﻿Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-07-2017
Ran by koko (administrator) on KOKO-PC (31-07-2017 19:21:19)
Running from C:\Users\koko\Downloads
Loaded Profiles: koko (Available Profiles: koko)
Platform: Windows 10 Pro Version 1703 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.569\SSScheduler.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== ATTENTION
HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== ATTENTION
HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== ATTENTION
HKLM\ DisallowedCertificates: 3850EDD77CC74EC9F4829AE406BBF9C21E0DA87F (Kaspersky Lab) <==== ATTENTION
HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== ATTENTION
HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== ATTENTION
HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== ATTENTION
HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== ATTENTION
HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== ATTENTION
HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== ATTENTION
HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== ATTENTION
HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== ATTENTION
HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== ATTENTION
HKLM\ DisallowedCertificates: D3F78D747E7C5D6D3AE8ABFDDA7522BFB4CBD598 (Kaspersky Lab) <==== ATTENTION
HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== ATTENTION
HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== ATTENTION
HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== ATTENTION
HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== ATTENTION
HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== ATTENTION
HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== ATTENTION
HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== ATTENTION
HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== ATTENTION
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\koko\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\koko\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27784672 2017-06-27] (Skype Technologies S.A.)
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7963552 2017-06-20] (SUPERAntiSpyware)
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2017-06-06]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.569\SSScheduler.exe (McAfee, Inc.)
GroupPolicy\User: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.10.10.10
Tcpip\..\Interfaces\{2bf3f32a-0c13-413c-938f-f640634922cd}: [DhcpNameServer] 10.10.10.10
Tcpip\..\Interfaces\{af3ab8a7-af1a-4c6b-be55-cdcc86584400}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://seznam.cz/
HKU\S-1-5-21-1568842524-76667080-1656113233-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com

FireFox:
========
FF DefaultProfile: qr2vk1re.default
FF ProfilePath: C:\Users\koko\AppData\Roaming\Mozilla\Firefox\Profiles\qr2vk1re.default [2017-07-31]
FF Homepage: Mozilla\Firefox\Profiles\qr2vk1re.default -> hxxps://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_137.dll [2017-07-12] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll [2017-07-12] ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin HKU\S-1-5-21-1568842524-76667080-1656113233-1000: @ote-cr.cz/PKIComponent -> C:\Users\koko\AppData\Roaming\OTE\lib\x86\npPKIComponentNPAPI-ote.dll [2015-02-20] (OTE, a.s.)
FF Plugin HKU\S-1-5-21-1568842524-76667080-1656113233-1000: @ote-cr.cz/PKIComponent-x64 -> C:\Users\koko\AppData\Roaming\OTE\lib\x64\npPKIComponentNPAPI-ote.dll [2015-02-20] (OTE, a.s.)
FF Plugin HKU\S-1-5-21-1568842524-76667080-1656113233-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\koko\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2017-01-31] (SUPERAntiSpyware.com) [File not signed]
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.569\McCHSvc.exe [404376 2017-05-25] (McAfee, Inc.) [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2017-03-20] (Microsoft Corporation)
R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [1001920 2017-05-26] (McAfee, Inc.) [File not signed]
R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16928 2017-05-26] (McAfee, Inc.) [File not signed]
S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [87760 2017-05-26] (McAfee, Inc.) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-07-20] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [59904 2015-01-26] (www.winchiphead.com)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\opcomusb.sys [69320 2009-10-22] (FTDI Ltd.)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [136408 2017-07-30] (Malwarebytes Corporation)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R1 MpKsla8c6c6c9; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2AED5CC6-AE30-48BF-8C97-AC201720A84C}\MpKsla8c6c6c9.sys [44928 2017-07-31] (Microsoft Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2017-03-18] (Realtek                                            )
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [121248 2016-08-16] (Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [195936 2016-08-16] (Oracle Corporation)
S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [135824 2016-08-16] (Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-07-31 19:21 - 2017-07-31 19:21 - 000016289 _____ C:\Users\koko\Downloads\FRST.txt
2017-07-31 19:20 - 2017-07-31 19:20 - 000005630 _____ C:\Users\koko\Downloads\fixlist.txt
2017-07-31 17:20 - 2017-07-31 17:20 - 000323632 _____ C:\Users\koko\Downloads\AT10(AT10II)_RadioLink_bin_6f57_V_1_1_6(AT12S).bin
2017-07-31 16:14 - 2017-07-31 16:14 - 000006912 _____ C:\Users\koko\Desktop\AdwCleaner[C0].txt
2017-07-31 16:09 - 2017-07-31 16:09 - 000007688 _____ C:\Users\koko\Desktop\AdwCleaner[S0].txt
2017-07-31 16:07 - 2017-07-31 16:10 - 000000000 ____D C:\AdwCleaner
2017-07-31 16:05 - 2017-07-31 16:10 - 000149658 _____ C:\WINDOWS\ntbtlog.txt
2017-07-30 21:31 - 2017-07-30 21:31 - 008162248 _____ (Malwarebytes) C:\Users\koko\Downloads\adwcleaner_7.0.0.0(1).exe
2017-07-30 21:31 - 2017-07-30 21:31 - 000000199 _____ C:\4265ABBA19C80273.meta
2017-07-30 21:31 - 2017-07-30 21:31 - 000000193 _____ C:\229EEFA2C31F7DFE.meta
2017-07-30 21:31 - 2017-07-30 21:31 - 000000192 _____ C:\D9030F7FE1580EC6.meta
2017-07-30 21:31 - 2017-07-30 21:31 - 000000186 _____ C:\7262A9011E497365.meta
2017-07-30 21:31 - 2017-07-30 21:31 - 000000177 _____ C:\3BE9AB74A0742300.meta
2017-07-30 21:31 - 2017-06-25 16:45 - 000041492 _____ C:\3BE9AB74A0742300.vir
2017-07-30 21:31 - 2017-06-25 16:44 - 000012587 _____ C:\7262A9011E497365.vir
2017-07-30 21:31 - 2017-06-25 16:44 - 000003802 _____ C:\229EEFA2C31F7DFE.vir
2017-07-30 21:31 - 2017-06-25 16:44 - 000002547 _____ C:\D9030F7FE1580EC6.vir
2017-07-30 21:31 - 2017-06-25 16:44 - 000000040 _____ C:\4265ABBA19C80273.vir
2017-07-30 20:56 - 2017-07-30 21:31 - 000000000 ____D C:\ProgramData\RogueKiller
2017-07-30 20:56 - 2017-07-30 20:56 - 000028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2017-07-30 20:55 - 2017-07-30 20:55 - 026543176 _____ C:\Users\koko\Downloads\RogueKillerX64.exe
2017-07-30 20:34 - 2017-07-31 18:23 - 000018148 _____ C:\Users\koko\Desktop\FRST.rar
2017-07-30 20:34 - 2017-07-30 20:34 - 000009700 _____ C:\Users\koko\Desktop\Addition.rar
2017-07-30 20:21 - 2017-07-31 18:21 - 000119993 _____ C:\Users\koko\Desktop\FRST.txt
2017-07-30 20:21 - 2017-07-31 18:21 - 000032240 _____ C:\Users\koko\Desktop\Addition.txt
2017-07-30 20:17 - 2017-07-31 19:21 - 000000000 ____D C:\Users\koko\Downloads\FRST-OlderVersion
2017-07-30 16:29 - 2017-07-31 19:21 - 002381312 _____ (Farbar) C:\Users\koko\Downloads\FRST64.exe
2017-07-30 16:29 - 2017-07-31 19:21 - 000000000 ____D C:\FRST
2017-07-30 16:21 - 2017-07-30 16:22 - 008162248 _____ (Malwarebytes) C:\Users\koko\Downloads\adwcleaner_7.0.0.0.exe
2017-07-30 16:01 - 2017-07-30 16:01 - 003449304 _____ (AVG Technologies CZ, s.r.o.) C:\Users\koko\Downloads\Antivirus_Free_1896(1).exe
2017-07-30 15:50 - 2017-07-30 15:50 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2017-07-30 15:45 - 2017-07-30 15:50 - 162135728 _____ (Kaspersky Lab) C:\Users\koko\Downloads\kav18.0.0.405aben_es_fr_12609.exe
2017-07-30 15:35 - 2017-07-30 15:35 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-07-30 15:35 - 2017-07-30 15:35 - 000001216 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-07-30 15:35 - 2017-07-30 15:35 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-07-30 13:49 - 2017-07-30 15:36 - 000000000 ____D C:\Users\koko\AppData\Local\Mozilla
2017-07-30 13:45 - 2017-07-30 13:45 - 000000000 ____D C:\Users\koko\AppData\Roaming\Mozilla
2017-07-30 11:58 - 2017-07-30 11:58 - 021540440 _____ (Malwarebytes Corporation ) C:\Users\koko\Downloads\mbam-setup-2.1.4.1018.exe
2017-07-30 11:55 - 2017-07-30 11:56 - 000000039 _____ C:\Users\koko\Downloads\Stats.ini
2017-07-30 11:55 - 2017-07-30 11:55 - 000000000 ____D C:\ProgramData\AVAST Software
2017-07-30 11:47 - 2017-07-30 12:36 - 000000000 ____D C:\Program Files (x86)\SpywareGuard
2017-07-30 11:47 - 2017-07-30 11:47 - 002062665 _____ C:\Users\koko\Downloads\spywareguardsetup.exe
2017-07-28 18:56 - 2017-07-30 21:30 - 000000000 ____D C:\ProgramData\{83BAA588-3411-1223-56F3-62EE5031CF99}
2017-07-25 18:30 - 2017-07-25 18:30 - 000000000 ____D C:\ProgramData\Cone Layout
2017-07-24 18:47 - 2017-07-24 18:48 - 000389012 _____ C:\WINDOWS\Minidump\072417-29984-01.dmp
2017-07-24 18:47 - 2017-07-24 18:47 - 432361321 _____ C:\WINDOWS\MEMORY.DMP
2017-07-24 18:47 - 2017-07-24 18:47 - 000000000 ____D C:\WINDOWS\Minidump
2017-07-23 12:50 - 2017-07-23 18:03 - 000013352 _____ C:\Users\koko\Desktop\rizika.xlsx
2017-07-20 20:14 - 2017-07-20 20:15 - 000000000 ____D C:\Windows.old
2017-07-20 20:10 - 2017-07-20 20:10 - 032688336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 031652264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 023681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 023677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 021353208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 020504576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 020373408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 019335168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 013839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 012786176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 011870720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 008238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 008211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 007931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 006728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 006554928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 006287360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 006123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 005961216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 005820984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 005806048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 005719040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 005225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 004847424 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 004730880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 004707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 004536320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 004447744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 004417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 004056576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 003803136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 003667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 003656704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 003332096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 003059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002873344 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002814464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002782720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002649600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002645688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002588160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002499584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002475136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002298368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002165752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002132480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002077184 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2017-07-20 20:10 - 2017-07-20 20:10 - 002021680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 002008576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2017-07-20 20:10 - 2017-07-20 20:10 - 001802240 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001640448 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001620368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001529384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001518088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001494016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001492480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001396224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001339352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001301504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001237504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001220072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 001171032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001150784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001142272 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001121928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001050624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 001019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000988168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000969728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000952832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000949920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000787712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-07-20 20:10 - 2017-07-20 20:10 - 000754592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000750496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000734208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000648192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2017-07-20 20:10 - 2017-07-20 20:10 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2017-07-20 20:10 - 2017-07-20 20:10 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2017-07-20 20:10 - 2017-07-20 20:10 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2017-07-20 20:10 - 2017-07-20 20:10 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000472728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000443728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000411992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000406032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000372128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000346016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000336320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-07-20 20:10 - 2017-07-20 20:10 - 000278944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000255904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000254168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000228256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-07-20 20:10 - 2017-07-20 20:10 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000203168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000176032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000138656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000119384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000102312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2017-07-20 20:10 - 2017-07-20 20:10 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000096128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgr.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2017-07-20 20:10 - 2017-07-20 20:10 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2017-07-20 20:10 - 2017-07-20 20:10 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll
2017-07-20 20:09 - 2017-07-20 20:10 - 001468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 017364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 008331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 008318880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 007904784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 007596544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 007336448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 007325584 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 007149056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 006759512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 005892096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 005557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 005477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 004559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 004469840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 004396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 003784704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 003670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 003377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 003204096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 003139584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 003057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002969880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002956800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 002938880 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002829824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002804736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002750464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002681760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 002679296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002444696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 002444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002399728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002330520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002327456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 002259760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002229152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002211328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002171392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 002055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 001930320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001854880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001760264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001703424 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 001693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001670496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001565184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001564576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001517472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001458584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001451008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001425920 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 001420800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001395152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2017-07-20 20:09 - 2017-07-20 20:09 - 001357824 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001355264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001337848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001325968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001285120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 001242528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 001214880 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001195240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 001178528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001147288 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 001106848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 001100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001077496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001076736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001065104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2017-07-20 20:09 - 2017-07-20 20:09 - 001057832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 001024928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 001017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2017-07-20 20:09 - 2017-07-20 20:09 - 000992672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000965024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2017-07-20 20:09 - 2017-07-20 20:09 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000923040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000916992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000899824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000864240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000848280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000847872 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000846752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000844704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000833160 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000821664 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000820128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000790016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000774560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000699808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2017-07-20 20:09 - 2017-07-20 20:09 - 000672672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000629152 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000626528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000583304 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000558920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000554392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2017-07-20 20:09 - 2017-07-20 20:09 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000544160 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000519584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000506776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000438096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000426912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000411040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000406072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000399264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000382368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000354400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000349600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000335776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000334240 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000318232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000279968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdmaud.drv
2017-07-20 20:09 - 2017-07-20 20:09 - 000233376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdmaud.drv
2017-07-20 20:09 - 2017-07-20 20:09 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000204192 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000192416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000181656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000179608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000142752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000136096 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000125344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000117664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000096672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000094624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2017-07-20 20:09 - 2017-07-20 20:09 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000058488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000049656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000041376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2017-07-20 20:09 - 2017-07-20 20:09 - 000034720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2017-07-20 20:09 - 2017-07-20 20:09 - 000031932 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
2017-07-20 20:08 - 2017-07-20 20:08 - 000000000 ____D C:\Users\koko\AppData\Local\DBG
2017-07-20 20:01 - 2017-07-20 20:01 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2017-07-20 19:59 - 2017-07-20 19:59 - 004709528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 004672848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 002604256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 002424016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 002341376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 002088960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001700408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001583616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001506816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001474800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001463296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001455592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001292288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001266544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 001035264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000987648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000797184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2017-07-20 19:59 - 2017-07-20 19:59 - 000794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwcreator.exe
2017-07-20 19:59 - 2017-07-20 19:59 - 000754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000716440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000559000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2017-07-20 19:59 - 2017-07-20 19:59 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2017-07-20 19:59 - 2017-07-20 19:59 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-07-20 19:59 - 2017-07-20 19:59 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000387928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2017-07-20 19:59 - 2017-07-20 19:59 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll
2017-07-20 19:59 - 2017-07-20 19:59 - 000059904 _____ C:\WINDOWS\SysWOW64\xboxgipsynthetic.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 006726656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 006535168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 004175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 003135488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 003116184 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 002765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 002730496 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 002625024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 002516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 002438656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 002347520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 002085280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001911752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001852776 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001706496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001657344 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001628160 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001611776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001600512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001596600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001557288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001536512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001506712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001459728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001433600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001409048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001333136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001320352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001269760 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001242624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001141760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001102848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001085440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001078272 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 001003624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaserver.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000972800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000961952 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000891904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000799232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000778240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2017-07-20 19:58 - 2017-07-20 19:58 - 000777400 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000741784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaserver.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000730016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000712608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000708712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000673112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000667040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000660384 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000651680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000606960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000599576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000573856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000546208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000543648 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000523296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000409504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000388000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-07-20 19:58 - 2017-07-20 19:58 - 000382368 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000370928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000363424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000354360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000321376 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000311200 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000287648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000266640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000259400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\devicengccredprov.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000219040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000211872 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000188824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devicengccredprov.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedmodesvc.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000144288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveExt.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000130464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000119712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000112544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000105456 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000095584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000086016 _____ C:\WINDOWS\system32\xboxgipsynthetic.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2017-07-20 19:58 - 2017-07-20 19:58 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCredentialDeployment.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2017-07-20 19:58 - 2017-07-20 19:58 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksthunk.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000027040 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe
2017-07-20 19:58 - 2017-07-20 19:58 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys
2017-07-20 19:58 - 2017-07-20 19:58 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-07-20 19:58 - 2017-07-20 19:58 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-07-20 19:55 - 2017-07-20 19:55 - 000000020 ___SH C:\Users\koko\ntuser.ini
2017-07-20 19:52 - 2017-03-17 23:00 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2017-07-20 19:52 - 2017-03-17 22:59 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2017-07-20 19:52 - 2017-03-17 22:48 - 006348288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2017-07-20 19:52 - 2017-03-17 22:43 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2017-07-20 19:52 - 2017-03-17 22:35 - 005484544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2017-07-20 19:51 - 2017-07-20 19:52 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2017-07-20 19:51 - 2017-07-20 19:52 - 000007623 _____ C:\WINDOWS\diagerr.xml
2017-07-20 19:51 - 2017-07-20 19:20 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-07-20 19:50 - 2017-07-20 19:50 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-07-20 19:48 - 2017-07-20 19:48 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-07-20 19:48 - 2017-07-20 19:48 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-07-20 19:48 - 2017-07-20 19:48 - 000000000 ____D C:\Program Files\MSBuild
2017-07-20 19:48 - 2017-07-20 19:48 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-07-20 19:48 - 2017-07-20 19:33 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-07-20 19:47 - 2017-02-10 12:26 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-07-20 19:47 - 2017-02-10 12:26 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-07-20 19:47 - 2017-02-10 12:26 - 000035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2017-07-20 19:47 - 2017-02-10 12:21 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2017-07-20 19:47 - 2017-02-10 12:21 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-07-20 19:47 - 2017-02-10 12:21 - 000035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2017-07-20 19:46 - 2017-07-20 19:46 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2017-07-20 19:43 - 2017-07-31 16:11 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-07-20 19:43 - 2017-07-30 22:37 - 000004190 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{77FE5F88-E8EC-47B5-A504-9D8049FAC5F4}
2017-07-20 19:43 - 2017-07-20 20:06 - 000003356 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1568842524-76667080-1656113233-1000
2017-07-20 19:43 - 2017-07-20 20:00 - 000016862 _____ C:\WINDOWS\System32\Tasks\MyBase Getter Ultimate
2017-07-20 19:43 - 2017-07-20 20:00 - 000016838 _____ C:\WINDOWS\System32\Tasks\QwikMarketingPlone
2017-07-20 19:43 - 2017-07-20 19:43 - 000003362 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-07-20 19:43 - 2017-07-20 19:43 - 000002540 _____ C:\WINDOWS\System32\Tasks\GridinSoft Anti-Malware
2017-07-20 19:43 - 2017-07-20 19:43 - 000002402 _____ C:\WINDOWS\System32\Tasks\{8F651FF4-9E93-4E3F-AD4F-CC17DD50D67A}
2017-07-20 19:43 - 2017-07-20 19:43 - 000002276 _____ C:\WINDOWS\System32\Tasks\{44BA3F14-1CB2-4D85-8049-2C303519F2C5}
2017-07-20 19:43 - 2017-07-20 19:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2017-07-20 19:42 - 2017-07-31 16:18 - 002000110 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-07-20 19:32 - 2017-07-20 19:32 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-07-20 19:31 - 2017-07-20 19:31 - 000000000 ____D C:\ProgramData\USOShared
2017-07-20 19:28 - 2017-07-20 19:33 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-07-20 19:28 - 2017-07-20 19:28 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines
2017-07-20 19:26 - 2017-07-20 20:52 - 000000000 ____D C:\Users\koko
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Šablony
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Soubory cookie
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Poslední
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Okolní tiskárny
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Okolní síť
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Nabídka Start
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Dokumenty
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Documents\Obrázky
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Documents\Hudba
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Documents\Filmy
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\Data aplikací
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-07-20 19:26 - 2017-07-20 19:26 - 000000000 _SHDL C:\Users\koko\AppData\Local\Data aplikací
2017-07-20 19:24 - 2017-07-20 19:24 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-07-20 19:24 - 2017-07-20 19:24 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2017-07-20 19:24 - 2017-07-20 19:24 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2017-07-20 19:24 - 2017-07-20 19:24 - 000000000 ____D C:\Program Files\Realtek
2017-07-20 19:23 - 2017-03-18 22:56 - 002233344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-07-20 19:20 - 2017-07-30 21:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-07-20 19:20 - 2017-07-21 21:51 - 000389112 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-07-18 21:58 - 2017-07-20 19:55 - 000000000 ___DC C:\WINDOWS\Panther
2017-07-12 17:43 - 2017-07-12 17:43 - 000021716 _____ C:\Users\koko\Downloads\Detail_2017-07-12-17-43-22_1921689685-15122f7915cfd51585f-7cc7.pdf
2017-07-12 17:42 - 2017-07-12 17:42 - 000021720 _____ C:\Users\koko\Downloads\Detail_2017-07-12-17-43-01_1921689685-15122f7915cfd51585f-7cc8.pdf
2017-07-12 17:42 - 2017-07-12 17:42 - 000021714 _____ C:\Users\koko\Downloads\Detail_2017-07-12-17-42-31_1921689685-15122f7915cfd51585f-7cc9.pdf
2017-07-12 17:41 - 2017-07-12 17:41 - 000042925 _____ C:\Users\koko\Downloads\1100702237 (1).pdf
2017-07-12 17:39 - 2017-07-12 17:39 - 000042925 _____ C:\Users\koko\Downloads\1100702237.pdf
2017-07-07 15:10 - 2017-07-07 15:10 - 000000000 ____D C:\Users\koko\AppData\Local\UNP
2017-07-07 14:15 - 2017-07-20 19:33 - 000000000 ____D C:\WINDOWS\system32\UNP
2017-07-07 14:15 - 2017-07-07 14:16 - 000000000 ____D C:\Program Files\UNP
2017-07-02 11:12 - 2017-07-02 11:12 - 001835472 _____ (GridinSoft LLC) C:\Users\koko\Downloads\TrojanKiller-Setup.exe
2017-07-02 11:12 - 2017-07-02 11:12 - 000001774 _____ C:\Users\koko\Desktop\Reset Browser Setting.lnk
2017-07-02 11:12 - 2017-07-02 11:12 - 000000900 _____ C:\Users\koko\Desktop\Trojan Killer.lnk
2017-07-02 11:12 - 2017-07-02 11:12 - 000000000 ____D C:\Program Files\Trojan Killer
2017-07-02 10:58 - 2017-07-31 16:06 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2017-07-02 10:56 - 2017-07-02 11:06 - 000000000 ____D C:\WINDOWS\pss
2017-07-01 10:23 - 2017-07-01 10:29 - 203143496 _____ (SecureAge Technology) C:\Users\koko\Downloads\SecureAPlusSetup_v4.2.2(1).exe
2017-07-01 10:22 - 2017-07-01 10:22 - 000000000 ____D C:\Users\koko\AppData\Local\Cybereason
2017-07-01 10:21 - 2017-07-01 10:21 - 000518138 _____ C:\Users\Qidalc\rKntVZvFeaf.xlsx
2017-07-01 10:21 - 2017-07-01 10:21 - 000514889 _____ C:\Users\Akyl2te\mystery_bureau.xlsx
2017-07-01 10:21 - 2017-07-01 10:21 - 000217461 _____ C:\Users\Qidalc\insidejournalfinallymuseum.mdb
2017-07-01 10:21 - 2017-07-01 10:21 - 000215212 _____ C:\Users\Akyl2te\sad.close.dallas.mdb
2017-07-01 10:21 - 2017-07-01 10:21 - 000074792 _____ C:\Users\Qidalc\oMrn5PXgETR.xls
2017-07-01 10:21 - 2017-07-01 10:21 - 000072755 _____ C:\Users\Akyl2te\discipline-keep-guest.xls
2017-07-01 10:21 - 2017-07-01 10:21 - 000056755 _____ C:\Users\Akyl2te\equilibrium-poetic.pem
2017-07-01 10:21 - 2017-07-01 10:21 - 000055657 _____ C:\Users\Qidalc\stands.pragmatic.furniture.frustrate.pem
2017-07-01 10:21 - 2017-07-01 10:21 - 000042701 _____ C:\Users\Qidalc\iS2Rj.txt
2017-07-01 10:21 - 2017-07-01 10:21 - 000039339 _____ C:\Users\Akyl2te\receiving.barber.ruth.locked.txt
2017-07-01 10:21 - 2017-07-01 10:21 - 000016659 _____ C:\Users\Akyl2te\pursuant.bar.spoil.sustain.sql
2017-07-01 10:21 - 2017-07-01 10:21 - 000011657 _____ C:\Users\Qidalc\KG8dA.sql
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 __SHD C:\Users\koko\Desktop\0K, this directory is for Ransomware detection (just leave it here)
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ___HD C:\Users\Qidalc
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ___HD C:\Users\koko\Documents\Papplication46
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ___HD C:\Users\koko\Documents\1 detail36
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ___HD C:\Users\Akyl2te
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ____D C:\Zbsetup166
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ____D C:\Users\koko\AppData\Roaming\Cybereason
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ____D C:\ProgramData\Cybereason
2017-07-01 10:21 - 2017-07-01 10:21 - 000000000 ____D C:\bworking141
2017-07-01 10:19 - 2017-07-01 10:19 - 004460544 _____ C:\Users\koko\Downloads\CybereasonRansomFree.msi

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-07-31 19:16 - 2016-08-13 13:30 - 000000000 ____D C:\Users\koko\AppData\Roaming\Skype
2017-07-31 18:18 - 2016-11-21 18:30 - 000000000 ____D C:\Users\koko\AppData\Roaming\Seznam.cz
2017-07-31 18:13 - 2016-11-16 13:25 - 000000000 ____D C:\Users\koko\AppData\LocalLow\Mozilla
2017-07-31 16:18 - 2017-03-20 06:39 - 000864676 _____ C:\WINDOWS\system32\perfh005.dat
2017-07-31 16:18 - 2017-03-20 06:39 - 000185076 _____ C:\WINDOWS\system32\perfc005.dat
2017-07-31 16:10 - 2017-03-18 13:40 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2017-07-31 16:10 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-07-31 16:03 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps
2017-07-31 16:03 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-07-30 21:31 - 2017-06-30 21:16 - 000000000 ____D C:\Users\koko\AppData\Local\CrashDumps
2017-07-30 21:31 - 2017-06-25 16:40 - 000000000 ____D C:\Users\koko\AppData\Local\UCBrowser
2017-07-30 16:15 - 2017-03-12 21:17 - 000000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2017-07-30 16:03 - 2017-06-13 21:02 - 000136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2017-07-30 15:35 - 2016-11-16 13:00 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-07-30 13:00 - 2016-07-16 08:04 - 000000000 ____D C:\Program Files\MyBase Getter Ultimate
2017-07-30 12:39 - 2016-08-18 17:08 - 000000000 ____D C:\Program Files (x86)\Google
2017-07-30 12:37 - 2016-08-18 17:08 - 000000000 ____D C:\Users\koko\AppData\Local\Google
2017-07-25 07:45 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\rescache
2017-07-24 18:52 - 2017-03-18 23:01 - 000000000 ____D C:\WINDOWS\INF
2017-07-22 20:33 - 2016-08-13 13:29 - 000000000 ____D C:\ProgramData\Skype
2017-07-21 21:52 - 2016-11-05 21:45 - 000000270 __RSH C:\ProgramData\ntuser.pol
2017-07-21 20:37 - 2016-07-27 17:58 - 000091216 _____ C:\Users\koko\AppData\Local\GDIPFONTCACHEV1.DAT
2017-07-21 18:39 - 2016-11-14 09:30 - 000001283 _____ C:\Users\koko\Desktop\Internet Explorer.lnk
2017-07-21 17:56 - 2017-03-18 22:51 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-07-21 15:10 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\appcompat
2017-07-20 20:18 - 2017-03-18 23:03 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-07-20 20:16 - 2016-07-27 20:39 - 000000000 ____D C:\Users\koko\AppData\Local\Packages
2017-07-20 20:15 - 2017-03-18 23:06 - 000000000 ____D C:\WINDOWS\Setup
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ___SD C:\WINDOWS\system32\F12
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ___RD C:\Program Files\Windows Defender
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\migwiz
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-07-20 20:13 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2017-07-20 20:06 - 2016-07-27 20:43 - 000002421 _____ C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-07-20 20:06 - 2016-07-27 20:43 - 000000000 ___RD C:\Users\koko\OneDrive
2017-07-20 20:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-07-20 20:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-07-20 20:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\Provisioning
2017-07-20 20:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2017-07-20 20:01 - 2017-03-18 13:40 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-07-20 19:56 - 2017-03-18 23:03 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-07-20 19:56 - 2016-04-27 09:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-07-20 19:54 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows NT
2017-07-20 19:54 - 2017-03-18 13:40 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2017-07-20 19:53 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-07-20 19:53 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\Registration
2017-07-20 19:52 - 2017-03-20 06:40 - 000000000 ____D C:\WINDOWS\OCR
2017-07-20 19:48 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-07-20 19:48 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\MUI
2017-07-20 19:45 - 2017-06-14 19:40 - 000077376 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-07-20 19:43 - 2017-03-20 06:41 - 000000000 ____D C:\WINDOWS\HoloShell
2017-07-20 19:43 - 2016-07-27 20:36 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-07-20 19:42 - 2017-03-18 23:03 - 000000000 __RSD C:\WINDOWS\Media
2017-07-20 19:42 - 2017-03-18 23:03 - 000000000 __RHD C:\Users\Public\Libraries
2017-07-20 19:33 - 2017-06-14 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-07-20 19:33 - 2017-06-12 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2017-07-20 19:33 - 2017-06-06 20:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2017-07-20 19:33 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-07-20 19:33 - 2017-02-23 20:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OP-COM Professional 150406b EN
2017-07-20 19:33 - 2017-02-10 21:38 - 000000000 ____D C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aoao Photo Editor
2017-07-20 19:33 - 2017-01-12 19:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashBoot
2017-07-20 19:33 - 2017-01-12 18:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novicorp WinToFlash Lite
2017-07-20 19:33 - 2017-01-11 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinToUSB
2017-07-20 19:33 - 2016-11-25 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EAGLE Layout Editor 7.7.0
2017-07-20 19:33 - 2016-11-15 20:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Valve-Protector
2017-07-20 19:33 - 2016-11-03 18:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KiCad
2017-07-20 19:33 - 2016-10-29 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProfiCAD
2017-07-20 19:33 - 2016-10-27 19:31 - 000000000 ____D C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PCMSCAN
2017-07-20 19:33 - 2016-09-10 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Teta CEWE fotosvet
2017-07-20 19:33 - 2016-09-04 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2017-07-20 19:33 - 2016-08-22 17:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zavoli
2017-07-20 19:33 - 2016-08-20 12:12 - 000000000 ____D C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OP-COM
2017-07-20 19:33 - 2016-08-20 11:50 - 000000000 ____D C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VAUX-COM 120309a+131223d
2017-07-20 19:33 - 2016-08-18 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
2017-07-20 19:33 - 2016-08-07 18:36 - 000000000 ____D C:\Users\koko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-07-20 19:33 - 2016-08-07 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-07-20 19:33 - 2016-08-01 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2017-07-20 19:33 - 2016-04-27 08:34 - 000000000 ____D C:\WINDOWS\ShellNew
2017-07-20 19:31 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\USOPrivate
2017-07-20 19:31 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-07-20 19:30 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-07-20 19:30 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2017-07-20 19:30 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-07-20 19:30 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\spool
2017-07-20 19:30 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-07-20 19:30 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\IME
2017-07-20 19:29 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\schemas
2017-07-20 19:29 - 2017-03-07 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-07-20 19:29 - 2016-12-31 18:34 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2017-07-20 19:28 - 2017-03-18 23:03 - 000000000 __SHD C:\Program Files\Windows Sidebar
2017-07-20 19:28 - 2017-03-18 23:03 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-07-20 19:28 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-07-20 19:28 - 2016-07-27 18:12 - 000000000 ____D C:\Program Files\Intel
2017-07-20 19:28 - 2009-07-14 05:20 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2017-07-20 19:24 - 2017-03-18 13:40 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2017-07-20 16:42 - 2017-03-20 07:14 - 000000000 ___HD C:\$WINDOWS.~BT
2017-07-12 21:07 - 2016-07-28 16:12 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-07-12 21:05 - 2016-07-28 16:11 - 135225752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-07-10 21:54 - 2016-08-23 20:06 - 000000000 ____D C:\Users\koko\Desktop\FILMY
2017-07-06 20:08 - 2016-08-18 17:09 - 000000000 ____D C:\Users\koko\Desktop\MIMIBAZAR
2017-07-03 17:41 - 2017-03-07 22:07 - 000000000 ___RD C:\Program Files (x86)\Skype

==================== Files in the root of some directories =======

2017-06-25 16:39 - 2017-06-25 16:39 - 000140800 _____ () C:\Users\koko\AppData\Local\installer.dat
2017-06-25 16:39 - 2017-06-25 16:39 - 001705984 _____ () C:\Users\koko\AppData\Local\po.db
2016-11-21 18:33 - 2017-06-01 21:19 - 000000041 ___SH () C:\ProgramData\.zreglib
2016-09-01 20:27 - 2016-09-01 20:29 - 000000024 _____ () C:\ProgramData\GenePccMon.ini
2017-05-31 21:44 - 2017-06-01 21:32 - 000000187 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc

Some files in TEMP:
====================
2017-07-30 20:56 - 2017-07-20 20:09 - 001930320 _____ (Microsoft Corporation) C:\Users\koko\AppData\Local\Temp\dllnt_dump.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-07-30 21:46

==================== End of FRST.txt ============================