Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Vyskakovací reklama

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Vyskakovací reklama

#1 Příspěvek od Sobi »

Ahoj, prosím o pomoct s odstraněním malwaru. Neuváženě jsem povolil flash a tím jsem si stáhl do pc vyskakovací reklamu a kdo ví co ještě. Děkuji moc za pomoc.

Logy z FRST a RSIT byly moc dlouhé, tak je přikládám v příloze.
Přílohy
Logy.zip
RSIT a FRST
(39.97 KiB) Staženo 103 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#3 Příspěvek od Sobi »

Dobrý den,

provedl jsem, ale jestli to chápu správně, tak už tam nic není. Je to možné?

# -------------------------------
# Malwarebytes AdwCleaner 7.4.1.0
# -------------------------------
# Build: 09-05-2019
# Database: 2019-10-03.2 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 10-08-2019
# Duration: 00:00:11
# OS: Windows 10 Pro
# Scanned: 35164
# Detected: 10


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Preinstalled Software ] *****

Preinstalled.HPSupportAssistant Folder C:\Program Files (x86)\HEWLETT-PACKARD\HP SUPPORT SOLUTIONS
Preinstalled.HPSupportAssistant Folder C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSupportAssistant Folder C:\Users\Jan\AppData\Roaming\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSupportAssistant Folder C:\Windows\System32\config\systemprofile\AppData\Local\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.SamsungSmartSwitch File C:\Users\Jan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Smart Switch.lnk
Preinstalled.SamsungSmartSwitch Folder C:\Program Files (x86)\SAMSUNG\SMART SWITCH PC
Preinstalled.SamsungSmartSwitch Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAMSUNG\SMART SWITCH PC
Preinstalled.SamsungSmartSwitch Folder C:\Users\Jan\AppData\Roaming\SAMSUNG\SMART SWITCH PC
Preinstalled.SamsungSmartSwitch Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}
Preinstalled.SamsungSmartSwitch Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}


AdwCleaner_Debug.log - [6670 octets] - [08/10/2019 14:13:09]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#4 Příspěvek od Rudy »

Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#5 Příspěvek od Sobi »

Zdravím, tak bohužel se reklamy zobrazují stále.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2019
Ran by Jan (administrator) on DESKTOP-NOPEO3O (Hewlett-Packard HP ProBook 430 G2) (08-10-2019 16:54:47)
Running from C:\Users\Jan\Downloads
Loaded Profiles: Jan (Available Profiles: Jan)
Platform: Windows 10 Pro Version 1903 18362.388 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(CobianSoft, Luis Cobian) [File not signed] C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HPHotkeyNotification.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Hotkey Support\HotkeyService.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Hotkey Support\LanWlanSwitchingService.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\HP Hotkey Support\QLBController.exe
(HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(KOMERCNI BANKA A.S. -> ) C:\Users\Jan\AppData\Roaming\KB-tfo\lib\x86\ProxyHostTFO.exe
(Luis Cobian, CobianSoft) [File not signed] C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe
(Luis Cobian, CobianSoft) [File not signed] C:\Program Files (x86)\Cobian Backup 11\cbService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11909.1002.3.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19091.313.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19072.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\fpCSEvtSvc.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8515832 2015-08-19] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-17] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2012-12-27] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [Cobian Backup 11 interface] => C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe [4407808 2013-03-07] (Luis Cobian, CobianSoft) [File not signed]
HKU\S-1-5-21-2564029500-12834783-3704777987-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [23153344 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-24] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {293F4BE2-D5CF-4C2E-8FF2-DEB97C18CF6C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-14] (Google Inc -> Google LLC)
Task: {31C83DE5-07A9-40E3-A8B4-5A1E2A6EF0D7} - System32\Tasks\HP\HP Hotkey Support\Start QLBController Process => C:\Program Files (x86)\HP\HP Hotkey Support\QLBController.exe [891432 2018-08-31] (HP Inc. -> HP)
Task: {337CFDAA-51C7-4545-80C5-3210438A9DC0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {34C81021-FAF6-4830-BECD-3550017BAAFD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems)
Task: {38C8F8BB-783B-490A-AD7F-542436F51F4D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [143736 2019-09-12] (HP Inc. -> HP Inc.)
Task: {3B95DC40-6A6F-43D5-83CF-03195D41C89E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16835256 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {452D2C57-59FA-4FA5-B17C-849C2CB0A4CD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {84E378DA-B231-4BEA-BD6C-4744D4F9F25F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86F2E4FA-14C8-4272-ABB6-76EAA30AAB7F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-08-07] (HP Inc. -> HP Inc.)
Task: {C57A38B7-9CE4-4BD2-A838-4C1E527B99FC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-14] (Google Inc -> Google LLC)
Task: {C5DA8079-7B9C-4A4F-80BC-B49A2B9929BA} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {D3162E6B-DA97-4F8E-9BE3-4DB831930E7E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E2E2545F-33C0-48FF-8186-8B374E5C0837} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater – Install HPSA => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-08-07] (HP Inc. -> HP Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{4e27d7ac-a456-4ee2-9ad3-a24e67ff46a7}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{a0f89e7b-6de7-42d9-8974-93dc2ea12052}: [DhcpNameServer] 10.0.0.1

Internet Explorer:
==================
HKU\S-1-5-21-2564029500-12834783-3704777987-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-2564029500-12834783-3704777987-1001 -> DefaultScope {EC8367FD-65C9-4784-9475-F16646C1B44E} URL = hxxps://www.google.com/search?q={searchTerms}&s ... utEncoding?}
SearchScopes: HKU\S-1-5-21-2564029500-12834783-3704777987-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2564029500-12834783-3704777987-1001 -> {EC8367FD-65C9-4784-9475-F16646C1B44E} URL = hxxps://www.google.com/search?q={searchTerms}&s ... utEncoding?}
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-08-14] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-08-14] (Oracle America, Inc. -> Oracle Corporation)

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-08-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-08-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-03] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.302\npGoogleUpdate3.dll [2019-10-03] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-08-21] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2564029500-12834783-3704777987-1001: @kb-ext.cz/PKIComponent -> C:\Users\Jan\AppData\Roaming\KB-ext\lib\x86\npPKIComponentNPAPI-kbext.dll [2018-11-26] (KOMERCNI BANKA A.S. -> Komerční banka, a.s.)
FF Plugin HKU\S-1-5-21-2564029500-12834783-3704777987-1001: @kb-tfo.cz/PKIComponent -> C:\Users\Jan\AppData\Roaming\KB-tfo\lib\x86\npPKIComponentNPAPI-tfo.dll [2015-10-06] (KOMERCNI BANKA A.S. -> Komerční banka, a.s.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.kb.cz/
CHR StartupUrls: Default -> "hxxp://www.kb.cz/","hxxps://www.tfonline.cz/Ne ... ttpGateWay"
CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default [2019-10-08]
CHR Extension: (Prezentace) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-14]
CHR Extension: (Cryptoplus KB - podepisovací modul) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ancbghdjochicglfimfpagephbgjonhg [2019-08-15]
CHR Extension: (Dokumenty) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-14]
CHR Extension: (Disk Google) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-14]
CHR Extension: (YouTube) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-14]
CHR Extension: (Tabulky) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-08-14]
CHR Extension: (Cryptoplus KB - podepisovací modul) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldildmkoeoicfkknedfdpjmgjmpkpooc [2019-09-26]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-14]
CHR Extension: (Crypto Web Extension) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjohlogcennenjhkfclfgaganagadkkm [2019-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-25]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 cbVSCService11; C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe [67584 2013-03-07] (CobianSoft, Luis Cobian) [File not signed]
R2 CobianBackup11; C:\Program Files (x86)\Cobian Backup 11\cbService.exe [1131008 2013-03-07] (Luis Cobian, CobianSoft) [File not signed]
R2 fpCsEvtSvc; C:\Windows\system32\fpCSEvtSvc.exe [22528 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 HotKeyServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe [819856 2019-05-14] (HP Inc. -> HP Inc.)
R2 HP Hotkey Service; C:\Program Files (x86)\HP\HP Hotkey Support\HotkeyService.exe [969256 2018-08-31] (HP Inc. -> HP)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1128992 2017-12-12] (HP Inc. -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [358264 2019-08-07] (HP Inc. -> HP Inc.)
R2 ibtsiva; C:\Windows\system32\ibtsiva.exe [184064 2017-03-09] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373760 2017-01-26] (Intel(R) pGFX -> Intel Corporation)
R2 LanWlanSwitchingService; C:\Program Files (x86)\HP\HP Hotkey Support\LanWlanSwitchingService.exe [618536 2018-08-31] (HP Inc. -> HP)
R2 LanWlanWwanSwitchingServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe [731072 2019-05-14] (HP Inc. -> HP Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312064 2015-08-19] (Realtek Semiconductor Corp -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [256224 2017-09-06] (Synaptics Incorporated -> Synaptics Incorporated)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [53248 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Accelerometer; C:\Windows\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2017-01-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 GemCCID; C:\Windows\System32\drivers\GemCCID.sys [139632 2015-07-10] (Microsoft Windows Hardware Compatibility Publisher -> Gemalto)
R0 hpdskflt; C:\Windows\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R3 HpqKbFiltr; C:\Windows\System32\drivers\HpqKbFiltr.sys [50752 2019-05-14] (HP Inc. -> HP Inc.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [230656 2017-03-09] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3595472 2018-10-12] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [896768 2016-02-17] (Realtek Semiconductor Corp -> Realtek )
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [878528 2018-05-14] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv64.sys [1063520 2017-02-23] (SUNPLUS INNOVATION TECHNOLOGY INC. -> Sunplus Innovation Technology Inc.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2017-01-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver; C:\Windows\System32\Drivers\ss_conn_usb_driver.sys [43648 2017-01-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-08 16:54 - 2019-10-08 16:54 - 000000000 ____D C:\Users\Jan\Downloads\FRST-OlderVersion
2019-10-08 14:13 - 2019-10-08 14:13 - 000000000 ____D C:\AdwCleaner
2019-10-08 14:10 - 2019-10-08 14:11 - 007636680 _____ (Malwarebytes) C:\Users\Jan\Downloads\adwcleaner_7.4.1.exe
2019-10-07 15:04 - 2019-10-07 15:04 - 000716962 _____ C:\Users\Jan\Desktop\p.Sobek07102019.pdf
2019-10-04 16:11 - 2019-10-04 16:11 - 000099654 _____ C:\Users\Jan\Downloads\RSIT.txt
2019-10-04 16:11 - 2019-10-04 16:11 - 000040925 _____ C:\Users\Jan\Downloads\Logy.zip
2019-10-04 12:41 - 2019-10-04 16:10 - 000000000 ____D C:\Program Files\trend micro
2019-10-04 12:41 - 2019-10-04 12:41 - 001222144 _____ C:\Users\Jan\Downloads\RSITx64.exe
2019-10-04 12:41 - 2019-10-04 12:41 - 000000000 ____D C:\rsit
2019-10-04 12:35 - 2019-10-04 12:36 - 000023590 _____ C:\Users\Jan\Downloads\Addition.txt
2019-10-04 12:32 - 2019-10-08 16:56 - 000023766 _____ C:\Users\Jan\Downloads\FRST.txt
2019-10-04 12:31 - 2019-10-08 16:55 - 000000000 ____D C:\FRST
2019-10-04 12:31 - 2019-10-08 16:54 - 001615872 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 025900544 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 025443840 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 022627328 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 019849728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 019810816 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 018019840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 014816256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 007195648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 006518736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 006232064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 006084048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 005764872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 005105152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 004481536 _____ (Microsoft Corporation) C:\Windows\system32\DHolographicDisplay.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 004129624 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 003964056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 003742032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 002821120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 002799616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-10-04 12:08 - 2019-10-04 12:08 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2019-10-04 12:08 - 2019-10-04 12:08 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2019-10-04 12:08 - 2019-10-04 12:08 - 002258856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 002190864 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 002132280 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001957008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001788728 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001726976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001716752 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001692160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001616784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001611792 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001610752 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001563648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001510752 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001505320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001501712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001473488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001394488 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 001386000 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001334064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdrecordcpu.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001297936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001263616 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001244944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001218144 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 001178816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001098712 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001072952 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 001054872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001047968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 001043984 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000960512 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessmanagersvc.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000957240 _____ (Microsoft Corporation) C:\Windows\system32\AppVManifest.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000939008 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000904704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000893952 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000875008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000840192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000827408 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000816648 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000792296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputHost.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000784384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000783480 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000775768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000774456 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000772656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000742912 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000741392 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000722944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000687616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000666128 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000659456 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessManager.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000652800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000649016 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000647168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Search.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000599552 _____ (Microsoft Corporation) C:\Windows\system32\SmsRouterSvc.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000599040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2019-10-04 12:08 - 2019-10-04 12:08 - 000568336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000546816 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000541696 _____ (Microsoft Corporation) C:\Windows\system32\ResourceMapper.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000539648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9on12.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000524800 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000510464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000502784 _____ C:\Windows\system32\AssignedAccessCsp.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000501232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp_win.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000500736 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2019-10-04 12:08 - 2019-10-04 12:08 - 000499200 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000495120 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000487576 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase_enclave.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000483328 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000463360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000463272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000450560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000450360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11on12.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2019-10-04 12:08 - 2019-10-04 12:08 - 000417280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000394256 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000387832 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000381240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000376832 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2019-10-04 12:08 - 2019-10-04 12:08 - 000315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000300392 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000285256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000283688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ttdwriter.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000258064 _____ (Microsoft Corporation) C:\Windows\system32\AppVFileSystemMetadata.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000236520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000231440 _____ (Microsoft Corporation) C:\Windows\system32\AppVShNotify.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000228880 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamMap.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000210744 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000202768 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamingUX.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\container.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000181776 _____ (Microsoft Corporation) C:\Windows\system32\AppVDllSurrogate.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000173072 _____ (Microsoft Corporation) C:\Windows\system32\AppVNice.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000163328 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2019-10-04 12:08 - 2019-10-04 12:08 - 000157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComposableShellProxyStub.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000145208 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000137864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000133632 _____ (Microsoft Corporation) C:\Windows\system32\appvetwclientres.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000125232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KerbClientShared.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000116904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000110080 _____ C:\Windows\system32\ResBParser.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000100664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys
2019-10-04 12:08 - 2019-10-04 12:08 - 000093712 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000089544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000084496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-10-04 12:08 - 2019-10-04 12:08 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000082432 _____ (Microsoft Corporation) C:\Windows\system32\rdvvmtransport.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvvmtransport.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollCtrl.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AssignedAccessRuntime.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000037904 _____ (Microsoft Corporation) C:\Windows\system32\SyncAppvPublishingServer.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enrollmentapi.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000033056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NtlmShared.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000021816 _____ (Microsoft Corporation) C:\Windows\system32\ScriptRunner.exe
2019-10-04 12:08 - 2019-10-04 12:08 - 000021544 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\appvetwstreamingux.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\TSErrRedir.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000003584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCertResources.dll
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2019-10-04 12:08 - 2019-10-04 12:08 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2019-10-04 12:07 - 2019-10-04 12:07 - 017787392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 009928720 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 007905000 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 007848192 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 007600664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 006425600 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 006227624 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 006164480 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 005865272 _____ (Microsoft Corporation) C:\Windows\system32\spwizimg.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 004612520 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 004562688 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 004046336 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 004012544 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 003727360 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 003701248 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 003590968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 003553280 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 003386880 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 003184128 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 003105280 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002772032 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002762296 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002723328 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 002703872 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002590208 _____ C:\Windows\system32\dwmscene.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002552120 _____ (Microsoft Corporation) C:\Windows\system32\UpdateAgent.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002466304 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002449920 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002284544 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002160640 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002120704 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002120272 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002095104 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002082192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 002069504 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001999960 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001942528 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001940952 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001913296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001857024 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001845408 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001819136 _____ (Microsoft Corporation) C:\Windows\system32\CoreShell.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001757096 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-10-04 12:07 - 2019-10-04 12:07 - 001748480 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001743680 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001664376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001657856 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001616608 _____ (Microsoft Corporation) C:\Windows\system32\ttdrecordcpu.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001607680 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001543168 _____ (Microsoft Corporation) C:\Windows\system32\WindowManagement.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001512320 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 001482040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 001439744 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 001413704 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001412096 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001383856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001372160 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-10-04 12:07 - 2019-10-04 12:07 - 001261800 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001182240 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 001154656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001150240 _____ (Microsoft Corporation) C:\Windows\system32\InputHost.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001149416 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 001091584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001065984 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001062912 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001036800 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001029432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 001023128 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 001009152 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000984376 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000975872 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000950784 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000944664 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000931840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000889960 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000874296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000858112 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000841216 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\d3d9on12.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000833312 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000759488 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000750080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Search.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000735232 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000732176 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000702464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.FileExplorer.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000674072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000673080 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000656960 _____ (Microsoft Corporation) C:\Windows\system32\d3d11on12.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000639400 _____ (Microsoft Corporation) C:\Windows\system32\msvcp_win.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000617784 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000612864 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000606208 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000598016 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000589384 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000587776 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_PCDisplay.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000563200 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000558592 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000551952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000551936 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000551424 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000541480 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000534016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000520192 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000507704 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000462136 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000456720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000449888 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000442704 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000436024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000415808 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000398728 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000392704 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000383984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000379840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000375720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000363624 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000359424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MbbCx.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000355000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000342896 _____ (Microsoft Corporation) C:\Windows\system32\ttdwriter.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000334936 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\ComposableShellProxyStub.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000315904 _____ (Microsoft Corporation) C:\Windows\system32\dmenterprisediagnostics.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000293344 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000285696 _____ (Microsoft Corporation) C:\Windows\system32\directxdatabaseupdater.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000284160 _____ (Microsoft Corporation) C:\Windows\system32\container.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.AppDefaults.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000278080 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000275968 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000275456 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000268800 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000268288 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\UpdateDeploymentProvider.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000252416 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\ManageCI.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000244736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Gpu.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\policymanagerprecheck.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000236544 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000223032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000221696 _____ (Microsoft Corporation) C:\Windows\system32\dxgiadaptercache.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000208384 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000208184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000201016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000199480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000179512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000178176 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000176440 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000176152 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000173568 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\SpatialAudioLicenseSrv.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000162304 _____ (Microsoft Corporation) C:\Windows\system32\fwbase.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000159112 _____ (Microsoft Corporation) C:\Windows\system32\devobj.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000155648 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000152408 _____ (Microsoft Corporation) C:\Windows\system32\KerbClientShared.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000151568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_BackgroundApps.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000140496 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000137728 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_ForceSync.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000132408 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000132096 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\CloudDomainJoinAUG.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationControlCSP.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000119840 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000117048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bindflt.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\EaseOfAccessDialog.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000107008 _____ (Microsoft Corporation) C:\Windows\system32\CoreShellExtFramework.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000105272 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000092624 _____ (Microsoft Corporation) C:\Windows\system32\taskhostw.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000088352 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000079376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\uaspstor.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000073024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000066832 _____ (Microsoft Corporation) C:\Windows\system32\iumcrypt.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidspi.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessRuntime.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\devrtl.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000057344 _____ (Microsoft Corporation) C:\Windows\system32\audioresourceregistrar.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\pnppolicy.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000053248 _____ C:\Windows\system32\Drivers\UsbPmApi.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000052752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\tetheringconfigsp.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000047616 _____ C:\Windows\system32\UsbPmApi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000047000 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\WiredNetworkCSP.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000039304 _____ (Microsoft Corporation) C:\Windows\system32\NtlmShared.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\IcsEntitlementHost.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000028936 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2019-10-04 12:07 - 2019-10-04 12:07 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\Win32_DeviceGuard.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\wmsgapi.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\bindflt.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000016696 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\pacjsworker.exe
2019-10-04 12:07 - 2019-10-04 12:07 - 000011576 _____ (Microsoft Corporation) C:\Windows\system32\uxlibres.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000003584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2019-10-04 12:07 - 2019-10-04 12:07 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tier2punctuations.dll
2019-10-04 12:02 - 2019-09-24 05:52 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2019-10-04 12:02 - 2019-09-24 05:49 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2019-09-20 10:04 - 2019-09-20 10:04 - 000001524 _____ C:\Users\Jan\Downloads\Troostwijk Auctions_ Flexible Packaging Machinery and Stock.ics
2019-09-19 16:03 - 2019-09-19 16:03 - 000070402 _____ C:\Users\Jan\Desktop\FP3910000667 plastic.pdf
2019-09-12 15:47 - 2019-09-12 15:47 - 000020574 _____ C:\Users\Jan\Desktop\Kopie - SMA_7_paper bags.xlsx
2019-09-11 13:14 - 2019-09-11 13:14 - 000722635 _____ C:\Users\Jan\Desktop\Sapler a.s 10308.pdf
2019-09-11 12:31 - 2019-09-11 12:31 - 005500928 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 004306944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000307200 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000283264 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2019-09-11 12:31 - 2019-09-11 12:31 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000097280 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000035328 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\fvecerts.dll
2019-09-11 12:31 - 2019-09-11 12:31 - 000021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fvecerts.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 008011264 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 007754240 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 007582752 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 007014912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 005916672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 005848840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 005041664 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 005013504 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 004857856 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 004538368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 004009472 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.Service.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003817472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003771392 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003750912 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003637760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003525592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003372448 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003353088 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 003084800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002871608 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002861568 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002743808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002586816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002562048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002494232 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002314440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001918976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001783296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001744400 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001721144 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001686528 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001601536 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001531656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001488216 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001413624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001368576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001348096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001305608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001283600 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2019-09-11 12:30 - 2019-09-11 12:30 - 001259424 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001158656 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001138688 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001122816 _____ (Microsoft Corporation) C:\Windows\system32\CBDHSvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001105480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001094144 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001068560 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 001007616 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000977408 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000957952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000913408 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000913168 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000910336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000909736 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000905728 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000893440 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000888832 _____ (Microsoft Corporation) C:\Windows\system32\HolographicExtensions.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000882688 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000849920 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000844800 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000822416 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000822072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000810808 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000810496 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrSvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000808960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000805888 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000797112 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000776704 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000775680 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000771584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000769024 _____ (Microsoft Corporation) C:\Windows\system32\NgcIsoCtnr.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000740664 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000729088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FlightSettings.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000722288 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000699904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000686080 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000683008 _____ (Microsoft Corporation) C:\Windows\system32\ApplicationFrame.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000680976 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000676632 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000673456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000670208 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000669696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000667272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000654912 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000637752 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000636416 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000634880 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000631808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000628400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000601088 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000596008 _____ (Microsoft Corporation) C:\Windows\system32\AppResolver.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000595456 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000593112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000564736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000561680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000541264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000538624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000537608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000531456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000529408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000529408 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000522176 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000516752 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000513336 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000511488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000511288 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000510984 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000489472 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000488056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000464696 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000464384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000462848 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000454736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppResolver.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000431448 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000422008 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave_secure.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000415760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000411136 _____ (Microsoft Corporation) C:\Windows\system32\DavSyncProvider.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000411128 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000408064 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000406528 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000401208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000396288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Lights.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000394752 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000379392 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000365568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000362056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000352256 _____ (Microsoft Corporation) C:\Windows\system32\WpcApi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000338800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000331776 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000329728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DavSyncProvider.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000324408 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000316216 _____ (Microsoft Corporation) C:\Windows\system32\computestorage.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000314368 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000310072 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\msIso.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000306688 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\TDLMigration.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000281600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000278016 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Lights.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000270848 _____ (Microsoft Corporation) C:\Windows\system32\ngctasks.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000267496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerCsp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\ApproveChildRequest.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000237880 _____ C:\Windows\system32\containerdevicemanagement.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000224256 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\dmcsps.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000197632 _____ (Microsoft Corporation) C:\Windows\system32\Win32CompatibilityAppraiserCSP.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000182288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\NcaSvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000167136 _____ (Microsoft Corporation) C:\Windows\system32\vertdll.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000164152 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BitLockerCsp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000153088 _____ (Microsoft Corporation) C:\Windows\system32\dssvc.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000149504 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000147184 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000146416 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000145720 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000121856 _____ (Microsoft Corporation) C:\Windows\system32\updatecsp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000120344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000106296 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000097280 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000084280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000072704 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000071480 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\umpo-overrides.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000066048 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000063288 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\edpnotify.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wcimage.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\GameInput.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsext.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ByteCodeGenerator.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000049152 _____ (Microsoft Corporation) C:\Windows\system32\XInputUap.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edpnotify.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\ddrawex.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GameInput.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\XInput1_4.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.Common.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000042512 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddrawex.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compact.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInputUap.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput1_4.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000036152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys
2019-09-11 12:30 - 2019-09-11 12:30 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\wci.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000019984 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDJPN.DLL
2019-09-11 12:30 - 2019-09-11 12:30 - 000013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDKOR.DLL
2019-09-11 12:30 - 2019-09-11 12:30 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\dstokenclean.exe
2019-09-11 12:30 - 2019-09-11 12:30 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2019-09-11 12:30 - 2019-09-11 12:30 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 003947520 _____ (Microsoft Corporation) C:\Windows\system32\tellib.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000863744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000804880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000804664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000705024 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntimewindows.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000702464 _____ (Microsoft Corporation) C:\Windows\system32\agentactivationruntime.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000425472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000252944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000245248 _____ (Microsoft Corporation) C:\Windows\system32\wosc.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthA2dp.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\AarSvc.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000130560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tsusbhub.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\mssecuser.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000055304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2019-09-11 12:29 - 2019-09-11 12:29 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\lstelemetry.dll
2019-09-11 12:29 - 2019-09-11 12:29 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-08 16:53 - 2019-08-14 21:29 - 000000000 ____D C:\Users\Jan\Documents\Soubory aplikace Outlook
2019-10-08 16:52 - 2019-08-14 17:21 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-10-08 16:52 - 2019-08-14 17:21 - 000000000 __SHD C:\Users\Jan\IntelGraphicsProfiles
2019-10-08 15:24 - 2019-08-14 17:05 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-10-08 13:59 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-08 12:50 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-08 12:50 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\AppReadiness
2019-10-08 10:11 - 2019-08-15 11:40 - 000007887 _____ C:\Windows\BRRBCOM.INI
2019-10-08 09:23 - 2019-08-14 17:23 - 000003372 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2564029500-12834783-3704777987-1001
2019-10-08 09:23 - 2019-08-14 17:23 - 000000000 ___RD C:\Users\Jan\OneDrive
2019-10-08 09:23 - 2019-08-14 17:20 - 000002355 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-10-07 09:25 - 2019-03-19 06:50 - 000000000 ____D C:\Windows\INF
2019-10-04 20:09 - 2019-08-14 17:11 - 001697954 _____ C:\Windows\system32\PerfStringBackup.INI
2019-10-04 20:09 - 2019-03-19 13:57 - 000719448 _____ C:\Windows\system32\perfh005.dat
2019-10-04 20:09 - 2019-03-19 13:57 - 000145990 _____ C:\Windows\system32\perfc005.dat
2019-10-04 20:06 - 2019-08-14 17:20 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-04 20:06 - 2019-08-14 17:20 - 000000000 ___RD C:\Users\Jan\3D Objects
2019-10-04 20:04 - 2019-08-14 18:04 - 000000000 ____D C:\ProgramData\Validity
2019-10-04 20:04 - 2019-08-14 17:05 - 000377384 _____ C:\Windows\system32\FNTCACHE.DAT
2019-10-04 20:04 - 2019-08-14 17:05 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-10-04 16:38 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\oobe
2019-10-04 16:38 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2019-10-04 16:38 - 2019-03-19 06:37 - 000524288 _____ C:\Windows\system32\config\BBI
2019-10-04 16:37 - 2019-03-19 13:59 - 000000000 ___SD C:\Windows\system32\AppV
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\PrintDialog
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SystemResources
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\WinMetadata
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\oobe
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\migwiz
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Dism
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2019-10-04 16:37 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\bcastdvr
2019-10-04 14:44 - 2019-08-15 09:29 - 000000000 ____D C:\Users\Jan\Desktop\Epson Scan
2019-10-04 13:12 - 2019-08-15 09:29 - 000000000 ____D C:\Users\Jan\Desktop\Bioplasty
2019-10-04 12:10 - 2019-03-19 06:37 - 000000000 ____D C:\Windows\CbsTemp
2019-10-03 07:30 - 2019-08-14 18:04 - 000003474 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2019-10-03 07:30 - 2019-08-14 18:04 - 000003350 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2019-10-03 07:29 - 2019-08-14 18:04 - 000000000 ____D C:\Program Files (x86)\Google
2019-10-02 10:18 - 2019-08-14 17:20 - 000000000 ____D C:\Users\Jan\AppData\Local\Packages
2019-10-02 10:15 - 2019-08-14 17:05 - 000000000 ____D C:\Windows\system32\Drivers\wd
2019-09-27 11:20 - 2019-08-15 09:30 - 000000000 ____D C:\Users\Jan\Desktop\Prikaz jednatele
2019-09-24 07:23 - 2019-08-14 18:04 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-24 07:23 - 2019-08-14 18:04 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-09-11 21:13 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-09-11 21:13 - 2019-03-19 06:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2019-09-11 21:13 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\TextInput
2019-09-11 21:13 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2019-09-11 21:13 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\ShellExperiences
2019-09-11 21:13 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\Provisioning
2019-09-11 12:33 - 2019-03-19 13:59 - 000021504 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2019-09-11 12:33 - 2019-03-19 13:59 - 000018903 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2019-09-11 09:41 - 2019-09-02 13:08 - 000000000 ____D C:\Users\Jan\AppData\Roaming\MSE

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-10-2019
Ran by Jan (08-10-2019 16:59:23)
Running from C:\Users\Jan\Downloads
Windows 10 Pro Version 1903 18362.388 (X64) (2019-08-14 15:07:52)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2564029500-12834783-3704777987-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2564029500-12834783-3704777987-503 - Limited - Disabled)
Guest (S-1-5-21-2564029500-12834783-3704777987-501 - Limited - Disabled)
Jan (S-1-5-21-2564029500-12834783-3704777987-1001 - Administrator - Enabled) => C:\Users\Jan
WDAGUtilityAccount (S-1-5-21-2564029500-12834783-3704777987-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.012.20040 - Adobe Systems Incorporated)
Brother MFL-Pro Suite DCP-J100 (HKLM-x32\...\{B742757A-7658-4E09-A51A-085CF0F7F4D3}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 5.60 - Piriform)
Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version: - )
CryptoPlus KB v1.0 (HKLM-x32\...\CryptoPlus KB v1.0) (Version: 2.1.8 - Monet+,a.s.)
CryptoPlus KB v1.0 x64 (HKLM\...\CryptoPlus KB v1.0) (Version: 2.1.8 - Monet+,a.s.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
HP 3D DriveGuard (HKLM-x32\...\{8F183B2E-D21D-4070-8132-DD39C3CBFA5C}) (Version: 6.0.41.1 - HP)
HP Hotkey Support (HKLM-x32\...\{5CA104DB-9884-4CDB-B31B-B977EACC7B3D}) (Version: 6.2.50.1 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{C2815E31-3A2F-428F-A8A6-503431233E13}) (Version: 12.12.32.3 - HP Inc.)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.1.1043 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 221 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
Microsoft Office 2010 pro podnikatele (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2564029500-12834783-3704777987-1001\...\OneDriveSetup.exe) (Version: 19.152.0927.0012 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
NVMS-1000 (HKLM-x32\...\{D7079657-6D6A-4AD2-ABAB-416A10D44F66}) (Version: 3.4.5 - ) Hidden
NVMS-1000 (HKLM-x32\...\InstallShield_{D7079657-6D6A-4AD2-ABAB-416A10D44F66}) (Version: 3.4.5 - )
Pervasive PSQL v11 Client (32-bit) (HKLM-x32\...\{0A3238D7-AA32-1130-B717-F3E3F18B4A8C}) (Version: 11.30.061 - Pervasive Software) Hidden
Pervasive PSQL v11 Client (32-bit) SP3 (HKLM-x32\...\Pervasive PSQL v11 Client (32-bit)) (Version: 11.30.061 - Pervasive Software)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7561 - Realtek Semiconductor Corp.)
Samsung SideSync (HKLM-x32\...\Samsung SideSync) (Version: 4.7.5.244 - Samsung Electronics Co., Ltd.)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.19071.4 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.19071.4 - Samsung Electronics Co., Ltd.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.63 - Synaptics Incorporated)

Packages:
=========
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_7.0.15.0_x64__v10z8vjag6ke6 [2019-10-02] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-08-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-08-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-08] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-12] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-10-02] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2017-01-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2019-08-15 11:43 - 2009-02-27 16:38 - 000139264 ____R () [File not signed] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2019-08-15 11:43 - 2008-08-18 18:27 - 000122880 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\brlmw03a.dll
2019-08-15 11:43 - 2012-07-13 13:09 - 000385024 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrMonitor.dll
2019-08-15 11:43 - 2011-02-28 11:32 - 000208896 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrFirmUpdateCheck.dll
2019-08-15 11:43 - 2012-11-29 19:04 - 002040832 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonWRes.dll
2019-08-15 11:43 - 2013-05-14 19:24 - 000137728 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcAssoc.dll
2019-08-15 11:43 - 2012-12-21 12:31 - 000078848 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcDlgRc.dll
2019-08-15 11:43 - 2012-12-21 12:31 - 017666560 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcGrImg.dll
2019-08-15 11:43 - 2013-05-14 19:40 - 000076288 ____N (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcLCze.dll
2019-08-15 13:47 - 2019-02-21 18:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2019-08-15 15:50 - 2013-03-07 23:07 - 000009728 _____ (Luis Cobian) [File not signed] C:\Program Files (x86)\Cobian Backup 11\CobStringList.dll
2019-08-15 15:50 - 2013-03-07 23:27 - 002684928 _____ (Luis Cobian, CobianSoft) [File not signed] C:\Program Files (x86)\Cobian Backup 11\cbEngine.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2564029500-12834783-3704777987-1001\...\kb.cz -> hxxps://tfonline.kb.cz
IE trusted site: HKU\S-1-5-21-2564029500-12834783-3704777987-1001\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz
IE trusted site: HKU\S-1-5-21-2564029500-12834783-3704777987-1001\...\mojeplatba.cz -> hxxps://www.mojeplatba.cz
IE trusted site: HKU\S-1-5-21-2564029500-12834783-3704777987-1001\...\tfonline.cz -> hxxps://www.tfonline.cz

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Pervasive Software\PSQL\bin\;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2564029500-12834783-3704777987-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 10.0.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{342FFE24-13F6-47C4-B676-1451F3B48561}] => (Allow) C:\Program Files (x86)\Pervasive Software\PSQL\bin\w3dbsmgr.exe (Pervasive Software Inc. -> Pervasive Software Inc.)
FirewallRules: [TCP Query User{02510144-E4E1-4CA9-8D83-334EFD5225D6}\\server2012\magis\unipaas19\unirte.exe] => (Allow) \\server2012\magis\unipaas19\unirte.exe (MAGIC SOFTWARE ENTERPRISES -> Magic Software Enterprises)
FirewallRules: [UDP Query User{D82C55EA-6F36-440E-AB94-28B8FC3D364D}\\server2012\magis\unipaas19\unirte.exe] => (Allow) \\server2012\magis\unipaas19\unirte.exe (MAGIC SOFTWARE ENTERPRISES -> Magic Software Enterprises)
FirewallRules: [{3D9C2D32-FF9D-4B0F-A74F-2C3BE5295E19}] => (Allow) C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{60B051E7-EFF2-4449-9C5B-6815AEBB6A3C}] => (Allow) C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{4137707F-5B08-4A8D-B9D6-1C14F2880F35}C:\program files (x86)\nvms-1000\nvms-1000.exe] => (Allow) C:\program files (x86)\nvms-1000\nvms-1000.exe () [File not signed]
FirewallRules: [UDP Query User{8A2F2614-1329-40CD-95F9-2A1FF6D95A41}C:\program files (x86)\nvms-1000\nvms-1000.exe] => (Allow) C:\program files (x86)\nvms-1000\nvms-1000.exe () [File not signed]
FirewallRules: [{C3921D0F-52F2-4195-9796-6AA7EF21BDC5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Codecs (Whitelisted) ==================


==================== Restore Points =========================

20-09-2019 09:56:48 Naplánovaný kontrolní bod
02-10-2019 10:15:51 Windows Update

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/08/2019 01:36:23 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 23584; požadovaná velikost: 33408.

Error: (10/04/2019 08:05:49 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\svchost.exe, identifikátor PID: 4716, identifikátor PID ProfSvc: 1888.

Error: (10/04/2019 08:04:43 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-NOPEO3O$ přes https://IFX-KeyId-8ffd47880e239a3a3a20d ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(12125ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)

Error: (10/04/2019 02:46:21 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2019/10/04 14:46:21.205]: [00001080]: OpenDevice is failed

Error: (10/04/2019 02:46:21 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2019/10/04 14:46:21.204]: [00001080]: ##### Device Open ERROR! #####

Error: (10/04/2019 02:44:06 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2019/10/04 14:44:06.256]: [00001080]: BrStiIf: LockDevice LOCK_TIMEOUT failed.

Error: (10/04/2019 02:44:06 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2019/10/04 14:44:06.255]: [00001080]: ##### Device Open Error! #####

Error: (10/04/2019 02:44:06 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: TWN BrtTWN: [2019/10/04 14:44:06.255]: [00001080]: BrStiIf: LockDevice LOCK_TIMEOUT failed.


System errors:
=============
Error: (10/08/2019 04:51:58 PM) (Source: SCardSvr) (EventID: 616) (User: )
Description: Sledování čtečky Gemalto Ezio Shield 0 obdrželo kód nezachycené chyby: Přístup byl odepřen.

Error: (10/08/2019 04:51:58 PM) (Source: SCardSvr) (EventID: 615) (User: )
Description: Při sledování odebírání ze čtečky bylo dosaženo mezního počtu chyb: Přístup byl odepřen.

Error: (10/04/2019 03:17:01 PM) (Source: SCardSvr) (EventID: 616) (User: )
Description: Sledování čtečky Gemalto Ezio Shield 0 obdrželo kód nezachycené chyby: Přístup byl odepřen.

Error: (10/04/2019 03:17:01 PM) (Source: SCardSvr) (EventID: 615) (User: )
Description: Při sledování odebírání ze čtečky bylo dosaženo mezního počtu chyb: Přístup byl odepřen.

Error: (10/04/2019 12:20:49 PM) (Source: SCardSvr) (EventID: 616) (User: )
Description: Sledování čtečky Gemalto Ezio Shield 0 obdrželo kód nezachycené chyby: Přístup byl odepřen.

Error: (10/04/2019 12:20:49 PM) (Source: SCardSvr) (EventID: 615) (User: )
Description: Při sledování odebírání ze čtečky bylo dosaženo mezního počtu chyb: Přístup byl odepřen.

Error: (10/04/2019 09:38:11 AM) (Source: SCardSvr) (EventID: 616) (User: )
Description: Sledování čtečky Gemalto Ezio Shield 0 obdrželo kód nezachycené chyby: Přístup byl odepřen.

Error: (10/04/2019 09:38:11 AM) (Source: SCardSvr) (EventID: 615) (User: )
Description: Při sledování odebírání ze čtečky bylo dosaženo mezního počtu chyb: Přístup byl odepřen.


Windows Defender:
===================================
Date: 2019-10-07 10:26:47.145
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {A2D372CA-4884-4E04-A25F-EBF7EE72711F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-07 10:18:08.663
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {5D98F75E-BB0E-4409-98B7-B9AAD08BD793}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-07 10:10:36.730
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {17571EAA-97EA-4FEA-9C0F-87D390CB61F0}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-03 12:58:39.343
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {873E5CAE-AC02-4B25-BF56-3C88DAA19460}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-03 12:36:18.484
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {5021DDDF-9C1E-4B57-8558-9B20CDD03316}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: Hewlett-Packard M73 Ver. 01.51 05/21/2019
Motherboard: Hewlett-Packard 2246
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Percentage of memory in use: 42%
Total physical RAM: 8083.09 MB
Available physical RAM: 4657.85 MB
Total Virtual: 9363.09 MB
Available Virtual: 5919.7 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:463.19 GB) (Free:122.61 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:2 GB) (Free:1.98 GB) FAT32

\\?\Volume{b41bdea4-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.14 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: B41BDEA4)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=463.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=2 GB) - (Type=0C)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#6 Příspěvek od Rudy »

Musíme ještě dosčistit. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
Task: {C57A38B7-9CE4-4BD2-A838-4C1E527B99FC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-14] (Google Inc -> Google LLC)
Task: {293F4BE2-D5CF-4C2E-8FF2-DEB97C18CF6C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-14] (Google Inc -> Google LLC))
SearchScopes: HKU\S-1-5-21-2564029500-12834783-3704777987-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File

EmptyTemp:
End
Uložte do C:\Users\Jan\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#7 Příspěvek od Sobi »

Zdravím,

tady je fixlog.

Fix result of Farbar Recovery Scan Tool (x64) Version: 06-10-2019
Ran by Jan (09-10-2019 09:12:10) Run:1
Running from C:\Users\Jan\Downloads
Loaded Profiles: Jan (Available Profiles: Jan)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
Task: {C57A38B7-9CE4-4BD2-A838-4C1E527B99FC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-14] (Google Inc -> Google LLC)
Task: {293F4BE2-D5CF-4C2E-8FF2-DEB97C18CF6C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-14] (Google Inc -> Google LLC))
SearchScopes: HKU\S-1-5-21-2564029500-12834783-3704777987-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C57A38B7-9CE4-4BD2-A838-4C1E527B99FC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C57A38B7-9CE4-4BD2-A838-4C1E527B99FC}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{293F4BE2-D5CF-4C2E-8FF2-DEB97C18CF6C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{293F4BE2-D5CF-4C2E-8FF2-DEB97C18CF6C}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
HKU\S-1-5-21-2564029500-12834783-3704777987-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => removed successfully
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => not found
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 260731061 B
Java, Flash, Steam htmlcache => 1110 B
Windows/system/drivers => 618608 B
Edge => 87066 B
Chrome => 404148436 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
LocalService => 0 B
NetworkService => 65480 B
NetworkService => 65480 B
Jan => 166187603 B

RecycleBin => 26666565 B
EmptyTemp: => 826.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 09:13:48 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#8 Příspěvek od Rudy »

OK. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#9 Příspěvek od Sobi »

Dobrý den,

bohužel reklamy stále vyskakují. Pc jsem teď moc nepoužíval a když ano, tak to vypadalo dobře, ale teď mi zase reklama vyskočila. Je možné s tím ještě něco dělat nebo mě čeká formát? Děkuji za radu.

Jirka

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#10 Příspěvek od Rudy »

Zkuste vyčistit prohlížeče. Spusťte postupně tyto utility:

1. tahnete Zoek.exe http://download.bleepingcomputer.com/smeenk/zoek.exe a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin
;






Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#11 Příspěvek od Sobi »

Děkuji za další pomoc. Tady je log ze Zoek, na druhém kroku pracuju.

Zoek.exe v5.0.0.2 Updated 03-May-2018(Online Version)
Tool run by Jan on 01.11.2019 at 16:53:48,99.
Microsoft Windows 10 Pro 10.0.18362 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Jan\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

01.11.2019 16:55:33 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\Users\Jan\AppData\Local\PeerDistRepub deleted successfully
C:\Users\Jan\AppData\Local\PlaceholderTileLogoFolder deleted successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Packages deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\HP Universal Camera Driver deleted
C:\PROGRA~3\Package Cache deleted

==== Orphaned Tasks deleted from Registry ======================

Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Install HPSA deleted

==== Chromium Look ======================

Google Chrome Version: 78.0.3904.87


Cryptoplus KB - Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ancbghdjochicglfimfpagephbgjonhg
Cryptoplus KB - Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldildmkoeoicfkknedfdpjmgjmpkpooc
Crypto Web - Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjohlogcennenjhkfclfgaganagadkkm
Chrome Media Router - Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{EC8367FD-65C9-4784-9475-F16646C1B44E}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{EC8367FD-65C9-4784-9475-F16646C1B44E} - https://www.google.com/search?q={search ... utEncoding?}

==== Reset Google Chrome ======================

C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Jan\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Jan\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Jan\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Jan\AppData\Local\Microsoft\Windows\INetCache\IE\IW8A2S1T will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Edge Cache ======================

Edge Cache Emptied Successfully

==== Empty Chrome Cache ======================

C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=57 folders=25 25094423 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Jan\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Jan\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\Jan\AppData\Local\Microsoft\Windows\INetCache\IE\IW8A2S1T" not found

==== EOF on 01.11.2019 at 17:20:10,26 ======================

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#12 Příspěvek od Sobi »

A tady je JRT.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Enterprise x64
Ran by Jan (Administrator) on 01.11.2019 at 17:23:17,09
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 01.11.2019 at 17:25:06,51
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#13 Příspěvek od Rudy »

Zoek něco smazal. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Sobi
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 lis 2009 13:54

Re: Vyskakovací reklama

#14 Příspěvek od Sobi »

Vyzkouším a dám vědět. Reklamy se nespouštěly s každým použitím pc, takže to možná bude chvíli trvat. Každopádně, moc děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118265
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Vyskakovací reklama

#15 Příspěvek od Rudy »

Zatím není zač a ozvěte se. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět