll - Ok

c:\windows\system32\bthprops.cpl - Ok

c:\windows\system32\certpoleng.dll - Ok

c:\windows\system32\certprop.dll - Ok

c:\windows\system32\cfgmgr32.dll - Ok

c:\windows\system32\clbcatq.dll - Ok

c:\windows\system32\clusapi.dll - Ok

c:\windows\system32\certenroll.dll - Ok

c:\windows\system32\cngaudit.dll - Ok

c:\windows\system32\cofiredm.dll - Ok

c:\windows\system32\cmd.exe - Ok

c:\windows\system32\cpwmon2k.dll - Ok

c:\windows\system32\credssp.dll - Ok

c:\windows\system32\comdlg32.dll - Ok

c:\windows\system32\cryptbase.dll - Ok

c:\windows\system32\cryptdll.dll - Ok

c:\windows\system32\cryptnet.dll - Ok

c:\windows\system32\cryptsp.dll - Ok

c:\windows\system32\cryptsvc.dll - Ok

c:\windows\system32\crypt32.dll - Ok

c:\windows\system32\cscapi.dll - Ok

c:\windows\system32\cscdll.dll - Ok

c:\windows\system32\cscobj.dll - Ok

>c:\windows\system32\cryptui.dll - packed by FLY-CODE

c:\windows\system32\cryptui.dll - Ok

c:\windows\system32\cscsvc.dll - Ok

c:\windows\system32\cscui.dll - Ok

c:\windows\system32\csrsrv.dll - Ok

c:\windows\system32\csrss.exe - Ok

c:\windows\system32\ctfmon.exe - Ok

c:\windows\system32\d3d10_1.dll - Ok

c:\windows\system32\d3d10_1core.dll - Ok

c:\windows\system32\d2d1.dll - Ok

>c:\windows\system32\d3dx10_41.dll - packed by PESTUB

c:\windows\system32\d3dx10_41.dll - Ok

c:\windows\system32\davclnt.dll - Ok

c:\windows\system32\davhlpr.dll - Ok

c:\windows\system32\d3d10warp.dll - Ok

c:\windows\system32\defrag.exe - Ok

c:\windows\system32\defragsvc.dll - Ok

c:\windows\system32\devenum.dll - Ok

c:\windows\system32\devobj.dll - Ok

c:\windows\system32\dbghelp.dll - Ok

c:\windows\system32\dfdts.dll - Ok

c:\windows\system32\devrtl.dll - Ok

c:\windows\system32\dfdwiz.exe - Ok

c:\windows\system32\dhcpcore.dll - Ok

c:\windows\system32\dhcpcore6.dll - Ok

c:\windows\system32\dhcpcsvc.dll - Ok

c:\windows\system32\dhcpcsvc6.dll - Ok

c:\windows\system32\dhcpqec.dll - Ok

c:\windows\system32\difxapi.dll - Ok

c:\windows\system32\dimsjob.dll - Ok

c:\windows\system32\dimsroam.dll - Ok

c:\windows\system32\dispci.dll - Ok

c:\windows\system32\dllhost.exe - Ok

c:\windows\system32\dnsapi.dll - Ok

c:\windows\system32\dnsext.dll - Ok

c:\windows\system32\diagperf.dll - Ok

c:\windows\system32\dot3gpclnt.dll - Ok

c:\windows\system32\dnsrslvr.dll - Ok

c:\windows\system32\dot3svc.dll - Ok

c:\windows\system32\dps.dll - Ok

>c:\windows\system32\drivers\acpipmi.sys - packed by FLY-CODE

c:\windows\system32\drivers\1394ohci.sys - Ok

c:\windows\system32\drivers\acpipmi.sys - Ok

c:\windows\system32\drivers\adpahci.sys - Ok

c:\windows\system32\drivers\adp94xx.sys - Ok

>c:\windows\system32\drivers\adpu320.sys - packed by FLY-CODE

c:\windows\system32\drivers\afd.sys - Ok

c:\windows\system32\drivers\agp440.sys - Ok

>c:\windows\system32\drivers\aliide.sys - packed by FLY-CODE

c:\windows\system32\drivers\aliide.sys - Ok

c:\windows\system32\drivers\amdagp.sys - Ok

c:\windows\system32\drivers\amdide.sys - Ok

c:\windows\system32\drivers\amdk8.sys - Ok

c:\windows\system32\drivers\amdppm.sys - Ok

c:\windows\system32\drivers\amdsata.sys - Ok

c:\windows\system32\drivers\amdsbs.sys - Ok

c:\windows\system32\drivers\appid.sys - Ok

c:\windows\system32\drivers\arc.sys - Ok

c:\windows\system32\drivers\arcsas.sys - Ok

>c:\windows\system32\drivers\battc.sys - packed by FLY-CODE

c:\windows\system32\drivers\battc.sys - Ok

c:\windows\system32\drivers\beep.sys - Ok

c:\windows\system32\drivers\bowser.sys - Ok

c:\windows\system32\drivers\brfiltlo.sys - Ok

c:\windows\system32\drivers\brfiltup.sys - Ok

>c:\windows\system32\drivers\bridge.sys - packed by FLY-CODE

c:\windows\system32\drivers\bridge.sys - Ok

c:\windows\system32\drivers\brpar.sys - Ok

c:\windows\system32\drivers\brserid.sys - Ok

c:\windows\system32\drivers\brserwdm.sys - Ok

c:\windows\system32\drivers\brusbmdm.sys - Ok

c:\windows\system32\drivers\brusbser.sys - Ok

c:\windows\system32\drivers\bthmodem.sys - Ok

c:\windows\system32\drivers\bvrpmpr5.sys - Ok

c:\windows\system32\drivers\bxvbdx.sys - Ok

c:\windows\system32\drivers\circlass.sys - Ok

c:\windows\system32\drivers\cmbatt.sys - Ok

c:\windows\system32\drivers\cmdide.sys - Ok

c:\windows\system32\drivers\compbatt.sys - Ok

>c:\windows\system32\drivers\compositebus.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\compositebus.sys - packed by FLY-CODE

c:\windows\system32\drivers\compositebus.sys - Ok

c:\windows\system32\drivers\crcdisk.sys - Ok

c:\windows\system32\drivers\dfsc.sys - Ok

c:\windows\system32\drivers\disk.sys - Ok

c:\windows\system32\drivers\djsvs.sys - Ok

c:\windows\system32\drivers\dxgkrnl.sys - Ok

c:\windows\system32\drivers\adpu320.sys - Ok

c:\windows\system32\drivers\errdev.sys - Ok

c:\windows\system32\drivers\elxstor.sys - Ok

c:\windows\system32\drivers\exfat.sys - Ok

c:\windows\system32\drivers\fastfat.sys - Ok

c:\windows\system32\drivers\fltmgr.sys - Ok

c:\windows\system32\drivers\fs_rec.sys - Ok

c:\windows\system32\drivers\fvevol.sys - Ok

c:\windows\system32\drivers\gagp30kx.sys - Ok

c:\windows\system32\drivers\hcw85cir.sys - Ok

c:\windows\system32\drivers\hdaudbus.sys - Ok

c:\windows\system32\drivers\hidbatt.sys - Ok

c:\windows\system32\drivers\hidbth.sys - Ok

c:\windows\system32\drivers\hidir.sys - Ok

c:\windows\system32\drivers\hpsamd.sys - Ok

>c:\windows\system32\drivers\http.sys is BINARYRES container

c:\windows\system32\drivers\http.sys - container

c:\windows\system32\drivers\i8042prt.sys - Ok

c:\windows\system32\drivers\iastorv.sys - Ok

c:\windows\system32\drivers\iirsp.sys - Ok

c:\windows\system32\drivers\ipmidrv.sys - Ok

c:\windows\system32\drivers\ipnat.sys - Ok

c:\windows\system32\drivers\evbdx.sys - Ok

c:\windows\system32\drivers\isapnp.sys - Ok

c:\windows\system32\drivers\lsi_fc.sys - Ok

c:\windows\system32\drivers\lsi_sas.sys - Ok

c:\windows\system32\drivers\lsi_sas2.sys - Ok

c:\windows\system32\drivers\lsi_scsi.sys - Ok

c:\windows\system32\drivers\mbam.sys - Ok

c:\windows\system32\drivers\megasas.sys - Ok

c:\windows\system32\drivers\luafv.sys - Ok

c:\windows\system32\drivers\mpio.sys - Ok

c:\windows\system32\drivers\megasr.sys - Ok

c:\windows\system32\drivers\mpsdrv.sys - Ok

c:\windows\system32\drivers\mrxsmb.sys - Ok

c:\windows\system32\drivers\mrxdav.sys - Ok

c:\windows\system32\drivers\mrxsmb20.sys - Ok

c:\windows\system32\drivers\msahci.sys - Ok

c:\windows\system32\drivers\mrxsmb10.sys - Ok

c:\windows\system32\drivers\msfs.sys - Ok

c:\windows\system32\drivers\mshidkmdf.sys - Ok

c:\windows\system32\drivers\msdsm.sys - Ok

c:\windows\system32\drivers\msrpc.sys - Ok

c:\windows\system32\drivers\mssmbios.sys - Ok

>c:\windows\system32\drivers\mtconfig.sys - packed by FLY-CODE

c:\windows\system32\drivers\msiscsi.sys - Ok

>>c:\windows\system32\drivers\mtconfig.sys - packed by FLY-CODE

c:\windows\system32\drivers\mtconfig.sys - Ok

c:\windows\system32\drivers\ndiscap.sys - Ok

c:\windows\system32\drivers\ndisuio.sys - Ok

c:\windows\system32\drivers\ndproxy.sys - Ok

c:\windows\system32\drivers\netbt.sys - Ok

c:\windows\system32\drivers\nfrd960.sys - Ok

c:\windows\system32\drivers\npfs.sys - Ok

c:\windows\system32\drivers\nsiproxy.sys - Ok

c:\windows\system32\drivers\ndis.sys - Ok

>c:\windows\system32\drivers\null.sys - packed by FLY-CODE

c:\windows\system32\drivers\null.sys - Ok

c:\windows\system32\drivers\nv_agp.sys - Ok

c:\windows\system32\drivers\nvraid.sys - Ok

c:\windows\system32\drivers\nvstor.sys - Ok

c:\windows\system32\drivers\ohci1394.sys - Ok

c:\windows\system32\drivers\pci.sys - Ok

>c:\windows\system32\drivers\pciide.sys - packed by FLY-CODE

c:\windows\system32\drivers\pciide.sys - Ok

c:\windows\system32\drivers\pcmcia.sys - Ok

c:\windows\system32\drivers\processr.sys - Ok

c:\windows\system32\drivers\ntfs.sys - Ok

c:\windows\system32\drivers\ql40xx.sys - Ok

c:\windows\system32\drivers\qwavedrv.sys - Ok

c:\windows\system32\drivers\rdbss.sys - Ok

>c:\windows\system32\drivers\rdpencdd.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\rdpencdd.sys - packed by FLY-CODE

c:\windows\system32\drivers\rdpencdd.sys - Ok

c:\windows\system32\drivers\rdpwd.sys - Ok

c:\windows\system32\drivers\sbp2port.sys - Ok

c:\windows\system32\drivers\secdrv.sys - Ok

c:\windows\system32\drivers\sermouse.sys - Ok

c:\windows\system32\drivers\sffdisk.sys - Ok

c:\windows\system32\drivers\sffp_mmc.sys - Ok

c:\windows\system32\drivers\sffp_sd.sys - Ok

c:\windows\system32\drivers\sfloppy.sys - Ok

c:\windows\system32\drivers\sisagp.sys - Ok

c:\windows\system32\drivers\sisraid2.sys - Ok

c:\windows\system32\drivers\sisraid4.sys - Ok

c:\windows\system32\drivers\spldr.sys - Ok

c:\windows\system32\drivers\stexstor.sys - Ok

c:\windows\system32\drivers\storvsc.sys - Ok

c:\windows\system32\drivers\swenum.sys - Ok

c:\windows\system32\drivers\ql2300.sys - Ok

>c:\windows\system32\drivers\tdi.sys - packed by FLY-CODE

c:\windows\system32\drivers\tdi.sys - Ok

c:\windows\system32\drivers\termdd.sys - Ok

c:\windows\system32\drivers\tsusbflt.sys - Ok

c:\windows\system32\drivers\uagp35.sys - Ok

c:\windows\system32\drivers\uliagpkx.sys - Ok

>c:\windows\system32\drivers\umbus.sys - packed by FLY-CODE

>>c:\windows\system32\drivers\umbus.sys - packed by FLY-CODE

c:\windows\system32\drivers\umbus.sys - Ok

>c:\windows\system32\drivers\umpass.sys - packed by FLY-CODE

c:\windows\system32\drivers\umpass.sys - Ok

c:\windows\system32\drivers\usbaudio.sys - Ok

c:\windows\system32\drivers\usbcir.sys - Ok

c:\windows\system32\drivers\usbehci.sys - Ok

c:\windows\system32\drivers\usbhub.sys - Ok

c:\windows\system32\drivers\usbohci.sys - Ok

c:\windows\system32\drivers\usbuhci.sys - Ok

c:\windows\system32\drivers\vga.sys - Ok

c:\windows\system32\drivers\tcpip.sys - Ok

c:\windows\system32\drivers\vhdmp.sys - Ok

c:\windows\system32\drivers\viaagp.sys - Ok

c:\windows\system32\drivers\viac7.sys - Ok

c:\windows\system32\drivers\viaide.sys - Ok

c:\windows\system32\drivers\vms3cap.sys - Ok

c:\windows\system32\drivers\vmbushid.sys - Ok

c:\windows\system32\drivers\volmgr.sys - Ok

c:\windows\system32\drivers\vsmraid.sys - Ok

c:\windows\system32\drivers\vwifibus.sys - Ok

c:\windows\system32\drivers\wacompen.sys - Ok

c:\windows\system32\drivers\wd.sys - Ok

c:\windows\system32\drivers\volmgrx.sys - Ok

c:\windows\system32\drivers\wmiacpi.sys - Ok

c:\windows\system32\drivers\ws2ifsl.sys - Ok

c:\windows\system32\drivers\wudfpf.sys - Ok

c:\windows\system32\drivers\wudfrd.sys - Ok

>c:\windows\system32\drivers\wdf01000.sys - packed by FLY-CODE

c:\windows\system32\drivers\wdf01000.sys - Ok

c:\windows\system32\drivers\yk62x86.sys - Ok

c:\windows\system32\drprov.dll - Ok

c:\windows\system32\dskquota.dll - Ok

c:\windows\system32\dsrole.dll - Ok

c:\windows\system32\dssenh.dll - Ok

>c:\windows\system32\drmv2clt.dll is BINARYRES container

>>c:\windows\system32\drmv2clt.dll\data001 is JS-HTML container

c:\windows\system32\drmv2clt.dll - container

c:\windows\system32\dui70.dll - Ok

c:\windows\system32\dwm.exe - Ok

c:\windows\system32\duser.dll - Ok

c:\windows\system32\dwmapi.dll - Ok

c:\windows\system32\dwmredir.dll - Ok

c:\windows\system32\dwmcore.dll - Ok

c:\windows\system32\dwrite.dll - Ok

c:\windows\system32\dxgi.dll - Ok

c:\windows\system32\dxp.dll - Ok

>c:\windows\system32\e_flbeja.dll - packed by PESTUB

c:\windows\system32\e_flbeja.dll - Ok

c:\windows\system32\efscore.dll - Ok

c:\windows\system32\efslsaext.dll - Ok

c:\windows\system32\ehstorapi.dll - Ok

c:\windows\system32\eapsvc.dll - Ok

c:\windows\system32\ehstorauthn.exe - Ok

c:\windows\system32\elscore.dll - Ok

c:\windows\system32\ehstorshell.dll - Ok

c:\windows\system32\en-us\tquery.dll.mui - Ok

>c:\windows\system32\ep0slm01.dll - packed by PESTUB

c:\windows\system32\ep0slm01.dll - Ok

c:\windows\system32\elslad.dll - Ok

c:\windows\system32\es.dll - Ok

c:\windows\system32\eventcreate.exe - Ok

c:\windows\system32\eventproviders\spcmsg.dll - Ok

c:\windows\system32\esent.dll - Ok

c:\windows\system32\fdeploy.dll - Ok

c:\windows\system32\fdphost.dll - Ok

c:\windows\system32\fdpnp.dll - Ok

c:\windows\system32\fdproxy.dll - Ok

c:\windows\system32\fdrespub.dll - Ok

c:\windows\system32\explorerframe.dll - Ok

c:\windows\system32\fltlib.dll - Ok

c:\windows\system32\fms.dll - Ok

c:\windows\system32\firewallapi.dll - Ok

c:\windows\system32\framedynos.dll - Ok

c:\windows\system32\fthsvc.dll - Ok

c:\windows\system32\fntcache.dll - Ok

c:\windows\system32\fundisc.dll - Ok

c:\windows\system32\fvecerts.dll - Ok

c:\windows\system32\fveapi.dll - Ok

c:\windows\system32\fwpuclnt.dll - Ok

c:\windows\system32\fwremotesvr.dll - Ok

c:\windows\system32\fxsevent.dll - Ok

c:\windows\system32\fxsmon.dll - Ok

c:\windows\system32\fxsapi.dll - Ok

c:\windows\system32\fxsresm.dll - Ok

c:\windows\system32\fxsst.dll - Ok

c:\windows\system32\fxssvc.exe - Ok

c:\windows\system32\gathernetworkinfo.vbs - Ok

c:\windows\system32\gdi32.dll - Ok

c:\windows\system32\gpapi.dll - Ok

c:\windows\system32\gpprefcl.dll - Ok

c:\windows\system32\gpprnext.dll - Ok

c:\windows\system32\gpscript.dll - Ok

c:\windows\system32\gameux.dll - Ok

c:\windows\system32\gpsvc.dll - Ok

c:\windows\system32\gptext.dll - Ok

c:\windows\system32\hcproviders.dll - Ok

c:\windows\system32\hid.dll - Ok

c:\windows\system32\hidserv.dll - Ok

c:\windows\system32\hgcpl.dll - Ok

c:\windows\system32\hotstartuseragent.dll - Ok

c:\windows\system32\hnetcfg.dll - Ok

c:\windows\system32\hpmpm081.dll - Ok

c:\windows\system32\hppmopjl.dll - Ok

c:\windows\system32\hpmpw081.dll - Ok

c:\windows\system32\hpzinw12.dll - Ok

c:\windows\system32\httpapi.dll - Ok

c:\windows\system32\hpzipm12.dll - Ok

c:\windows\system32\icardres.dll - Ok

c:\windows\system32\iassvcs.dll - Ok

c:\windows\system32\iconcodecservice.dll - Ok

c:\windows\system32\iccvid.dll - Ok

>c:\windows\system32\ie4uinit.exe - packed by FLY-CODE

c:\windows\system32\iedkcs32.dll - Ok

c:\windows\system32\ie4uinit.exe - Ok

c:\windows\system32\iertutil.dll - Ok

c:\windows\system32\ikeext.dll - Ok

>c:\windows\system32\imaadp32.acm - packed by FLY-CODE

c:\windows\system32\imaadp32.acm - Ok

c:\windows\system32\imagehlp.dll - Ok

c:\windows\system32\imapi2.dll - Ok

c:\windows\system32\imm32.dll - Ok

c:\windows\system32\ieframe.dll - Ok

c:\windows\system32\inetpp.dll - Ok

c:\windows\system32\iologmsg.dll - Ok

c:\windows\system32\ipbusenum.dll - Ok

c:\windows\system32\iphlpapi.dll - Ok

c:\windows\system32\inetcomm.dll - Ok

c:\windows\system32\ipnathlp.dll - Ok

c:\windows\system32\iphlpsvc.dll - Ok

c:\windows\system32\iscsiexe.dll - Ok

c:\windows\system32\iscsilog.dll - Ok

c:\windows\system32\ipsecsvc.dll - Ok

>c:\windows\system32\iyuv_32.dll - packed by FLY-CODE

c:\windows\system32\iyuv_32.dll - Ok

c:\windows\system32\itss.dll - Ok

c:\windows\system32\kerberos.dll - Ok

c:\windows\system32\kernelbase.dll - Ok

c:\windows\system32\kernel32.dll - Ok

c:\windows\system32\keyiso.dll - Ok

c:\windows\system32\kmsvc.dll - Ok

c:\windows\system32\ksuser.dll - Ok

c:\windows\system32\ktmw32.dll - Ok

c:\windows\system32\ksproxy.ax - Ok

c:\windows\system32\l3codeca.acm - Ok

c:\windows\system32\linkinfo.dll - Ok

c:\windows\system32\livessp.dll - Ok

c:\windows\system32\listsvc.dll - Ok

c:\windows\system32\lmhsvc.dll - Ok

c:\windows\system32\lltdsvc.dll - Ok

c:\windows\system32\loadperf.dll - Ok

c:\windows\system32\locationnotifications.exe - Ok

c:\windows\system32\locator.exe - Ok

c:\windows\system32\logoncli.dll - Ok

c:\windows\system32\lpk.dll - Ok

c:\windows\system32\localspl.dll - Ok

c:\windows\system32\lpremove.exe - Ok

c:\windows\system32\lpksetup.exe - Ok

c:\windows\system32\lsass.exe - Ok

c:\windows\system32\lsm.exe - Ok

c:\windows\system32\mciavi32.dll - Ok

c:\windows\system32\mcx2svc.dll - Ok

c:\windows\system32\lsasrv.dll - Ok

c:\windows\system32\mdsched.exe - Ok

>c:\windows\system32\mfplat.dll - packed by FLY-CODE

c:\windows\system32\mfplat.dll - Ok

c:\windows\system32\microsoft-windows-hal-events.dll - Ok

c:\windows\system32\microsoft-windows-kernel-power-events.dll - Ok

c:\windows\system32\microsoft-windows-kernel-processor-power-events.dll - Ok

c:\windows\system32\midimap.dll - Ok

c:\windows\system32\mlang.dll - Ok

c:\windows\system32\mmcss.dll - Ok

c:\windows\system32\mmdevapi.dll - Ok

c:\windows\system32\mpr.dll - Ok

c:\windows\system32\mprapi.dll - Ok

c:\windows\system32\mprdim.dll - Ok

c:\windows\system32\mprmsg.dll - Ok

c:\windows\system32\mpssvc.dll - Ok

c:\windows\system32\msacm32.dll - Ok

c:\windows\system32\msacm32.drv - Ok

c:\windows\system32\msadp32.acm - Ok

c:\windows\system32\mf.dll - Ok

c:\windows\system32\msasn1.dll - Ok

c:\windows\system32\msaudite.dll - Ok

c:\windows\system32\mscories.dll - Ok

c:\windows\system32\mscoree.dll - Ok

c:\windows\system32\msctfmonitor.dll - Ok

c:\windows\system32\msdmo.dll - Ok

c:\windows\system32\msdtc.exe - Ok

c:\windows\system32\msdtckrm.dll - Ok

c:\windows\system32\msctf.dll - Ok

c:\windows\system32\msg711.acm - Ok

c:\windows\system32\msgsm32.acm - Ok

c:\windows\system32\msftedit.dll - Ok

c:\windows\system32\msi.dll - Ok

c:\windows\system32\msidle.dll - Ok

c:\windows\system32\msiexec.exe - Ok

c:\windows\system32\msiltcfg.dll - Ok

>c:\windows\system32\msimg32.dll - packed by FLY-CODE

c:\windows\system32\msimg32.dll - Ok

c:\windows\system32\msimsg.dll - Ok

c:\windows\system32\msls31.dll - Ok

c:\windows\system32\msmpeg2enc.dll - Ok

c:\windows\system32\msobjs.dll - Ok

c:\windows\system32\msonpmon.dll - Ok

>c:\windows\system32\mspatcha.dll - packed by FLY-CODE

c:\windows\system32\mspatcha.dll - Ok

c:\windows\system32\msprivs.dll - Ok

c:\windows\system32\msra.exe - Ok

c:\windows\system32\msrle32.dll - Ok

c:\windows\system32\msscntrs.dll - Ok

c:\windows\system32\mssprxy.dll - Ok

c:\windows\system32\mshtml.dll - Ok

c:\windows\system32\mstask.dll - Ok

c:\windows\system32\mssrch.dll - Ok

c:\windows\system32\msutb.dll - Ok

c:\windows\system32\msv1_0.dll - Ok

c:\windows\system32\msvbvm60.dll - Ok

c:\windows\system32\mstscax.dll - Ok

Link to post
Share on other sites

c:\windows\system32\msvidc32.dll - Ok

c:\windows\system32\msvcrt.dll - Ok

c:\windows\system32\mswsock.dll - Ok

c:\windows\system32\msxml3.dll - Ok

c:\windows\system32\msvidctl.dll - Ok

c:\windows\system32\msyuv.dll - Ok

c:\windows\system32\napinsp.dll - Ok

c:\windows\system32\naturallanguage6.dll - Ok

c:\windows\system32\nci.dll - Ok

c:\windows\system32\ncobjapi.dll - Ok

c:\windows\system32\msxml6.dll - Ok

c:\windows\system32\ncrypt.dll - Ok

c:\windows\system32\negoexts.dll - Ok

c:\windows\system32\netapi32.dll - Ok

c:\windows\system32\netbios.dll - Ok

c:\windows\system32\ncsi.dll - Ok

c:\windows\system32\netdiagfx.dll - Ok

c:\windows\system32\netevent.dll - Ok

c:\windows\system32\netjoin.dll - Ok

c:\windows\system32\netcfgx.dll - Ok

c:\windows\system32\netman.dll - Ok

c:\windows\system32\netmsg.dll - Ok

c:\windows\system32\netlogon.dll - Ok

c:\windows\system32\netprofm.dll - Ok

>c:\windows\system32\netutils.dll - packed by FLY-CODE

c:\windows\system32\netutils.dll - Ok

c:\windows\system32\networkexplorer.dll - Ok

c:\windows\system32\nlaapi.dll - Ok

c:\windows\system32\netshell.dll - Ok

c:\windows\system32\nlasvc.dll - Ok

c:\windows\system32\nlsdata0000.dll - Ok

c:\windows\system32\nlslexicons0009.dll - Ok

c:\windows\system32\normaliz.dll - Ok

c:\windows\system32\npmproxy.dll - Ok

c:\windows\system32\nrpsrv.dll - Ok

>c:\windows\system32\nsi.dll - packed by FLY-CODE

c:\windows\system32\nsi.dll - Ok

c:\windows\system32\nsisvc.dll - Ok

c:\windows\system32\nlsdata0009.dll - Ok

c:\windows\system32\ntdsapi.dll - Ok

c:\windows\system32\ntlanman.dll - Ok

c:\windows\system32\ntmarta.dll - Ok

c:\windows\system32\ntdll.dll - Ok

c:\windows\system32\ntprint.dll - Ok

c:\windows\system32\ntshrui.dll - Ok

c:\windows\system32\oleacc.dll - Ok

c:\windows\system32\oleaut32.dll - Ok

c:\windows\system32\oledlg.dll - Ok

>c:\windows\system32\ole32.dll is BINARYRES container

c:\windows\system32\ole32.dll - container

c:\windows\system32\p2psvc.dll - Ok

c:\windows\system32\pautoenr.dll - Ok

c:\windows\system32\pcalua.exe - Ok

c:\windows\system32\pcasvc.dll - Ok

c:\windows\system32\pcwum.dll - Ok

c:\windows\system32\pdf995mon.dll - Ok

c:\windows\system32\pdh.dll - Ok

c:\windows\system32\peerdist.dll - Ok

c:\windows\system32\oobe\winsetup.dll - Ok

c:\windows\system32\perfctrs.dll - Ok

c:\windows\system32\perfdisk.dll - Ok

c:\windows\system32\perfnet.dll - Ok

c:\windows\system32\perfos.dll - Ok

c:\windows\system32\perfproc.dll - Ok

c:\windows\system32\perftrack.dll - Ok

c:\windows\system32\peerdistsvc.dll - Ok

c:\windows\system32\pku2u.dll - Ok

c:\windows\system32\playsndsrv.dll - Ok

c:\windows\system32\pla.dll - Ok

c:\windows\system32\pnpts.dll - Ok

c:\windows\system32\pnrpauto.dll - Ok

c:\windows\system32\pnrpnsp.dll - Ok

c:\windows\system32\pnidui.dll - Ok

c:\windows\system32\pnrpsvc.dll - Ok

c:\windows\system32\polstore.dll - Ok

c:\windows\system32\portabledeviceconnectapi.dll - Ok

c:\windows\system32\portabledevicetypes.dll - Ok

c:\windows\system32\pots.dll - Ok

c:\windows\system32\powercfg.exe - Ok

c:\windows\system32\powrprof.dll - Ok

c:\windows\system32\printisolationproxy.dll - Ok

c:\windows\system32\portabledeviceapi.dll - Ok

c:\windows\system32\profapi.dll - Ok

c:\windows\system32\profsvc.dll - Ok

c:\windows\system32\prnfldr.dll - Ok

c:\windows\system32\provsvc.dll - Ok

c:\windows\system32\psapi.dll - Ok

c:\windows\system32\pshed.dll - Ok

c:\windows\system32\qagent.dll - Ok

c:\windows\system32\propsys.dll - Ok

c:\windows\system32\qagentrt.dll - Ok

c:\windows\system32\qmgr.dll - Ok

c:\windows\system32\qutil.dll - Ok

c:\windows\system32\qwave.dll - Ok

c:\windows\system32\radardt.dll - Ok

c:\windows\system32\rasadhlp.dll - Ok

c:\windows\system32\rasapi32.dll - Ok

c:\windows\system32\rasauto.dll - Ok

c:\windows\system32\quartz.dll - Ok

c:\windows\system32\raserver.exe - Ok

c:\windows\system32\rasman.dll - Ok

c:\windows\system32\rasmans.dll - Ok

c:\windows\system32\rasdlg.dll - Ok

c:\windows\system32\rdpdd.dll - Ok

c:\windows\system32\rdpudd.dll - Ok

c:\windows\system32\recovery.dll - Ok

c:\windows\system32\reagent.dll - Ok

c:\windows\system32\regsvc.dll - Ok

c:\windows\system32\relpost.exe - Ok

c:\windows\system32\resutils.dll - Ok

c:\windows\system32\rpcepmap.dll - Ok

>c:\windows\system32\regsvr32.exe - packed by FLY-CODE

c:\windows\system32\regsvr32.exe - Ok

c:\windows\system32\rpcrtremote.dll - Ok

c:\windows\system32\rpcrt4.dll - Ok

c:\windows\system32\rsaenh.dll - Ok

c:\windows\system32\rpcss.dll - Ok

c:\windows\system32\rstrtmgr.dll - Ok

c:\windows\system32\rtutils.dll - Ok

c:\windows\system32\rtm.dll - Ok

c:\windows\system32\samcli.dll - Ok

c:\windows\system32\samlib.dll - Ok

c:\windows\system32\rundll32.exe - Ok

c:\windows\system32\sc.exe - Ok

c:\windows\system32\scardsvr.dll - Ok

c:\windows\system32\samsrv.dll - Ok

c:\windows\system32\scecli.dll - Ok

c:\windows\system32\scext.dll - Ok

c:\windows\system32\schannel.dll - Ok

c:\windows\system32\scesrv.dll - Ok

c:\windows\system32\schtasks.exe - Ok

c:\windows\system32\schedsvc.dll - Ok

c:\windows\system32\sdclt.exe - Ok

c:\windows\system32\sdrsvc.dll - Ok

c:\windows\system32\sdengin2.dll - Ok

c:\windows\system32\sechost.dll - Ok

c:\windows\system32\seclogon.dll - Ok

>c:\windows\system32\secur32.dll - packed by FLY-CODE

c:\windows\system32\secur32.dll - Ok

c:\windows\system32\security.dll - Ok

c:\windows\system32\sens.dll - Ok

c:\windows\system32\sensapi.dll - Ok

c:\windows\system32\searchindexer.exe - Ok

c:\windows\system32\sensrsvc.dll - Ok

c:\windows\system32\sessenv.dll - Ok

c:\windows\system32\services.exe - Ok

c:\windows\system32\sfc.dll - Ok

c:\windows\system32\sfc_os.dll - Ok

c:\windows\system32\shacct.dll - Ok

c:\windows\system32\shdocvw.dll - Ok

c:\windows\system32\setupapi.dll - Ok

c:\windows\system32\shlwapi.dll - Ok

c:\windows\system32\shsvcs.dll - Ok

c:\windows\system32\sirenacm.dll - Ok

c:\windows\system32\slc.dll - Ok

c:\windows\system32\smss.exe - Ok

c:\windows\system32\sndvolsso.dll - Ok

c:\windows\system32\snmpapi.dll - Ok

>c:\windows\system32\snmptrap.exe - packed by FLY-CODE

c:\windows\system32\snmptrap.exe - Ok

c:\windows\system32\spinf.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\hpcpp104.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\msonpppr.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\winprint.dll - Ok

c:\windows\system32\spool\prtprocs\w32x86\zimfprnt.dll - Ok

c:\windows\system32\spoolss.dll - Ok

c:\windows\system32\spoolsv.exe - Ok

c:\windows\system32\shell32.dll - Ok

c:\windows\system32\sppuinotify.dll - Ok

c:\windows\system32\sqmapi.dll - Ok

c:\windows\system32\srchadmin.dll - Ok

c:\windows\system32\srcore.dll - Ok

c:\windows\system32\srvcli.dll - Ok

c:\windows\system32\srvsvc.dll - Ok

c:\windows\system32\sscore.dll - Ok

c:\windows\system32\ssdpapi.dll - Ok

c:\windows\system32\ssdpsrv.dll - Ok

c:\windows\system32\sspicli.dll - Ok

>c:\windows\system32\sspisrv.dll - packed by FLY-CODE

c:\windows\system32\sspisrv.dll - Ok

c:\windows\system32\sstpsvc.dll - Ok

>c:\windows\system32\sppsvc.exe - packed by FLY-CODE

c:\windows\system32\stobject.dll - Ok

c:\windows\system32\structuredquery.dll - Ok

c:\windows\system32\svchost.exe - Ok

c:\windows\system32\sppsvc.exe - Ok

c:\windows\system32\sxproxy.dll - Ok

c:\windows\system32\swprv.dll - Ok

c:\windows\system32\sxssrv.dll - Ok

c:\windows\system32\sxs.dll - Ok

c:\windows\system32\syncreg.dll - Ok

c:\windows\system32\sysmain.dll - Ok

c:\windows\system32\sysntfy.dll - Ok

c:\windows\system32\tabsvc.dll - Ok

c:\windows\system32\tapisrv.dll - Ok

c:\windows\system32\synccenter.dll - Ok

c:\windows\system32\taskhost.exe - Ok

c:\windows\system32\taskcomp.dll - Ok

c:\windows\system32\taskschdps.dll - Ok

>c:\windows\system32\tbs.dll - packed by FLY-CODE

c:\windows\system32\tbs.dll - Ok

c:\windows\system32\tbssvc.dll - Ok

c:\windows\system32\tcpmon.dll - Ok

c:\windows\system32\taskschd.dll - Ok

c:\windows\system32\themeservice.dll - Ok

c:\windows\system32\termsrv.dll - Ok

>c:\windows\system32\timedate.cpl is ZLIB container

c:\windows\system32\timedate.cpl - container

c:\windows\system32\themeui.dll - Ok

c:\windows\system32\tquery.dll - Ok

c:\windows\system32\tsbyuv.dll - Ok

c:\windows\system32\tschannel.dll - Ok

c:\windows\system32\trkwks.dll - Ok

c:\windows\system32\tsddd.dll - Ok

c:\windows\system32\tsusbredirectiongrouppolicyextension.dll - Ok

c:\windows\system32\tspkg.dll - Ok

c:\windows\system32\ubpm.dll - Ok

c:\windows\system32\udhisapi.dll - Ok

c:\windows\system32\ui0detect.exe - Ok

c:\windows\system32\uianimation.dll - Ok

c:\windows\system32\tsworkspace.dll - Ok

c:\windows\system32\umb.dll - Ok

c:\windows\system32\ulib.dll - Ok

c:\windows\system32\umpo.dll - Ok

c:\windows\system32\umrdp.dll - Ok

c:\windows\system32\umpnpmgr.dll - Ok

c:\windows\system32\unregmp2.exe - Ok

c:\windows\system32\upnp.dll - Ok

c:\windows\system32\upnphost.dll - Ok

c:\windows\system32\usbmon.dll - Ok

>c:\windows\system32\usbperf.dll - packed by FLY-CODE

c:\windows\system32\usbperf.dll - Ok

c:\windows\system32\urlmon.dll - Ok

c:\windows\system32\userenv.dll - Ok

c:\windows\system32\user32.dll - Ok

c:\windows\system32\userinit.exe - Ok

c:\windows\system32\uxinit.dll - Ok

c:\windows\system32\uxsms.dll - Ok

c:\windows\system32\usp10.dll - Ok

c:\windows\system32\uxtheme.dll - Ok

c:\windows\system32\vaultsvc.dll - Ok

c:\windows\system32\vdsbas.dll - Ok

c:\windows\system32\vds.exe - Ok

c:\windows\system32\vdsvd.dll - Ok

c:\windows\system32\version.dll - Ok

c:\windows\system32\vdsdyn.dll - Ok

c:\windows\system32\vsstrace.dll - Ok

c:\windows\system32\vssapi.dll - Ok

c:\windows\system32\vssvc.exe - Ok

c:\windows\system32\w32time.dll - Ok

c:\windows\system32\wat\watux.exe - Ok

c:\windows\system32\wbem\esscli.dll - Ok

c:\windows\system32\wbem\fastprox.dll - Ok

c:\windows\system32\wbem\ncprov.dll - Ok

>c:\windows\system32\wat\watadminsvc.exe - packed by FLY-CODE

c:\windows\system32\wbem\repdrvfs.dll - Ok

>>c:\windows\system32\wat\watadminsvc.exe - packed by PECRYPT

c:\windows\system32\wbem\wbemcore.dll - Ok

c:\windows\system32\wat\watadminsvc.exe - Ok

c:\windows\system32\wbem\wbemprox.dll - Ok

c:\windows\system32\wbem\wbemsvc.dll - Ok

c:\windows\system32\wbem\win32_tpm.dll - Ok

c:\windows\system32\wbem\winmgmt.exe - Ok

c:\windows\system32\wbem\wbemess.dll - Ok

c:\windows\system32\wbem\wmiaprpl.dll - Ok

c:\windows\system32\wbem\wmidcprv.dll - Ok

c:\windows\system32\wbem\wmiapsrv.exe - Ok

c:\windows\system32\wbem\wmiprvse.exe - Ok

c:\windows\system32\wbem\wmisvc.dll - Ok

c:\windows\system32\wbem\wmiprvsd.dll - Ok

c:\windows\system32\wbem\wmiutils.dll - Ok

c:\windows\system32\wbemcomn.dll - Ok

c:\windows\system32\wbiosrvc.dll - Ok

c:\windows\system32\wcncsvc.dll - Ok

c:\windows\system32\wcspluginservice.dll - Ok

c:\windows\system32\wdi.dll - Ok

c:\windows\system32\wdiasqmmodule.dll - Ok

c:\windows\system32\wdigest.dll - Ok

c:\windows\system32\wdmaud.drv - Ok

c:\windows\system32\wdscore.dll - Ok

c:\windows\system32\wbengine.exe - Ok

c:\windows\system32\webclnt.dll - Ok

c:\windows\system32\webio.dll - Ok

c:\windows\system32\wecsvc.dll - Ok

c:\windows\system32\wer.dll - Ok

c:\windows\system32\webservices.dll - Ok

c:\windows\system32\wercplsupport.dll - Ok

c:\windows\system32\wermgr.exe - Ok

c:\windows\system32\wersvc.dll - Ok

c:\windows\system32\wevtapi.dll - Ok

c:\windows\system32\werconcpl.dll - Ok

c:\windows\system32\wfapigp.dll - Ok

c:\windows\system32\whealogr.dll - Ok

c:\windows\system32\wiarpc.dll - Ok

c:\windows\system32\wiaservc.dll - Ok

>c:\windows\system32\wiatrace.dll - packed by FLY-CODE

c:\windows\system32\wiatrace.dll - Ok

c:\windows\system32\wevtsvc.dll - Ok

c:\windows\system32\win32spl.dll - Ok

c:\windows\system32\windowscodecs.dll - Ok

c:\windows\system32\winhttp.dll - Ok

c:\windows\system32\win32k.sys - Ok

c:\windows\system32\wininit.exe - Ok

c:\windows\system32\winlogon.exe - Ok

c:\windows\system32\winmm.dll - Ok

>c:\windows\system32\winnsi.dll - packed by FLY-CODE

c:\windows\system32\winnsi.dll - Ok

c:\windows\system32\wininet.dll - Ok

c:\windows\system32\winrnr.dll - Ok

>c:\windows\system32\winsatapi.dll is ZLIB container

c:\windows\system32\winsatapi.dll - container

c:\windows\system32\winscard.dll - Ok

c:\windows\system32\winsock.dll - Ok

c:\windows\system32\winspool.drv - Ok

c:\windows\system32\winsrv.dll - Ok

c:\windows\system32\winsta.dll - Ok

>c:\windows\system32\wintrust.dll - packed by FLY-CODE

c:\windows\system32\wintrust.dll - Ok

c:\windows\system32\wkscli.dll - Ok

c:\windows\system32\wkssvc.dll - Ok

c:\windows\system32\wlanapi.dll - Ok

c:\windows\system32\wlansvc.dll - Ok

c:\windows\system32\wlanutil.dll - Ok

c:\windows\system32\winsat.exe - Ok

c:\windows\system32\wldap32.dll - Ok

c:\windows\system32\wlgpclnt.dll - Ok

c:\windows\system32\wls0wndh.dll - Ok

c:\windows\system32\wmdrmdev.dll - Ok

c:\windows\system32\wmp.dll - Ok

c:\windows\system32\wmpmde.dll - Ok

c:\windows\system32\wmpps.dll - Ok

c:\windows\system32\wmsgapi.dll - Ok

c:\windows\system32\wmploc.dll - Ok

c:\windows\system32\wpcsvc.dll - Ok

c:\windows\system32\wpcumi.dll - Ok

c:\windows\system32\wpc.dll - Ok

c:\windows\system32\wpdbusenum.dll - Ok

c:\windows\system32\wpdshserviceobj.dll - Ok

c:\windows\system32\wscapi.dll - Ok

c:\windows\system32\ws2_32.dll - Ok

c:\windows\system32\wscinterop.dll - Ok

c:\windows\system32\wscsvc.dll - Ok

c:\windows\system32\wsdapi.dll - Ok

c:\windows\system32\wsdmon.dll - Ok

c:\windows\system32\wsepno.dll - Ok

c:\windows\system32\wshext.dll - Ok

c:\windows\system32\wship6.dll - Ok

c:\windows\system32\wshqos.dll - Ok

c:\windows\system32\wshtcpip.dll - Ok

>c:\windows\system32\wscui.cpl is ZLIB container

c:\windows\system32\wscui.cpl - container

c:\windows\system32\wsnmp32.dll - Ok

c:\windows\system32\wsock32.dll - Ok

c:\windows\system32\wsqmcons.exe - Ok

c:\windows\system32\wtsapi32.dll - Ok

c:\windows\system32\wsmsvc.dll - Ok

c:\windows\system32\wuauclt.exe - Ok

c:\windows\system32\wuapi.dll - Ok

c:\windows\system32\wuaueng.dll - Ok

c:\windows\system32\wudfplatform.dll - Ok

c:\windows\system32\wudfsvc.dll - Ok

c:\windows\system32\wups2.dll - Ok

c:\windows\system32\wucltux.dll - Ok

c:\windows\system32\wwansvc.dll - Ok

c:\windows\system32\wwapi.dll - Ok

c:\windows\system32\wwanapi.dll - Ok

c:\windows\system32\xmllite.dll - Ok

c:\windows\system32\xwizards.dll - Ok

c:\windows\system32\zlhp1020.dll - Ok

c:\windows\system32\zspool.dll - Ok

c:\windows\system32\zimf.dll - Ok

c:\windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\atl80.dll - Ok

c:\windows\system32\ztag.dll - Ok

c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - Ok

c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - Ok

c:\windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - Ok

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll - Ok

c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll - Ok

c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll - Ok

C:\AdwCleaner[R1].txt - Ok

C:\autoexec.bat - Ok

C:\Boot.BAK - Ok

C:\Boot.ini.saved - Ok

C:\BOOTSECT.BAK - Ok

C:\config.sys - Ok

C:\bootmgr - Ok

C:\hiberfil.sys - read error

C:\IO.SYS - Ok

C:\grldr - Ok

C:\MSDOS.SYS - Ok

C:\NTDETECT.COM - Ok

C:\ntldr - Ok

C:\pagefile.sys - read error

C:\TDSSKiller.2.8.16.0_12.03.2013_13.09.22_log.txt - Ok

C:\win7ldr - Ok

C:\M1319.log - Ok

C:\Windows\system32\12520437.cpx - Ok

C:\Windows\system32\12520850.cpx - Ok

C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 - Ok

C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 - Ok

C:\Windows\system32\aaclient.dll - Ok

C:\Windows\system32\ACCTRES.dll - Ok

C:\Windows\system32\acledit.dll - Ok

C:\Windows\system32\aclui.dll - Ok

C:\Windows\system32\acppage.dll - Ok

C:\Windows\system32\acproxy.dll - Ok

C:\Windows\system32\ActionCenter.dll - Ok

C:\Windows\system32\ActionCenterCPL.dll - Ok

C:\Windows\system32\ActionQueue.dll - Ok

C:\Windows\system32\activeds.dll - Ok

C:\Windows\system32\activeds.tlb - Ok

C:\Windows\system32\actxprxy.dll - Ok

C:\Windows\system32\accessibilitycpl.dll - Ok

C:\Windows\system32\AdapterTroubleshooter.exe - Ok

C:\Windows\system32\admparse.dll - Ok

C:\Windows\system32\acXMLParser.dll - Ok

Link to post
Share on other sites

C:\Windows\system32\AdobePDF.dll - Ok

C:\Windows\system32\adprovider.dll - Ok

C:\Windows\system32\adsldp.dll - Ok

C:\Windows\system32\AdmTmpl.dll - Ok

C:\Windows\system32\adsmsext.dll - Ok

C:\Windows\system32\adsldpc.dll - Ok

C:\Windows\system32\adtschema.dll - Ok

C:\Windows\system32\advapi32.dll - Ok

C:\Windows\system32\adsnt.dll - Ok

C:\Windows\system32\aecache.dll - Ok

C:\Windows\system32\aeevts.dll - Ok

C:\Windows\system32\advpack.dll - Ok

C:\Windows\system32\aelupsvc.dll - Ok

C:\Windows\system32\aeinv.dll - Ok

C:\Windows\system32\aepic.dll - Ok

C:\Windows\system32\aepdu.dll - Ok

C:\Windows\system32\aitagent.exe - Ok

C:\Windows\system32\alg.exe - Ok

C:\Windows\system32\alsndmgr.wav - Ok

C:\Windows\system32\AltTab.dll - Ok

C:\Windows\system32\amcompat.tlb - Ok

C:\Windows\system32\amstream.dll - Ok

C:\Windows\system32\amxread.dll - Ok

C:\Windows\system32\ANSI.SYS - Ok

C:\Windows\system32\apds.dll - Ok

>C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll - Ok

>C:\Windows\system32\alsndmgr.cpl - packed by BINARYRES

>C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-security-lsalookup-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-security-lsalookup-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-security-sddl-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-security-sddl-l1-1-0.dll - Ok

C:\Windows\system32\api-ms-win-service-core-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-service-management-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-service-management-l1-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-service-management-l2-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-service-management-l2-1-0.dll - Ok

>C:\Windows\system32\api-ms-win-service-winsvc-l1-1-0.dll - packed by FLY-CODE

C:\Windows\system32\api-ms-win-service-winsvc-l1-1-0.dll - Ok

C:\Windows\system32\apilogen.dll - Ok

C:\Windows\system32\alsndmgr.cpl - Ok

C:\Windows\system32\apisetschema.dll - Ok

C:\Windows\system32\append.exe - Ok

C:\Windows\system32\apircl.dll - Ok

C:\Windows\system32\Apphlpdm.dll - Ok

C:\Windows\system32\apphelp.dll - Ok

C:\Windows\system32\appidapi.dll - Ok

C:\Windows\system32\appidcertstorecheck.exe - Ok

C:\Windows\system32\appidpolicyconverter.exe - Ok

C:\Windows\system32\appidsvc.dll - Ok

C:\Windows\system32\appinfo.dll - Ok

C:\Windows\system32\appmgmts.dll - Ok

C:\Windows\system32\AppIdPolicyEngineApi.dll - Ok

C:\Windows\system32\appmgr.dll - Ok

C:\Windows\system32\apss.dll - Ok

C:\Windows\system32\ARP.EXE - Ok

C:\Windows\system32\asferror.dll - Ok

C:\Windows\system32\asycfilt.dll - Ok

C:\Windows\system32\at.exe - Ok

C:\Windows\system32\appwiz.cpl - Ok

C:\Windows\system32\AtBroker.exe - Ok

C:\Windows\system32\atl.dll - Ok

C:\Windows\system32\atl71.dll - Ok

C:\Windows\system32\atl100.dll - Ok

C:\Windows\system32\atmlib.dll - Ok

C:\Windows\system32\attrib.exe - Ok

C:\Windows\system32\atmfd.dll - Ok

C:\Windows\system32\audiodev.dll - Ok

C:\Windows\system32\audiodg.exe - Ok

C:\Windows\system32\AudioEng.dll - Ok

C:\Windows\system32\AudioSes.dll - Ok

C:\Windows\system32\AUDIOKSE.dll - Ok

C:\Windows\system32\auditcse.dll - Ok

C:\Windows\system32\audiosrv.dll - Ok

C:\Windows\system32\auditpol.exe - Ok

C:\Windows\system32\AuditNativeSnapIn.dll - Ok

C:\Windows\system32\AuditPolicyGPInterop.dll - Ok

C:\Windows\system32\auditpolmsg.dll - Ok

C:\Windows\system32\authfwcfg.dll - Ok

C:\Windows\system32\AuthFWGP.dll - Ok

C:\Windows\system32\AuthFWWizFwk.dll - Ok

>C:\Windows\system32\authui.dll is ZLIB container

C:\Windows\system32\authui.dll - container

C:\Windows\system32\authz.dll - Ok

C:\Windows\system32\autochk.exe - Ok

C:\Windows\system32\autoconv.exe - Ok

C:\Windows\system32\autoexec.nt - Ok

C:\Windows\system32\autofmt.exe - Ok

C:\Windows\system32\autoplay.dll - Ok

C:\Windows\system32\AuxiliaryDisplayApi.dll - Ok

C:\Windows\system32\AuxiliaryDisplayClassInstaller.dll - Ok

C:\Windows\system32\AuxiliaryDisplayCpl.dll - Ok

C:\Windows\system32\AuxiliaryDisplayDriverLib.dll - Ok

C:\Windows\system32\AuxiliaryDisplayServices.dll - Ok

C:\Windows\system32\avicap.dll - Ok

C:\Windows\system32\avicap32.dll - Ok

C:\Windows\system32\avifil32.dll - Ok

C:\Windows\system32\avifile.dll - Ok

C:\Windows\system32\avrt.dll - Ok

C:\Windows\system32\AuthFWSnapin.dll - Ok

C:\Windows\system32\AxInstSv.dll - Ok

C:\Windows\system32\AxInstUI.exe - Ok

C:\Windows\system32\azman.msc - Ok

C:\Windows\system32\azroleui.dll - Ok

C:\Windows\system32\AzSqlExt.dll - Ok

C:\Windows\system32\azroles.dll - Ok

>C:\Windows\system32\baaupdate.exe - packed by FLY-CODE

C:\Windows\system32\basecsp.dll - Ok

C:\Windows\system32\basesrv.dll - Ok

C:\Windows\system32\baaupdate.exe - Ok

C:\Windows\system32\batmeter.dll - Ok

C:\Windows\system32\batt.dll - Ok

C:\Windows\system32\bcdboot.exe - Ok

C:\Windows\system32\bcdprov.dll - Ok

C:\Windows\system32\bcdsrv.dll - Ok

C:\Windows\system32\bcdedit.exe - Ok

C:\Windows\system32\bcrypt.dll - Ok

C:\Windows\system32\BD5240.DAT - Ok

C:\Windows\system32\BD5250DN.DAT - Ok

C:\Windows\system32\bcryptprimitives.dll - Ok

C:\Windows\system32\bdaplgin.ax - Ok

C:\Windows\system32\BdeHdCfg.exe - Ok

C:\Windows\system32\BdeHdCfgLib.dll - Ok

C:\Windows\system32\bdesvc.dll - Ok

C:\Windows\system32\bderepair.dll - Ok

C:\Windows\system32\bdeui.dll - Ok

C:\Windows\system32\BdeUnlockWizard.exe - Ok

C:\Windows\system32\BdeUISrv.exe - Ok

C:\Windows\system32\bidispl.dll - Ok

C:\Windows\system32\BFE.DLL - Ok

C:\Windows\system32\BioCredProv.dll - Ok

C:\Windows\system32\bios1.rom - Ok

C:\Windows\system32\bios4.rom - Ok

C:\Windows\system32\biocpl.dll - Ok

C:\Windows\system32\BitLockerWizard.exe - Ok

C:\Windows\system32\BitLockerWizardElev.exe - Ok

C:\Windows\system32\bitsigd.dll - Ok

C:\Windows\system32\bitsperf.dll - Ok

C:\Windows\system32\bitsadmin.exe - Ok

C:\Windows\system32\bitsprx3.dll - Ok

C:\Windows\system32\bitsprx4.dll - Ok

C:\Windows\system32\bitsprx5.dll - Ok

C:\Windows\system32\bitsprx6.dll - Ok

>C:\Windows\system32\bitsprx2.dll - packed by FLY-CODE

C:\Windows\system32\blackbox.dll - Ok

C:\Windows\system32\bitsprx2.dll - Ok

C:\Windows\system32\BlbEvents.dll - Ok

C:\Windows\system32\blbres.dll - Ok

C:\Windows\system32\blb_ps.dll - Ok

C:\Windows\system32\boot.sdi - Ok

C:\Windows\system32\bootcfg.exe - Ok

C:\Windows\system32\bootstr.dll - Ok

C:\Windows\system32\BOOTVID.DLL - Ok

C:\Windows\system32\bopomofo.uce - Ok

>C:\Windows\system32\brcoinst.dll - packed by FLY-CODE

C:\Windows\system32\brcoinst.dll - Ok

C:\Windows\system32\brdgcfg.dll - Ok

C:\Windows\system32\bridgeres.dll - Ok

C:\Windows\system32\bridgeunattend.exe - Ok

C:\Windows\system32\brlm03a.dll - Ok

C:\Windows\system32\BROSNMP.DLL - Ok

C:\Windows\system32\browcli.dll - Ok

C:\Windows\system32\browser.dll - Ok

C:\Windows\system32\browseui.dll - Ok

C:\Windows\system32\BRRBTOOL.EXE - Ok

C:\Windows\system32\BrWebIns.dll - Ok

C:\Windows\system32\BRWEBUP.EXE - Ok

C:\Windows\system32\bootres.dll - Ok

C:\Windows\system32\bthci.dll - Ok

C:\Windows\system32\bthpanapi.dll - Ok

C:\Windows\system32\BthMtpContextHandler.dll - Ok

C:\Windows\system32\BthpanContextHandler.dll - Ok

C:\Windows\system32\bthprops.cpl - Ok

C:\Windows\system32\bthserv.dll - Ok

C:\Windows\system32\bthudtask.exe - Ok

C:\Windows\system32\btpanui.dll - Ok

C:\Windows\system32\BWContextHandler.dll - Ok

C:\Windows\system32\BWUnpairElevated.dll - Ok

C:\Windows\system32\cabinet.dll - Ok

C:\Windows\system32\cabview.dll - Ok

C:\Windows\system32\cacls.exe - Ok

C:\Windows\system32\Bubbles.scr - Ok

C:\Windows\system32\capiprovider.dll - Ok

C:\Windows\system32\capisp.dll - Ok

>C:\Windows\system32\calc.exe is ZLIB container

C:\Windows\system32\calc.exe - container

C:\Windows\system32\catsrv.dll - Ok

C:\Windows\system32\catsrvps.dll - Ok

C:\Windows\system32\catsrvut.dll - Ok

C:\Windows\system32\cca.dll - Ok

>C:\Windows\system32\cdd.dll - packed by FLY-CODE

C:\Windows\system32\cdd.dll - Ok

C:\Windows\system32\CardGames.dll - Ok

>C:\Windows\system32\cdintf300.dll is BINARYRES container

C:\Windows\system32\cdintf300.dll - container

>C:\Windows\system32\cdosys.dll is BINARYRES container

>>C:\Windows\system32\cdosys.dll\data001 is JS-HTML container

C:\Windows\system32\cdosys.dll - container

>C:\Windows\system32\cero.rs is ZLIB container

C:\Windows\system32\cero.rs - container

C:\Windows\system32\certcli.dll - Ok

C:\Windows\system32\certCredProvider.dll - Ok

C:\Windows\system32\certenc.dll - Ok

C:\Windows\system32\CertEnroll.dll - Ok

C:\Windows\system32\CertEnrollCtrl.exe - Ok

C:\Windows\system32\CertEnrollUI.dll - Ok

C:\Windows\system32\cdintf400.dll - Ok

C:\Windows\system32\certmgr.dll - Ok

C:\Windows\system32\CertPolEng.dll - Ok

C:\Windows\system32\certprop.dll - Ok

C:\Windows\system32\certmgr.msc - Ok

C:\Windows\system32\certreq.exe - Ok

C:\Windows\system32\cewmdm.dll - Ok

C:\Windows\system32\cfgbkend.dll - Ok

C:\Windows\system32\cfgmgr32.dll - Ok

C:\Windows\system32\chajei.ime - Ok

C:\Windows\system32\certutil.exe - Ok

>C:\Windows\system32\change.exe - packed by FLY-CODE

C:\Windows\system32\change.exe - Ok

C:\Windows\system32\ChCfg.exe - Ok

C:\Windows\system32\charmap.exe - Ok

C:\Windows\system32\chcp.com - Ok

C:\Windows\system32\chglogon.exe - Ok

C:\Windows\system32\chgport.exe - Ok

C:\Windows\system32\chkdsk.exe - Ok

C:\Windows\system32\chgusr.exe - Ok

C:\Windows\system32\chkntfs.exe - Ok

C:\Windows\system32\chksti.dll - Ok

C:\Windows\system32\chkwudrv.dll - Ok

C:\Windows\system32\choice.exe - Ok

C:\Windows\system32\chsbrkr.dll - Ok

C:\Windows\system32\CHxReadingStringIME.dll - Ok

C:\Windows\system32\ci.dll - Ok

C:\Windows\system32\cic.dll - Ok

C:\Windows\system32\cintlgnt.ime - Ok

C:\Windows\system32\cipher.exe - Ok

C:\Windows\system32\CIRCoInst.dll - Ok

C:\Windows\system32\clb.dll - Ok

C:\Windows\system32\clbcatq.dll - Ok

C:\Windows\system32\chtbrkr.dll - Ok

C:\Windows\system32\clfs.sys - Ok

C:\Windows\system32\cleanmgr.exe - Ok

C:\Windows\system32\clfsw32.dll - Ok

C:\Windows\system32\cliconfg.dll - Ok

C:\Windows\system32\cliconfg.rll - Ok

C:\Windows\system32\clip.exe - Ok

C:\Windows\system32\clusapi.dll - Ok

>C:\Windows\system32\cmcfg32.dll - packed by FLY-CODE

C:\Windows\system32\cliconfg.exe - Ok

C:\Windows\system32\cmcfg32.dll - Ok

C:\Windows\system32\cmd.exe - Ok

C:\Windows\system32\cmdkey.exe - Ok

C:\Windows\system32\cmdl32.exe - Ok

C:\Windows\system32\cmicryptinstall.dll - Ok

C:\Windows\system32\cmifw.dll - Ok

C:\Windows\system32\cmdial32.dll - Ok

C:\Windows\system32\cmlua.dll - Ok

C:\Windows\system32\cmipnpinstall.dll - Ok

C:\Windows\system32\cmmon32.exe - Ok

C:\Windows\system32\cmpbk32.dll - Ok

C:\Windows\system32\cmstp.exe - Ok

C:\Windows\system32\cmstplua.dll - Ok

C:\Windows\system32\cmutil.dll - Ok

C:\Windows\system32\cngaudit.dll - Ok

C:\Windows\system32\cngprovider.dll - Ok

C:\Windows\system32\cnvfat.dll - Ok

>C:\Windows\system32\cofire.exe - packed by FLY-CODE

C:\Windows\system32\cofire.exe - Ok

C:\Windows\system32\cofiredm.dll - Ok

C:\Windows\system32\colbact.dll - Ok

C:\Windows\system32\cmncliM.dll - Ok

C:\Windows\system32\collab.cpl - Ok

C:\Windows\system32\colorcpl.exe - Ok

C:\Windows\system32\COLORCNV.DLL - Ok

C:\Windows\system32\comcat.dll - Ok

C:\Windows\system32\colorui.dll - Ok

C:\Windows\system32\comctl32.dll - Ok

C:\Windows\system32\comdlg32.dll - Ok

C:\Windows\system32\comdlg32.ocx - Ok

C:\Windows\system32\comexp.msc - Ok

C:\Windows\system32\COMM.drv - Ok

C:\Windows\system32\COMMAND.COM - Ok

C:\Windows\system32\COMMDLG.DLL - Ok

C:\Windows\system32\comp.exe - Ok

C:\Windows\system32\comctl32.ocx - Ok

C:\Windows\system32\compact.exe - Ok

C:\Windows\system32\compmgmt.msc - Ok

C:\Windows\system32\compobj.dll - Ok

C:\Windows\system32\CompMgmtLauncher.exe - Ok

C:\Windows\system32\compstui.dll - Ok

C:\Windows\system32\comrepl.dll - Ok

C:\Windows\system32\ComputerDefaults.exe - Ok

C:\Windows\system32\comsnap.dll - Ok

C:\Windows\system32\comres.dll - Ok

C:\Windows\system32\comsvcs.dll - Ok

C:\Windows\system32\config.nt - Ok

C:\Windows\system32\comuid.dll - Ok

C:\Windows\system32\conhost.exe - Ok

C:\Windows\system32\consent.exe - Ok

C:\Windows\system32\console.dll - Ok

C:\Windows\system32\control.exe - Ok

C:\Windows\system32\convert.exe - Ok

C:\Windows\system32\corpol.dll - Ok

C:\Windows\system32\correngine.dll - Ok

C:\Windows\system32\country.sys - Ok

C:\Windows\system32\connect.dll - Ok

C:\Windows\system32\cpwmon2k.dll - Ok

C:\Windows\system32\credssp.dll - Ok

C:\Windows\system32\credui.dll - Ok

C:\Windows\system32\CPFilters.dll - Ok

C:\Windows\system32\CRPPresentation.dll - Ok

C:\Windows\system32\crtdll.dll - Ok

C:\Windows\system32\crypt32.dll - Ok

C:\Windows\system32\cryptbase.dll - Ok

C:\Windows\system32\cryptdlg.dll - Ok

C:\Windows\system32\cryptdll.dll - Ok

C:\Windows\system32\credwiz.exe - Ok

C:\Windows\system32\cryptnet.dll - Ok

C:\Windows\system32\cryptsp.dll - Ok

C:\Windows\system32\cryptsvc.dll - Ok

>C:\Windows\system32\cryptui.dll - packed by FLY-CODE

C:\Windows\system32\cryptui.dll - Ok

C:\Windows\system32\cryptext.dll - Ok

C:\Windows\system32\cscapi.dll - Ok

C:\Windows\system32\cscdll.dll - Ok

C:\Windows\system32\cryptxml.dll - Ok

C:\Windows\system32\cscobj.dll - Ok

C:\Windows\system32\CscMig.dll - Ok

C:\Windows\system32\cscript.exe - Ok

C:\Windows\system32\cscui.dll - Ok

C:\Windows\system32\csrr.rs - Ok

C:\Windows\system32\cscsvc.dll - Ok

C:\Windows\system32\csrss.exe - Ok

C:\Windows\system32\csrsrv.dll - Ok

C:\Windows\system32\csrstub.exe - Ok

C:\Windows\system32\ctfmon.exe - Ok

C:\Windows\system32\ctl3dv2.dll - Ok

C:\Windows\system32\ctl3d32.dll - Ok

C:\Windows\system32\cttune.exe - Ok

C:\Windows\system32\cttunesvr.exe - Ok

C:\Windows\system32\C_037.NLS - Ok

C:\Windows\system32\C_10000.NLS - Ok

C:\Windows\system32\C_10001.NLS - Ok

C:\Windows\system32\C_10002.NLS - Ok

C:\Windows\system32\C_10003.NLS - Ok

C:\Windows\system32\C_10004.NLS - Ok

C:\Windows\system32\C_10005.NLS - Ok

C:\Windows\system32\C_10006.NLS - Ok

C:\Windows\system32\C_10007.NLS - Ok

C:\Windows\system32\C_10010.NLS - Ok

C:\Windows\system32\C_10008.NLS - Ok

C:\Windows\system32\C_10017.NLS - Ok

C:\Windows\system32\C_10021.NLS - Ok

C:\Windows\system32\C_10029.NLS - Ok

C:\Windows\system32\C_10079.NLS - Ok

C:\Windows\system32\C_10081.NLS - Ok

C:\Windows\system32\C_10082.NLS - Ok

C:\Windows\system32\C_1026.NLS - Ok

C:\Windows\system32\C_1047.NLS - Ok

C:\Windows\system32\C_1140.NLS - Ok

C:\Windows\system32\C_1141.NLS - Ok

C:\Windows\system32\C_1142.NLS - Ok

C:\Windows\system32\C_1143.NLS - Ok

C:\Windows\system32\C_1144.NLS - Ok

C:\Windows\system32\C_1145.NLS - Ok

C:\Windows\system32\C_1146.NLS - Ok

C:\Windows\system32\C_1147.NLS - Ok

C:\Windows\system32\C_1148.NLS - Ok

C:\Windows\system32\C_1149.NLS - Ok

C:\Windows\system32\C_1250.NLS - Ok

C:\Windows\system32\C_1251.NLS - Ok

C:\Windows\system32\C_1252.NLS - Ok

C:\Windows\system32\C_1253.NLS - Ok

C:\Windows\system32\C_1254.NLS - Ok

C:\Windows\system32\C_1255.NLS - Ok

C:\Windows\system32\C_1256.NLS - Ok

C:\Windows\system32\C_1257.NLS - Ok

C:\Windows\system32\C_1258.NLS - Ok

C:\Windows\system32\C_1361.NLS - Ok

C:\Windows\system32\C_20000.NLS - Ok

C:\Windows\system32\C_20001.NLS - Ok

C:\Windows\system32\C_20002.NLS - Ok

C:\Windows\system32\C_20003.NLS - Ok

C:\Windows\system32\C_20004.NLS - Ok

C:\Windows\system32\C_20105.NLS - Ok

C:\Windows\system32\C_20005.NLS - Ok

C:\Windows\system32\C_20106.NLS - Ok

C:\Windows\system32\C_20107.NLS - Ok

C:\Windows\system32\C_20108.NLS - Ok

C:\Windows\system32\C_20127.NLS - Ok

C:\Windows\system32\C_20269.NLS - Ok

C:\Windows\system32\C_20261.NLS - Ok

C:\Windows\system32\C_20273.NLS - Ok

C:\Windows\system32\C_20277.NLS - Ok

C:\Windows\system32\C_20278.NLS - Ok

C:\Windows\system32\C_20280.NLS - Ok

C:\Windows\system32\C_20284.NLS - Ok

C:\Windows\system32\C_20285.NLS - Ok

C:\Windows\system32\C_20290.NLS - Ok

C:\Windows\system32\C_20297.NLS - Ok

C:\Windows\system32\C_20420.NLS - Ok

C:\Windows\system32\C_20423.NLS - Ok

C:\Windows\system32\C_20424.NLS - Ok

C:\Windows\system32\C_20833.NLS - Ok

C:\Windows\system32\C_20838.NLS - Ok

C:\Windows\system32\C_20866.NLS - Ok

C:\Windows\system32\C_20871.NLS - Ok

C:\Windows\system32\C_20880.NLS - Ok

C:\Windows\system32\C_20905.NLS - Ok

C:\Windows\system32\C_20924.NLS - Ok

C:\Windows\system32\C_20932.NLS - Ok

C:\Windows\system32\C_20936.NLS - Ok

C:\Windows\system32\C_20949.NLS - Ok

C:\Windows\system32\C_21025.NLS - Ok

C:\Windows\system32\C_21027.NLS - Ok

C:\Windows\system32\C_21866.NLS - Ok

C:\Windows\system32\C_28591.NLS - Ok

C:\Windows\system32\C_28592.NLS - Ok

C:\Windows\system32\C_28593.NLS - Ok

C:\Windows\system32\C_28594.NLS - Ok

C:\Windows\system32\C_28595.NLS - Ok

C:\Windows\system32\C_28596.NLS - Ok

C:\Windows\system32\C_28597.NLS - Ok

C:\Windows\system32\C_28598.NLS - Ok

C:\Windows\system32\C_28599.NLS - Ok

C:\Windows\system32\c_28603.nls - Ok

C:\Windows\system32\C_28605.NLS - Ok

C:\Windows\system32\C_437.NLS - Ok

C:\Windows\system32\C_500.NLS - Ok

C:\Windows\system32\C_708.NLS - Ok

C:\Windows\system32\C_720.NLS - Ok

C:\Windows\system32\C_737.NLS - Ok

C:\Windows\system32\C_775.NLS - Ok

C:\Windows\system32\C_850.NLS - Ok

C:\Windows\system32\C_852.NLS - Ok

C:\Windows\system32\C_855.NLS - Ok

C:\Windows\system32\C_857.NLS - Ok

C:\Windows\system32\C_858.NLS - Ok

C:\Windows\system32\C_860.NLS - Ok

C:\Windows\system32\C_861.NLS - Ok

C:\Windows\system32\C_862.NLS - Ok

C:\Windows\system32\C_863.NLS - Ok

C:\Windows\system32\C_864.NLS - Ok

C:\Windows\system32\C_865.NLS - Ok

C:\Windows\system32\C_866.NLS - Ok

C:\Windows\system32\C_869.NLS - Ok

C:\Windows\system32\C_870.NLS - Ok

C:\Windows\system32\C_874.NLS - Ok

C:\Windows\system32\C_875.NLS - Ok

C:\Windows\system32\C_932.NLS - Ok

C:\Windows\system32\C_936.NLS - Ok

C:\Windows\system32\C_949.NLS - Ok

C:\Windows\system32\C_950.NLS - Ok

C:\Windows\system32\C_IS2022.DLL - Ok

C:\Windows\system32\C_ISCII.DLL - Ok

C:\Windows\system32\C_G18030.DLL - Ok

C:\Windows\system32\d2d1.dll - Ok

C:\Windows\system32\d3d10core.dll - Ok

C:\Windows\system32\d3d10level9.dll - Ok

C:\Windows\system32\d3d10warp.dll - Ok

C:\Windows\system32\d3d10.dll - Ok

C:\Windows\system32\d3d10_1.dll - Ok

C:\Windows\system32\d3d10_1core.dll - Ok

C:\Windows\system32\d3d11.dll - Ok

C:\Windows\system32\d3d8thk.dll - Ok

C:\Windows\system32\d3d8.dll - Ok

C:\Windows\system32\d3d9.dll - Ok

>C:\Windows\system32\D3DCompiler_41.dll - packed by PESTUB

C:\Windows\system32\d3dim.dll - Ok

C:\Windows\system32\D3DCompiler_41.dll - Ok

C:\Windows\system32\d3dim700.dll - Ok

>C:\Windows\system32\d3dx10_41.dll - packed by PESTUB

C:\Windows\system32\d3dx10_41.dll - Ok

C:\Windows\system32\d3dramp.dll - Ok

C:\Windows\system32\d3dx10_42.dll - Ok

C:\Windows\system32\d3dxof.dll - Ok

C:\Windows\system32\dataclen.dll - Ok

C:\Windows\system32\davclnt.dll - Ok

C:\Windows\system32\davhlpr.dll - Ok

>C:\Windows\system32\d3dx9_32.dll - packed by PESTUB

C:\Windows\system32\dbgeng.dll - Ok

C:\Windows\system32\dbghelp.dll - Ok

C:\Windows\system32\d3dx9_32.dll - Ok

C:\Windows\system32\dbnetlib.dll - Ok

C:\Windows\system32\dbnmpntw.dll - Ok

C:\Windows\system32\dbghelp.dll.old - Ok

C:\Windows\system32\dciman32.dll - Ok

C:\Windows\system32\dcomcnfg.exe - Ok

>C:\Windows\system32\DDACLSys.dll - packed by FLY-CODE

C:\Windows\system32\dccw.exe - Ok

C:\Windows\system32\DDACLSys.dll - Ok

C:\Windows\system32\DDEML.DLL - Ok

C:\Windows\system32\DDOIProxy.dll - Ok

C:\Windows\system32\ddodiag.exe - Ok

C:\Windows\system32\ddraw.dll - Ok

C:\Windows\system32\ddrawex.dll - Ok

>C:\Windows\system32\debug.exe - packed by EXEPACK

C:\Windows\system32\debug.exe - Ok

C:\Windows\system32\defaultlocationcpl.dll - Ok

C:\Windows\system32\Defrag.exe - Ok

C:\Windows\system32\defragproxy.dll - Ok

C:\Windows\system32\defragsvc.dll - Ok

C:\Windows\system32\deployJava1.dll - Ok

C:\Windows\system32\desk.cpl - Ok

C:\Windows\system32\deskadp.dll - Ok

C:\Windows\system32\deskmon.dll - Ok

>C:\Windows\system32\deskperf.dll - packed by FLY-CODE

C:\Windows\system32\deskperf.dll - Ok

C:\Windows\system32\desktop.ini - Ok

C:\Windows\system32\devenum.dll - Ok

Link to post
Share on other sites

C:\Windows\system32\DDORes.dll - Ok

C:\Windows\system32\DeviceDisplayObjectProvider.exe - Ok

C:\Windows\system32\DeviceDisplayStatusManager.dll - Ok

C:\Windows\system32\DeviceCenter.dll - Ok

C:\Windows\system32\DeviceMetadataParsers.dll - Ok

>C:\Windows\system32\DeviceEject.exe - packed by FLY-CODE

C:\Windows\system32\DevicePairing.dll - Ok

C:\Windows\system32\DeviceEject.exe - Ok

C:\Windows\system32\DevicePairingHandler.dll - Ok

C:\Windows\system32\DevicePairingProxy.dll - Ok

C:\Windows\system32\DevicePairingFolder.dll - Ok

C:\Windows\system32\DevicePairingWizard.exe - Ok

C:\Windows\system32\DeviceUxRes.dll - Ok

C:\Windows\system32\DeviceProperties.exe - Ok

C:\Windows\system32\devmgmt.msc - Ok

C:\Windows\system32\devobj.dll - Ok

C:\Windows\system32\devrtl.dll - Ok

C:\Windows\system32\dfdts.dll - Ok

C:\Windows\system32\DFDWiz.exe - Ok

C:\Windows\system32\devmgr.dll - Ok

C:\Windows\system32\dfscli.dll - Ok

>C:\Windows\system32\dfrgui.exe is ZLIB container

C:\Windows\system32\dfrgui.exe - container

C:\Windows\system32\DfsShlEx.dll - Ok

>C:\Windows\system32\dhcpcmonitor.dll - packed by FLY-CODE

C:\Windows\system32\dhcpcmonitor.dll - Ok

C:\Windows\system32\dfshim.dll - Ok

C:\Windows\system32\dhcpcore6.dll - Ok

C:\Windows\system32\dhcpcsvc.dll - Ok

C:\Windows\system32\dhcpcore.dll - Ok

C:\Windows\system32\dhcpcsvc6.dll - Ok

C:\Windows\system32\DHCPQEC.DLL - Ok

C:\Windows\system32\dhcpsapi.dll - Ok

C:\Windows\system32\diagperf.dll - Ok

C:\Windows\system32\dialer.exe - Ok

C:\Windows\system32\DiagCpl.dll - Ok

C:\Windows\system32\diantz.exe - Ok

C:\Windows\system32\dimsjob.dll - Ok

C:\Windows\system32\difxapi.dll - Ok

C:\Windows\system32\dimsroam.dll - Ok

C:\Windows\system32\dinput.dll - Ok

C:\Windows\system32\dinput8.dll - Ok

C:\Windows\system32\diskcomp.com - Ok

C:\Windows\system32\diskcopy.com - Ok

>C:\Windows\system32\dinotify.exe - packed by FLY-CODE

C:\Windows\system32\dinotify.exe - Ok

C:\Windows\system32\diskmgmt.msc - Ok

C:\Windows\system32\diskpart.exe - Ok

C:\Windows\system32\diskperf.exe - Ok

C:\Windows\system32\diskraid.exe - Ok

C:\Windows\system32\diskcopy.dll - Ok

C:\Windows\system32\dispci.dll - Ok

C:\Windows\system32\Dism.exe - Ok

C:\Windows\system32\dispex.dll - Ok

C:\Windows\system32\dispdiag.exe - Ok

C:\Windows\system32\DisplaySwitch.exe - Ok

C:\Windows\system32\djoin.exe - Ok

C:\Windows\system32\dllhost.exe - Ok

C:\Windows\system32\Display.dll - Ok

C:\Windows\system32\dmband.dll - Ok

C:\Windows\system32\dllhst3g.exe - Ok

C:\Windows\system32\dmcompos.dll - Ok

C:\Windows\system32\dmdskmgr.dll - Ok

C:\Windows\system32\dmdlgs.dll - Ok

C:\Windows\system32\dmdskres2.dll - Ok

C:\Windows\system32\dmdskres.dll - Ok

C:\Windows\system32\dmime.dll - Ok

C:\Windows\system32\dmintf.dll - Ok

C:\Windows\system32\dmocx.dll - Ok

C:\Windows\system32\dmloader.dll - Ok

C:\Windows\system32\dmscript.dll - Ok

C:\Windows\system32\dmrc.dll - Ok

C:\Windows\system32\dmsynth.dll - Ok

C:\Windows\system32\dmstyle.dll - Ok

C:\Windows\system32\dmutil.dll - Ok

C:\Windows\system32\dmusic.dll - Ok

C:\Windows\system32\dmvdsitf.dll - Ok

C:\Windows\system32\dmview.ocx - Ok

C:\Windows\system32\dnsapi.dll - Ok

C:\Windows\system32\dnscacheugc.exe - Ok

C:\Windows\system32\dnsext.dll - Ok

C:\Windows\system32\dnshc.dll - Ok

C:\Windows\system32\dnscmmc.dll - Ok

C:\Windows\system32\docprop.dll - Ok

C:\Windows\system32\DocumentPerformanceEvents.dll - Ok

C:\Windows\system32\dnsrslvr.dll - Ok

C:\Windows\system32\doskey.exe - Ok

C:\Windows\system32\dosx.exe - Ok

C:\Windows\system32\dot3api.dll - Ok

C:\Windows\system32\dot3cfg.dll - Ok

C:\Windows\system32\dot3dlg.dll - Ok

C:\Windows\system32\dot3gpclnt.dll - Ok

C:\Windows\system32\dot3hc.dll - Ok

C:\Windows\system32\dot3msm.dll - Ok

C:\Windows\system32\dot3gpui.dll - Ok

C:\Windows\system32\dot3svc.dll - Ok

C:\Windows\system32\dpapimig.exe - Ok

C:\Windows\system32\dpapiprovider.dll - Ok

C:\Windows\system32\dot3ui.dll - Ok

C:\Windows\system32\DpiScaling.exe - Ok

C:\Windows\system32\dplaysvr.exe - Ok

C:\Windows\system32\dpmodemx.dll - Ok

C:\Windows\system32\dplayx.dll - Ok

C:\Windows\system32\dpnaddr.dll - Ok

C:\Windows\system32\dpnathlp.dll - Ok

C:\Windows\system32\dpnhpast.dll - Ok

C:\Windows\system32\dpnhupnp.dll - Ok

C:\Windows\system32\dpnlobby.dll - Ok

C:\Windows\system32\dpnsvr.exe - Ok

C:\Windows\system32\dps.dll - Ok

C:\Windows\system32\dpnet.dll - Ok

C:\Windows\system32\dpwsockx.dll - Ok

C:\Windows\system32\driverquery.exe - Ok

C:\Windows\system32\dpx.dll - Ok

>C:\Windows\system32\drmv2clt.dll is BINARYRES container

>>C:\Windows\system32\drmv2clt.dll\data001 is JS-HTML container

C:\Windows\system32\drmv2clt.dll - container

C:\Windows\system32\drprov.dll - Ok

C:\Windows\system32\drmmgrtn.dll - Ok

C:\Windows\system32\drtprov.dll - Ok

C:\Windows\system32\drttransport.dll - Ok

C:\Windows\system32\drt.dll - Ok

C:\Windows\system32\drvinst.exe - Ok

C:\Windows\system32\DRWATSON.EXE - Ok

>C:\Windows\system32\drvstore.dll - packed by BINARYRES

>>C:\Windows\system32\drvstore.dll - packed by MS COMPRESS

C:\Windows\system32\ds16gt.dLL - Ok

C:\Windows\system32\drvstore.dll - Ok

C:\Windows\system32\ds32gt.dll - Ok

C:\Windows\system32\dsauth.dll - Ok

C:\Windows\system32\dsdmo.dll - Ok

C:\Windows\system32\dskquota.dll - Ok

C:\Windows\system32\DShowRdpFilter.dll - Ok

C:\Windows\system32\dskquoui.dll - Ok

C:\Windows\system32\dsprop.dll - Ok

C:\Windows\system32\dsound.dll - Ok

C:\Windows\system32\dsrole.dll - Ok

C:\Windows\system32\dsquery.dll - Ok

C:\Windows\system32\dssec.dll - Ok

C:\Windows\system32\dssenh.dll - Ok

C:\Windows\system32\dssec.dat - Ok

C:\Windows\system32\dswave.dll - Ok

C:\Windows\system32\dtsh.dll - Ok

C:\Windows\system32\dui70.dll - Ok

C:\Windows\system32\duser.dll - Ok

C:\Windows\system32\dvdplay.exe - Ok

C:\Windows\system32\dsuiext.dll - Ok

C:\Windows\system32\dvdupgrd.exe - Ok

C:\Windows\system32\dwmapi.dll - Ok

C:\Windows\system32\dwm.exe - Ok

C:\Windows\system32\dwmredir.dll - Ok

C:\Windows\system32\dwmcore.dll - Ok

C:\Windows\system32\DWrite.dll - Ok

C:\Windows\system32\DWWIN.EXE - Ok

C:\Windows\system32\dxdiagn.dll - Ok

C:\Windows\system32\dxgi.dll - Ok

C:\Windows\system32\dxdiag.exe - Ok

C:\Windows\system32\dxmasf.dll - Ok

C:\Windows\system32\dxpps.dll - Ok

C:\Windows\system32\DXP.dll - Ok

C:\Windows\system32\Dxpserver.exe - Ok

C:\Windows\system32\DXPTaskRingtone.dll - Ok

C:\Windows\system32\dxtmsft.dll - Ok

C:\Windows\system32\dxtrans.dll - Ok

C:\Windows\system32\dxva2.dll - Ok

C:\Windows\system32\DxpTaskSync.dll - Ok

C:\Windows\system32\Eap3Host.exe - Ok

C:\Windows\system32\eappcfg.dll - Ok

C:\Windows\system32\eapp3hst.dll - Ok

C:\Windows\system32\eappgnui.dll - Ok

C:\Windows\system32\eappprxy.dll - Ok

C:\Windows\system32\eapphost.dll - Ok

C:\Windows\system32\EAPQEC.DLL - Ok

C:\Windows\system32\eapsvc.dll - Ok

C:\Windows\system32\EDIT.HLP - Ok

>C:\Windows\system32\edlin.exe - packed by EXEPACK

C:\Windows\system32\edlin.exe - Ok

>C:\Windows\system32\edit.com - packed by EXEPACK

C:\Windows\system32\edit.com - Ok

C:\Windows\system32\efsadu.dll - Ok

C:\Windows\system32\efscore.dll - Ok

C:\Windows\system32\efslsaext.dll - Ok

C:\Windows\system32\efssvc.dll - Ok

C:\Windows\system32\efsutil.dll - Ok

C:\Windows\system32\ega.cpi - Ok

C:\Windows\system32\EhStorAPI.dll - Ok

C:\Windows\system32\efsui.exe - Ok

C:\Windows\system32\EhStorAuthn.exe - Ok

C:\Windows\system32\EhStorPwdMgr.dll - Ok

C:\Windows\system32\EhStorShell.dll - Ok

C:\Windows\system32\ELSCore.dll - Ok

C:\Windows\system32\elslad.dll - Ok

C:\Windows\system32\elsTrans.dll - Ok

C:\Windows\system32\els.dll - Ok

C:\Windows\system32\encapi.dll - Ok

C:\Windows\system32\EncDump.dll - Ok

C:\Windows\system32\energy.dll - Ok

C:\Windows\system32\EncDec.dll - Ok

>C:\Windows\system32\EP0SLM01.DLL - packed by PESTUB

C:\Windows\system32\EP0SLM01.DLL - Ok

C:\Windows\system32\EPPICLocal_BP.cfg - Ok

>C:\Windows\system32\ep0icd1.dll - packed by PESTUB

C:\Windows\system32\EPPICLocal_CF.cfg - Ok

C:\Windows\system32\EPPICLocal_EN.cfg - Ok

C:\Windows\system32\ep0icd1.dll - Ok

C:\Windows\system32\EPPICLocal_ES.cfg - Ok

C:\Windows\system32\EPPICLocal_FR.cfg - Ok

C:\Windows\system32\EPPICLocal_PT.cfg - Ok

C:\Windows\system32\EPPICPattern1.dat - Ok

C:\Windows\system32\EPPICPattern121.dat - Ok

C:\Windows\system32\EPPICPattern131.dat - Ok

C:\Windows\system32\EPPICPattern2.dat - Ok

C:\Windows\system32\EPPICPattern3.dat - Ok

C:\Windows\system32\EPPICPattern4.dat - Ok

C:\Windows\system32\EPPICPattern5.dat - Ok

C:\Windows\system32\EPPICPattern6.dat - Ok

C:\Windows\system32\EPPICPresetData_BP.dat - Ok

C:\Windows\system32\EPPICPresetData_CF.dat - Ok

C:\Windows\system32\EPPICPresetData_EN.dat - Ok

C:\Windows\system32\EPPICPresetData_ES.dat - Ok

C:\Windows\system32\EPPICPresetData_FR.dat - Ok

C:\Windows\system32\EPPICPresetData_PT.dat - Ok

C:\Windows\system32\EPPICPrinterDB.dat - Ok

C:\Windows\system32\EpPicMgr.dll - Ok

C:\Windows\system32\epson.sep - Ok

C:\Windows\system32\eqossnap.dll - Ok

C:\Windows\system32\es.dll - Ok

C:\Windows\system32\EpPicPrt.dll - Ok

C:\Windows\system32\esent.dll - Ok

C:\Windows\system32\esentprf.dll - Ok

>C:\Windows\system32\esrb.rs is ZLIB container

C:\Windows\system32\esrb.rs - container

C:\Windows\system32\esentutl.exe - Ok

>C:\Windows\system32\eventcls.dll - packed by FLY-CODE

C:\Windows\system32\eventcls.dll - Ok

C:\Windows\system32\eventcreate.exe - Ok

>C:\Windows\system32\EventViewer_EventDetails.xsl is JS-HTML container

C:\Windows\system32\eudcedit.exe - Ok

C:\Windows\system32\EventViewer_EventDetails.xsl - container

>C:\Windows\system32\eventvwr.exe - packed by FLY-CODE

C:\Windows\system32\eventvwr.msc - Ok

C:\Windows\system32\eventvwr.exe - Ok

>C:\Windows\system32\exe2bin.exe - packed by EXEPACK

C:\Windows\system32\exe2bin.exe - Ok

>C:\Windows\system32\expand.exe - packed by BINARYRES

>>C:\Windows\system32\expand.exe - packed by MS COMPRESS

C:\Windows\system32\expand.exe - Ok

C:\Windows\system32\evr.dll - Ok

C:\Windows\system32\ExplorerFrame.dll - Ok

C:\Windows\system32\extrac32.exe - Ok

C:\Windows\system32\E_FD4BEJA.DLL - Ok

>C:\Windows\system32\E_FLBEJA.DLL - packed by PESTUB

C:\Windows\system32\expsrv.dll - Ok

C:\Windows\system32\E_FLBEJA.DLL - Ok

C:\Windows\system32\f3ahvoas.dll - Ok

>C:\Windows\system32\fastopen.exe - packed by EXEPACK

>>C:\Windows\system32\fastopen.exe - packed by COM2EXE

C:\Windows\system32\fastopen.exe - Ok

C:\Windows\system32\fc.exe - Ok

C:\Windows\system32\fdBth.dll - Ok

C:\Windows\system32\fdBthProxy.dll - Ok

C:\Windows\system32\Faultrep.dll - Ok

C:\Windows\system32\fdeploy.dll - Ok

C:\Windows\system32\fde.dll - Ok

C:\Windows\system32\fdPHost.dll - Ok

C:\Windows\system32\fdPnp.dll - Ok

C:\Windows\system32\fdProxy.dll - Ok

C:\Windows\system32\FDResPub.dll - Ok

C:\Windows\system32\fdSSDP.dll - Ok

C:\Windows\system32\fdprint.dll - Ok

C:\Windows\system32\fdWCN.dll - Ok

C:\Windows\system32\fdWNet.dll - Ok

C:\Windows\system32\feclient.dll - Ok

C:\Windows\system32\fdWSD.dll - Ok

C:\Windows\system32\find.exe - Ok

C:\Windows\system32\findnetprinters.dll - Ok

C:\Windows\system32\findstr.exe - Ok

C:\Windows\system32\finger.exe - Ok

C:\Windows\system32\Firewall.cpl - Ok

C:\Windows\system32\FirewallAPI.dll - Ok

C:\Windows\system32\filemgmt.dll - Ok

C:\Windows\system32\fixmapi.exe - Ok

C:\Windows\system32\FlashPlayerCPLApp.cpl - Ok

C:\Windows\system32\fltLib.dll - Ok

C:\Windows\system32\FirewallControlPanel.dll - Ok

C:\Windows\system32\fltMC.exe - Ok

C:\Windows\system32\FM20ENU.DLL - Ok

C:\Windows\system32\fmifs.dll - Ok

C:\Windows\system32\fms.dll - Ok

C:\Windows\system32\FNTCACHE.DAT - Ok

C:\Windows\system32\FntCache.dll - Ok

C:\Windows\system32\FM20.DLL - Ok

C:\Windows\system32\fontsub.dll - Ok

>C:\Windows\system32\fontext.dll - packed by BINARYRES

>>C:\Windows\system32\fontext.dll - packed by MS COMPRESS

C:\Windows\system32\fontext.dll - Ok

C:\Windows\system32\forfiles.exe - Ok

C:\Windows\system32\fontview.exe - Ok

C:\Windows\system32\format.com - Ok

C:\Windows\system32\framebuf.dll - Ok

C:\Windows\system32\fphc.dll - Ok

C:\Windows\system32\framedynos.dll - Ok

C:\Windows\system32\framedyn.dll - Ok

C:\Windows\system32\fsmgmt.msc - Ok

C:\Windows\system32\fthsvc.dll - Ok

C:\Windows\system32\fsutil.exe - Ok

C:\Windows\system32\fundisc.dll - Ok

C:\Windows\system32\ftp.exe - Ok

C:\Windows\system32\fveapi.dll - Ok

C:\Windows\system32\fvecerts.dll - Ok

C:\Windows\system32\fveapibase.dll - Ok

C:\Windows\system32\fvecpl.dll - Ok

C:\Windows\system32\fvenotify.exe - Ok

C:\Windows\system32\fveprompt.exe - Ok

C:\Windows\system32\fveRecover.dll - Ok

C:\Windows\system32\fveui.dll - Ok

C:\Windows\system32\fwcfg.dll - Ok

C:\Windows\system32\FWPUCLNT.DLL - Ok

C:\Windows\system32\FwRemoteSvr.dll - Ok

C:\Windows\system32\fxcompchannel.dll - Ok

C:\Windows\system32\FXSAPI.dll - Ok

C:\Windows\system32\fvewiz.dll - Ok

C:\Windows\system32\FXSCOM.dll - Ok

C:\Windows\system32\FXSCOMEX.dll - Ok

C:\Windows\system32\FXSCOMPOSERES.dll - Ok

C:\Windows\system32\FXSCOMPOSE.dll - Ok

C:\Windows\system32\FXSEVENT.dll - Ok

C:\Windows\system32\FXSEXT32.dll - Ok

C:\Windows\system32\FXSMON.dll - Ok

C:\Windows\system32\FXSCOVER.exe - Ok

C:\Windows\system32\FXSRESM.dll - Ok

C:\Windows\system32\FXSROUTE.dll - Ok

C:\Windows\system32\FXSST.dll - Ok

C:\Windows\system32\FXSSVC.exe - Ok

C:\Windows\system32\FXST30.dll - Ok

C:\Windows\system32\FXSUNATD.exe - Ok

C:\Windows\system32\FXSTIFF.dll - Ok

C:\Windows\system32\FXSUTILITY.dll - Ok

C:\Windows\system32\g711codc.ax - Ok

C:\Windows\system32\gacinstall.dll - Ok

C:\Windows\system32\FXSXP32.dll - Ok

C:\Windows\system32\gameux.dll - Ok

C:\Windows\system32\gatherNetworkInfo.vbs - Ok

C:\Windows\system32\gb2312.uce - Ok

C:\Windows\system32\gcdef.dll - Ok

C:\Windows\system32\GDI.EXE - Ok

C:\Windows\system32\gdi32.dll - Ok

>C:\Windows\system32\GdViewerpro4.ocx - packed by BINARYRES

C:\Windows\system32\GdViewerpro4.ocx - Ok

C:\Windows\system32\GEARAspi.dll - Ok

C:\Windows\system32\getmac.exe - Ok

C:\Windows\system32\GettingStarted.exe - Ok

C:\Windows\system32\getuname.dll - Ok

C:\Windows\system32\glmf32.dll - Ok

C:\Windows\system32\glu32.dll - Ok

C:\Windows\system32\gpapi.dll - Ok

C:\Windows\system32\GameUXLegacyGDFs.dll - Ok

C:\Windows\system32\gpedit.msc - Ok

C:\Windows\system32\gpprefcl.dll - Ok

C:\Windows\system32\gpprnext.dll - Ok

C:\Windows\system32\gpedit.dll - Ok

C:\Windows\system32\gpscript.dll - Ok

C:\Windows\system32\gpresult.exe - Ok

C:\Windows\system32\gpscript.exe - Ok

C:\Windows\system32\gptext.dll - Ok

>C:\Windows\system32\gpupdate.exe - packed by FLY-CODE

C:\Windows\system32\gpsvc.dll - Ok

C:\Windows\system32\gpupdate.exe - Ok

C:\Windows\system32\graftabl.com - Ok

C:\Windows\system32\GRAPHICS.COM - Ok

C:\Windows\system32\graphics.pro - Ok

>C:\Windows\system32\grb.rs is ZLIB container

C:\Windows\system32\grb.rs - container

C:\Windows\system32\Groupinghc.dll - Ok

>C:\Windows\system32\grpconv.exe - packed by FLY-CODE

C:\Windows\system32\hal.dll - Ok

C:\Windows\system32\halacpi.dll - Ok

C:\Windows\system32\grpconv.exe - Ok

C:\Windows\system32\halmacpi.dll - Ok

>C:\Windows\system32\hbaapi.dll - packed by FLY-CODE

C:\Windows\system32\hcproviders.dll - Ok

C:\Windows\system32\hbaapi.dll - Ok

C:\Windows\system32\hdwwiz.cpl - Ok

C:\Windows\system32\help.exe - Ok

C:\Windows\system32\HelpPaneProxy.dll - Ok

C:\Windows\system32\hgcpl.dll - Ok

C:\Windows\system32\hdwwiz.exe - Ok

C:\Windows\system32\hgprint.dll - Ok

C:\Windows\system32\hhsetup.dll - Ok

C:\Windows\system32\hid.dll - Ok

C:\Windows\system32\hidphone.tsp - Ok

C:\Windows\system32\hidserv.dll - Ok

C:\Windows\system32\HIMEM.SYS - Ok

C:\Windows\system32\hlink.dll - Ok

C:\Windows\system32\hhctrl.ocx - Ok

>C:\Windows\system32\hnetmon.dll - packed by FLY-CODE

C:\Windows\system32\hnetcfg.dll - Ok

C:\Windows\system32\HOSTNAME.EXE - Ok

C:\Windows\system32\hnetmon.dll - Ok

C:\Windows\system32\HotStartUserAgent.dll - Ok

C:\Windows\system32\hotplug.dll - Ok

C:\Windows\system32\hp1020.img - Ok

C:\Windows\system32\hp1022.img - Ok

C:\Windows\system32\hpbmiapi.dll - Ok

C:\Windows\system32\hp1022n.img - Ok

C:\Windows\system32\hpboid.dll - Ok

C:\Windows\system32\hpboidps.dll - Ok

C:\Windows\system32\hpbprops.dll - Ok

C:\Windows\system32\hpbpro.dll - Ok

C:\Windows\system32\HPBWSDR.DLL - Ok

C:\Windows\system32\hpcpn104.dll - Ok

C:\Windows\system32\hplbddrv.dll - Ok

C:\Windows\system32\hpmco104.dll - Ok

C:\Windows\system32\hpmja104.dll - Ok

>C:\Windows\system32\hpmml104.dll is BINARYRES container

C:\Windows\system32\hpmml104.dll - container

C:\Windows\system32\hpmnndps.dll - Ok

C:\Windows\system32\hpmpm081.dll - Ok

C:\Windows\system32\hpmnque.dll - Ok

C:\Windows\system32\hpmpw081.dll - Ok

C:\Windows\system32\hpmtp104.dll - Ok

C:\Windows\system32\hpmprein.dll - Ok

C:\Windows\system32\hppmopjl.dll - Ok

C:\Windows\system32\hppccompio.dll - Ok

C:\Windows\system32\HPZidr12.dll - Ok

C:\Windows\system32\HPZinw12.dll - Ok

C:\Windows\system32\HPZipm12.dll - Ok

C:\Windows\system32\HPZipr12.dll - Ok

C:\Windows\system32\hpzipt12.dll - Ok

C:\Windows\system32\hpzisn12.dll - Ok

C:\Windows\system32\httpapi.dll - Ok

C:\Windows\system32\htui.dll - Ok

C:\Windows\system32\hwrcomp.exe - Ok

C:\Windows\system32\html.iec - Ok

C:\Windows\system32\hwrreg.exe - Ok

C:\Windows\system32\ias.dll - Ok

C:\Windows\system32\iac25_32.ax - Ok

C:\Windows\system32\iasacct.dll - Ok

C:\Windows\system32\iasads.dll - Ok

C:\Windows\system32\iasdatastore.dll - Ok

C:\Windows\system32\iashlpr.dll - Ok

C:\Windows\system32\iasnap.dll - Ok

C:\Windows\system32\iaspolcy.dll - Ok

>C:\Windows\system32\IasMigPlugin.dll is BINARYRES container

C:\Windows\system32\IasMigPlugin.dll - container

C:\Windows\system32\iasrad.dll - Ok

C:\Windows\system32\iasrecst.dll - Ok

C:\Windows\system32\iassam.dll - Ok

C:\Windows\system32\iassvcs.dll - Ok

C:\Windows\system32\icaapi.dll - Ok

C:\Windows\system32\icacls.exe - Ok

C:\Windows\system32\iassdo.dll - Ok

C:\Windows\system32\icardie.dll - Ok

C:\Windows\system32\icardres.dll - Ok

C:\Windows\system32\IcCoinstall.dll - Ok

C:\Windows\system32\iccvid.dll - Ok

C:\Windows\system32\icfupgd.dll - Ok

C:\Windows\system32\icm32.dll - Ok

C:\Windows\system32\icmp.dll - Ok

>C:\Windows\system32\icmui.dll - packed by FLY-CODE

C:\Windows\system32\icmui.dll - Ok

C:\Windows\system32\IconCodecService.dll - Ok

C:\Windows\system32\icardagt.exe - Ok

C:\Windows\system32\icrav03.rat - Ok

>C:\Windows\system32\icsunattend.exe - packed by FLY-CODE

>C:\Windows\system32\icsigd.dll - packed by FLY-CODE

C:\Windows\system32\icsunattend.exe - Ok

C:\Windows\system32\ideograf.uce - Ok

C:\Windows\system32\icsigd.dll - Ok

C:\Windows\system32\idndl.dll - Ok

C:\Windows\system32\IdListen.dll - Ok

C:\Windows\system32\IDStore.dll - Ok

>C:\Windows\system32\ie4uinit.exe - packed by FLY-CODE

C:\Windows\system32\ieakeng.dll - Ok

C:\Windows\system32\ie4uinit.exe - Ok

C:\Windows\system32\ieaksie.dll - Ok

C:\Windows\system32\ieakui.dll - Ok

C:\Windows\system32\ieapfltr.dll - Ok

C:\Windows\system32\iedkcs32.dll - Ok

C:\Windows\system32\ieframe.dll - Ok

C:\Windows\system32\iepeers.dll - Ok

C:\Windows\system32\iernonce.dll - Ok

C:\Windows\system32\ieapfltr.dat - Ok

C:\Windows\system32\iertutil.dll - Ok

C:\Windows\system32\iesetup.dll - Ok

C:\Windows\system32\iesysprep.dll - Ok

C:\Windows\system32\ieui.dll - Ok

C:\Windows\system32\iertutil(13).dll - Ok

C:\Windows\system32\ieUnatt.exe - Ok

C:\Windows\system32\iexpress.exe - Ok

C:\Windows\system32\ieuinit.inf - Ok

C:\Windows\system32\ifmon.dll - Ok

C:\Windows\system32\ifsutilx.dll - Ok

C:\Windows\system32\ifsutil.dll - Ok

C:\Windows\system32\igdDiag.dll - Ok

>C:\Windows\system32\imaadp32.acm - packed by FLY-CODE

C:\Windows\system32\imaadp32.acm - Ok

C:\Windows\system32\imagehlp.dll - Ok

C:\Windows\system32\IKEEXT.DLL - Ok

C:\Windows\system32\imagesp1.dll - Ok

C:\Windows\system32\imapi.dll - Ok

C:\Windows\system32\imapi2.dll - Ok

C:\Windows\system32\imapi2fs.dll - Ok

C:\Windows\system32\imgutil.dll - Ok

C:\Windows\system32\IMJP10.IME - Ok

C:\Windows\system32\IMJP10K.DLL - Ok

C:\Windows\system32\imkr80.ime - Ok

C:\Windows\system32\imm32.dll - Ok

C:\Windows\system32\inetcomm.dll - Ok

C:\Windows\system32\inetcpl.cpl - Ok

C:\Windows\system32\inetmib1.dll - Ok

C:\Windows\system32\inetpp.dll - Ok

C:\Windows\system32\inetppui.dll - Ok

C:\Windows\system32\INETRES.dll - Ok

C:\Windows\system32\InfDefaultInstall.exe - Ok

C:\Windows\system32\infocardapi.dll - Ok

C:\Windows\system32\infocardcpl.cpl - Ok

C:\Windows\system32\InkEd.dll - Ok

C:\Windows\system32\input.dll - Ok

C:\Windows\system32\inseng.dll - Ok

C:\Windows\system32\intl.cpl - Ok

C:\Windows\system32\iologmsg.dll - Ok

C:\Windows\system32\IPBusEnum.dll - Ok

C:\Windows\system32\IPBusEnumProxy.dll - Ok

C:\Windows\system32\ipconfig.exe - Ok

C:\Windows\system32\IPHLPAPI.DLL - Ok

C:\Windows\system32\iphlpsvc.dll - Ok

C:\Windows\system32\ipnathlp.dll - Ok

C:\Windows\system32\iprop.dll - Ok

C:\Windows\system32\iprtprio.dll - Ok

C:\Windows\system32\iprtrmgr.dll - Ok

C:\Windows\system32\ipsecsnp.dll - Ok

C:\Windows\system32\IPSECSVC.DLL - Ok

C:\Windows\system32\ipsmsnap.dll - Ok

C:\Windows\system32\ir32_32.dll - Ok

C:\Windows\system32\ir41_32.ax - Ok

>C:\Windows\system32\ir41_qc.dll - packed by FLY-CODE

C:\Windows\system32\ir41_qc.dll - Ok

>C:\Windows\system32\ir41_qcx.dll - packed by FLY-CODE

C:\Windows\system32\ir41_qcx.dll - Ok

C:\Windows\system32\ir50_32.dll - Ok

C:\Windows\system32\ir50_qc.dll - Ok

C:\Windows\system32\ir50_qcx.dll - Ok

>C:\Windows\system32\irclass.dll - packed by FLY-CODE

C:\Windows\system32\irclass.dll - Ok

C:\Windows\system32\irftp.exe - Ok

C:\Windows\system32\irmon.dll - Ok

C:\Windows\system32\irprops.cpl - Ok

>C:\Windows\system32\iscsicli.exe - packed by FLY-CODE

C:\Windows\system32\iscsicli.exe - Ok

C:\Windows\system32\iscsicpl.dll - Ok

>C:\Windows\system32\iscsicpl.exe - packed by FLY-CODE

C:\Windows\system32\iscsicpl.exe - Ok

C:\Windows\system32\iscsidsc.dll - Ok

C:\Windows\system32\iscsied.dll - Ok

C:\Windows\system32\iscsiexe.dll - Ok

C:\Windows\system32\iscsilog.dll - Ok

C:\Windows\system32\iscsium.dll - Ok

C:\Windows\system32\iscsiwmi.dll - Ok

C:\Windows\system32\isoburn.exe - Ok

C:\Windows\system32\itircl.dll - Ok

C:\Windows\system32\itss.dll - Ok

C:\Windows\system32\imageres.dll - Ok

C:\Windows\system32\iTVData.dll - Ok

>C:\Windows\system32\iyuv_32.dll - packed by FLY-CODE

C:\Windows\system32\iyuv_32.dll - Ok

C:\Windows\system32\ivfsrc.ax - Ok

C:\Windows\system32\java.exe - Ok

C:\Windows\system32\javaw.exe - Ok

C:\Windows\system32\jnwmon.dll - Ok

C:\Windows\system32\javaws.exe - Ok

Link to post
Share on other sites

C:\Windows\system32\joy.cpl - Ok

C:\Windows\system32\jsproxy.dll - Ok

C:\Windows\system32\jupdate-1.6.0_03-b05.log - Ok

C:\Windows\system32\jupdate-1.6.0_30-b12.log - Ok

C:\Windows\system32\kanji_1.uce - Ok

C:\Windows\system32\kanji_2.uce - Ok

C:\Windows\system32\KB16.COM - Ok

C:\Windows\system32\kbd101.dll - Ok

C:\Windows\system32\kbd101a.dll - Ok

C:\Windows\system32\kbd101b.dll - Ok

C:\Windows\system32\kbd101c.dll - Ok

C:\Windows\system32\kbd103.dll - Ok

C:\Windows\system32\kbd106.dll - Ok

C:\Windows\system32\kbd106n.dll - Ok

C:\Windows\system32\KBDA1.DLL - Ok

C:\Windows\system32\KBDA2.DLL - Ok

C:\Windows\system32\KBDA3.DLL - Ok

C:\Windows\system32\KBDAL.DLL - Ok

C:\Windows\system32\KBDARME.DLL - Ok

C:\Windows\system32\KBDARMW.DLL - Ok

C:\Windows\system32\kbdax2.dll - Ok

C:\Windows\system32\KBDAZE.DLL - Ok

C:\Windows\system32\KBDAZEL.DLL - Ok

C:\Windows\system32\KBDBASH.DLL - Ok

C:\Windows\system32\KBDBE.DLL - Ok

C:\Windows\system32\jscript.dll - Ok

C:\Windows\system32\KBDBENE.DLL - Ok

C:\Windows\system32\KBDBGPH.DLL - Ok

C:\Windows\system32\KBDBGPH1.DLL - Ok

C:\Windows\system32\KBDBHC.DLL - Ok

C:\Windows\system32\KBDBLR.DLL - Ok

C:\Windows\system32\KBDBR.DLL - Ok

C:\Windows\system32\KBDBU.DLL - Ok

C:\Windows\system32\KBDBULG.DLL - Ok

C:\Windows\system32\KBDCA.DLL - Ok

C:\Windows\system32\KBDCAN.DLL - Ok

C:\Windows\system32\KBDCR.DLL - Ok

C:\Windows\system32\KBDCZ.DLL - Ok

C:\Windows\system32\KBDCZ1.DLL - Ok

C:\Windows\system32\KBDCZ2.DLL - Ok

C:\Windows\system32\KBDDA.DLL - Ok

C:\Windows\system32\KBDDIV1.DLL - Ok

C:\Windows\system32\KBDDIV2.DLL - Ok

C:\Windows\system32\KBDDV.DLL - Ok

C:\Windows\system32\KBDES.DLL - Ok

C:\Windows\system32\KBDEST.DLL - Ok

C:\Windows\system32\KBDFA.DLL - Ok

C:\Windows\system32\KBDFC.DLL - Ok

C:\Windows\system32\KBDFI.DLL - Ok

C:\Windows\system32\KBDFI1.DLL - Ok

C:\Windows\system32\KBDFO.DLL - Ok

C:\Windows\system32\KBDFR.DLL - Ok

C:\Windows\system32\KBDGAE.DLL - Ok

C:\Windows\system32\KBDGEO.DLL - Ok

C:\Windows\system32\kbdgeoer.dll - Ok

C:\Windows\system32\kbdgeoqw.dll - Ok

C:\Windows\system32\KBDGKL.DLL - Ok

C:\Windows\system32\KBDGR.DLL - Ok

C:\Windows\system32\KBDGR1.DLL - Ok

C:\Windows\system32\KBDGRLND.DLL - Ok

C:\Windows\system32\KBDHAU.DLL - Ok

C:\Windows\system32\KBDHE.DLL - Ok

C:\Windows\system32\KBDHE220.DLL - Ok

C:\Windows\system32\KBDHE319.DLL - Ok

C:\Windows\system32\KBDHEB.DLL - Ok

C:\Windows\system32\KBDHELA2.DLL - Ok

C:\Windows\system32\KBDHELA3.DLL - Ok

C:\Windows\system32\KBDHEPT.DLL - Ok

C:\Windows\system32\KBDHU.DLL - Ok

C:\Windows\system32\KBDHU1.DLL - Ok

C:\Windows\system32\kbdibm02.dll - Ok

C:\Windows\system32\KBDIBO.DLL - Ok

C:\Windows\system32\KBDIC.DLL - Ok

C:\Windows\system32\KBDINASA.DLL - Ok

C:\Windows\system32\KBDINBE1.DLL - Ok

C:\Windows\system32\KBDINBE2.DLL - Ok

C:\Windows\system32\KBDINBEN.DLL - Ok

C:\Windows\system32\KBDINDEV.DLL - Ok

C:\Windows\system32\KBDINGUJ.DLL - Ok

C:\Windows\system32\KBDINHIN.DLL - Ok

C:\Windows\system32\KBDINKAN.DLL - Ok

C:\Windows\system32\KBDINMAR.DLL - Ok

C:\Windows\system32\KBDINORI.DLL - Ok

C:\Windows\system32\KBDINMAL.DLL - Ok

C:\Windows\system32\KBDINPUN.DLL - Ok

C:\Windows\system32\KBDINTAM.DLL - Ok

C:\Windows\system32\KBDINTEL.DLL - Ok

C:\Windows\system32\KBDINUK2.DLL - Ok

C:\Windows\system32\KBDIR.DLL - Ok

C:\Windows\system32\KBDIT.DLL - Ok

C:\Windows\system32\KBDIT142.DLL - Ok

C:\Windows\system32\KBDIULAT.DLL - Ok

C:\Windows\system32\KBDJPN.DLL - Ok

C:\Windows\system32\KBDKAZ.DLL - Ok

C:\Windows\system32\KBDKHMR.DLL - Ok

C:\Windows\system32\KBDKOR.DLL - Ok

C:\Windows\system32\KBDKYR.DLL - Ok

C:\Windows\system32\KBDLA.DLL - Ok

C:\Windows\system32\KBDLAO.DLL - Ok

C:\Windows\system32\KBDLT.DLL - Ok

C:\Windows\system32\KBDLT1.DLL - Ok

C:\Windows\system32\kbdlk41a.dll - Ok

C:\Windows\system32\KBDLT2.DLL - Ok

C:\Windows\system32\KBDLV.DLL - Ok

C:\Windows\system32\KBDLV1.DLL - Ok

C:\Windows\system32\KBDMAC.DLL - Ok

C:\Windows\system32\KBDMACST.DLL - Ok

C:\Windows\system32\KBDMAORI.DLL - Ok

C:\Windows\system32\KBDMLT47.DLL - Ok

C:\Windows\system32\KBDMLT48.DLL - Ok

C:\Windows\system32\KBDMON.DLL - Ok

C:\Windows\system32\KBDMONMO.DLL - Ok

C:\Windows\system32\KBDNE.DLL - Ok

C:\Windows\system32\kbdnec.dll - Ok

C:\Windows\system32\kbdnec95.dll - Ok

C:\Windows\system32\kbdnecat.dll - Ok

C:\Windows\system32\kbdnecnt.dll - Ok

C:\Windows\system32\KBDNEPR.DLL - Ok

C:\Windows\system32\KBDNO.DLL - Ok

C:\Windows\system32\KBDNO1.DLL - Ok

C:\Windows\system32\KBDNSO.DLL - Ok

C:\Windows\system32\KBDPASH.DLL - Ok

C:\Windows\system32\KBDPL.DLL - Ok

C:\Windows\system32\KBDPL1.DLL - Ok

C:\Windows\system32\KBDPO.DLL - Ok

C:\Windows\system32\KBDRO.DLL - Ok

C:\Windows\system32\KBDROPR.DLL - Ok

C:\Windows\system32\KBDROST.DLL - Ok

C:\Windows\system32\KBDRU.DLL - Ok

C:\Windows\system32\KBDRU1.DLL - Ok

C:\Windows\system32\KBDSF.DLL - Ok

C:\Windows\system32\KBDSL.DLL - Ok

C:\Windows\system32\KBDSG.DLL - Ok

C:\Windows\system32\KBDSL1.DLL - Ok

C:\Windows\system32\KBDSMSFI.DLL - Ok

C:\Windows\system32\KBDSMSNO.DLL - Ok

C:\Windows\system32\KBDSN1.DLL - Ok

C:\Windows\system32\KBDSOREX.DLL - Ok

C:\Windows\system32\KBDSORS1.DLL - Ok

C:\Windows\system32\KBDSORST.DLL - Ok

C:\Windows\system32\KBDSP.DLL - Ok

C:\Windows\system32\KBDSW.DLL - Ok

C:\Windows\system32\KBDSYR1.DLL - Ok

C:\Windows\system32\KBDSW09.DLL - Ok

C:\Windows\system32\KBDSYR2.DLL - Ok

C:\Windows\system32\KBDTAJIK.DLL - Ok

C:\Windows\system32\KBDTAT.DLL - Ok

C:\Windows\system32\KBDTH0.DLL - Ok

C:\Windows\system32\KBDTH1.DLL - Ok

C:\Windows\system32\KBDTH2.DLL - Ok

C:\Windows\system32\KBDTH3.DLL - Ok

C:\Windows\system32\KBDTIPRC.DLL - Ok

C:\Windows\system32\KBDTUF.DLL - Ok

C:\Windows\system32\KBDTUQ.DLL - Ok

C:\Windows\system32\KBDTURME.DLL - Ok

C:\Windows\system32\KBDUGHR.DLL - Ok

C:\Windows\system32\KBDUGHR1.DLL - Ok

C:\Windows\system32\KBDUK.DLL - Ok

C:\Windows\system32\KBDUKX.DLL - Ok

C:\Windows\system32\KBDUR.DLL - Ok

C:\Windows\system32\KBDUR1.DLL - Ok

C:\Windows\system32\KBDURDU.DLL - Ok

C:\Windows\system32\KBDUS.DLL - Ok

C:\Windows\system32\KBDUSA.DLL - Ok

C:\Windows\system32\KBDUSL.DLL - Ok

C:\Windows\system32\KBDUSR.DLL - Ok

C:\Windows\system32\KBDUSX.DLL - Ok

C:\Windows\system32\KBDUZB.DLL - Ok

C:\Windows\system32\KBDVNTC.DLL - Ok

C:\Windows\system32\KBDWOL.DLL - Ok

C:\Windows\system32\KBDYAK.DLL - Ok

C:\Windows\system32\KBDYBA.DLL - Ok

C:\Windows\system32\KBDYCC.DLL - Ok

C:\Windows\system32\KBDYCL.DLL - Ok

C:\Windows\system32\kd1394.dll - Ok

C:\Windows\system32\kdcom.dll - Ok

C:\Windows\system32\kdusb.dll - Ok

C:\Windows\system32\kerberos.dll - Ok

C:\Windows\system32\kernel32.dll - Ok

C:\Windows\system32\kernelceip.dll - Ok

C:\Windows\system32\KernelBase.dll - Ok

C:\Windows\system32\keyboard.drv - Ok

C:\Windows\system32\KEY01.SYS - Ok

C:\Windows\system32\keyiso.dll - Ok

C:\Windows\system32\KEYBOARD.SYS - Ok

>C:\Windows\system32\klist.exe - packed by FLY-CODE

C:\Windows\system32\keymgr.dll - Ok

C:\Windows\system32\klist.exe - Ok

C:\Windows\system32\KMSVC.DLL - Ok

C:\Windows\system32\kmddsp.tsp - Ok

C:\Windows\system32\korean.uce - Ok

C:\Windows\system32\korwbrkr.lex - Ok

C:\Windows\system32\krnl386.exe - Ok

C:\Windows\system32\korwbrkr.dll - Ok

C:\Windows\system32\ksproxy.ax - Ok

C:\Windows\system32\ksetup.exe - Ok

C:\Windows\system32\ksuser.dll - Ok

C:\Windows\system32\kstvtune.ax - Ok

C:\Windows\system32\Kswdmcap.ax - Ok

C:\Windows\system32\ktmutil.exe - Ok

C:\Windows\system32\ksxbar.ax - Ok

C:\Windows\system32\ktmw32.dll - Ok

C:\Windows\system32\l2gpstore.dll - Ok

C:\Windows\system32\l2nacp.dll - Ok

C:\Windows\system32\l3codeca.acm - Ok

C:\Windows\system32\L2SecHC.dll - Ok

>C:\Windows\system32\label.exe - packed by FLY-CODE

C:\Windows\system32\l3codecp.acm - Ok

C:\Windows\system32\label.exe - Ok

C:\Windows\system32\LangCleanupSysprepAction.dll - Ok

C:\Windows\system32\LAPRXY.DLL - Ok

C:\Windows\system32\lanman.drv - Ok

C:\Windows\system32\lcptr.tbl - Ok

C:\Windows\system32\lcphrase.tbl - Ok

C:\Windows\system32\licmgr10.dll - Ok

C:\Windows\system32\linkinfo.dll - Ok

C:\Windows\system32\ListSvc.dll - Ok

C:\Windows\system32\LIVESSP.DLL - Ok

C:\Windows\system32\license.rtf - Ok

C:\Windows\system32\lltdapi.dll - Ok

C:\Windows\system32\lltdsvc.dll - Ok

C:\Windows\system32\lmhsvc.dll - Ok

C:\Windows\system32\lltdres.dll - Ok

C:\Windows\system32\LOADFIX.COM - Ok

C:\Windows\system32\locale.nls - Ok

C:\Windows\system32\loadperf.dll - Ok

C:\Windows\system32\localspl.dll - Ok

C:\Windows\system32\localui.dll - Ok

C:\Windows\system32\LocationApi.dll - Ok

C:\Windows\system32\localsec.dll - Ok

C:\Windows\system32\locationnotificationsview.xml - Ok

C:\Windows\system32\Locator.exe - Ok

C:\Windows\system32\LocationNotifications.exe - Ok

C:\Windows\system32\lodctr.exe - Ok

C:\Windows\system32\loghours.dll - Ok

C:\Windows\system32\logagent.exe - Ok

C:\Windows\system32\logoff.exe - Ok

C:\Windows\system32\logman.exe - Ok

C:\Windows\system32\logoncli.dll - Ok

C:\Windows\system32\lpk.dll - Ok

C:\Windows\system32\LogonUI.exe - Ok

C:\Windows\system32\lpksetupproxyserv.dll - Ok

C:\Windows\system32\lpksetup.exe - Ok

C:\Windows\system32\lpremove.exe - Ok

C:\Windows\system32\lsass.exe - Ok

C:\Windows\system32\lsasrv.dll - Ok

C:\Windows\system32\LSCSHostPolicy.dll - Ok

C:\Windows\system32\lsmproxy.dll - Ok

C:\Windows\system32\luainstall.dll - Ok

C:\Windows\system32\lsm.exe - Ok

C:\Windows\system32\lz32.dll - Ok

C:\Windows\system32\lzexpand.dll - Ok

C:\Windows\system32\lusrmgr.msc - Ok

C:\Windows\system32\l_intl.nls - Ok

C:\Windows\system32\Magnification.dll - Ok

C:\Windows\system32\main.cpl - Ok

>C:\Windows\system32\Magnify.exe is ZLIB container

C:\Windows\system32\Magnify.exe - container

C:\Windows\system32\makecab.exe - Ok

>C:\Windows\system32\manage-bde.wsf is JS-HTML container

C:\Windows\system32\manage-bde.wsf - container

C:\Windows\system32\manage-bde.exe - Ok

C:\Windows\system32\mapi32.dll - Ok

C:\Windows\system32\mapisvc.inf - Ok

C:\Windows\system32\mapistub.dll - Ok

C:\Windows\system32\mcbuilder.exe - Ok

>C:\Windows\system32\MCEWMDRMNDBootstrap.dll - packed by FLY-CODE

C:\Windows\system32\mblctr.exe - Ok

C:\Windows\system32\MCEWMDRMNDBootstrap.dll - Ok

C:\Windows\system32\mciavi.drv - Ok

C:\Windows\system32\mciavi32.dll - Ok

C:\Windows\system32\mciqtz32.dll - Ok

C:\Windows\system32\mcicda.dll - Ok

C:\Windows\system32\mciseq.drv - Ok

>C:\Windows\system32\mciseq.dll - packed by FLY-CODE

C:\Windows\system32\mciwave.dll - Ok

C:\Windows\system32\mciwave.drv - Ok

C:\Windows\system32\mciseq.dll - Ok

C:\Windows\system32\mcsrchPH.dll - Ok

C:\Windows\system32\mctadmin.exe - Ok

C:\Windows\system32\mctres.dll - Ok

C:\Windows\system32\mcupdate_AuthenticAMD.dll - Ok

C:\Windows\system32\mcmde.dll - Ok

C:\Windows\system32\Mcx2Svc.dll - Ok

C:\Windows\system32\mcupdate_GenuineIntel.dll - Ok

C:\Windows\system32\McxDriv.dll - Ok

C:\Windows\system32\MdRes.exe - Ok

>C:\Windows\system32\mdminst.dll - packed by FLY-CODE

C:\Windows\system32\MdSched.exe - Ok

C:\Windows\system32\mdminst.dll - Ok

>C:\Windows\system32\mem.exe - packed by EXEPACK

C:\Windows\system32\mem.exe - Ok

C:\Windows\system32\memdiag.dll - Ok

C:\Windows\system32\MediaMetadataHandler.dll - Ok

C:\Windows\system32\mf3216.dll - Ok

C:\Windows\system32\mfAACEnc.dll - Ok

C:\Windows\system32\mf.dll - Ok

C:\Windows\system32\mfc100chs.dll - Ok

C:\Windows\system32\mfc100cht.dll - Ok

C:\Windows\system32\mfc100deu.dll - Ok

C:\Windows\system32\mfc100enu.dll - Ok

C:\Windows\system32\mfc100esn.dll - Ok

C:\Windows\system32\mfc100fra.dll - Ok

C:\Windows\system32\mfc100ita.dll - Ok

C:\Windows\system32\mfc100jpn.dll - Ok

C:\Windows\system32\mfc100kor.dll - Ok

C:\Windows\system32\mfc100rus.dll - Ok

>C:\Windows\system32\mfc100.dll is ZLIB container

C:\Windows\system32\mfc100.dll - container

>C:\Windows\system32\mfc100u.dll is ZLIB container

C:\Windows\system32\mfc100u.dll - container

C:\Windows\system32\mfc40.dll - Ok

C:\Windows\system32\mfc40u.dll - Ok

C:\Windows\system32\mfc42loc.dll - Ok

C:\Windows\system32\mfc42.dll - Ok

C:\Windows\system32\mfc71.dll - Ok

C:\Windows\system32\mfc42u.dll - Ok

C:\Windows\system32\MFC71CHS.DLL - Ok

C:\Windows\system32\MFC71CHT.DLL - Ok

C:\Windows\system32\MFC71DEU.DLL - Ok

C:\Windows\system32\MFC71ENU.DLL - Ok

C:\Windows\system32\MFC71ESP.DLL - Ok

C:\Windows\system32\MFC71FRA.DLL - Ok

C:\Windows\system32\MFC71ITA.DLL - Ok

C:\Windows\system32\MFC71JPN.DLL - Ok

C:\Windows\system32\MFC71KOR.DLL - Ok

C:\Windows\system32\mfcm100.dll - Ok

C:\Windows\system32\mfcm100u.dll - Ok

C:\Windows\system32\mfcsubs.dll - Ok

C:\Windows\system32\mfc71u.dll - Ok

C:\Windows\system32\mfdvdec.dll - Ok

C:\Windows\system32\mfds.dll - Ok

C:\Windows\system32\mferror.dll - Ok

C:\Windows\system32\mfmjpegdec.dll - Ok

>C:\Windows\system32\mfplat.dll - packed by FLY-CODE

C:\Windows\system32\mfh264enc.dll - Ok

C:\Windows\system32\mfplat.dll - Ok

C:\Windows\system32\MFPlay.dll - Ok

C:\Windows\system32\mfpmp.exe - Ok

C:\Windows\system32\mfps.dll - Ok

C:\Windows\system32\mfvdsp.dll - Ok

C:\Windows\system32\mfreadwrite.dll - Ok

C:\Windows\system32\mgmtapi.dll - Ok

C:\Windows\system32\microsoft-windows-hal-events.dll - Ok

C:\Windows\system32\microsoft-windows-kernel-power-events.dll - Ok

C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll - Ok

C:\Windows\system32\midimap.dll - Ok

C:\Windows\system32\MigAutoPlay.exe - Ok

C:\Windows\system32\migisol.dll - Ok

C:\Windows\system32\MFWMAAEC.DLL - Ok

C:\Windows\system32\migwiz.lnk - Ok

C:\Windows\system32\mimefilt.dll - Ok

C:\Windows\system32\miguiresource.dll - Ok

C:\Windows\system32\mlang.dat - Ok

C:\Windows\system32\mlang.dll - Ok

C:\Windows\system32\mmcbase.dll - Ok

C:\Windows\system32\mmci.dll - Ok

C:\Windows\system32\mmcico.dll - Ok

C:\Windows\system32\mmc.exe - Ok

C:\Windows\system32\mmcshext.dll - Ok

C:\Windows\system32\mmcss.dll - Ok

C:\Windows\system32\MMDevAPI.dll - Ok

C:\Windows\system32\mmcndmgr.dll - Ok

C:\Windows\system32\mmsys.cpl - Ok

C:\Windows\system32\MMSYSTEM.DLL - Ok

C:\Windows\system32\mmtask.tsk - Ok

>C:\Windows\system32\mobsync.exe - packed by FLY-CODE

C:\Windows\system32\mobsync.exe - Ok

C:\Windows\system32\mode.com - Ok

C:\Windows\system32\modemui.dll - Ok

C:\Windows\system32\montr_ci.dll - Ok

C:\Windows\system32\more.com - Ok

C:\Windows\system32\moricons.dll - Ok

C:\Windows\system32\mountvol.exe - Ok

C:\Windows\system32\mouse.drv - Ok

C:\Windows\system32\MP3DMOD.DLL - Ok

C:\Windows\system32\MP43DECD.DLL - Ok

C:\Windows\system32\MP4SDECD.DLL - Ok

C:\Windows\system32\Mpeg2Data.ax - Ok

C:\Windows\system32\mpg2splt.ax - Ok

C:\Windows\system32\MPG4DECD.DLL - Ok

>C:\Windows\system32\mpnotify.exe - packed by FLY-CODE

C:\Windows\system32\mpnotify.exe - Ok

C:\Windows\system32\mpr.dll - Ok

C:\Windows\system32\mprapi.dll - Ok

C:\Windows\system32\mprddm.dll - Ok

C:\Windows\system32\mprdim.dll - Ok

C:\Windows\system32\mprmsg.dll - Ok

C:\Windows\system32\MpSigStub.exe - Ok

C:\Windows\system32\MPSSVC.dll - Ok

C:\Windows\system32\MRINFO.EXE - Ok

C:\Windows\system32\mmres.dll - Ok

C:\Windows\system32\msaatext.dll - Ok

C:\Windows\system32\MSAC3ENC.DLL - Ok

C:\Windows\system32\msacm.dll - Ok

C:\Windows\system32\msacm32.dll - Ok

C:\Windows\system32\msacm32.drv - Ok

C:\Windows\system32\msadp32.acm - Ok

C:\Windows\system32\msafd.dll - Ok

C:\Windows\system32\msasn1.dll - Ok

C:\Windows\system32\msaudite.dll - Ok

C:\Windows\system32\mscandui.dll - Ok

C:\Windows\system32\mscat32.dll - Ok

C:\Windows\system32\mscdexnt.exe - Ok

C:\Windows\system32\mschrt20.ocx - Ok

C:\Windows\system32\msclmd.dll - Ok

C:\Windows\system32\mscms.dll - Ok

C:\Windows\system32\mscomct2.ocx - Ok

>C:\Windows\system32\MRT.exe is BINARYRES container

C:\Windows\system32\MSCOMCTL.OCX - Ok

C:\Windows\system32\msconfig.exe - Ok

C:\Windows\system32\mscoree.dll - Ok

C:\Windows\system32\mscorier.dll - Ok

C:\Windows\system32\mscories.dll - Ok

C:\Windows\system32\mscpx32r.dLL - Ok

>C:\Windows\system32\mscpxl32.dLL - packed by FLY-CODE

C:\Windows\system32\mscpxl32.dLL - Ok

C:\Windows\system32\msctf.dll - Ok

C:\Windows\system32\msctfime.ime - Ok

C:\Windows\system32\MsCtfMonitor.dll - Ok

C:\Windows\system32\msctfp.dll - Ok

C:\Windows\system32\msctfui.dll - Ok

C:\Windows\system32\msdadiag.dll - Ok

C:\Windows\system32\msdart.dll - Ok

C:\Windows\system32\msdatsrc.tlb - Ok

C:\Windows\system32\msdelta.dll - Ok

C:\Windows\system32\msdmo.dll - Ok

C:\Windows\system32\msdri.dll - Ok

C:\Windows\system32\msdrm.dll - Ok

>>C:\Windows\system32\MRT.exe\data001 is BINARYRES container

C:\Windows\system32\msdt.exe - Ok

C:\Windows\system32\msdtc.exe - Ok

C:\Windows\system32\msdtckrm.dll - Ok

C:\Windows\system32\msdtclog.dll - Ok

C:\Windows\system32\msdtcprx.dll - Ok

C:\Windows\system32\msdtctm.dll - Ok

C:\Windows\system32\msdtcuiu.dll - Ok

C:\Windows\system32\msdtcVSp1res.dll - Ok

C:\Windows\system32\MSDvbNP.ax - Ok

C:\Windows\system32\msdxm.ocx - Ok

C:\Windows\system32\msdxm.tlb - Ok

C:\Windows\system32\msexch40.dll - Ok

C:\Windows\system32\msexcl40.dll - Ok

C:\Windows\system32\msfeeds.dll - Ok

C:\Windows\system32\msfeedsbs.dll - Ok

C:\Windows\system32\msfeedssync.exe - Ok

C:\Windows\system32\msflxgrd.ocx - Ok

C:\Windows\system32\msftedit.dll - Ok

C:\Windows\system32\msg.exe - Ok

C:\Windows\system32\msg711.acm - Ok

C:\Windows\system32\msgsm32.acm - Ok

C:\Windows\system32\mshta.exe - Ok

C:\Windows\system32\mshtml(14).tlb - Ok

C:\Windows\system32\mshtml.dll - Ok

C:\Windows\system32\mshtml.tlb - Ok

C:\Windows\system32\mshtmled.dll - Ok

C:\Windows\system32\mshtmler.dll - Ok

C:\Windows\system32\msi.dll - Ok

C:\Windows\system32\MsiCofire.dll - Ok

C:\Windows\system32\msidcrl30.dll - Ok

C:\Windows\system32\msident.dll - Ok

C:\Windows\system32\msidle.dll - Ok

C:\Windows\system32\msidntld.dll - Ok

C:\Windows\system32\msieftp.dll - Ok

C:\Windows\system32\msiexec.exe - Ok

C:\Windows\system32\msihnd.dll - Ok

C:\Windows\system32\msiltcfg.dll - Ok

>C:\Windows\system32\msimg32.dll - packed by FLY-CODE

C:\Windows\system32\msimg32.dll - Ok

C:\Windows\system32\msimsg.dll - Ok

C:\Windows\system32\msimtf.dll - Ok

C:\Windows\system32\msinfo32.exe - Ok

C:\Windows\system32\msisip.dll - Ok

C:\Windows\system32\msjet40.dll - Ok

C:\Windows\system32\msjetoledb40.dll - Ok

C:\Windows\system32\msjint40.dll - Ok

C:\Windows\system32\msjter40.dll - Ok

C:\Windows\system32\msjtes40.dll - Ok

C:\Windows\system32\msls31.dll - Ok

C:\Windows\system32\msltus40.dll - Ok

C:\Windows\system32\msmmsp.dll - Ok

C:\Windows\system32\msmpeg2adec.dll - Ok

C:\Windows\system32\MSMPEG2ENC.DLL - Ok

C:\Windows\system32\msmpeg2vdec.dll - Ok

>C:\Windows\system32\msnetobj.dll - packed by FLY-CODE

C:\Windows\system32\msnetobj.dll - Ok

C:\Windows\system32\MSNP.ax - Ok

C:\Windows\system32\msobjs.dll - Ok

C:\Windows\system32\msoeacct.dll - Ok

C:\Windows\system32\msoert2.dll - Ok

C:\Windows\system32\msonpmon.dll - Ok

C:\Windows\system32\msorc32r.dll - Ok

C:\Windows\system32\msorcl32.dll - Ok

C:\Windows\system32\mspaint.exe - Ok

>C:\Windows\system32\mspatcha.dll - packed by FLY-CODE

C:\Windows\system32\mspatcha.dll - Ok

C:\Windows\system32\mspbda.dll - Ok

C:\Windows\system32\MsPbdaCoInst.dll - Ok

C:\Windows\system32\mspbde40.dll - Ok

C:\Windows\system32\msports.dll - Ok

C:\Windows\system32\msprivs.dll - Ok

C:\Windows\system32\msra.exe - Ok

C:\Windows\system32\msrahc.dll - Ok

C:\Windows\system32\MsraLegacy.tlb - Ok

C:\Windows\system32\msrating.dll - Ok

C:\Windows\system32\msrd2x40.dll - Ok

C:\Windows\system32\msrd3x40.dll - Ok

C:\Windows\system32\msrdc.dll - Ok

C:\Windows\system32\msrdo20.dll - Ok

>C:\Windows\system32\MsRdpWebAccess.dll - packed by FLY-CODE

C:\Windows\system32\MsRdpWebAccess.dll - Ok

C:\Windows\system32\msrepl40.dll - Ok

C:\Windows\system32\msrle32.dll - Ok

C:\Windows\system32\msscntrs.dll - Ok

>C:\Windows\system32\msscp.dll - packed by FLY-CODE

C:\Windows\system32\msscp.dll - Ok

C:\Windows\system32\msscript.ocx - Ok

C:\Windows\system32\mssha.dll - Ok

C:\Windows\system32\msshavmsg.dll - Ok

C:\Windows\system32\msshooks.dll - Ok

C:\Windows\system32\mssign32.dll - Ok

C:\Windows\system32\mssip32.dll - Ok

C:\Windows\system32\mssitlb.dll - Ok

C:\Windows\system32\mssph.dll - Ok

C:\Windows\system32\mssphtb.dll - Ok

C:\Windows\system32\mssprxy.dll - Ok

C:\Windows\system32\mssrch.dll - Ok

C:\Windows\system32\MSSTDFMT.DLL - Ok

C:\Windows\system32\msstkprp.dll - Ok

C:\Windows\system32\mssvp.dll - Ok

C:\Windows\system32\msswch.dll - Ok

C:\Windows\system32\mstask.dll - Ok

C:\Windows\system32\mstext40.dll - Ok

C:\Windows\system32\mstime.dll - Ok

C:\Windows\system32\mstsc.exe - Ok

C:\Windows\system32\mstscax.dll - Ok

C:\Windows\system32\msutb.dll - Ok

C:\Windows\system32\msv1_0.dll - Ok

C:\Windows\system32\msvbvm60.dll - Ok

C:\Windows\system32\msvcirt.dll - Ok

C:\Windows\system32\msvcp100.dll - Ok

C:\Windows\system32\msvcp60.dll - Ok

C:\Windows\system32\msvcp71.dll - Ok

C:\Windows\system32\msvcr100.dll - Ok

C:\Windows\system32\msvcr71.dll - Ok

C:\Windows\system32\msvcrt.dll - Ok

C:\Windows\system32\msvcrt20.dll - Ok

C:\Windows\system32\msvcrt40.dll - Ok

C:\Windows\system32\msvfw32.dll - Ok

C:\Windows\system32\msvidc32.dll - Ok

C:\Windows\system32\MSVidCtl.dll - Ok

C:\Windows\system32\msvideo.dll - Ok

C:\Windows\system32\mswdat10.dll - Ok

C:\Windows\system32\mswmdm.dll - Ok

C:\Windows\system32\mswsock.dll - Ok

C:\Windows\system32\mswstr10.dll - Ok

C:\Windows\system32\msxbde40.dll - Ok

C:\Windows\system32\msxml3.dll - Ok

C:\Windows\system32\msxml3r.dll - Ok

C:\Windows\system32\msxml4.dll - Ok

C:\Windows\system32\msxml4r.dll - Ok

C:\Windows\system32\MRT.exe - container

C:\Windows\system32\msxml6r.dll - Ok

C:\Windows\system32\msyuv.dll - Ok

C:\Windows\system32\mtstocom.exe - Ok

C:\Windows\system32\msxml6.dll - Ok

C:\Windows\system32\mtxclu.dll - Ok

C:\Windows\system32\mtxdm.dll - Ok

C:\Windows\system32\mtxex.dll - Ok

C:\Windows\system32\mtxlegih.dll - Ok

C:\Windows\system32\muifontsetup.dll - Ok

C:\Windows\system32\MUILanguageCleanup.dll - Ok

C:\Windows\system32\mtxoci.dll - Ok

C:\Windows\system32\MultiDigiMon.exe - Ok

C:\Windows\system32\MuiUnattend.exe - Ok

C:\Windows\system32\mydocs.dll - Ok

C:\Windows\system32\mycomput.dll - Ok

C:\Windows\system32\NAPCLCFG.MSC - Ok

C:\Windows\system32\NAPCRYPT.DLL - Ok

C:\Windows\system32\Mystify.scr - Ok

C:\Windows\system32\napdsnap.dll - Ok

C:\Windows\system32\NapiNSP.dll - Ok

C:\Windows\system32\NAPHLPR.DLL - Ok

C:\Windows\system32\napipsec.dll - Ok

C:\Windows\system32\NAPMONTR.DLL - Ok

C:\Windows\system32\NAPSTAT.EXE - Ok

C:\Windows\system32\NativeHooks.dll - Ok

C:\Windows\system32\NaturalLanguage6.dll - Ok

>C:\Windows\system32\nbtstat.exe - packed by FLY-CODE

C:\Windows\system32\nbtstat.exe - Ok

C:\Windows\system32\Narrator.exe - Ok

C:\Windows\system32\nci.dll - Ok

C:\Windows\system32\ncobjapi.dll - Ok

C:\Windows\system32\NcdProp.dll - Ok

C:\Windows\system32\ncrypt.dll - Ok

Link to post
Share on other sites

>C:\Windows\system32\ncryptui.dll - packed by FLY-CODE

C:\Windows\system32\ncpa.cpl - Ok

C:\Windows\system32\ncryptui.dll - Ok

C:\Windows\system32\ncsi.dll - Ok

C:\Windows\system32\nddeapi.dll - Ok

>C:\Windows\system32\ndadmin.exe - packed by FLY-CODE

C:\Windows\system32\ndadmin.exe - Ok

C:\Windows\system32\ndfapi.dll - Ok

C:\Windows\system32\NdfEventView.xml - Ok

C:\Windows\system32\ndfetw.dll - Ok

C:\Windows\system32\ndiscapCfg.dll - Ok

C:\Windows\system32\ndfhcdiscovery.dll - Ok

C:\Windows\system32\ndproxystub.dll - Ok

C:\Windows\system32\ndishc.dll - Ok

C:\Windows\system32\ndptsp.tsp - Ok

C:\Windows\system32\negoexts.dll - Ok

C:\Windows\system32\net.exe - Ok

C:\Windows\system32\netapi.dll - Ok

C:\Windows\system32\net1.exe - Ok

C:\Windows\system32\netapi32.dll - Ok

C:\Windows\system32\netbios.dll - Ok

C:\Windows\system32\netbtugc.exe - Ok

C:\Windows\system32\netcfg.exe - Ok

C:\Windows\system32\netcfgx.dll - Ok

C:\Windows\system32\netcorehc.dll - Ok

C:\Windows\system32\netdiagfx.dll - Ok

C:\Windows\system32\netevent.dll - Ok

C:\Windows\system32\netfxperf.dll - Ok

C:\Windows\system32\neth.dll - Ok

C:\Windows\system32\netid.dll - Ok

C:\Windows\system32\netiohlp.dll - Ok

C:\Windows\system32\netiougc.exe - Ok

C:\Windows\system32\netjoin.dll - Ok

C:\Windows\system32\netcenter.dll - Ok

C:\Windows\system32\netlogon.dll - Ok

C:\Windows\system32\netmsg.dll - Ok

C:\Windows\system32\netman.dll - Ok

C:\Windows\system32\netplwiz.dll - Ok

C:\Windows\system32\Netplwiz.exe - Ok

C:\Windows\system32\netprof.dll - Ok

C:\Windows\system32\netprofm.dll - Ok

C:\Windows\system32\NetProj.exe - Ok

C:\Windows\system32\netsh.exe - Ok

C:\Windows\system32\netshell.dll - Ok

C:\Windows\system32\NETSTAT.EXE - Ok

C:\Windows\system32\NetProjW.dll - Ok

C:\Windows\system32\NetTrace.PLA.Diagnostics.xml - Ok

>C:\Windows\system32\netutils.dll - packed by FLY-CODE

C:\Windows\system32\nettrace.dll - Ok

C:\Windows\system32\netutils.dll - Ok

C:\Windows\system32\networkitemfactory.dll - Ok

C:\Windows\system32\networkexplorer.dll - Ok

C:\Windows\system32\newdev.dll - Ok

C:\Windows\system32\newdev.exe - Ok

C:\Windows\system32\nlaapi.dll - Ok

C:\Windows\system32\nlahc.dll - Ok

C:\Windows\system32\nlasvc.dll - Ok

C:\Windows\system32\nlhtml.dll - Ok

C:\Windows\system32\nlmgp.dll - Ok

C:\Windows\system32\nlmsprep.dll - Ok

C:\Windows\system32\nlsbres.dll - Ok

C:\Windows\system32\NlsData0000.dll - Ok

C:\Windows\system32\networkmap.dll - Ok

C:\Windows\system32\NlsData0002.dll - Ok

C:\Windows\system32\NlsData0001.dll - Ok

C:\Windows\system32\NlsData0003.dll - Ok

C:\Windows\system32\NlsData0009.dll - Ok

C:\Windows\system32\NlsData0007.dll - Ok

C:\Windows\system32\NlsData000c.dll - Ok

C:\Windows\system32\NlsData000d.dll - Ok

C:\Windows\system32\NlsData000f.dll - Ok

C:\Windows\system32\NlsData000a.dll - Ok

C:\Windows\system32\NlsData0010.dll - Ok

C:\Windows\system32\NlsData0011.dll - Ok

C:\Windows\system32\NlsData0018.dll - Ok

C:\Windows\system32\NlsData0013.dll - Ok

C:\Windows\system32\NlsData001a.dll - Ok

C:\Windows\system32\NlsData0019.dll - Ok

C:\Windows\system32\NlsData001b.dll - Ok

C:\Windows\system32\NlsData0020.dll - Ok

C:\Windows\system32\NlsData001d.dll - Ok

C:\Windows\system32\NlsData0021.dll - Ok

C:\Windows\system32\NlsData0022.dll - Ok

C:\Windows\system32\NlsData0024.dll - Ok

C:\Windows\system32\NlsData0026.dll - Ok

C:\Windows\system32\NlsData0027.dll - Ok

C:\Windows\system32\NlsData002a.dll - Ok

C:\Windows\system32\NlsData003e.dll - Ok

C:\Windows\system32\NlsData0039.dll - Ok

C:\Windows\system32\NlsData0045.dll - Ok

C:\Windows\system32\NlsData0046.dll - Ok

C:\Windows\system32\NlsData0047.dll - Ok

C:\Windows\system32\NlsData0049.dll - Ok

C:\Windows\system32\NlsData004a.dll - Ok

C:\Windows\system32\NlsData004b.dll - Ok

C:\Windows\system32\NlsData004c.dll - Ok

C:\Windows\system32\NlsData004e.dll - Ok

C:\Windows\system32\NlsData0414.dll - Ok

C:\Windows\system32\NlsData0416.dll - Ok

C:\Windows\system32\NlsData081a.dll - Ok

C:\Windows\system32\NlsData0816.dll - Ok

C:\Windows\system32\Nlsdl.dll - Ok

>C:\Windows\system32\nlsfunc.exe - packed by EXEPACK

C:\Windows\system32\nlsfunc.exe - Ok

C:\Windows\system32\NlsData0c1a.dll - Ok

C:\Windows\system32\NlsLexicons0002.dll - Ok

C:\Windows\system32\NlsLexicons0003.dll - Ok

C:\Windows\system32\NlsLexicons0001.dll - Ok

C:\Windows\system32\NlsLexicons0009.dll - Ok

C:\Windows\system32\NlsLexicons0007.dll - Ok

C:\Windows\system32\NlsLexicons000a.dll - Ok

C:\Windows\system32\NlsLexicons000c.dll - Ok

C:\Windows\system32\NlsLexicons000d.dll - Ok

C:\Windows\system32\NlsLexicons000f.dll - Ok

C:\Windows\system32\NlsLexicons0010.dll - Ok

C:\Windows\system32\NlsLexicons0011.dll - Ok

C:\Windows\system32\NlsLexicons0013.dll - Ok

C:\Windows\system32\NlsLexicons0018.dll - Ok

C:\Windows\system32\NlsLexicons0019.dll - Ok

C:\Windows\system32\NlsLexicons001a.dll - Ok

C:\Windows\system32\NlsLexicons001b.dll - Ok

C:\Windows\system32\NlsLexicons001d.dll - Ok

C:\Windows\system32\NlsLexicons0020.dll - Ok

C:\Windows\system32\NlsLexicons0021.dll - Ok

C:\Windows\system32\NlsLexicons0022.dll - Ok

C:\Windows\system32\NlsLexicons0024.dll - Ok

C:\Windows\system32\NlsLexicons0026.dll - Ok

C:\Windows\system32\NlsLexicons002a.dll - Ok

C:\Windows\system32\NlsLexicons0039.dll - Ok

C:\Windows\system32\NlsLexicons0027.dll - Ok

C:\Windows\system32\NlsLexicons003e.dll - Ok

C:\Windows\system32\NlsLexicons0045.dll - Ok

C:\Windows\system32\NlsLexicons0047.dll - Ok

C:\Windows\system32\NlsLexicons0046.dll - Ok

C:\Windows\system32\NlsLexicons0049.dll - Ok

C:\Windows\system32\NlsLexicons004b.dll - Ok

C:\Windows\system32\NlsLexicons004a.dll - Ok

C:\Windows\system32\NlsLexicons004e.dll - Ok

C:\Windows\system32\NlsLexicons004c.dll - Ok

C:\Windows\system32\NlsLexicons0414.dll - Ok

C:\Windows\system32\NlsLexicons0416.dll - Ok

C:\Windows\system32\NlsLexicons0816.dll - Ok

C:\Windows\system32\NlsLexicons081a.dll - Ok

C:\Windows\system32\NlsLexicons0c1a.dll - Ok

C:\Windows\system32\nltest.exe - Ok

C:\Windows\system32\NOISE.CHS - Ok

C:\Windows\system32\NOISE.CHT - Ok

C:\Windows\system32\NOISE.DAT - Ok

C:\Windows\system32\noise.jpn - Ok

C:\Windows\system32\noise.kor - Ok

C:\Windows\system32\NOISE.THA - Ok

C:\Windows\system32\normaliz.dll - Ok

C:\Windows\system32\normidna.nls - Ok

C:\Windows\system32\normnfc.nls - Ok

C:\Windows\system32\normnfd.nls - Ok

C:\Windows\system32\normnfkc.nls - Ok

C:\Windows\system32\normnfkd.nls - Ok

C:\Windows\system32\notepad.exe - Ok

C:\Windows\system32\npmproxy.dll - Ok

C:\Windows\system32\nrpsrv.dll - Ok

C:\Windows\system32\nshhttp.dll - Ok

C:\Windows\system32\nshipsec.dll - Ok

C:\Windows\system32\NlsModels0011.dll - Ok

>C:\Windows\system32\nsi.dll - packed by FLY-CODE

C:\Windows\system32\nsi.dll - Ok

C:\Windows\system32\nsisvc.dll - Ok

C:\Windows\system32\nslookup.exe - Ok

C:\Windows\system32\nshwfp.dll - Ok

C:\Windows\system32\NTDOS.SYS - Ok

C:\Windows\system32\NTDOS404.SYS - Ok

C:\Windows\system32\NTDOS411.SYS - Ok

C:\Windows\system32\NTDOS412.SYS - Ok

C:\Windows\system32\NTDOS804.SYS - Ok

C:\Windows\system32\ntdsapi.dll - Ok

C:\Windows\system32\NTIO.SYS - Ok

C:\Windows\system32\NTIO404.SYS - Ok

C:\Windows\system32\NTIO411.SYS - Ok

C:\Windows\system32\NTIO412.SYS - Ok

C:\Windows\system32\NTIO804.SYS - Ok

C:\Windows\system32\ntdll.dll - Ok

C:\Windows\system32\ntlanman.dll - Ok

>C:\Windows\system32\ntlanui2.dll - packed by FLY-CODE

C:\Windows\system32\ntlanui2.dll - Ok

C:\Windows\system32\ntmarta.dll - Ok

C:\Windows\system32\ntkrnlpa.exe - Ok

C:\Windows\system32\ntprint.dll - Ok

C:\Windows\system32\ntprint.exe - Ok

C:\Windows\system32\ntoskrnl.exe - Ok

C:\Windows\system32\ntshrui.dll - Ok

C:\Windows\system32\ntvdmd.dll - Ok

C:\Windows\system32\ntvdm.exe - Ok

C:\Windows\system32\occache.dll - Ok

C:\Windows\system32\objsel.dll - Ok

C:\Windows\system32\ocsetapi.dll - Ok

C:\Windows\system32\odbc16gt.dll - Ok

C:\Windows\system32\ocsetup.exe - Ok

C:\Windows\system32\odbc32gt.dll - Ok

C:\Windows\system32\odbcad32.exe - Ok

C:\Windows\system32\odbcbcp.dll - Ok

C:\Windows\system32\odbc32.dll - Ok

C:\Windows\system32\odbcconf.dll - Ok

C:\Windows\system32\odbcconf.rsp - Ok

C:\Windows\system32\odbcconf.exe - Ok

C:\Windows\system32\odbccr32.dll - Ok

C:\Windows\system32\odbccp32.dll - Ok

C:\Windows\system32\odbccu32.dll - Ok

C:\Windows\system32\odbcji32.dll - Ok

C:\Windows\system32\odbcint.dll - Ok

C:\Windows\system32\odbctrac.dll - Ok

C:\Windows\system32\oddbse32.dll - Ok

C:\Windows\system32\odbcjt32.dll - Ok

C:\Windows\system32\odexl32.dll - Ok

C:\Windows\system32\odfox32.dll - Ok

C:\Windows\system32\odpdx32.dll - Ok

C:\Windows\system32\odtext32.dll - Ok

>C:\Windows\system32\oflc.rs is ZLIB container

C:\Windows\system32\oflc.rs - container

C:\Windows\system32\offfilt.dll - Ok

C:\Windows\system32\OGAAddin.dll - Ok

C:\Windows\system32\OGACheckControl.dll - Ok

C:\Windows\system32\OGAEXEC.exe - Ok

C:\Windows\system32\ole2.dll - Ok

C:\Windows\system32\ole2disp.dll - Ok

C:\Windows\system32\ole2nls.dll - Ok

C:\Windows\system32\ogldrv.dll - Ok

C:\Windows\system32\oleacc.dll - Ok

C:\Windows\system32\oleacchooks.dll - Ok

C:\Windows\system32\oleaccrc.dll - Ok

>C:\Windows\system32\ole32.dll is BINARYRES container

C:\Windows\system32\ole32.dll - container

C:\Windows\system32\olecli.dll - Ok

C:\Windows\system32\olecli32.dll - Ok

C:\Windows\system32\oleaut32.dll - Ok

C:\Windows\system32\oledlg.dll - Ok

C:\Windows\system32\oleprn.dll - Ok

C:\Windows\system32\olepro32.dll - Ok

C:\Windows\system32\OLESVR.DLL - Ok

C:\Windows\system32\olesvr32.dll - Ok

C:\Windows\system32\oleres.dll - Ok

C:\Windows\system32\olethk32.dll - Ok

C:\Windows\system32\onex.dll - Ok

C:\Windows\system32\OnLineIDCpl.dll - Ok

C:\Windows\system32\onlinesetup.cmd - Ok

C:\Windows\system32\onexui.dll - Ok

C:\Windows\system32\OobeFldr.dll - Ok

C:\Windows\system32\openfiles.exe - Ok

C:\Windows\system32\opengl32.dll - Ok

C:\Windows\system32\OptionalFeatures.exe - Ok

C:\Windows\system32\osbaseln.dll - Ok

C:\Windows\system32\OpcServices.dll - Ok

C:\Windows\system32\osuninst.dll - Ok

C:\Windows\system32\P2P.dll - Ok

C:\Windows\system32\osk.exe - Ok

C:\Windows\system32\p2pcollab.dll - Ok

C:\Windows\system32\P2PGraph.dll - Ok

C:\Windows\system32\p2phost.exe - Ok

C:\Windows\system32\p2pnetsh.dll - Ok

C:\Windows\system32\packager.dll - Ok

C:\Windows\system32\panmap.dll - Ok

C:\Windows\system32\p2psvc.dll - Ok

>C:\Windows\system32\PATHPING.EXE - packed by FLY-CODE

C:\Windows\system32\pautoenr.dll - Ok

C:\Windows\system32\pcadm.dll - Ok

C:\Windows\system32\PATHPING.EXE - Ok

C:\Windows\system32\pcaevts.dll - Ok

C:\Windows\system32\pcasvc.dll - Ok

C:\Windows\system32\pcalua.exe - Ok

C:\Windows\system32\pcaui.dll - Ok

C:\Windows\system32\pcawrk.exe - Ok

C:\Windows\system32\pcl.sep - Ok

C:\Windows\system32\pcaui.exe - Ok

C:\Windows\system32\pcwrun.exe - Ok

C:\Windows\system32\pcwum.dll - Ok

>C:\Windows\system32\pcwutl.dll - packed by FLY-CODE

C:\Windows\system32\pcwutl.dll - Ok

C:\Windows\system32\pdf995mon.dll - Ok

C:\Windows\system32\pdh.dll - Ok

C:\Windows\system32\pdhui.dll - Ok

C:\Windows\system32\pdfmona.dll - Ok

C:\Windows\system32\PeerDist.dll - Ok

C:\Windows\system32\Pdrvinst.dll - Ok

C:\Windows\system32\PeerDistHttpTrans.dll - Ok

C:\Windows\system32\PeerDistSh.dll - Ok

C:\Windows\system32\PeerDistWSDDiscoProv.dll - Ok

>C:\Windows\system32\pegi-fi.rs is ZLIB container

C:\Windows\system32\pegi-fi.rs - container

>C:\Windows\system32\pegi-pt.rs is ZLIB container

C:\Windows\system32\pegi-pt.rs - container

>C:\Windows\system32\pegi.rs is ZLIB container

C:\Windows\system32\pegi.rs - container

C:\Windows\system32\PeerDistSvc.dll - Ok

>C:\Windows\system32\pegibbfc.rs is ZLIB container

C:\Windows\system32\pegibbfc.rs - container

C:\Windows\system32\perfc009.dat - Ok

C:\Windows\system32\PerfCenterCpl.ico - Ok

C:\Windows\system32\perfctrs.dll - Ok

C:\Windows\system32\perfd009.dat - Ok

C:\Windows\system32\perfdisk.dll - Ok

C:\Windows\system32\perfh009.dat - Ok

C:\Windows\system32\perfi009.dat - Ok

C:\Windows\system32\PerfCenterCPL.dll - Ok

C:\Windows\system32\perfmon.msc - Ok

C:\Windows\system32\perfmon.exe - Ok

C:\Windows\system32\perfnet.dll - Ok

C:\Windows\system32\perfos.dll - Ok

C:\Windows\system32\perfproc.dll - Ok

C:\Windows\system32\PerfStringBackup.INI - Ok

C:\Windows\system32\perfts.dll - Ok

C:\Windows\system32\pfdvmn.dll - Ok

C:\Windows\system32\PFUIRT.dll - Ok

C:\Windows\system32\perftrack.dll - Ok

C:\Windows\system32\PFUP60.dll - Ok

C:\Windows\system32\PFURT.dll - Ok

C:\Windows\system32\phon.ime - Ok

C:\Windows\system32\pfusti.dll - Ok

C:\Windows\system32\PhotoMetadataHandler.dll - Ok

C:\Windows\system32\photowiz.dll - Ok

>C:\Windows\system32\PhotoScreensaver.scr is ZLIB container

C:\Windows\system32\PICEntry.dll - Ok

C:\Windows\system32\PhotoScreensaver.scr - container

C:\Windows\system32\PICSDK.ini - Ok

C:\Windows\system32\PICSDK.dll - Ok

C:\Windows\system32\pid.dll - Ok

C:\Windows\system32\PICSDK2.dll - Ok

C:\Windows\system32\pifmgr.dll - Ok

>C:\Windows\system32\PING.EXE - packed by FLY-CODE

C:\Windows\system32\PING.EXE - Ok

C:\Windows\system32\pintlgnt.ime - Ok

C:\Windows\system32\PkgMgr.exe - Ok

>C:\Windows\system32\pidgenx.dll - packed by FLY-CODE

C:\Windows\system32\pku2u.dll - Ok

C:\Windows\system32\pidgenx.dll - Ok

C:\Windows\system32\plasrv.exe - Ok

C:\Windows\system32\PlaySndSrv.dll - Ok

C:\Windows\system32\pla.dll - Ok

C:\Windows\system32\pmcsnap.dll - Ok

C:\Windows\system32\pmspl.dll - Ok

C:\Windows\system32\pndx5016.dll - Ok

C:\Windows\system32\pndx5032.dll - Ok

C:\Windows\system32\pngfilt.dll - Ok

C:\Windows\system32\pncrt.dll - Ok

>C:\Windows\system32\pnpsetup.dll - packed by FLY-CODE

C:\Windows\system32\pnpsetup.dll - Ok

C:\Windows\system32\pnpts.dll - Ok

C:\Windows\system32\pnpui.dll - Ok

C:\Windows\system32\PnPUnattend.exe - Ok

C:\Windows\system32\PnPutil.exe - Ok

C:\Windows\system32\PNPXAssoc.dll - Ok

C:\Windows\system32\PNPXAssocPrx.dll - Ok

C:\Windows\system32\pnrpauto.dll - Ok

C:\Windows\system32\Pnrphc.dll - Ok

C:\Windows\system32\pnrpnsp.dll - Ok

C:\Windows\system32\pnidui.dll - Ok

C:\Windows\system32\pnrpsvc.dll - Ok

C:\Windows\system32\polstore.dll - Ok

C:\Windows\system32\poqexec.exe - Ok

C:\Windows\system32\PortableDeviceClassExtension.dll - Ok

C:\Windows\system32\PortableDeviceConnectApi.dll - Ok

C:\Windows\system32\PortableDeviceApi.dll - Ok

C:\Windows\system32\PortableDeviceStatus.dll - Ok

C:\Windows\system32\PortableDeviceSyncProvider.dll - Ok

C:\Windows\system32\PortableDeviceTypes.dll - Ok

C:\Windows\system32\PortableDeviceWiaCompat.dll - Ok

C:\Windows\system32\pots.dll - Ok

C:\Windows\system32\PortableDeviceWMDRM.dll - Ok

C:\Windows\system32\powercfg.exe - Ok

C:\Windows\system32\powercfg.cpl - Ok

C:\Windows\system32\powrprof.dll - Ok

C:\Windows\system32\ppcsnap.dll - Ok

C:\Windows\system32\powercpl.dll - Ok

C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll - Ok

C:\Windows\system32\PresentationHostProxy.dll - Ok

C:\Windows\system32\PresentationHost.exe - Ok

C:\Windows\system32\PresentationSettings.exe - Ok

C:\Windows\system32\PresentationNative_v0300.dll - Ok

C:\Windows\system32\prflbmsg.dll - Ok

C:\Windows\system32\prevhost.exe - Ok

>C:\Windows\system32\print.exe - packed by FLY-CODE

C:\Windows\system32\print.exe - Ok

C:\Windows\system32\printfilterpipelineprxy.dll - Ok

C:\Windows\system32\PrintBrmUi.exe - Ok

C:\Windows\system32\PrintIsolationHost.exe - Ok

C:\Windows\system32\PrintIsolationProxy.dll - Ok

C:\Windows\system32\printmanagement.msc - Ok

C:\Windows\system32\printfilterpipelinesvc.exe - Ok

C:\Windows\system32\printui.exe - Ok

C:\Windows\system32\prncache.dll - Ok

C:\Windows\system32\prnfldr.dll - Ok

C:\Windows\system32\printui.dll - Ok

C:\Windows\system32\prntvpt.dll - Ok

C:\Windows\system32\prnntfy.dll - Ok

C:\Windows\system32\procinst.dll - Ok

C:\Windows\system32\profapi.dll - Ok

C:\Windows\system32\profprov.dll - Ok

C:\Windows\system32\profsvc.dll - Ok

C:\Windows\system32\proquota.exe - Ok

C:\Windows\system32\provsvc.dll - Ok

C:\Windows\system32\propsys.dll - Ok

C:\Windows\system32\psapi.dll - Ok

C:\Windows\system32\provthrd.dll - Ok

C:\Windows\system32\pscript.sep - Ok

C:\Windows\system32\psbase.dll - Ok

C:\Windows\system32\PSHED.DLL - Ok

C:\Windows\system32\psisrndr.ax - Ok

C:\Windows\system32\psisdecd.dll - Ok

C:\Windows\system32\pstorec.dll - Ok

C:\Windows\system32\pstorsvc.dll - Ok

C:\Windows\system32\psr.exe - Ok

C:\Windows\system32\puiapi.dll - Ok

>C:\Windows\system32\PushPrinterConnections.exe - packed by FLY-CODE

C:\Windows\system32\PushPrinterConnections.exe - Ok

C:\Windows\system32\pwrshplugin.dll - Ok

C:\Windows\system32\puiobj.dll - Ok

C:\Windows\system32\QAGENT.DLL - Ok

C:\Windows\system32\qappsrv.exe - Ok

C:\Windows\system32\QAGENTRT.DLL - Ok

C:\Windows\system32\qasf.dll - Ok

C:\Windows\system32\QCLIPROV.DLL - Ok

C:\Windows\system32\qcap.dll - Ok

C:\Windows\system32\qdv.dll - Ok

C:\Windows\system32\qdvd.dll - Ok

C:\Windows\system32\qedit.dll - Ok

C:\Windows\system32\qintlgnt.ime - Ok

C:\Windows\system32\qedwipes.dll - Ok

C:\Windows\system32\qmgrprxy.dll - Ok

C:\Windows\system32\qprocess.exe - Ok

C:\Windows\system32\QSHVHOST.DLL - Ok

C:\Windows\system32\qmgr.dll - Ok

C:\Windows\system32\QSVRMGMT.DLL - Ok

C:\Windows\system32\Query.dll - Ok

C:\Windows\system32\quartz.dll - Ok

>C:\Windows\system32\query.exe - packed by FLY-CODE

C:\Windows\system32\query.exe - Ok

C:\Windows\system32\quick.ime - Ok

C:\Windows\system32\QuickTime.qts - Ok

C:\Windows\system32\QuickTimeVR.qtx - Ok

C:\Windows\system32\quser.exe - Ok

C:\Windows\system32\QUTIL.DLL - Ok

C:\Windows\system32\qwinsta.exe - Ok

C:\Windows\system32\qwave.dll - Ok

>C:\Windows\system32\racpldlg.dll is ZLIB container

C:\Windows\system32\racpldlg.dll - container

C:\Windows\system32\RacRules.xml - Ok

C:\Windows\system32\radardt.dll - Ok

C:\Windows\system32\radarrs.dll - Ok

C:\Windows\system32\rasadhlp.dll - Ok

C:\Windows\system32\rasapi32.dll - Ok

C:\Windows\system32\rasauto.dll - Ok

C:\Windows\system32\rasautou.exe - Ok

C:\Windows\system32\rascfg.dll - Ok

C:\Windows\system32\RacEngn.dll - Ok

C:\Windows\system32\rasctrnm.h - Ok

C:\Windows\system32\rasctrs.dll - Ok

C:\Windows\system32\rasdiag.dll - Ok

C:\Windows\system32\raschap.dll - Ok

C:\Windows\system32\rasdial.exe - Ok

C:\Windows\system32\raserver.exe - Ok

C:\Windows\system32\rasdlg.dll - Ok

C:\Windows\system32\rasman.dll - Ok

C:\Windows\system32\rasgcw.dll - Ok

C:\Windows\system32\rasmans.dll - Ok

C:\Windows\system32\rasmbmgr.dll - Ok

C:\Windows\system32\rasmontr.dll - Ok

C:\Windows\system32\rasmxs.dll - Ok

C:\Windows\system32\RASMM.dll - Ok

C:\Windows\system32\rasphone.exe - Ok

C:\Windows\system32\rasppp.dll - Ok

C:\Windows\system32\rasser.dll - Ok

C:\Windows\system32\rasplap.dll - Ok

C:\Windows\system32\rastapi.dll - Ok

C:\Windows\system32\rdocurs.dll - Ok

C:\Windows\system32\rdpcfgex.dll - Ok

C:\Windows\system32\rastls.dll - Ok

C:\Windows\system32\rdpclip.exe - Ok

C:\Windows\system32\rdpcorekmts.dll - Ok

C:\Windows\system32\rdpcore.dll - Ok

C:\Windows\system32\rdpd3d.dll - Ok

C:\Windows\system32\rdpdd.dll - Ok

>C:\Windows\system32\RDPENCDD.dll - packed by FLY-CODE

C:\Windows\system32\rdpcorets.dll - Ok

C:\Windows\system32\RDPENCDD.dll - Ok

C:\Windows\system32\rdpencom.dll - Ok

C:\Windows\system32\rdpendp.dll - Ok

>C:\Windows\system32\RDPREFDD.dll - packed by FLY-CODE

C:\Windows\system32\RDPREFDD.dll - Ok

C:\Windows\system32\rdprefdrvapi.dll - Ok

C:\Windows\system32\rdpinit.exe - Ok

C:\Windows\system32\rdpsign.exe - Ok

C:\Windows\system32\rdpudd.dll - Ok

C:\Windows\system32\rdpshell.exe - Ok

C:\Windows\system32\rdpwsx.dll - Ok

C:\Windows\system32\rdrmemptylst.exe - Ok

C:\Windows\system32\rdrleakdiag.exe - Ok

C:\Windows\system32\RDVGHelper.exe - Ok

C:\Windows\system32\ReAgentc.exe - Ok

C:\Windows\system32\ReAgent.dll - Ok

C:\Windows\system32\recover.exe - Ok

C:\Windows\system32\recdisc.exe - Ok

C:\Windows\system32\redir.exe - Ok

C:\Windows\system32\recovery.dll - Ok

C:\Windows\system32\reg.exe - Ok

C:\Windows\system32\RegCtrl.dll - Ok

C:\Windows\system32\regapi.dll - Ok

C:\Windows\system32\regidle.dll - Ok

C:\Windows\system32\regedt32.exe - Ok

C:\Windows\system32\regini.exe - Ok

C:\Windows\system32\RegisterIEPKEYs.exe - Ok

C:\Windows\system32\regsvc.dll - Ok

>C:\Windows\system32\regsvr32.exe - packed by FLY-CODE

C:\Windows\system32\rekeywiz.exe - Ok

C:\Windows\system32\relog.exe - Ok

C:\Windows\system32\regsvr32.exe - Ok

C:\Windows\system32\RelPost.exe - Ok

C:\Windows\system32\remotepg.dll - Ok

C:\Windows\system32\rendezvousSession.tlb - Ok

C:\Windows\system32\remotesp.tsp - Ok

C:\Windows\system32\replace.exe - Ok

C:\Windows\system32\repair-bde.exe - Ok

>C:\Windows\system32\reset.exe - packed by FLY-CODE

C:\Windows\system32\reset.exe - Ok

C:\Windows\system32\RESAMPLEDMO.DLL - Ok

C:\Windows\system32\RestartManager.mof - Ok

C:\Windows\system32\RestartManagerUninstall.mof - Ok

C:\Windows\system32\resutils.dll - Ok

C:\Windows\system32\resmon.exe - Ok

C:\Windows\system32\rgb9rast.dll - Ok

C:\Windows\system32\Ribbons.scr - Ok

C:\Windows\system32\riched32.dll - Ok

>C:\Windows\system32\RMActivate.exe - packed by FLY-CODE

C:\Windows\system32\riched20.dll - Ok

C:\Windows\system32\RMActivate.exe - Ok

>C:\Windows\system32\RMActivate_isv.exe - packed by FLY-CODE

>C:\Windows\system32\RMActivate_ssp.exe - packed by FLY-CODE

C:\Windows\system32\RMActivate_isv.exe - Ok

C:\Windows\system32\RMActivate_ssp.exe - Ok

C:\Windows\system32\RmClient.exe - Ok

>C:\Windows\system32\RMActivate_ssp_isv.exe - packed by FLY-CODE

C:\Windows\system32\rnr20.dll - Ok

C:\Windows\system32\Robocopy.exe - Ok

C:\Windows\system32\RMActivate_ssp_isv.exe - Ok

>C:\Windows\system32\ROUTE.EXE - packed by FLY-CODE

C:\Windows\system32\RpcDiag.dll - Ok

C:\Windows\system32\RpcEpMap.dll - Ok

C:\Windows\system32\ROUTE.EXE - Ok

C:\Windows\system32\RPCNDFP.dll - Ok

C:\Windows\system32\RpcNs4.dll - Ok

C:\Windows\system32\rpcnsh.dll - Ok

C:\Windows\system32\rpchttp.dll - Ok

C:\Windows\system32\RpcPing.exe - Ok

C:\Windows\system32\RpcRtRemote.dll - Ok

C:\Windows\system32\rpcss.dll - Ok

C:\Windows\system32\rpcrt4.dll - Ok

C:\Windows\system32\rrinstaller.exe - Ok

C:\Windows\system32\rsaenh.dll - Ok

C:\Windows\system32\rshx32.dll - Ok

C:\Windows\system32\rsop.msc - Ok

C:\Windows\system32\RstrtMgr.dll - Ok

C:\Windows\system32\rtffilt.dll - Ok

C:\Windows\system32\rstrui.exe - Ok

C:\Windows\system32\RtlCPAPI.dll - Ok

C:\Windows\system32\rtm.dll - Ok

C:\Windows\system32\rtutils.dll - Ok

>C:\Windows\system32\runas.exe - packed by FLY-CODE

C:\Windows\system32\runas.exe - Ok

C:\Windows\system32\rundll32.exe - Ok

C:\Windows\system32\RunLegacyCPLElevated.exe - Ok

C:\Windows\system32\runonce.exe - Ok

C:\Windows\system32\rwinsta.exe - Ok

C:\Windows\system32\samcli.dll - Ok

C:\Windows\system32\samlib.dll - Ok

C:\Windows\system32\SampleRes.dll - Ok

C:\Windows\system32\samsrv.dll - Ok

C:\Windows\system32\sas.dll - Ok

>C:\Windows\system32\RTLCPL.exe - packed by BINARYRES

C:\Windows\system32\sbe.dll - Ok

C:\Windows\system32\sbeio.dll - Ok

C:\Windows\system32\sberes.dll - Ok

C:\Windows\system32\sbunattend.exe - Ok

C:\Windows\system32\sc.exe - Ok

C:\Windows\system32\RTLCPL.exe - Ok

C:\Windows\system32\SCardDlg.dll - Ok

C:\Windows\system32\scansetting.dll - Ok

C:\Windows\system32\ScavengeSpace.xml - Ok

C:\Windows\system32\SCardSvr.dll - Ok

C:\Windows\system32\sccls.dll - Ok

C:\Windows\system32\scavengeui.dll - Ok

C:\Windows\system32\scecli.dll - Ok

C:\Windows\system32\scext.dll - Ok

C:\Windows\system32\scesrv.dll - Ok

C:\Windows\system32\schedcli.dll - Ok

C:\Windows\system32\schannel.dll - Ok

C:\Windows\system32\schtasks.exe - Ok

C:\Windows\system32\scksp.dll - Ok

>C:\Windows\system32\SCP32.DLL - packed by FLY-CODE

C:\Windows\system32\SCP32.DLL - Ok

C:\Windows\system32\schedsvc.dll - Ok

>C:\Windows\system32\scripto.dll is BINARYRES container

C:\Windows\system32\scripto.dll - container

C:\Windows\system32\scrnsave.scr - Ok

C:\Windows\system32\scrobj.dll - Ok

C:\Windows\system32\scrrun.dll - Ok

C:\Windows\system32\sdautoplay.dll - Ok

C:\Windows\system32\sdbinst.exe - Ok

C:\Windows\system32\scrptadm.dll - Ok

C:\Windows\system32\sdchange.exe - Ok

C:\Windows\system32\sdcpl.dll - Ok

C:\Windows\system32\sdclt.exe - Ok

C:\Windows\system32\sdhcinst.dll - Ok

C:\Windows\system32\sdiageng.dll - Ok

C:\Windows\system32\sdengin2.dll - Ok

C:\Windows\system32\sdiagprv.dll - Ok

C:\Windows\system32\sdiagnhost.exe - Ok

C:\Windows\system32\sdiagschd.dll - Ok

C:\Windows\system32\sdrsvc.dll - Ok

C:\Windows\system32\sdshext.dll - Ok

C:\Windows\system32\sdohlp.dll - Ok

C:\Windows\system32\SearchFilterHost.exe - Ok

C:\Windows\system32\SearchIndexer.exe - Ok

C:\Windows\system32\SearchFolder.dll - Ok

C:\Windows\system32\SearchProtocolHost.exe - Ok

C:\Windows\system32\SecEdit.exe - Ok

C:\Windows\system32\sechost.dll - Ok

C:\Windows\system32\seclogon.dll - Ok

C:\Windows\system32\secpol.msc - Ok

>C:\Windows\system32\secinit.exe - packed by FLY-CODE

C:\Windows\system32\secinit.exe - Ok

>C:\Windows\system32\secproc.dll - packed by FLY-CODE

>C:\Windows\system32\secproc_isv.dll - packed by FLY-CODE

C:\Windows\system32\secproc.dll - Ok

C:\Windows\system32\secproc_ssp.dll - Ok

C:\Windows\system32\secproc_ssp_isv.dll - Ok

>C:\Windows\system32\secur32.dll - packed by FLY-CODE

C:\Windows\system32\secur32.dll - Ok

C:\Windows\system32\security.dll - Ok

C:\Windows\system32\sendmail.dll - Ok

C:\Windows\system32\Sens.dll - Ok

C:\Windows\system32\SensApi.dll - Ok

C:\Windows\system32\SensorsApi.dll - Ok

C:\Windows\system32\SensorsClassExtension.dll - Ok

C:\Windows\system32\secproc_isv.dll - Ok

C:\Windows\system32\sensrsvc.dll - Ok

C:\Windows\system32\serialui.dll - Ok

C:\Windows\system32\services.exe - Ok

C:\Windows\system32\services.msc - Ok

C:\Windows\system32\serwvdrv.dll - Ok

C:\Windows\system32\SessEnv.dll - Ok

C:\Windows\system32\setbcdlocale.dll - Ok

C:\Windows\system32\sethc.exe - Ok

C:\Windows\system32\SetIEInstalledDate.exe - Ok

C:\Windows\system32\setspn.exe - Ok

C:\Windows\system32\SensorsCpl.dll - Ok

C:\Windows\system32\setupcl.exe - Ok

C:\Windows\system32\setupcln.dll - Ok

C:\Windows\system32\setupetw.dll - Ok

>C:\Windows\system32\setupSNK.exe - packed by FLY-CODE

C:\Windows\system32\setupSNK.exe - Ok

C:\Windows\system32\setupapi.dll - Ok

C:\Windows\system32\setver.exe - Ok

C:\Windows\system32\setx.exe - Ok

C:\Windows\system32\sfc.dll - Ok

C:\Windows\system32\setupugc.exe - Ok

C:\Windows\system32\sfc.exe - Ok

C:\Windows\system32\sfc_os.dll - Ok

C:\Windows\system32\shadow.exe - Ok

C:\Windows\system32\shacct.dll - Ok

>C:\Windows\system32\share.exe - packed by EXEPACK

>>C:\Windows\system32\share.exe - packed by COM2EXE

C:\Windows\system32\share.exe - Ok

C:\Windows\system32\shdocvw.dll - Ok

C:\Windows\system32\SHELL.DLL - Ok

C:\Windows\system32\sharemediacpl.dll - Ok

C:\Windows\system32\shellstyle.dll - Ok

C:\Windows\system32\shfolder.dll - Ok

C:\Windows\system32\shgina.dll - Ok

C:\Windows\system32\ShiftJIS.uce - Ok

C:\Windows\system32\shimeng.dll - Ok

C:\Windows\system32\shimgvw.dll - Ok

C:\Windows\system32\shlwapi.dll - Ok

C:\Windows\system32\shpafact.dll - Ok

C:\Windows\system32\shrpubw.exe - Ok

C:\Windows\system32\shsetup.dll - Ok

C:\Windows\system32\shsvcs.dll - Ok

C:\Windows\system32\shunimpl.dll - Ok

C:\Windows\system32\shutdown.exe - Ok

C:\Windows\system32\shwebsvc.dll - Ok

C:\Windows\system32\signdrv.dll - Ok

C:\Windows\system32\sigverif.exe - Ok

C:\Windows\system32\simpdata.tlb - Ok

C:\Windows\system32\sirenacm.dll - Ok

C:\Windows\system32\sisbkup.dll - Ok

C:\Windows\system32\slc.dll - Ok

C:\Windows\system32\slcext.dll - Ok

C:\Windows\system32\slmgr.vbs - Ok

C:\Windows\system32\slui.exe - Ok

C:\Windows\system32\shell32.dll - Ok

C:\Windows\system32\slwga.dll - Ok

C:\Windows\system32\SMBHelperClass.dll - Ok

C:\Windows\system32\SmartcardCredentialProvider.dll - Ok

C:\Windows\system32\smss.exe - Ok

C:\Windows\system32\SndVol.exe - Ok

C:\Windows\system32\SmiEngine.dll - Ok

C:\Windows\system32\SndVolSSO.dll - Ok

C:\Windows\system32\snmpapi.dll - Ok

>C:\Windows\system32\snmptrap.exe - packed by FLY-CODE

C:\Windows\system32\snmptrap.exe - Ok

C:\Windows\system32\SnippingTool.exe - Ok

C:\Windows\system32\SNTSearch.dll - Ok

C:\Windows\system32\softpub.dll - Ok

C:\Windows\system32\softkbd.dll - Ok

C:\Windows\system32\sort.exe - Ok

C:\Windows\system32\SortServer2003Compat.dll - Ok

C:\Windows\system32\sound.drv - Ok

C:\Windows\system32\SortWindows6Compat.dll - Ok

C:\Windows\system32\spbcd.dll - Ok

C:\Windows\system32\spcinstrumentation.man - Ok

C:\Windows\system32\spcmsg.dll - Ok

C:\Windows\system32\SoundRecorder.exe - Ok

>C:\Windows\system32\spfileq.dll - packed by BINARYRES

>>C:\Windows\system32\spfileq.dll - packed by MS COMPRESS

C:\Windows\system32\spfileq.dll - Ok

C:\Windows\system32\sperror.dll - Ok

C:\Windows\system32\SPInf.dll - Ok

C:\Windows\system32\spnet.dll - Ok

C:\Windows\system32\spoolss.dll - Ok

C:\Windows\system32\spinstall.exe - Ok

C:\Windows\system32\spopk.dll - Ok

C:\Windows\system32\spoolsv.exe - Ok

C:\Windows\system32\spp.dll - Ok

C:\Windows\system32\sppc.dll - Ok

C:\Windows\system32\sppcc.dll - Ok

C:\Windows\system32\sppcomapi.dll - Ok

C:\Windows\system32\sppcommdlg.dll - Ok

>C:\Windows\system32\sppcext.dll - packed by FLY-CODE

C:\Windows\system32\sppinst.dll - Ok

C:\Windows\system32\sppnp.dll - Ok

C:\Windows\system32\sppcext.dll - Ok

>C:\Windows\system32\sppobjs.dll - packed by FLY-CODE

C:\Windows\system32\sppobjs.dll - Ok

C:\Windows\system32\sppuinotify.dll - Ok

Link to post
Share on other sites

>C:\Windows\system32\sppwinob.dll - packed by FLY-CODE

C:\Windows\system32\sppwinob.dll - Ok

C:\Windows\system32\sppwmi.dll - Ok

>C:\Windows\system32\sppsvc.exe - packed by FLY-CODE

C:\Windows\system32\SPR32X30.OCX - Ok

C:\Windows\system32\sppsvc.exe - Ok

C:\Windows\system32\spreview.exe - Ok

C:\Windows\system32\spwinsat.dll - Ok

C:\Windows\system32\spwizeng.dll - Ok

C:\Windows\system32\spwizres.dll - Ok

C:\Windows\system32\spwizui.dll - Ok

C:\Windows\system32\spwmp.dll - Ok

C:\Windows\system32\sqlceoledb30.dll - Ok

C:\Windows\system32\sqlceqp30.dll - Ok

C:\Windows\system32\sqlcese30.dll - Ok

C:\Windows\system32\sqlsrv32.dll - Ok

C:\Windows\system32\sqlsrv32.rll - Ok

C:\Windows\system32\sqlunirl.dll - Ok

C:\Windows\system32\sqlwid.dll - Ok

C:\Windows\system32\sqlwoa.dll - Ok

C:\Windows\system32\sqmapi.dll - Ok

C:\Windows\system32\srchadmin.dll - Ok

C:\Windows\system32\srclient.dll - Ok

C:\Windows\system32\srcore.dll - Ok

>C:\Windows\system32\srdelayed.exe - packed by FLY-CODE

C:\Windows\system32\srdelayed.exe - Ok

C:\Windows\system32\srhelper.dll - Ok

C:\Windows\system32\SrpUxNativeSnapIn.dll - Ok

C:\Windows\system32\srrstr.dll - Ok

C:\Windows\system32\srvcli.dll - Ok

C:\Windows\system32\srvsvc.dll - Ok

C:\Windows\system32\srwmi.dll - Ok

C:\Windows\system32\sscore.dll - Ok

C:\Windows\system32\ssdpapi.dll - Ok

C:\Windows\system32\ssdpsrv.dll - Ok

C:\Windows\system32\sspicli.dll - Ok

>C:\Windows\system32\sspisrv.dll - packed by FLY-CODE

C:\Windows\system32\sspisrv.dll - Ok

C:\Windows\system32\spwizimg.dll - Ok

C:\Windows\system32\SSShim.dll - Ok

C:\Windows\system32\sstpsvc.dll - Ok

C:\Windows\system32\stclient.dll - Ok

C:\Windows\system32\stdole2.tlb - Ok

C:\Windows\system32\stdole32.tlb - Ok

C:\Windows\system32\ssText3d.scr - Ok

C:\Windows\system32\sti.dll - Ok

C:\Windows\system32\sti_ci.dll - Ok

C:\Windows\system32\StikyNot.exe - Ok

C:\Windows\system32\storage.dll - Ok

C:\Windows\system32\stobject.dll - Ok

C:\Windows\system32\StorageContextHandler.dll - Ok

>C:\Windows\system32\streamci.dll - packed by FLY-CODE

C:\Windows\system32\streamci.dll - Ok

C:\Windows\system32\Storprop.dll - Ok

C:\Windows\system32\SubRange.uce - Ok

>C:\Windows\system32\subst.exe - packed by FLY-CODE

C:\Windows\system32\subst.exe - Ok

C:\Windows\system32\StructuredQuery.dll - Ok

C:\Windows\system32\svchost.exe - Ok

C:\Windows\system32\swprv.dll - Ok

C:\Windows\system32\sxproxy.dll - Ok

C:\Windows\system32\sud.dll - Ok

C:\Windows\system32\sxshared.dll - Ok

C:\Windows\system32\sxssrv.dll - Ok

C:\Windows\system32\sxsstore.dll - Ok

C:\Windows\system32\sxstrace.exe - Ok

C:\Windows\system32\sxs.dll - Ok

C:\Windows\system32\synceng.dll - Ok

C:\Windows\system32\SyncHost.exe - Ok

C:\Windows\system32\SyncHostps.dll - Ok

C:\Windows\system32\SyncInfrastructure.dll - Ok

C:\Windows\system32\SyncInfrastructureps.dll - Ok

C:\Windows\system32\Syncreg.dll - Ok

C:\Windows\system32\syncui.dll - Ok

C:\Windows\system32\sysclass.dll - Ok

C:\Windows\system32\sysdm.cpl - Ok

C:\Windows\system32\sysedit.exe - Ok

C:\Windows\system32\SyncCenter.dll - Ok

C:\Windows\system32\SysFxUI.dll - Ok

C:\Windows\system32\syskey.exe - Ok

C:\Windows\system32\sysmon.ocx - Ok

C:\Windows\system32\sysntfy.dll - Ok

C:\Windows\system32\sysprepMCE.dll - Ok

C:\Windows\system32\sysprint.sep - Ok

C:\Windows\system32\sysprtj.sep - Ok

C:\Windows\system32\syssetup.dll - Ok

C:\Windows\system32\system.drv - Ok

C:\Windows\system32\sysmain.dll - Ok

C:\Windows\system32\systeminfo.exe - Ok

C:\Windows\system32\SystemPropertiesAdvanced.exe - Ok

C:\Windows\system32\systemcpl.dll - Ok

C:\Windows\system32\SystemPropertiesComputerName.exe - Ok

C:\Windows\system32\SystemPropertiesDataExecutionPrevention.exe - Ok

C:\Windows\system32\SystemPropertiesHardware.exe - Ok

C:\Windows\system32\SystemPropertiesPerformance.exe - Ok

C:\Windows\system32\SystemPropertiesProtection.exe - Ok

C:\Windows\system32\SystemPropertiesRemote.exe - Ok

C:\Windows\system32\systemsf.ebd - Ok

C:\Windows\system32\t2embed.dll - Ok

C:\Windows\system32\systray.exe - Ok

C:\Windows\system32\Tabbtn.dll - Ok

C:\Windows\system32\TabbtnEx.dll - Ok

C:\Windows\system32\tabcal.exe - Ok

C:\Windows\system32\tabctl32.ocx - Ok

C:\Windows\system32\TabSvc.dll - Ok

C:\Windows\system32\takeown.exe - Ok

C:\Windows\system32\tapi.dll - Ok

C:\Windows\system32\TabletPC.cpl - Ok

C:\Windows\system32\tapi32.dll - Ok

C:\Windows\system32\tapilua.dll - Ok

C:\Windows\system32\TapiMigPlugin.dll - Ok

C:\Windows\system32\tapiperf.dll - Ok

C:\Windows\system32\tapisrv.dll - Ok

C:\Windows\system32\TapiSysprep.dll - Ok

C:\Windows\system32\tapi3.dll - Ok

C:\Windows\system32\tapiui.dll - Ok

C:\Windows\system32\taskbarcpl.dll - Ok

C:\Windows\system32\TapiUnattend.exe - Ok

C:\Windows\system32\taskcomp.dll - Ok

C:\Windows\system32\taskhost.exe - Ok

C:\Windows\system32\taskeng.exe - Ok

C:\Windows\system32\taskkill.exe - Ok

C:\Windows\system32\tasklist.exe - Ok

C:\Windows\system32\taskmgr.exe - Ok

C:\Windows\system32\taskschd.msc - Ok

C:\Windows\system32\TaskSchdPS.dll - Ok

>C:\Windows\system32\tbs.dll - packed by FLY-CODE

C:\Windows\system32\taskschd.dll - Ok

C:\Windows\system32\tbs.dll - Ok

C:\Windows\system32\tbssvc.dll - Ok

C:\Windows\system32\tcpbidi.xml - Ok

C:\Windows\system32\tcmsetup.exe - Ok

C:\Windows\system32\tcpipcfg.dll - Ok

C:\Windows\system32\tcpmib.dll - Ok

C:\Windows\system32\tcpmon.dll - Ok

C:\Windows\system32\tcpmon.ini - Ok

C:\Windows\system32\tcpmonui.dll - Ok

C:\Windows\system32\TCPSVCS.EXE - Ok

C:\Windows\system32\tdc.ocx - Ok

C:\Windows\system32\telephon.cpl - Ok

C:\Windows\system32\tdh.dll - Ok

C:\Windows\system32\termmgr.dll - Ok

C:\Windows\system32\thawbrkr.dll - Ok

C:\Windows\system32\termsrv.dll - Ok

C:\Windows\system32\themeservice.dll - Ok

C:\Windows\system32\themecpl.dll - Ok

C:\Windows\system32\THREED32.OCX - Ok

C:\Windows\system32\thumbcache.dll - Ok

C:\Windows\system32\ticrf.rat - Ok

C:\Windows\system32\themeui.dll - Ok

C:\Windows\system32\TimeDateMUICallback.dll - Ok

C:\Windows\system32\timeout.exe - Ok

C:\Windows\system32\TIMER.DRV - Ok

>C:\Windows\system32\timedate.cpl is ZLIB container

C:\Windows\system32\timedate.cpl - container

C:\Windows\system32\tintlgnt.ime - Ok

C:\Windows\system32\TOOLHELP.DLL - Ok

C:\Windows\system32\tlscsp.dll - Ok

C:\Windows\system32\tpmcompc.dll - Ok

C:\Windows\system32\tpm.msc - Ok

C:\Windows\system32\TpmInit.exe - Ok

C:\Windows\system32\tracerpt.exe - Ok

>C:\Windows\system32\TRACERT.EXE - packed by FLY-CODE

C:\Windows\system32\TRACERT.EXE - Ok

C:\Windows\system32\traffic.dll - Ok

C:\Windows\system32\TRAPI.dll - Ok

C:\Windows\system32\tree.com - Ok

C:\Windows\system32\trkwks.dll - Ok

C:\Windows\system32\tsbyuv.dll - Ok

C:\Windows\system32\tquery.dll - Ok

C:\Windows\system32\tscfgwmi.dll - Ok

C:\Windows\system32\TSChannel.dll - Ok

C:\Windows\system32\tsddd.dll - Ok

C:\Windows\system32\tscon.exe - Ok

C:\Windows\system32\tsdiscon.exe - Ok

C:\Windows\system32\TSErrRedir.dll - Ok

C:\Windows\system32\tsgqec.dll - Ok

C:\Windows\system32\tskill.exe - Ok

C:\Windows\system32\TSpkg.dll - Ok

C:\Windows\system32\TsPnPRdrCoInstaller.dll - Ok

C:\Windows\system32\tsmf.dll - Ok

C:\Windows\system32\tspubwmi.dll - Ok

C:\Windows\system32\tssrvlic.dll - Ok

C:\Windows\system32\TsUsbGDCoInstaller.dll - Ok

>C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe - packed by FLY-CODE

C:\Windows\system32\TSTheme.exe - Ok

C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe - Ok

C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll - Ok

>C:\Windows\system32\TSWbPrxy.exe - packed by FLY-CODE

C:\Windows\system32\TSWbPrxy.exe - Ok

C:\Windows\system32\TsWpfWrp.exe - Ok

C:\Windows\system32\tvratings.dll - Ok

C:\Windows\system32\TSWorkspace.dll - Ok

C:\Windows\system32\twext.dll - Ok

C:\Windows\system32\txfw32.dll - Ok

C:\Windows\system32\txflog.dll - Ok

C:\Windows\system32\typeperf.exe - Ok

C:\Windows\system32\tzres.dll - Ok

C:\Windows\system32\typelib.dll - Ok

C:\Windows\system32\tzutil.exe - Ok

C:\Windows\system32\ucmhc.dll - Ok

C:\Windows\system32\ubpm.dll - Ok

C:\Windows\system32\udhisapi.dll - Ok

C:\Windows\system32\uDWM.dll - Ok

C:\Windows\system32\uexfat.dll - Ok

C:\Windows\system32\ufat.dll - Ok

C:\Windows\system32\ucsvc.exe - Ok

C:\Windows\system32\UI0Detect.exe - Ok

C:\Windows\system32\UIAnimation.dll - Ok

C:\Windows\system32\uicom.dll - Ok

C:\Windows\system32\UIAutomationCore.dll - Ok

C:\Windows\system32\UIHub.dll - Ok

C:\Windows\system32\UIRibbonRes.dll - Ok

C:\Windows\system32\UIRibbon.dll - Ok

C:\Windows\system32\ulib.dll - Ok

>C:\Windows\system32\umdmxfrm.dll - packed by FLY-CODE

C:\Windows\system32\umb.dll - Ok

C:\Windows\system32\umdmxfrm.dll - Ok

C:\Windows\system32\umpo.dll - Ok

C:\Windows\system32\umpnpmgr.dll - Ok

C:\Windows\system32\umrdp.dll - Ok

C:\Windows\system32\umstartup.etl - Ok

C:\Windows\system32\umstartup000.etl - Ok

C:\Windows\system32\unattend.dll - Ok

C:\Windows\system32\unimdm.tsp - Ok

C:\Windows\system32\unimdmat.dll - Ok

C:\Windows\system32\uniplat.dll - Ok

C:\Windows\system32\unlodctr.exe - Ok

C:\Windows\system32\unregmp2.exe - Ok

C:\Windows\system32\untfs.dll - Ok

C:\Windows\system32\upnp.dll - Ok

C:\Windows\system32\upnpcont.exe - Ok

C:\Windows\system32\ureg.dll - Ok

C:\Windows\system32\url.dll - Ok

C:\Windows\system32\upnphost.dll - Ok

C:\Windows\system32\urlmon.dll - Ok

C:\Windows\system32\usbceip.dll - Ok

C:\Windows\system32\usbmon.dll - Ok

>C:\Windows\system32\usbperf.dll - packed by FLY-CODE

C:\Windows\system32\usbperf.dll - Ok

C:\Windows\system32\usbui.dll - Ok

C:\Windows\system32\USER.EXE - Ok

C:\Windows\system32\user32.dll - Ok

C:\Windows\system32\UserAccountControlSettings.dll - Ok

C:\Windows\system32\UserAccountControlSettings.exe - Ok

C:\Windows\system32\usbaaplrc.dll - Ok

C:\Windows\system32\userenv.dll - Ok

C:\Windows\system32\usercpl.dll - Ok

>C:\Windows\system32\usk.rs is ZLIB container

C:\Windows\system32\usk.rs - container

C:\Windows\system32\userinit.exe - Ok

C:\Windows\system32\utildll.dll - Ok

C:\Windows\system32\usp10.dll - Ok

C:\Windows\system32\uudf.dll - Ok

C:\Windows\system32\UXInit.dll - Ok

C:\Windows\system32\uxlib.dll - Ok

C:\Windows\system32\uxlibres.dll - Ok

C:\Windows\system32\uxsms.dll - Ok

C:\Windows\system32\uxtheme.dll - Ok

C:\Windows\system32\v7vga.rom - Ok

C:\Windows\system32\Utilman.exe - Ok

C:\Windows\system32\VAN.dll - Ok

C:\Windows\system32\vaultcli.dll - Ok

C:\Windows\system32\VaultCmd.exe - Ok

C:\Windows\system32\VaultCredProvider.dll - Ok

C:\Windows\system32\Vault.dll - Ok

C:\Windows\system32\vaultsvc.dll - Ok

C:\Windows\system32\VBAEN32.OLB - Ok

C:\Windows\system32\VBAEND32.OLB - Ok

C:\Windows\system32\VaultSysUi.exe - Ok

C:\Windows\system32\vbajet32.dll - Ok

C:\Windows\system32\VBAME.DLL - Ok

C:\Windows\system32\vbisurf.ax - Ok

C:\Windows\system32\VBICodec.ax - Ok

C:\Windows\system32\vcomp100.dll - Ok

>C:\Windows\system32\vdmdbg.dll - packed by FLY-CODE

C:\Windows\system32\vdmdbg.dll - Ok

C:\Windows\system32\vdmredir.dll - Ok

C:\Windows\system32\vbscript.dll - Ok

C:\Windows\system32\vdsbas.dll - Ok

C:\Windows\system32\vds.exe - Ok

C:\Windows\system32\vdsldr.exe - Ok

C:\Windows\system32\vdsdyn.dll - Ok

C:\Windows\system32\vdsvd.dll - Ok

C:\Windows\system32\vds_ps.dll - Ok

C:\Windows\system32\vdsutil.dll - Ok

C:\Windows\system32\ver.dll - Ok

C:\Windows\system32\VEN2232.OLB - Ok

C:\Windows\system32\verclsid.exe - Ok

C:\Windows\system32\verifier.exe - Ok

C:\Windows\system32\version.dll - Ok

C:\Windows\system32\verifier.dll - Ok

C:\Windows\system32\vfpodbc.dll - Ok

C:\Windows\system32\vga.dll - Ok

C:\Windows\system32\vga.drv - Ok

C:\Windows\system32\vga256.dll - Ok

C:\Windows\system32\vga64k.dll - Ok

C:\Windows\system32\vfwwdm32.dll - Ok

C:\Windows\system32\vidcap.ax - Ok

>C:\Windows\system32\virtdisk.dll - packed by FLY-CODE

C:\Windows\system32\virtdisk.dll - Ok

C:\Windows\system32\VIDRESZR.DLL - Ok

>C:\Windows\system32\vmbuspipe.dll - packed by FLY-CODE

C:\Windows\system32\vmbuspipe.dll - Ok

C:\Windows\system32\vmbusres.dll - Ok

C:\Windows\system32\VmdCoinstall.dll - Ok

C:\Windows\system32\vmicres.dll - Ok

C:\Windows\system32\VmbusCoinstaller.dll - Ok

C:\Windows\system32\vmictimeprovider.dll - Ok

C:\Windows\system32\vmstorfltres.dll - Ok

C:\Windows\system32\vmicsvc.exe - Ok

C:\Windows\system32\vpnikeapi.dll - Ok

C:\Windows\system32\vpnike.dll - Ok

C:\Windows\system32\vssadmin.exe - Ok

C:\Windows\system32\vsstrace.dll - Ok

C:\Windows\system32\vssapi.dll - Ok

C:\Windows\system32\vss_ps.dll - Ok

C:\Windows\system32\VSSVC.exe - Ok

C:\Windows\system32\w32tm.exe - Ok

C:\Windows\system32\w32topl.dll - Ok

C:\Windows\system32\w32time.dll - Ok

C:\Windows\system32\WABSyncProvider.dll - Ok

C:\Windows\system32\waitfor.exe - Ok

C:\Windows\system32\WavDest.dll - Ok

C:\Windows\system32\wavemsp.dll - Ok

C:\Windows\system32\wbadmin.exe - Ok

C:\Windows\system32\wbemcomn.dll - Ok

C:\Windows\system32\wbiosrvc.dll - Ok

C:\Windows\system32\WcnApi.dll - Ok

C:\Windows\system32\wcncsvc.dll - Ok

C:\Windows\system32\WcnEapAuthProxy.dll - Ok

C:\Windows\system32\WcnEapPeerProxy.dll - Ok

C:\Windows\system32\WcnNetsh.dll - Ok

C:\Windows\system32\wbengine.exe - Ok

C:\Windows\system32\WcsPlugInService.dll - Ok

C:\Windows\system32\wcnwiz.dll - Ok

C:\Windows\system32\wdi.dll - Ok

C:\Windows\system32\wdiasqmmodule.dll - Ok

C:\Windows\system32\wdigest.dll - Ok

C:\Windows\system32\wdmaud.drv - Ok

C:\Windows\system32\wdc.dll - Ok

C:\Windows\system32\WdsUnattendTemplate.xml - Ok

C:\Windows\system32\wdscore.dll - Ok

C:\Windows\system32\WEB.rs - Ok

C:\Windows\system32\webcheck.dll - Ok

C:\Windows\system32\WebClnt.dll - Ok

C:\Windows\system32\webio.dll - Ok

C:\Windows\system32\wecapi.dll - Ok

C:\Windows\system32\wecsvc.dll - Ok

C:\Windows\system32\wecutil.exe - Ok

C:\Windows\system32\webservices.dll - Ok

C:\Windows\system32\wer.dll - Ok

C:\Windows\system32\wercplsupport.dll - Ok

C:\Windows\system32\werdiagcontroller.dll - Ok

C:\Windows\system32\werconcpl.dll - Ok

C:\Windows\system32\WerFault.exe - Ok

C:\Windows\system32\WerFaultSecure.exe - Ok

C:\Windows\system32\wersvc.dll - Ok

C:\Windows\system32\wermgr.exe - Ok

C:\Windows\system32\werui.dll - Ok

C:\Windows\system32\wevtfwd.dll - Ok

C:\Windows\system32\wevtapi.dll - Ok

C:\Windows\system32\wevtutil.exe - Ok

>C:\Windows\system32\wextract.exe - packed by FLY-CODE

C:\Windows\system32\wevtsvc.dll - Ok

C:\Windows\system32\wextract.exe - Ok

C:\Windows\system32\WF.msc - Ok

C:\Windows\system32\wfapigp.dll - Ok

C:\Windows\system32\WfHC.dll - Ok

C:\Windows\system32\WFSR.dll - Ok

C:\Windows\system32\WFWNET.DRV - Ok

C:\Windows\system32\whealogr.dll - Ok

C:\Windows\system32\WFS.exe - Ok

C:\Windows\system32\where.exe - Ok

C:\Windows\system32\whhelper.dll - Ok

C:\Windows\system32\whoami.exe - Ok

C:\Windows\system32\wiaacmgr.exe - Ok

C:\Windows\system32\wiaaut.dll - Ok

C:\Windows\system32\wiadefui.dll - Ok

C:\Windows\system32\wiarpc.dll - Ok

C:\Windows\system32\wiadss.dll - Ok

C:\Windows\system32\wiascanprofiles.dll - Ok

C:\Windows\system32\wiaservc.dll - Ok

>C:\Windows\system32\wiatrace.dll - packed by FLY-CODE

C:\Windows\system32\wiashext.dll - Ok

C:\Windows\system32\wiatrace.dll - Ok

C:\Windows\system32\WIFEMAN.DLL - Ok

C:\Windows\system32\wiavideo.dll - Ok

C:\Windows\system32\wimgapi.dll - Ok

C:\Windows\system32\wimserv.exe - Ok

C:\Windows\system32\win.com - Ok

C:\Windows\system32\win32spl.dll - Ok

C:\Windows\system32\win87em.dll - Ok

C:\Windows\system32\winbio.dll - Ok

C:\Windows\system32\winbrand.dll - Ok

C:\Windows\system32\wincredprovider.dll - Ok

C:\Windows\system32\WindowsAnytimeUpgradeResults.exe - Ok

C:\Windows\system32\win32k.sys - Ok

C:\Windows\system32\WindowsCodecs.dll - Ok

C:\Windows\system32\WindowsCodecsExt.dll - Ok

C:\Windows\system32\WinFax.dll - Ok

C:\Windows\system32\winethc.dll - Ok

C:\Windows\system32\winhttp.dll - Ok

C:\Windows\system32\wininit.exe - Ok

C:\Windows\system32\winipsec.dll - Ok

C:\Windows\system32\wininet.dll - Ok

>C:\Windows\system32\winload.exe - packed by FLY-CODE

C:\Windows\system32\winload.exe - Ok

C:\Windows\system32\winlogon.exe - Ok

C:\Windows\system32\WINNLS.DLL - Ok

>C:\Windows\system32\winnsi.dll - packed by FLY-CODE

C:\Windows\system32\winnsi.dll - Ok

C:\Windows\system32\WINOLDAP.MOD - Ok

C:\Windows\system32\winmm.dll - Ok

C:\Windows\system32\winrm.cmd - Ok

C:\Windows\system32\winrm.vbs - Ok

>C:\Windows\system32\winresume.exe - packed by FLY-CODE

C:\Windows\system32\winrnr.dll - Ok

C:\Windows\system32\winrs.exe - Ok

C:\Windows\system32\winresume.exe - Ok

C:\Windows\system32\winrshost.exe - Ok

C:\Windows\system32\winrscmd.dll - Ok

C:\Windows\system32\winrsmgr.dll - Ok

C:\Windows\system32\winrssrv.dll - Ok

>C:\Windows\system32\WinSATAPI.dll is ZLIB container

C:\Windows\system32\WinSATAPI.dll - container

C:\Windows\system32\WinSCard.dll - Ok

>C:\Windows\system32\winshfhc.dll - packed by FLY-CODE

C:\Windows\system32\winshfhc.dll - Ok

C:\Windows\system32\WINSOCK.DLL - Ok

C:\Windows\system32\winsockhc.dll - Ok

C:\Windows\system32\winspool.drv - Ok

C:\Windows\system32\WINSPOOL.EXE - Ok

C:\Windows\system32\WINSRPC.DLL - Ok

C:\Windows\system32\winsrv.dll - Ok

C:\Windows\system32\winsta.dll - Ok

C:\Windows\system32\WinSync.dll - Ok

C:\Windows\system32\WinSyncMetastore.dll - Ok

C:\Windows\system32\WinSyncProviders.dll - Ok

>C:\Windows\system32\wintrust.dll - packed by FLY-CODE

C:\Windows\system32\wintrust.dll - Ok

C:\Windows\system32\winusb.dll - Ok

C:\Windows\system32\WinSAT.exe - Ok

C:\Windows\system32\winver.exe - Ok

C:\Windows\system32\wkscli.dll - Ok

C:\Windows\system32\wksprt.exe - Ok

>C:\Windows\system32\wksprtPS.dll - packed by FLY-CODE

C:\Windows\system32\wisptis.exe - Ok

C:\Windows\system32\wksprtPS.dll - Ok

C:\Windows\system32\wkssvc.dll - Ok

C:\Windows\system32\wlanapi.dll - Ok

C:\Windows\system32\wlancfg.dll - Ok

C:\Windows\system32\wlandlg.dll - Ok

C:\Windows\system32\WLanConn.dll - Ok

C:\Windows\system32\wlanext.exe - Ok

C:\Windows\system32\WLanHC.dll - Ok

C:\Windows\system32\wlanhlp.dll - Ok

C:\Windows\system32\wlaninst.dll - Ok

C:\Windows\system32\wlangpui.dll - Ok

C:\Windows\system32\wlanmsm.dll - Ok

C:\Windows\system32\WlanMM.dll - Ok

C:\Windows\system32\wlansec.dll - Ok

C:\Windows\system32\wlanpref.dll - Ok

C:\Windows\system32\wlansvc.dll - Ok

C:\Windows\system32\wlanutil.dll - Ok

C:\Windows\system32\wlanui.dll - Ok

C:\Windows\system32\wlgpclnt.dll - Ok

C:\Windows\system32\Wldap32.dll - Ok

C:\Windows\system32\WlS0WndH.dll - Ok

C:\Windows\system32\wlrmdr.exe - Ok

C:\Windows\system32\WMADMOE.DLL - Ok

C:\Windows\system32\WMADMOD.DLL - Ok

C:\Windows\system32\WMASF.DLL - Ok

C:\Windows\system32\wmcodecdspps.dll - Ok

C:\Windows\system32\wmdmlog.dll - Ok

C:\Windows\system32\wmdmps.dll - Ok

C:\Windows\system32\WMALFXGFXDSP.dll - Ok

C:\Windows\system32\wmdrmdev.dll - Ok

C:\Windows\system32\wmdrmnet.dll - Ok

C:\Windows\system32\wmerror.dll - Ok

C:\Windows\system32\wmi.dll - Ok

C:\Windows\system32\wmdrmsdk.dll - Ok

C:\Windows\system32\wmicmiplugin.dll - Ok

C:\Windows\system32\wmidx.dll - Ok

C:\Windows\system32\wmiprop.dll - Ok

C:\Windows\system32\WmiMgmt.msc - Ok

C:\Windows\system32\WMNetMgr.dll - Ok

C:\Windows\system32\wmpcm.dll - Ok

C:\Windows\system32\WmpDui.dll - Ok

C:\Windows\system32\wmpdxm.dll - Ok

C:\Windows\system32\wmpeffects.dll - Ok

C:\Windows\system32\WMPEncEn.dll - Ok

C:\Windows\system32\WMPhoto.dll - Ok

C:\Windows\system32\wmp.dll - Ok

C:\Windows\system32\wmpmde.dll - Ok

C:\Windows\system32\wmpps.dll - Ok

C:\Windows\system32\wmpshell.dll - Ok

C:\Windows\system32\wmpsrcwp.dll - Ok

C:\Windows\system32\wmsgapi.dll - Ok

C:\Windows\system32\WMSPDMOD.DLL - Ok

C:\Windows\system32\WMSPDMOE.DLL - Ok

C:\Windows\system32\wmploc.DLL - Ok

C:\Windows\system32\WMVCORE.DLL - Ok

C:\Windows\system32\wmvdspa.dll - Ok

C:\Windows\system32\WMVDECOD.DLL - Ok

C:\Windows\system32\WMVSDECD.DLL - Ok

C:\Windows\system32\WMVSENCD.DLL - Ok

C:\Windows\system32\WMVENCOD.DLL - Ok

C:\Windows\system32\wow32.dll - Ok

C:\Windows\system32\WOWDEB.EXE - Ok

C:\Windows\system32\WOWEXEC.EXE - Ok

C:\Windows\system32\WMVXENCD.DLL - Ok

C:\Windows\system32\wpcao.dll - Ok

C:\Windows\system32\Wpc.dll - Ok

C:\Windows\system32\wpcmig.dll - Ok

C:\Windows\system32\wpcsvc.dll - Ok

C:\Windows\system32\wpcumi.dll - Ok

C:\Windows\system32\wpdbusenum.dll - Ok

C:\Windows\system32\wpccpl.dll - Ok

C:\Windows\system32\WpdMtpUS.dll - Ok

C:\Windows\system32\WpdMtp.dll - Ok

C:\Windows\system32\WPDShextAutoplay.exe - Ok

C:\Windows\system32\WPDShServiceObj.dll - Ok

C:\Windows\system32\WPDSp.dll - Ok

C:\Windows\system32\wpdwcn.dll - Ok

C:\Windows\system32\wpd_ci.dll - Ok

C:\Windows\system32\wpnpinst.exe - Ok

C:\Windows\system32\wpdshext.dll - Ok

C:\Windows\system32\ws2help.dll - Ok

C:\Windows\system32\write.exe - Ok

C:\Windows\system32\wscapi.dll - Ok

C:\Windows\system32\ws2_32.dll - Ok

C:\Windows\system32\wscisvif.dll - Ok

C:\Windows\system32\wscinterop.dll - Ok

C:\Windows\system32\wscmisetup.dll - Ok

C:\Windows\system32\wscproxystub.dll - Ok

C:\Windows\system32\wscsvc.dll - Ok

C:\Windows\system32\wscript.exe - Ok

C:\Windows\system32\WSDApi.dll - Ok

C:\Windows\system32\wsdchngr.dll - Ok

C:\Windows\system32\WSDMon.dll - Ok

C:\Windows\system32\WSDPrintProxy.DLL - Ok

C:\Windows\system32\WSDScanProxy.dll - Ok

>C:\Windows\system32\wscui.cpl is ZLIB container

C:\Windows\system32\wscui.cpl - container

C:\Windows\system32\wsepno.dll - Ok

>C:\Windows\system32\wshbth.dll - packed by FLY-CODE

C:\Windows\system32\wshbth.dll - Ok

C:\Windows\system32\wshcon.dll - Ok

C:\Windows\system32\wshelper.dll - Ok

C:\Windows\system32\wshext.dll - Ok

C:\Windows\system32\wship6.dll - Ok

C:\Windows\system32\wshirda.dll - Ok

C:\Windows\system32\wshnetbs.dll - Ok

C:\Windows\system32\wshom.ocx - Ok

C:\Windows\system32\wsecedit.dll - Ok

C:\Windows\system32\wshqos.dll - Ok

C:\Windows\system32\wshrm.dll - Ok

C:\Windows\system32\WSHTCPIP.DLL - Ok

C:\Windows\system32\wsmanconfig_schema.xml - Ok

C:\Windows\system32\WSManHTTPConfig.exe - Ok

C:\Windows\system32\WSManMigrationPlugin.dll - Ok

C:\Windows\system32\wsmplpxy.dll - Ok

C:\Windows\system32\WsmAuto.dll - Ok

C:\Windows\system32\WsmPty.xsl - Ok

C:\Windows\system32\WsmRes.dll - Ok

C:\Windows\system32\wsmprovhost.exe - Ok

C:\Windows\system32\WsmTxt.xsl - Ok

C:\Windows\system32\WsmWmiPl.dll - Ok

C:\Windows\system32\wsnmp32.dll - Ok

C:\Windows\system32\wsock32.dll - Ok

C:\Windows\system32\wsqmcons.exe - Ok

C:\Windows\system32\WsmSvc.dll - Ok

C:\Windows\system32\WSTPager.ax - Ok

C:\Windows\system32\wtsapi32.dll - Ok

C:\Windows\system32\wuapi.dll - Ok

C:\Windows\system32\wuapp.exe - Ok

C:\Windows\system32\wuauclt.exe - Ok

C:\Windows\system32\wuaueng.dll - Ok

C:\Windows\system32\WUDFCoinstaller.dll - Ok

C:\Windows\system32\WUDFHost.exe - Ok

C:\Windows\system32\wucltux.dll - Ok

C:\Windows\system32\WUDFPlatform.dll - Ok

C:\Windows\system32\WUDFSvc.dll - Ok

C:\Windows\system32\wudriver.dll - Ok

C:\Windows\system32\wups.dll - Ok

C:\Windows\system32\wups2.dll - Ok

C:\Windows\system32\WUDFx.dll - Ok

C:\Windows\system32\wusa.exe - Ok

C:\Windows\system32\wuwebv.dll - Ok

C:\Windows\system32\Wwanadvui.dll - Ok

C:\Windows\system32\wvc.dll - Ok

C:\Windows\system32\WWanAPI.dll - Ok

C:\Windows\system32\wwancfg.dll - Ok

C:\Windows\system32\WWanHC.dll - Ok

C:\Windows\system32\wwaninst.dll - Ok

C:\Windows\system32\wwanconn.dll - Ok

C:\Windows\system32\Wwanpref.dll - Ok

C:\Windows\system32\wwanprotdim.dll - Ok

C:\Windows\system32\wwansvc.dll - Ok

C:\Windows\system32\wwapi.dll - Ok

C:\Windows\system32\wzcdlg.dll - Ok

C:\Windows\system32\wwanmm.dll - Ok

C:\Windows\system32\XAPOFX1_3.dll - Ok

C:\Windows\system32\xcopy.exe - Ok

C:\Windows\system32\XInput9_1_0.dll - Ok

C:\Windows\system32\xmlfilter.dll - Ok

C:\Windows\system32\XAudio2_5.dll - Ok

C:\Windows\system32\xmlprovi.dll - Ok

C:\Windows\system32\xmllite.dll - Ok

C:\Windows\system32\xolehlp.dll - Ok

C:\Windows\system32\XpsGdiConverter.dll - Ok

C:\Windows\system32\XpsFilt.dll - Ok

C:\Windows\system32\XpsRasterService.dll - Ok

C:\Windows\system32\XpsPrint.dll - Ok

C:\Windows\system32\xpsrchvw.xml - Ok

C:\Windows\system32\xpsservices.dll - Ok

>C:\Windows\system32\xpsrchvw.exe - packed by FLY-CODE

C:\Windows\system32\XPSSHHDR.dll - Ok

>>C:\Windows\system32\xpsrchvw.exe is BINARYRES container

C:\Windows\system32\xpsrchvw.exe - container

C:\Windows\system32\xwizard.dtd - Ok

C:\Windows\system32\xpssvcs.dll - Ok

C:\Windows\system32\xwizard.exe - Ok

C:\Windows\system32\xwizards.dll - Ok

C:\Windows\system32\xwreg.dll - Ok

C:\Windows\system32\xwtpdui.dll - Ok

C:\Windows\system32\xwtpw32.dll - Ok

C:\Windows\system32\zgmprxy.dll - Ok

C:\Windows\system32\ZIMF.DLL - Ok

C:\Windows\system32\zipfldr.dll - Ok

>C:\Windows\system32\ZSHP1020.CHM is CHM container

C:\Windows\system32\ZLhp1020.DLL - Ok

C:\Windows\system32\ZSHP1020.CHM - container

C:\Windows\system32\ZSPOOL.DLL - Ok

C:\Windows\system32\ZSHP1020.EXE - Ok

C:\Windows\system32\AdvancedInstallers\cmiadapter.dll - Ok

C:\Windows\system32\ZTAG.DLL - Ok

C:\Windows\system32\AdvancedInstallers\cmitrust.dll - Ok

C:\Windows\system32\AdvancedInstallers\CntrtextInstaller.DLL - Ok

C:\Windows\system32\AdvancedInstallers\locdrv.dll - Ok

C:\Windows\system32\AdvancedInstallers\OEMHelpIns.dll - Ok

>C:\Windows\system32\Boot\winload.exe - packed by FLY-CODE

C:\Windows\system32\Boot\winload.exe - Ok

C:\Windows\system32\AdvancedInstallers\cmiv2.dll - Ok

C:\Windows\system32\Boot\en-US\winload.exe.mui - Ok

C:\Windows\system32\Boot\en-US\winresume.exe.mui - Ok

>C:\Windows\system32\Boot\winresume.exe - packed by FLY-CODE

C:\Windows\system32\CodeIntegrity\bootcat.cache - Ok

C:\Windows\system32\CodeIntegrity\driver.stl - Ok

C:\Windows\system32\DRVSTORE\GEARAspiWD_3B7AACF0636A2C042EB7AD2AFF76D37B27BDD28C\GEARAspiWDM.inf - Ok

C:\Windows\system32\Boot\winresume.exe - Ok

C:\Windows\system32\DRVSTORE\GEARAspiWD_3B7AACF0636A2C042EB7AD2AFF76D37B27BDD28C\GEARAspiWDMx86.cat - Ok

C:\Windows\system32\DRVSTORE\GEARAspiWD_3B7AACF0636A2C042EB7AD2AFF76D37B27BDD28C\x86\GEARAspiWDM.sys - Ok

C:\Windows\system32\DRVSTORE\fssfltr_A5FA3C925848FF31CD1FDE1A2696CEACA292B950\fssfltr.inf - Ok

C:\Windows\system32\DRVSTORE\GEARAspiWD_3B7AACF0636A2C042EB7AD2AFF76D37B27BDD28C\x86\GEARAspi.dll - Ok

C:\Windows\system32\DRVSTORE\fssfltr_A5FA3C925848FF31CD1FDE1A2696CEACA292B950\fssfltr.sys - Ok

C:\Windows\system32\Dism\CompatProvider.dll - Ok

C:\Windows\system32\Dism\DismCore.dll - Ok

C:\Windows\system32\Dism\DismCorePS.dll - Ok

C:\Windows\system32\Dism\CbsProvider.dll - Ok

>C:\Windows\system32\Dism\DismHost.exe - packed by FLY-CODE

C:\Windows\system32\Dism\DismProv.dll - Ok

C:\Windows\system32\Dism\DismHost.exe - Ok

C:\Windows\system32\Dism\FolderProvider.dll - Ok

C:\Windows\system32\Dism\DmiProvider.dll - Ok

C:\Windows\system32\Dism\LogProvider.dll - Ok

C:\Windows\system32\Dism\IntlProvider.dll - Ok

C:\Windows\system32\Dism\MsiProvider.dll - Ok

C:\Windows\system32\Dism\OSProvider.dll - Ok

C:\Windows\system32\Dism\SmiProvider.dll - Ok

C:\Windows\system32\Dism\TransmogProvider.dll - Ok

C:\Windows\system32\Dism\UnattendProvider.dll - Ok

C:\Windows\system32\Dism\en-US\CbsProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\CompatProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\DismCore.dll.mui - Ok

C:\Windows\system32\Dism\en-US\DismProv.dll.mui - Ok

C:\Windows\system32\Dism\WimProvider.dll - Ok

C:\Windows\system32\Dism\en-US\FolderProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\DmiProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\LogProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\IntlProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\MsiProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\OSProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\SmiProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\UnattendProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\TransmogProvider.dll.mui - Ok

C:\Windows\system32\Dism\en-US\WimProvider.dll.mui - Ok

C:\Windows\system32\DriverStore\drvindex.dat - Ok

C:\Windows\system32\DriverStore\INFCACHE.1 - Ok

C:\Windows\system32\DriverStore\infpub.dat - Ok

C:\Windows\system32\DriverStore\infstor.dat - Ok

C:\Windows\system32\DriverStore\infstrng.dat - Ok

C:\Windows\system32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\1394.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\1394.PNF - Ok

>C:\Windows\system32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\1394bus.sys - packed by FLY-CODE

C:\Windows\system32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\1394bus.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\ohci1394.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\61883.inf_x86_neutral_f2be571a17fa203a\61883.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\1394.inf_x86_neutral_832ec31f25d91fee\1394ohci.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\61883.inf_x86_neutral_f2be571a17fa203a\61883.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\acpi.inf_x86_neutral_a1f4891fe0de4401\acpi.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\61883.inf_x86_neutral_f2be571a17fa203a\61883.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\acpi.inf_x86_neutral_a1f4891fe0de4401\acpi.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\acpi.inf_x86_neutral_a1f4891fe0de4401\errdev.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\acpi.inf_x86_neutral_a1f4891fe0de4401\wmiacpi.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\acpipmi.inf_x86_neutral_71194ee3f26255a7\acpipmi.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\acpipmi.inf_x86_neutral_71194ee3f26255a7\acpipmi.PNF - Ok

>C:\Windows\system32\DriverStore\FileRepository\acpipmi.inf_x86_neutral_71194ee3f26255a7\acpipmi.sys - packed by FLY-CODE

C:\Windows\system32\DriverStore\FileRepository\acpipmi.inf_x86_neutral_71194ee3f26255a7\acpipmi.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\AdobePDF.cat - Ok

C:\Windows\system32\DriverStore\FileRepository\acpi.inf_x86_neutral_a1f4891fe0de4401\acpi.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\adobepdf.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\adobepdf.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\I386Vista\AdobePdf.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\Amd64\PSCRPTFE.NTF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\I386\ADGELP.INI - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\I386Vista\AdobePDFUI.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\I386\ADPDF9.PPD - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\I386\ADREGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\AdobePDF.cat - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\adobepdf.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\adobepdf.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\Amd64\PSCRPTFE.NTF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\I386Vista\AdobePdf.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\I386Vista\AdobePDFUI.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\I386\ADGELP.INI - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\I386\ADPDF9.PPD - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_37dec03d80533e59\I386\ADUIGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\I386\ADREGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\AdobePDF.cat - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\adobepdfstd.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\adobepdfstd.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\Amd64\PSCRPTFE.NTF - Ok

>C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386Vista\AdobePdf.dll - packed by PESTUB

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386Vista\AdobePdf.dll - Ok

>C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386Vista\AdobePDFUI.dll - packed by PESTUB

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386Vista\AdobePDFUI.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386\ADGELP.INI - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdf.inf_x86_neutral_70cb20a3417216e2\I386\ADUIGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386\ADREGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\StdPPD\ADPDF9.PPD - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\AdobePDF.cat - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\adobepdfstd.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\adobepdfstd.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\Amd64\PSCRPTFE.NTF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_1dbfe6b91a6baa6c\I386\ADUIGP.DLL - Ok

>C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386Vista\AdobePDFUI.dll - packed by PESTUB

>C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386Vista\AdobePdf.dll - packed by PESTUB

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386Vista\AdobePDFUI.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386\ADGELP.INI - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386Vista\AdobePdf.dll - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386\ADREGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\StdPPD\ADPDF9.PPD - Ok

C:\Windows\system32\DriverStore\FileRepository\adp94xx.inf_x86_neutral_4928c8870f6a1577\adp94xx.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adp94xx.inf_x86_neutral_4928c8870f6a1577\adp94xx.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adobepdfstd.inf_x86_neutral_e96caaaa8cda6148\I386\ADUIGP.DLL - Ok

C:\Windows\system32\DriverStore\FileRepository\adpahci.inf_x86_neutral_b082e95ec9f8c3f9\adpahci.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adpahci.inf_x86_neutral_b082e95ec9f8c3f9\adpahci.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adp94xx.inf_x86_neutral_4928c8870f6a1577\adp94xx.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\adpu320.inf_x86_neutral_4ea3d42a9839982a\adpu320.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\adpu320.inf_x86_neutral_4ea3d42a9839982a\adpu320.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\adpahci.inf_x86_neutral_b082e95ec9f8c3f9\adpahci.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\af9035bda.inf_x86_neutral_aa11aa34552d1d4d\af9035bda.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\af9035bda.inf_x86_neutral_aa11aa34552d1d4d\af9035bda.PNF - Ok

>C:\Windows\system32\DriverStore\FileRepository\adpu320.inf_x86_neutral_4ea3d42a9839982a\adpu320.sys - packed by FLY-CODE

C:\Windows\system32\DriverStore\FileRepository\af9035bda.inf_x86_neutral_aa11aa34552d1d4d\AF9035BDA.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\agp.inf_x86_neutral_a61b8b06718e8352\agp.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\agp.inf_x86_neutral_a61b8b06718e8352\agp.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\agp.inf_x86_neutral_a61b8b06718e8352\GAGP30KX.SYS - Ok

C:\Windows\system32\DriverStore\FileRepository\agp.inf_x86_neutral_a61b8b06718e8352\UAGP35.SYS - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\Alcrmv.exe - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\alcxau4.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\alcxau4.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\alcxwdm.cat - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\ALCXWDM.SYS - Ok

C:\Windows\system32\DriverStore\FileRepository\adpu320.inf_x86_neutral_4ea3d42a9839982a\adpu320.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\ALSNDMGR.WAV - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\RTLCPAPI.dll - Ok

>C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\ALSNDMGR.CPL - packed by BINARYRES

>C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\RTLCPL.EXE - packed by BINARYRES

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\ALSNDMGR.CPL - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\RTLCPL.EXE - Ok

C:\Windows\system32\DriverStore\FileRepository\amdsata.inf_x86_neutral_67db50590108ebd9\amdsata.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\amdsata.inf_x86_neutral_67db50590108ebd9\amdsata.PNF - Ok

>C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\SOUNDMAN.EXE - packed by BINARYRES

C:\Windows\system32\DriverStore\FileRepository\amdsata.inf_x86_neutral_67db50590108ebd9\amdsata.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\amdsata.inf_x86_neutral_67db50590108ebd9\amdxata.sys - Ok

C:\Windows\system32\DriverStore\FileRepository\amdsbs.inf_x86_neutral_5cae6933bef20aa8\amdsbs.inf - Ok

C:\Windows\system32\DriverStore\FileRepository\amdsbs.inf_x86_neutral_5cae6933bef20aa8\amdsbs.PNF - Ok

C:\Windows\system32\DriverStore\FileRepository\alcxau4.inf_x86_neutral_63f79663d9dbed0b\SOUNDMAN.EXE - Ok

C:\Windows\system32\DriverStore\FileRepository\amyuni.inf_x86_neutral_8fcb3a53ba0bdcc3\acfpdf.txt - Ok

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.