tested this with windows executable's located in c:\windows and dropped the dll in c:\windows - the suspicious executables dll's that was captured is not related to the side loaded DLL - false positives.
this script needs more improvement to really identify suspicious dll or executables.