Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý jako šnek

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Pomalý jako šnek

#1 Příspěvek od tata22 »

Dobrý den, manžlčin starší NTB je nějak hodně pomalý. Můžete mi na to mrknout ? dík
Logfile of random's system information tool 1.10 (written by random/random)
Run by ltris at 2020-11-21 11:02:29
Microsoft Windows 10 Home
System drive C: has 883 GB (93%) free of 952 GB
Total RAM: 8053 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:02:37, on 21.11.2020
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)
Boot mode: Normal

Running processes:
C:\Users\ltris\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Users\ltris\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe
C:\Program Files\trend micro\ltris.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://securesearch.org/homepage?hp=2& ... 2020-04-20 05:01:46&bName=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.41\BHO\ie_to_edge_bho.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [Intel Driver & Support Assistant] C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\ltris\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] C:\Users\ltris\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Tools (avast! Tools) - AVAST Software - C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
O23 - Service: Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_60f74a - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: Intel(R) Driver & Support Assistant (DSAService) - Intel - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
O23 - Service: Intel(R) Driver & Support Assistant Updater (DSAUpdateService) - Intel - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Energy Server Service queencreek (ESRV_SVC_QUEENCREEK) - Unknown owner - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) SUR QC Software Asset Manager (Intel(R) SUR QC SAM) - Intel Corporation - C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_QUEENCREEK (SystemUsageReportSvc_QUEENCREEK) - Unknown owner - C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Energy Server Service queencreek (USER_ESRV_SVC_QUEENCREEK) - Unknown owner - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12625 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5b6d01b1-686c-4724-beb4-22e399f8050a -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-4c81ed53-4b37-4580-b346-3113c4e0da96 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-00ab0207-57a0-487f-b7b0-4b6df337e576 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-30ada7ca-cf2f-404a-a2a1-a5cff9ed1a85 -LifetimeId:a81b07b6-fa5a-44e4-86ab-ae5eaf23be6d -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -s BTAGService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
dashost.exe {addaf638-1cff-4c7f-b6acb139ed3b88a0}
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem

C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager

C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s FDResPub
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection

"C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe" /runassvc
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
"C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe"
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\Program Files\AVAST Software\Avast\aswEngSrv.exe" /pipename="F9CC5EF2-BAA7-1FF7-FCF6-EA7BD621D85C" /binpath="C:\Program Files\AVAST Software\Avast"


C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc


"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"

C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s DsSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv

C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts

winlogon.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
"fontdrvhost.exe"
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
"C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe" "--start" "--start_options_handle" "884"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe" "--AUTO_START" "--start" "--start_options_registry_key" "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\ESRV_SVC_QUEENCREEK\_start"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_MICPKEY
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /c
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20101.99.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
"ctfmon.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_DOLBYDRAGON
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Users\ltris\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
AvastUI.exe /nogui
"C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe" /FORCE
"C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --system-initiated
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=gpu-process --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --gpu-preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --mojo-platform-channel-handle=1776 --ignored=" --type=renderer " /prefetch:2
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=utility --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --service-sandbox-type=network --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --mojo-platform-channel-handle=2308 /prefetch:8
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar" --no-sandbox --no-zygote --preload="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\notifications\preload_notifications.js" --background-color=#fff --enable-websql --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=9 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3060 /prefetch:1 --msteams-process-type=notificationsManager
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar" --webview-tag --no-sandbox --no-zygote --native-window-open --preload="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\preload.js" --background-color=#fff --enable-websql --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=10 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3220 /prefetch:1 --msteams-process-type=mainWindow
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=utility --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --service-sandbox-type=audio --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --mojo-platform-channel-handle=3704 /prefetch:8
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar" --enable-sandbox --native-window-open --preload="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\renderer\experienceRenderer\preload_webview_sandbox.js" --background-color=#fff --guest-instance-id=5 --enable-blink-features --disable-blink-features --hidden-page --enable-websql --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=13 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2516 /prefetch:1 --msteams-process-type=experience-renderer
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar" --no-sandbox --no-zygote --preload="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar\lib\pluginhost\preload.js" --background-color=#fff --enable-websql --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=15 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4040 /prefetch:1 --msteams-process-type=pluginHost
C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" --type=gpu-process --field-trial-handle=8352,4316473318375542422,8537644693181021719,131072 --enable-features=CastMediaRouteProvider --disable-features=OutOfBlinkCors --no-sandbox --disable-gpu-driver-bug-workarounds --log-file="C:\Users\ltris\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium (20.8.2432)" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --gpu-preferences=MAAAAAAAAADgAABwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --use-gl=swiftshader-webgl --log-file="C:\Users\ltris\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --mojo-platform-channel-handle=8476 /prefetch:2
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=8352,4316473318375542422,8537644693181021719,131072 --enable-features=CastMediaRouteProvider --disable-features=OutOfBlinkCors --lang=en-US --service-sandbox-type=network --no-sandbox --force-wave-audio --log-file="C:\Users\ltris\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium (20.8.2432)" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --log-file="C:\Users\ltris\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --mojo-platform-channel-handle=8348 /prefetch:8
"C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe"
C:\Users\ltris\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe -Embedding
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20090.1002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding

C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="13676.0.156392644\2112155265" -parentBuildID 20201108180448 -prefsHandle 1704 -prefMapHandle 1352 -prefsLen 1 -prefMapSize 239943 -appdir "C:\Program Files\Mozilla Firefox\browser" - 13676 "\\.\pipe\gecko-crash-server-pipe.13676" 1780 gpu
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="13676.6.646134375\12769710" -childID 1 -isForBrowser -prefsHandle 4032 -prefMapHandle 4028 -prefsLen 295 -prefMapSize 239943 -parentBuildID 20201108180448 -appdir "C:\Program Files\Mozilla Firefox\browser" - 13676 "\\.\pipe\gecko-crash-server-pipe.13676" 4040 tab
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s XblAuthManager
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="13676.13.1198455697\1508907449" -childID 2 -isForBrowser -prefsHandle 3336 -prefMapHandle 3332 -prefsLen 6470 -prefMapSize 239943 -parentBuildID 20201108180448 -appdir "C:\Program Files\Mozilla Firefox\browser" - 13676 "\\.\pipe\gecko-crash-server-pipe.13676" 4948 tab
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="13676.20.536734135\518421567" -childID 3 -isForBrowser -prefsHandle 5728 -prefMapHandle 5580 -prefsLen 7334 -prefMapSize 239943 -parentBuildID 20201108180448 -appdir "C:\Program Files\Mozilla Firefox\browser" - 13676 "\\.\pipe\gecko-crash-server-pipe.13676" 5704 tab
C:\Windows\System32\CompPkgSrv.exe -Embedding
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
"C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --field-trial-handle=1744,13926203264215068704,7230932564252364722,131072 --enable-features=WebComponentsV0Enabled --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=com.squirrel.Teams.Teams --app-path="C:\Users\ltris\AppData\Local\Microsoft\Teams\current\resources\app.asar" --electron-shared-settings=eyJjci5jb21wYW55IjoiTWljcm9zb2Z0IiwiY3IuZHVtcHMiOiJDOlxcVXNlcnNcXGx0cmlzXFxBcHBEYXRhXFxMb2NhbFxcVGVtcFxcbm9uZSBDcmFzaGVzIiwiY3IuZW5hYmxlZCI6dHJ1ZSwiY3IucHJvZHVjdCI6Im5vbmUiLCJjci5zZXNzaW9uIjoiZGVza3RvcC02YzIxNThjZS0xYmJhLTRiN2UtOGYxZC02NGUyM2I1OGI5NzUiLCJjci51cmwiOiJodHRwOi8vbG9jYWxob3N0IiwiY3IudmVyc2lvbiI6IjEuMy4wMC4yODc3OSJ9 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=35 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4428 /prefetch:1
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 784 788 796 8192 792 768
"C:\Users\ltris\OneDrive\Plocha\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\ltris\AppData\Roaming\Mozilla\Firefox\Profiles\qxcdat8s.default-1570817262516

prefs.js - "browser.startup.homepage" - "www.google.com"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.41\BHO\ie_to_edge_bho_64.dll [2020-11-19 532880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2020-07-08 222088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2020-11-21 2350992]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.41\BHO\ie_to_edge_bho.dll [2020-11-19 414096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2020-07-08 156560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-11-21 1741720]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2020-10-26 109664]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2018-02-03 18383328]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2018-02-03 1493984]
"RtHDVBg_LENOVO_DOLBYDRAGON"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2018-02-03 1493984]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2019-01-02 17079352]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2019-01-02 191568]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\ltris\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2020-10-26 1938296]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2018-08-22 731240]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2020-11-10 32281272]
"com.squirrel.Teams.Teams"=C:\Users\ltris\AppData\Local\Microsoft\Teams\Update.exe [2020-11-11 2452664]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IJNetworkScannerSelectorEX"=C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [2011-01-15 452016]
"Intel Driver & Support Assistant"=C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [2020-10-14 285544]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
"aux1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv

======File associations======

.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2020-11-21 11:02:29 ----D---- C:\rsit
2020-11-21 11:02:29 ----D---- C:\Program Files\trend micro
2020-11-16 18:41:16 ----A---- C:\WINDOWS\system32\WalletService.dll
2020-11-16 18:41:13 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2020-11-16 18:41:13 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2020-11-16 18:41:12 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2020-11-16 18:41:12 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2020-11-16 18:41:12 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-11-16 18:41:12 ----A---- C:\WINDOWS\system32\mfcore.dll
2020-11-16 18:41:11 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2020-11-16 18:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2020-11-16 18:41:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2020-11-16 18:41:11 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2020-11-16 18:41:11 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2020-11-16 18:41:10 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2020-11-16 18:41:10 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2020-11-16 18:41:10 ----A---- C:\WINDOWS\SYSWOW64\fdSSDP.dll
2020-11-16 18:41:10 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2020-11-16 18:41:08 ----A---- C:\WINDOWS\system32\tsmf.dll
2020-11-16 18:41:08 ----A---- C:\WINDOWS\system32\tsgqec.dll
2020-11-16 18:41:07 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2020-11-16 18:41:07 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2020-11-16 18:41:07 ----A---- C:\WINDOWS\system32\reseteng.dll
2020-11-16 18:41:07 ----A---- C:\WINDOWS\system32\mstscax.dll
2020-11-16 18:41:07 ----A---- C:\WINDOWS\system32\drivers\PktMon.sys
2020-11-16 18:41:06 ----A---- C:\WINDOWS\system32\systemreset.exe
2020-11-16 18:41:06 ----A---- C:\WINDOWS\system32\ResetEngOnline.dll
2020-11-16 18:41:06 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2020-11-16 18:41:05 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2020-11-16 18:41:04 ----A---- C:\WINDOWS\system32\jscript9.dll
2020-11-16 18:41:04 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2020-11-16 18:41:04 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2020-11-16 18:41:04 ----A---- C:\WINDOWS\system32\Chakra.dll
2020-11-16 18:41:03 ----A---- C:\WINDOWS\system32\werui.dll
2020-11-16 18:41:03 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2020-11-16 18:41:03 ----A---- C:\WINDOWS\system32\werconcpl.dll
2020-11-16 18:41:03 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2020-11-16 18:41:00 ----A---- C:\WINDOWS\system32\tcbloader.dll
2020-11-16 18:41:00 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2020-11-16 18:40:59 ----A---- C:\WINDOWS\SYSWOW64\rasdlg.dll
2020-11-16 18:40:59 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2020-11-16 18:40:59 ----A---- C:\WINDOWS\system32\hvix64.exe
2020-11-16 18:40:59 ----A---- C:\WINDOWS\system32\hvax64.exe
2020-11-16 18:40:59 ----A---- C:\WINDOWS\system32\fdSSDP.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\rasplap.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2020-11-16 18:40:58 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2020-11-16 18:40:57 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2020-11-16 18:40:56 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2020-11-16 18:40:56 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2020-11-16 18:40:56 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2020-11-16 18:40:56 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2020-11-16 18:40:56 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2020-11-16 18:40:56 ----A---- C:\WINDOWS\SYSWOW64\setupcl.dll
2020-11-16 18:40:55 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2020-11-16 18:40:55 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2020-11-16 18:40:55 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2020-11-16 18:40:55 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2020-11-16 18:40:55 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2020-11-16 18:40:55 ----A---- C:\WINDOWS\SYSWOW64\GameInput.dll
2020-11-16 18:40:54 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2020-11-16 18:40:54 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2020-11-16 18:40:41 ----A---- C:\WINDOWS\system32\rasmans.dll
2020-11-16 18:40:41 ----A---- C:\WINDOWS\system32\rasdlg.dll
2020-11-16 18:40:41 ----A---- C:\WINDOWS\system32\rascustom.dll
2020-11-16 18:40:41 ----A---- C:\WINDOWS\system32\rasapi32.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\rtm.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\rasplap.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\npmproxy.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\mprdim.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\mprddm.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2020-11-16 18:40:40 ----A---- C:\WINDOWS\system32\iprtprio.dll
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\sppsvc.exe
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\sppobjs.dll
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\rasgcw.dll
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\netprofm.dll
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2020-11-16 18:40:39 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2020-11-16 18:40:38 ----A---- C:\WINDOWS\system32\msIso.dll
2020-11-16 18:40:38 ----A---- C:\WINDOWS\system32\msctf.dll
2020-11-16 18:40:38 ----A---- C:\WINDOWS\system32\iertutil.dll
2020-11-16 18:40:38 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2020-11-16 18:40:38 ----A---- C:\WINDOWS\system32\edgeIso.dll
2020-11-16 18:40:38 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2020-11-16 18:40:37 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2020-11-16 18:40:37 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2020-11-16 18:40:37 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2020-11-16 18:40:36 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\wersvc.dll
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\wermgr.exe
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\WerFault.exe
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\weretw.dll
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\wer.dll
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\tzres.dll
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\Faultrep.dll
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2020-11-16 18:40:35 ----A---- C:\WINDOWS\system32\diagtrack.dll
2020-11-16 18:40:34 ----A---- C:\WINDOWS\system32\samsrv.dll
2020-11-16 18:40:34 ----A---- C:\WINDOWS\system32\samlib.dll
2020-11-16 18:40:34 ----A---- C:\WINDOWS\system32\offlinesam.dll
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\usosvc.dll
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\usocoreworker.exe
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\setupcl.dll
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-11-16 18:40:33 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-11-16 18:40:32 ----A---- C:\WINDOWS\system32\RasMediaManager.dll
2020-11-16 18:40:30 ----A---- C:\WINDOWS\system32\win32u.dll
2020-11-16 18:40:30 ----A---- C:\WINDOWS\system32\win32kfull.sys
2020-11-16 18:40:30 ----A---- C:\WINDOWS\system32\win32k.sys
2020-11-16 18:40:29 ----A---- C:\WINDOWS\system32\rdpserverbase.dll
2020-11-16 18:40:28 ----A---- C:\WINDOWS\system32\wintrust.dll
2020-11-16 18:40:28 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-11-16 18:40:28 ----A---- C:\WINDOWS\system32\WaaSMedicPS.dll
2020-11-16 18:40:28 ----A---- C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-11-16 18:40:28 ----A---- C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-11-16 18:40:28 ----A---- C:\WINDOWS\system32\kerberos.dll
2020-11-16 18:40:27 ----A---- C:\WINDOWS\system32\win32kbase.sys
2020-11-16 18:40:27 ----A---- C:\WINDOWS\system32\ISM.dll
2020-11-16 18:40:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2020-11-16 18:40:27 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2020-11-16 18:40:27 ----A---- C:\WINDOWS\system32\dosvc.dll
2020-11-16 18:40:27 ----A---- C:\WINDOWS\system32\cdd.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\wlansec.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\wlanapi.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\WiFiCloudStore.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\wfdprov.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\GameInput.dll
2020-11-16 18:40:26 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2020-11-16 18:40:25 ----A---- C:\WINDOWS\system32\wlansvc.dll
2020-11-16 18:40:25 ----A---- C:\WINDOWS\system32\win32spl.dll
2020-11-16 18:40:25 ----A---- C:\WINDOWS\system32\localspl.dll
2020-11-16 18:40:25 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-11-16 18:40:25 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2020-11-16 18:40:24 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2020-11-16 18:40:24 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2020-11-16 18:40:22 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2020-11-16 18:40:22 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2020-11-16 18:40:22 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2020-11-16 18:40:22 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2020-11-16 18:40:21 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2020-11-16 17:44:04 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2020-11-16 17:43:54 ----A---- C:\WINDOWS\system32\poqexec.exe
2020-11-11 18:29:18 ----D---- C:\Users\ltris\AppData\Roaming\Teams
2020-11-09 17:58:34 ----D---- C:\Program Files\Mozilla Firefox
2020-11-03 18:54:20 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2020-11-03 18:54:18 ----A---- C:\WINDOWS\system32\cdp.dll
2020-11-03 18:54:12 ----A---- C:\WINDOWS\SYSWOW64\HoloShellRuntime.dll
2020-11-03 18:54:12 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2020-11-03 18:54:12 ----A---- C:\WINDOWS\system32\DHolographicDisplay.dll
2020-11-03 18:54:10 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2020-11-03 18:54:10 ----A---- C:\WINDOWS\system32\HoloShellRuntime.dll
2020-11-03 18:54:10 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2020-11-03 18:54:07 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2020-11-03 18:54:07 ----A---- C:\WINDOWS\SYSWOW64\dbnetlib.dll
2020-11-03 18:54:07 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2020-11-03 18:54:07 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2020-11-03 18:54:06 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2020-11-03 18:54:05 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2020-11-03 18:54:04 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2020-11-03 18:54:02 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2020-11-03 18:54:02 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2020-11-03 18:54:02 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2020-11-03 18:54:01 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2020-11-03 18:54:00 ----A---- C:\WINDOWS\system32\ListSvc.dll
2020-11-03 18:54:00 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2020-11-03 18:54:00 ----A---- C:\WINDOWS\system32\AcLayers.dll
2020-11-03 18:53:59 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2020-11-03 18:53:59 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2020-11-03 18:53:59 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2020-11-03 18:53:58 ----A---- C:\WINDOWS\system32\ieframe.dll
2020-11-03 18:53:56 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-11-03 18:53:54 ----A---- C:\WINDOWS\system32\mshtml.dll
2020-11-03 18:53:52 ----A---- C:\WINDOWS\system32\mispace.dll
2020-11-03 18:53:52 ----A---- C:\WINDOWS\system32\edgehtml.dll
2020-11-03 18:53:51 ----A---- C:\WINDOWS\system32\storagewmi.dll
2020-11-03 18:53:49 ----A---- C:\WINDOWS\system32\sdclt.exe
2020-11-03 18:53:34 ----A---- C:\WINDOWS\system32\sdshext.dll
2020-11-03 18:53:34 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2020-11-03 18:53:33 ----A---- C:\WINDOWS\system32\sdengin2.dll
2020-11-03 18:53:33 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2020-11-03 18:53:32 ----A---- C:\WINDOWS\system32\hvloader.dll
2020-11-03 18:53:32 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2020-11-03 18:53:31 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2020-11-03 18:53:31 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2020-11-03 18:53:31 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2020-11-03 18:53:30 ----A---- C:\WINDOWS\SYSWOW64\netid.dll
2020-11-03 18:53:29 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\gmsaclient.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2020-11-03 18:53:28 ----A---- C:\WINDOWS\SYSWOW64\CertPolEng.dll
2020-11-03 18:53:27 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2020-11-03 18:53:27 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2020-11-03 18:53:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2020-11-03 18:53:26 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2020-11-03 18:53:25 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2020-11-03 18:53:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\LicenseManagerApi.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2020-11-03 18:53:24 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2020-11-03 18:53:23 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\dsregtask.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\dsreg.dll
2020-11-03 18:53:22 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2020-11-03 18:53:21 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2020-11-03 18:53:21 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2020-11-03 18:53:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-03 18:53:19 ----A---- C:\WINDOWS\SYSWOW64\netplwiz.dll
2020-11-03 18:53:19 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2020-11-03 18:53:19 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2020-11-03 18:53:19 ----A---- C:\WINDOWS\SYSWOW64\diskpart.exe
2020-11-03 18:53:18 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2020-11-03 18:53:18 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2020-11-03 18:53:18 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2020-11-03 18:53:18 ----A---- C:\WINDOWS\SYSWOW64\amsi.dll
2020-11-03 18:53:18 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_9.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\OneCoreCommonProxyStub.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\msobjs.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\agentactivationruntimewindows.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\agentactivationruntime.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2020-11-03 18:53:17 ----A---- C:\WINDOWS\SYSWOW64\AarSvc.dll
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\WinSCard.dll
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\ScDeviceEnum.dll
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\SCardSvr.dll
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\SCardDlg.dll
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\SCardBi.dll
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\drivers\scfilter.sys
2020-11-03 18:53:16 ----A---- C:\WINDOWS\system32\certprop.dll
2020-11-03 18:53:14 ----A---- C:\WINDOWS\system32\shell32.dll
2020-11-03 18:53:14 ----A---- C:\WINDOWS\system32\ntshrui.dll
2020-11-03 18:53:13 ----A---- C:\WINDOWS\system32\vpnike.dll
2020-11-03 18:53:13 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2020-11-03 18:53:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-11-03 18:53:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_IME.dll
2020-11-03 18:52:56 ----A---- C:\WINDOWS\system32\uxtheme.dll
2020-11-03 18:52:56 ----A---- C:\WINDOWS\system32\schedsvc.dll
2020-11-03 18:52:56 ----A---- C:\WINDOWS\system32\SDDS.dll
2020-11-03 18:52:56 ----A---- C:\WINDOWS\system32\netid.dll
2020-11-03 18:52:56 ----A---- C:\WINDOWS\system32\msctfp.dll
2020-11-03 18:52:56 ----A---- C:\WINDOWS\system32\DDDS.dll
2020-11-03 18:52:55 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-11-03 18:52:55 ----A---- C:\WINDOWS\system32\urlmon.dll
2020-11-03 18:52:55 ----A---- C:\WINDOWS\system32\shutdownux.dll
2020-11-03 18:52:55 ----A---- C:\WINDOWS\system32\policymanager.dll
2020-11-03 18:52:55 ----A---- C:\WINDOWS\system32\LogonController.dll
2020-11-03 18:52:54 ----A---- C:\WINDOWS\SYSWOW64\nsi.dll
2020-11-03 18:52:54 ----A---- C:\WINDOWS\system32\wkssvc.dll
2020-11-03 18:52:54 ----A---- C:\WINDOWS\system32\netlogon.dll
2020-11-03 18:52:54 ----A---- C:\WINDOWS\system32\gmsaclient.dll
2020-11-03 18:52:54 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2020-11-03 18:52:54 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2020-11-03 18:52:54 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2020-11-03 18:52:53 ----A---- C:\WINDOWS\system32\nsi.dll
2020-11-03 18:52:53 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2020-11-03 18:52:52 ----A---- C:\WINDOWS\system32\services.exe
2020-11-03 18:52:52 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\ntdll.dll
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\msobjs.dll
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\msaudite.dll
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2020-11-03 18:52:50 ----A---- C:\WINDOWS\system32\adtschema.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\SecurityHealthService.exe
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\SecurityHealthHost.exe
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\msv1_0.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\lsasrv.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\logoncli.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2020-11-03 18:52:49 ----A---- C:\WINDOWS\system32\dnsapi.dll
2020-11-03 18:52:48 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2020-11-03 18:52:48 ----A---- C:\WINDOWS\system32\CertPolEng.dll
2020-11-03 18:52:47 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-11-03 18:52:47 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2020-11-03 18:52:47 ----A---- C:\WINDOWS\system32\shacct.dll
2020-11-03 18:52:47 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-11-03 18:52:47 ----A---- C:\WINDOWS\system32\EoAExperiences.exe
2020-11-03 18:52:47 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-11-03 18:52:46 ----A---- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2020-11-03 18:52:43 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2020-11-03 18:52:42 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2020-11-03 18:52:42 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-11-03 18:52:42 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-11-03 18:52:42 ----A---- C:\WINDOWS\system32\SettingsHandlers_BrowserDeclutter.dll
2020-11-03 18:52:41 ----A---- C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2020-11-03 18:52:40 ----A---- C:\WINDOWS\system32\wups2.dll
2020-11-03 18:52:40 ----A---- C:\WINDOWS\system32\wuauclt.exe
2020-11-03 18:52:40 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-11-03 18:52:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2020-11-03 18:52:39 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-11-03 18:52:39 ----A---- C:\WINDOWS\system32\MusNotifyIcon.exe
2020-11-03 18:52:39 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2020-11-03 18:52:39 ----A---- C:\WINDOWS\system32\MusNotification.exe
2020-11-03 18:52:38 ----A---- C:\WINDOWS\system32\usoapi.dll
2020-11-03 18:52:38 ----A---- C:\WINDOWS\system32\SHCore.dll
2020-11-03 18:52:38 ----A---- C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-11-03 18:52:38 ----A---- C:\WINDOWS\system32\SettingsHandlers_InkingTypingPrivacy.dll
2020-11-03 18:52:37 ----A---- C:\WINDOWS\system32\user32.dll
2020-11-03 18:52:37 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-11-03 18:52:36 ----A---- C:\WINDOWS\system32\wpncore.dll
2020-11-03 18:52:36 ----A---- C:\WINDOWS\system32\windows.storage.dll
2020-11-03 18:52:36 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-11-03 18:52:35 ----A---- C:\WINDOWS\system32\WaaSAssessment.dll
2020-11-03 18:52:35 ----A---- C:\WINDOWS\system32\tsf3gip.dll
2020-11-03 18:52:35 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2020-11-03 18:52:35 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2020-11-03 18:52:35 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2020-11-03 18:52:34 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2020-11-03 18:52:34 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-11-03 18:52:34 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2020-11-03 18:52:34 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2020-11-03 18:52:34 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2020-11-03 18:52:33 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-11-03 18:52:33 ----A---- C:\WINDOWS\system32\InputService.dll
2020-11-03 18:52:22 ----A---- C:\WINDOWS\system32\tquery.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\mssvp.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\mssrch.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\mssprxy.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\mssph.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\mssitlb.dll
2020-11-03 18:52:21 ----A---- C:\WINDOWS\system32\msscntrs.dll
2020-11-03 18:52:20 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2020-11-03 18:52:19 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2020-11-03 18:52:19 ----A---- C:\WINDOWS\system32\qmgr.dll
2020-11-03 18:52:19 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-11-03 18:52:19 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\vdsbas.dll
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\netplwiz.dll
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\diskpart.exe
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\CoreShell.dll
2020-11-03 18:52:18 ----A---- C:\WINDOWS\system32\aadauthhelper.dll
2020-11-03 18:52:17 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2020-11-03 18:52:17 ----A---- C:\WINDOWS\system32\twinui.dll
2020-11-03 18:52:16 ----A---- C:\WINDOWS\system32\taskbarcpl.dll
2020-11-03 18:52:16 ----A---- C:\WINDOWS\system32\amsiproxy.dll
2020-11-03 18:52:16 ----A---- C:\WINDOWS\system32\amsi.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\dsregtask.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\dsreg.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\system32\advapi32.dll
2020-11-03 18:52:15 ----A---- C:\WINDOWS\explorer.exe
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\XAudio2_9.dll
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\WpcTok.exe
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\WpcRefreshTask.dll
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\framedynos.dll
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\agentactivationruntime.dll
2020-11-03 18:52:13 ----A---- C:\WINDOWS\system32\AarSvc.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\VocabRoamingHandler.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\TransliterationRanker.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\RuleBasedDS.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\MtfDecoder.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\jpnranker.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\jpninputrouter.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\jpndecoder.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\IHDS.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\chxranker.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\chxinputrouter.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\ChtBopomofoDS.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\ChtAdvancedDS.dll
2020-11-03 18:52:12 ----A---- C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\trie.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\MTFSpellcheckDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\MTFFuzzyDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\MTFAppServiceDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChxHAPDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChxDecoder.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChxAPDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChtQuickDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChtHkStrokeDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChtCangjieDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\ChsStrokeDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\HashtagDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\FluencyDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\EmojiDS.dll
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\drivers\KNetPwrDepBroker.sys
2020-11-03 18:52:11 ----A---- C:\WINDOWS\system32\AdvancedEmojiDS.dll
2020-11-03 18:52:10 ----A---- C:\WINDOWS\system32\wwansvc.dll
2020-11-03 18:52:08 ----A---- C:\WINDOWS\system32\iscsilog.dll
2020-11-03 18:52:08 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2020-11-03 18:52:08 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2020-11-03 18:52:08 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2020-11-03 18:52:08 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2020-11-03 18:52:08 ----A---- C:\WINDOWS\system32\drivers\devauthe.sys
2020-11-03 17:58:48 ----A---- C:\WINDOWS\system32\default_error_stack-000000-000000.txt
2020-10-28 19:13:09 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2020-10-28 19:13:09 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-28 19:13:09 ----A---- C:\WINDOWS\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2020-10-28 19:13:07 ----A---- C:\WINDOWS\system32\wmp.dll
2020-10-28 19:13:05 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2020-10-28 19:13:05 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2020-10-28 19:13:05 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2020-10-28 19:13:04 ----A---- C:\WINDOWS\system32\fvewiz.dll
2020-10-28 19:13:04 ----A---- C:\WINDOWS\system32\fveui.dll
2020-10-28 19:13:04 ----A---- C:\WINDOWS\system32\fveapibase.dll
2020-10-28 19:13:04 ----A---- C:\WINDOWS\system32\fveapi.dll
2020-10-28 19:13:04 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2020-10-28 19:13:04 ----A---- C:\WINDOWS\system32\bdesvc.dll
2020-10-28 19:12:59 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2020-10-28 19:12:27 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2020-10-28 19:12:26 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2020-10-28 19:12:26 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2020-10-28 19:12:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2020-10-28 19:12:25 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2020-10-28 19:12:24 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2020-10-28 19:12:24 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2020-10-28 19:12:24 ----A---- C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2020-10-28 19:12:24 ----A---- C:\WINDOWS\system32\HolographicRuntimes.dll
2020-10-28 19:12:21 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2020-10-28 19:12:19 ----A---- C:\WINDOWS\system32\mfsvr.dll
2020-10-28 19:12:19 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2020-10-28 19:12:19 ----A---- C:\WINDOWS\system32\mfds.dll
2020-10-28 19:12:18 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2020-10-28 19:12:18 ----A---- C:\WINDOWS\system32\mfplat.dll
2020-10-28 19:12:17 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2020-10-28 19:12:16 ----A---- C:\WINDOWS\system32\evr.dll
2020-10-28 19:12:15 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2020-10-28 19:12:14 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-10-28 19:12:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.Internal.dll
2020-10-28 19:12:09 ----A---- C:\WINDOWS\SYSWOW64\provmigrate.dll
2020-10-28 19:12:09 ----A---- C:\WINDOWS\SYSWOW64\pnrpnsp.dll
2020-10-28 19:12:09 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2020-10-28 19:12:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.dll
2020-10-28 19:12:08 ----A---- C:\WINDOWS\SYSWOW64\drprov.dll
2020-10-28 19:12:08 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.HardwareId.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\typeperf.exe
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\relog.exe
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\opengl32.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\logman.exe
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\glu32.dll
2020-10-28 19:12:07 ----A---- C:\WINDOWS\SYSWOW64\diskperf.exe
2020-10-28 19:12:06 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2020-10-28 19:12:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-28 19:12:05 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2020-10-28 19:12:02 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2020-10-28 19:12:01 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2020-10-28 19:11:58 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2020-10-28 19:11:58 ----A---- C:\WINDOWS\SYSWOW64\gpupdate.exe
2020-10-28 19:11:58 ----A---- C:\WINDOWS\SYSWOW64\gpedit.dll
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\net1.exe
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\fdWSD.dll
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\dxdiagn.dll
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\auditpolcore.dll
2020-10-28 19:11:57 ----A---- C:\WINDOWS\SYSWOW64\auditpol.exe
2020-10-28 19:11:56 ----A---- C:\WINDOWS\SYSWOW64\dusmapi.dll
2020-10-28 19:11:41 ----A---- C:\WINDOWS\system32\sysmain.dll
2020-10-28 19:11:41 ----A---- C:\WINDOWS\system32\davclnt.dll
2020-10-28 19:11:40 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2020-10-28 19:11:40 ----A---- C:\WINDOWS\system32\vbssysprep.dll
2020-10-28 19:11:40 ----A---- C:\WINDOWS\system32\Spectrum.exe
2020-10-28 19:11:40 ----A---- C:\WINDOWS\system32\provmigrate.dll
2020-10-28 19:11:40 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2020-10-28 19:11:40 ----A---- C:\WINDOWS\system32\HvSocket.dll
2020-10-28 19:11:39 ----A---- C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-10-28 19:11:39 ----A---- C:\WINDOWS\system32\Windows.Mirage.dll
2020-10-28 19:11:39 ----A---- C:\WINDOWS\system32\AcGenral.dll
2020-10-28 19:11:38 ----A---- C:\WINDOWS\system32\drprov.dll
2020-10-28 19:11:37 ----A---- C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2020-10-28 19:11:37 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2020-10-28 19:11:37 ----A---- C:\WINDOWS\system32\PktMon.exe
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\typeperf.exe
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\tracerpt.exe
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\relog.exe
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\opengl32.dll
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\msisip.dll
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\logman.exe
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\glu32.dll
2020-10-28 19:11:32 ----A---- C:\WINDOWS\system32\diskperf.exe
2020-10-28 19:11:31 ----A---- C:\WINDOWS\system32\msimsg.dll
2020-10-28 19:11:31 ----A---- C:\WINDOWS\system32\msi.dll
2020-10-28 19:11:29 ----A---- C:\WINDOWS\system32\Windows.Internal.SecurityMitigationsBroker.dll
2020-10-28 19:11:28 ----A---- C:\WINDOWS\system32\ieproxy.dll
2020-10-28 19:11:25 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2020-10-28 19:11:25 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2020-10-28 19:11:22 ----A---- C:\WINDOWS\system32\jscript.dll
2020-10-28 19:11:22 ----A---- C:\WINDOWS\system32\gpupdate.exe
2020-10-28 19:11:22 ----A---- C:\WINDOWS\system32\gpedit.dll
2020-10-28 19:11:21 ----A---- C:\WINDOWS\system32\StorSvc.dll
2020-10-28 19:11:21 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2020-10-28 19:11:21 ----A---- C:\WINDOWS\system32\fdWSD.dll
2020-10-28 19:11:21 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2020-10-28 19:11:21 ----A---- C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-10-28 19:11:20 ----A---- C:\WINDOWS\system32\WinHvEmulation.dll
2020-10-28 19:11:20 ----A---- C:\WINDOWS\system32\net1.exe
2020-10-28 19:11:20 ----A---- C:\WINDOWS\system32\auditpolcore.dll
2020-10-28 19:11:20 ----A---- C:\WINDOWS\system32\auditpol.exe
2020-10-28 19:11:17 ----A---- C:\WINDOWS\system32\resutils.dll
2020-10-28 19:11:17 ----A---- C:\WINDOWS\system32\clusapi.dll
2020-10-28 19:11:16 ----A---- C:\WINDOWS\system32\skci.dll
2020-10-28 19:11:16 ----A---- C:\WINDOWS\system32\securekernel.exe
2020-10-28 19:11:15 ----A---- C:\WINDOWS\system32\vertdll.dll
2020-10-28 19:11:14 ----A---- C:\WINDOWS\system32\SgrmLpac.exe
2020-10-28 19:11:14 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-10-28 19:11:14 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2020-10-28 19:11:14 ----A---- C:\WINDOWS\system32\SgrmBroker.exe
2020-10-28 19:11:14 ----A---- C:\WINDOWS\system32\dusmapi.dll
2020-10-28 19:11:13 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2020-10-28 19:11:13 ----A---- C:\WINDOWS\system32\vid.dll
2020-10-28 19:11:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2020-10-28 19:11:12 ----A---- C:\WINDOWS\SYSWOW64\version.dll
2020-10-28 19:11:12 ----A---- C:\WINDOWS\SYSWOW64\shlwapi.dll
2020-10-28 19:11:12 ----A---- C:\WINDOWS\SYSWOW64\linkinfo.dll
2020-10-28 19:11:12 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2020-10-28 19:11:12 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2020-10-28 19:11:11 ----A---- C:\WINDOWS\SYSWOW64\uxlib.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\spwizeng.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\setupcln.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\rtutils.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\MitigationConfiguration.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\davhlpr.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\cscdll.dll
2020-10-28 19:10:57 ----A---- C:\WINDOWS\SYSWOW64\cscapi.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\wowreg32.exe
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\spinf.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\secur32.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\raschap.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\rasautou.exe
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\rasadhlp.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\oleacchooks.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\eapprovp.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2020-10-28 19:10:56 ----A---- C:\WINDOWS\SYSWOW64\cmdial32.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\npmproxy.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\nlmsprep.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\nlmproxy.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\nlaapi.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\netprofm.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\msxml3r.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\mlang.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2020-10-28 19:10:55 ----A---- C:\WINDOWS\SYSWOW64\ktmw32.dll
2020-10-28 19:10:54 ----A---- C:\WINDOWS\SYSWOW64\hid.dll
2020-10-28 19:10:53 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2020-10-28 19:10:53 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2020-10-28 19:10:52 ----A---- C:\WINDOWS\SYSWOW64\DismApi.dll
2020-10-28 19:10:52 ----A---- C:\WINDOWS\SYSWOW64\Dism.exe
2020-10-28 19:10:52 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2020-10-28 19:10:51 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2020-10-28 19:10:51 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\winrnr.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\EsdSip.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\edputil.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2020-10-28 19:10:50 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2020-10-28 19:10:49 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2020-10-28 19:10:49 ----A---- C:\WINDOWS\SYSWOW64\omadmapi.dll
2020-10-28 19:10:49 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2020-10-28 19:10:49 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2020-10-28 19:10:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2020-10-28 19:10:48 ----A---- C:\WINDOWS\SYSWOW64\iri.dll
2020-10-28 19:10:48 ----A---- C:\WINDOWS\SYSWOW64\dmiso8601utils.dll
2020-10-28 19:10:48 ----A---- C:\WINDOWS\SYSWOW64\dmcmnutils.dll
2020-10-28 19:10:48 ----A---- C:\WINDOWS\SYSWOW64\credui.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\xmllite.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\wininitext.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\usp10.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\usermgrcli.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\ntlanman.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\normaliz.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\MuiUnattend.exe
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\imm32.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2020-10-28 19:10:47 ----A---- C:\WINDOWS\SYSWOW64\cryptext.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\WerEnc.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\mpr.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\fltMC.exe
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\fltLib.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\dbgcore.dll
2020-10-28 19:10:46 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\wmsgapi.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\Websocket.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\httpapi.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\devrtl.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\devobj.dll
2020-10-28 19:10:45 ----A---- C:\WINDOWS\SYSWOW64\cfgmgr32.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\tokenbinding.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\powrprof.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\ntmarta.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\ntasn1.dll
2020-10-28 19:10:44 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2020-10-28 19:10:30 ----A---- C:\WINDOWS\SYSWOW64\netutils.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\samcli.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\msasn1.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\dsrole.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\dsparse.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\dpapi.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\cryptsp.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\cryptnet.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\cryptdll.dll
2020-10-28 19:10:29 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2020-10-28 19:10:28 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2020-10-28 19:10:28 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2020-10-28 19:10:28 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2020-10-28 19:10:28 ----A---- C:\WINDOWS\SYSWOW64\dllhost.exe
2020-10-28 19:10:28 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2020-10-28 19:10:27 ----A---- C:\WINDOWS\SYSWOW64\WSHTCPIP.DLL
2020-10-28 19:10:27 ----A---- C:\WINDOWS\SYSWOW64\wship6.dll
2020-10-28 19:10:27 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2020-10-28 19:10:27 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2020-10-28 19:10:27 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2020-10-28 19:10:27 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2020-10-28 19:10:26 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2020-10-28 19:10:26 ----A---- C:\WINDOWS\SYSWOW64\msvcp_win.dll
2020-10-28 19:10:26 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2020-10-28 19:10:26 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2020-10-28 19:10:26 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2020-10-28 19:10:26 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2020-10-28 19:10:25 ----A---- C:\WINDOWS\SYSWOW64\wuceffects.dll
2020-10-28 19:10:25 ----A---- C:\WINDOWS\SYSWOW64\svchost.exe
2020-10-28 19:10:25 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2020-10-28 19:10:25 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2020-10-28 19:10:25 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2020-10-28 19:10:25 ----A---- C:\WINDOWS\SYSWOW64\cabinet.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\winsku.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\es.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\colbact.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\clbcatq.dll
2020-10-28 19:10:24 ----A---- C:\WINDOWS\SYSWOW64\catsrv.dll
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\shimeng.dll
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\psapi.dll
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\AppLockerCSP.dll
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\appidtel.exe
2020-10-28 19:10:23 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\virtdisk.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\pcaui.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\pcacli.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\LaunchTM.exe
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\adsldpc.dll
2020-10-28 19:10:22 ----A---- C:\WINDOWS\SYSWOW64\activeds.dll
2020-10-28 19:10:21 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2020-10-28 19:10:21 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2020-10-28 19:10:21 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2020-10-28 19:10:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.RetailInfo.dll
2020-10-28 19:10:21 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2020-10-28 19:10:21 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2020-10-28 19:10:20 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2020-10-28 19:10:20 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2020-10-28 19:10:20 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2020-10-28 19:10:20 ----A---- C:\WINDOWS\SYSWOW64\cmd.exe
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\biwinrt.dll
2020-10-28 19:10:18 ----A---- C:\WINDOWS\SYSWOW64\backgroundTaskHost.exe
2020-10-28 19:10:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2020-10-28 19:10:17 ----A---- C:\WINDOWS\SYSWOW64\oemlicense.dll
2020-10-28 19:10:17 ----A---- C:\WINDOWS\SYSWOW64\DXCore.dll
2020-10-28 19:10:17 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2020-10-28 19:10:17 ----A---- C:\WINDOWS\SYSWOW64\Clipc.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\mskeyprotect.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\CertEnrollCtrl.exe
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\certca.dll
2020-10-28 19:10:16 ----A---- C:\WINDOWS\SYSWOW64\capauthz.dll
2020-10-28 19:10:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2020-10-28 19:10:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2020-10-28 19:10:15 ----A---- C:\WINDOWS\SYSWOW64\threadpoolwinrt.dll
2020-10-28 19:10:14 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2020-10-28 19:10:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2020-10-28 19:10:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Enumeration.dll
2020-10-28 19:10:14 ----A---- C:\WINDOWS\SYSWOW64\rmclient.dll
2020-10-28 19:10:14 ----A---- C:\WINDOWS\SYSWOW64\DevDispItemProvider.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\wshqos.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\umpdc.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2020-10-28 19:10:13 ----A---- C:\WINDOWS\SYSWOW64\coml2.dll
2020-10-28 19:09:55 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2020-10-28 19:09:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2020-10-28 19:09:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2020-10-28 19:09:53 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2020-10-28 19:09:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2020-10-28 19:09:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2020-10-28 19:09:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2020-10-28 19:09:48 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\kernel.appcore.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\BCP47mrm.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\BCP47Langs.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2020-10-28 19:09:47 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\Winlangdb.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\WindowManagementAPI.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\UserLanguageProfileCallback.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\globinputhost.dll
2020-10-28 19:09:45 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2020-10-28 19:09:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2020-10-28 19:09:44 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2020-10-28 19:09:44 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2020-10-28 19:09:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.ServiceHostBuilder.dll
2020-10-28 19:09:43 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2020-10-28 19:09:43 ----A---- C:\WINDOWS\SYSWOW64\rdpsharercom.dll
2020-10-28 19:09:43 ----A---- C:\WINDOWS\SYSWOW64\mobilenetworking.dll
2020-10-28 19:09:43 ----A---- C:\WINDOWS\SYSWOW64\fidocredprov.dll
2020-10-28 19:09:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2020-10-28 19:09:42 ----A---- C:\WINDOWS\SYSWOW64\TempSignedLicenseExchangeTask.dll
2020-10-28 19:09:42 ----A---- C:\WINDOWS\SYSWOW64\InputHost.dll
2020-10-28 19:09:40 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2020-10-28 19:09:40 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2020-10-28 19:09:40 ----A---- C:\WINDOWS\SYSWOW64\TextShaping.dll
2020-10-28 19:09:40 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\D3DSCache.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2020-10-28 19:09:39 ----A---- C:\WINDOWS\SYSWOW64\coloradapterclient.dll
2020-10-28 19:09:38 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2020-10-28 19:09:38 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2020-10-28 19:09:38 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2020-10-28 19:09:38 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2020-10-28 19:09:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2020-10-28 19:09:37 ----A---- C:\WINDOWS\SYSWOW64\ResourcePolicyClient.dll
2020-10-28 19:09:37 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2020-10-28 19:09:37 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2020-10-28 19:09:36 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2020-10-28 19:09:36 ----A---- C:\WINDOWS\SYSWOW64\UiaManager.dll
2020-10-28 19:09:36 ----A---- C:\WINDOWS\SYSWOW64\smartscreenps.dll
2020-10-28 19:09:35 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2020-10-28 19:09:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Launcher.dll
2020-10-28 19:09:35 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2020-10-28 19:09:35 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2020-10-28 19:09:35 ----A---- C:\WINDOWS\SYSWOW64\AppExtension.dll
2020-10-28 19:09:34 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2020-10-28 19:09:34 ----A---- C:\WINDOWS\SYSWOW64\execmodelproxy.dll
2020-10-28 19:09:34 ----A---- C:\WINDOWS\SYSWOW64\ExecModelClient.dll
2020-10-28 19:09:34 ----A---- C:\WINDOWS\SYSWOW64\aadWamExtension.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\SystemEventsBrokerClient.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\NapiNSP.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\DataExchange.dll
2020-10-28 19:09:33 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2020-10-28 19:09:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2020-10-28 19:09:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Controls.dll
2020-10-28 19:09:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2020-10-28 19:09:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2020-10-28 19:09:32 ----A---- C:\WINDOWS\SYSWOW64\OnDemandConnRouteHelper.dll
2020-10-28 19:09:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\wmidcom.dll
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\wbemcomn.dll
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\miutils.dll
2020-10-28 19:09:29 ----A---- C:\WINDOWS\SYSWOW64\mi.dll
2020-10-28 19:09:26 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
2020-10-28 19:09:14 ----A---- C:\WINDOWS\SYSWOW64\w32topl.dll
2020-10-28 19:09:14 ----A---- C:\WINDOWS\SYSWOW64\ntdsapi.dll
2020-10-28 19:09:14 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2020-10-28 19:09:13 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2020-10-28 19:09:13 ----A---- C:\WINDOWS\SYSWOW64\sfc_os.dll
2020-10-28 19:09:13 ----A---- C:\WINDOWS\SYSWOW64\sfc.dll
2020-10-28 19:09:13 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2020-10-28 19:09:13 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2020-10-28 19:09:12 ----A---- C:\WINDOWS\SYSWOW64\wtsapi32.dll
2020-10-28 19:09:12 ----A---- C:\WINDOWS\SYSWOW64\winsta.dll
2020-10-28 19:09:12 ----A---- C:\WINDOWS\SYSWOW64\regapi.dll
2020-10-28 19:09:12 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2020-10-28 19:09:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2020-10-28 19:09:11 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2020-10-28 19:09:11 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2020-10-28 19:09:11 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2020-10-28 19:09:08 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2020-10-28 19:09:08 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2020-10-28 19:09:08 ----A---- C:\WINDOWS\SYSWOW64\msctfp.dll
2020-10-28 19:09:08 ----A---- C:\WINDOWS\SYSWOW64\MsCtfMonitor.dll
2020-10-28 19:09:07 ----A---- C:\WINDOWS\SYSWOW64\sxstrace.exe
2020-10-28 19:09:07 ----A---- C:\WINDOWS\SYSWOW64\sxs.dll
2020-10-28 19:09:07 ----A---- C:\WINDOWS\SYSWOW64\spopk.dll
2020-10-28 19:09:07 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2020-10-28 19:09:07 ----A---- C:\WINDOWS\SYSWOW64\ninput.dll
2020-10-28 19:09:07 ----A---- C:\WINDOWS\SYSWOW64\LicensingWinRT.dll
2020-10-28 19:09:06 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2020-10-28 19:09:06 ----A---- C:\WINDOWS\SYSWOW64\slc.dll
2020-10-28 19:09:06 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2020-10-28 19:09:05 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2020-10-28 19:09:05 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2020-10-28 19:09:05 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2020-10-28 19:09:05 ----A---- C:\WINDOWS\SYSWOW64\MSWB7.dll
2020-10-28 19:09:05 ----A---- C:\WINDOWS\SYSWOW64\dot3msm.dll
2020-10-28 19:09:05 ----A---- C:\WINDOWS\SYSWOW64\dot3api.dll
2020-10-28 19:09:04 ----A---- C:\WINDOWS\SYSWOW64\wcmapi.dll
2020-10-28 19:09:04 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2020-10-28 19:09:04 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2020-10-28 19:09:04 ----A---- C:\WINDOWS\SYSWOW64\tbs.dll
2020-10-28 19:09:04 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2020-10-28 19:09:03 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2020-10-28 19:09:03 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2020-10-28 19:09:03 ----A---- C:\WINDOWS\SYSWOW64\profapi.dll
2020-10-28 19:09:03 ----A---- C:\WINDOWS\SYSWOW64\cryptbase.dll
2020-10-28 19:09:02 ----A---- C:\WINDOWS\SYSWOW64\msvcrt.dll
2020-10-28 19:09:02 ----A---- C:\WINDOWS\SYSWOW64\KBDUS.DLL
2020-10-28 19:09:02 ----A---- C:\WINDOWS\SYSWOW64\FlightSettings.dll
2020-10-28 19:09:02 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\winmm.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2020-10-28 19:09:01 ----A---- C:\WINDOWS\SYSWOW64\ContentDeliveryManager.Utilities.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\SpatialAudioLicenseSrv.exe
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\avrt.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2020-10-28 19:09:00 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2020-10-28 19:08:59 ----A---- C:\WINDOWS\SYSWOW64\SpatializerApo.dll
2020-10-28 19:08:59 ----A---- C:\WINDOWS\SYSWOW64\HrtfApo.dll
2020-10-28 19:08:59 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2020-10-28 19:08:58 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2020-10-28 19:08:58 ----A---- C:\WINDOWS\SYSWOW64\wmiclnt.dll
2020-10-28 19:08:58 ----A---- C:\WINDOWS\SYSWOW64\msvcp110_win.dll
2020-10-28 19:08:58 ----A---- C:\WINDOWS\SYSWOW64\LanguageOverlayUtil.dll
2020-10-28 19:08:57 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2020-10-28 19:08:57 ----A---- C:\WINDOWS\system32\uxlib.dll
2020-10-28 19:08:57 ----A---- C:\WINDOWS\system32\spwizeng.dll
2020-10-28 19:08:57 ----A---- C:\WINDOWS\system32\MBR2GPT.EXE
2020-10-28 19:08:56 ----A---- C:\WINDOWS\system32\wdscore.dll
2020-10-28 19:08:56 ----A---- C:\WINDOWS\system32\setupcln.dll
2020-10-28 19:08:56 ----A---- C:\WINDOWS\system32\migisol.dll
2020-10-28 19:08:55 ----A---- C:\WINDOWS\SYSWOW64\wdscore.dll
2020-10-28 19:08:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2020-10-28 19:08:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2020-10-28 19:08:54 ----A---- C:\WINDOWS\SYSWOW64\NetDriverInstall.dll
2020-10-28 19:08:38 ----A---- C:\WINDOWS\system32\MitigationConfiguration.dll
2020-10-28 19:08:37 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-10-28 19:08:35 ----A---- C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2020-10-28 19:08:35 ----A---- C:\WINDOWS\system32\linkinfo.dll
2020-10-28 19:08:34 ----A---- C:\WINDOWS\system32\version.dll
2020-10-28 19:08:34 ----A---- C:\WINDOWS\system32\shlwapi.dll
2020-10-28 19:08:34 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2020-10-28 19:08:34 ----A---- C:\WINDOWS\system32\comdlg32.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\wshext.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\vbscript.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\rasman.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\msls31.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\davhlpr.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\cscdll.dll
2020-10-28 19:08:33 ----A---- C:\WINDOWS\system32\cscapi.dll
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\rtutils.dll
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\rastls.dll
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\rasautou.exe
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\rasauto.dll
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\eapprovp.dll
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\drivers\rasacd.sys
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2020-10-28 19:08:32 ----A---- C:\WINDOWS\system32\cmdial32.dll
2020-10-28 19:08:31 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2020-10-28 19:08:31 ----A---- C:\WINDOWS\system32\raschap.dll
2020-10-28 19:08:31 ----A---- C:\WINDOWS\system32\OpcServices.dll
2020-10-28 19:08:31 ----A---- C:\WINDOWS\system32\drvstore.dll
2020-10-28 19:08:30 ----A---- C:\WINDOWS\system32\wowreg32.exe
2020-10-28 19:08:30 ----A---- C:\WINDOWS\system32\sppnp.dll
2020-10-28 19:08:30 ----A---- C:\WINDOWS\system32\spinf.dll
2020-10-28 19:08:30 ----A---- C:\WINDOWS\system32\setupapi.dll
2020-10-28 19:08:30 ----A---- C:\WINDOWS\system32\PnPUnattend.exe
2020-10-28 19:08:29 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-10-28 19:08:29 ----A---- C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-10-28 19:08:28 ----A---- C:\WINDOWS\system32\secur32.dll
2020-10-28 19:08:28 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2020-10-28 19:08:28 ----A---- C:\WINDOWS\system32\oleacc.dll
2020-10-28 19:08:28 ----A---- C:\WINDOWS\system32\nlaapi.dll
2020-10-28 19:08:28 ----A---- C:\WINDOWS\system32\ncsi.dll
2020-10-28 19:08:27 ----A---- C:\WINDOWS\system32\nlasvc.dll
2020-10-28 19:08:27 ----A---- C:\WINDOWS\system32\netiougc.exe
2020-10-28 19:08:27 ----A---- C:\WINDOWS\system32\netbtugc.exe
2020-10-28 19:08:27 ----A---- C:\WINDOWS\system32\ImplatSetup.dll
2020-10-28 19:08:27 ----A---- C:\WINDOWS\system32\drivers\NdisImPlatform.sys
2020-10-28 19:08:26 ----A---- C:\WINDOWS\system32\pnidui.dll
2020-10-28 19:08:26 ----A---- C:\WINDOWS\system32\netshell.dll
2020-10-28 19:08:26 ----A---- C:\WINDOWS\system32\mlang.dll
2020-10-28 19:08:26 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2020-10-28 19:08:26 ----A---- C:\WINDOWS\system32\djoin.exe
2020-10-28 19:08:25 ----A---- C:\WINDOWS\system32\taskschd.dll
2020-10-28 19:08:25 ----A---- C:\WINDOWS\system32\taskhostw.exe
2020-10-28 19:08:25 ----A---- C:\WINDOWS\system32\spopk.dll
2020-10-28 19:08:25 ----A---- C:\WINDOWS\system32\ninput.dll
2020-10-28 19:08:25 ----A---- C:\WINDOWS\system32\msutb.dll
2020-10-28 19:08:25 ----A---- C:\WINDOWS\system32\MsCtfMonitor.dll
2020-10-28 19:08:24 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2020-10-28 19:08:24 ----A---- C:\WINDOWS\system32\sxstrace.exe
2020-10-28 19:08:24 ----A---- C:\WINDOWS\system32\sxs.dll

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#2 Příspěvek od tata22 »

2020-10-28 19:08:24 ----A---- C:\WINDOWS\system32\spbcd.dll
2020-10-28 19:08:24 ----A---- C:\WINDOWS\system32\LicensingWinRT.dll
2020-10-28 19:08:23 ----A---- C:\WINDOWS\system32\sppwinob.dll
2020-10-28 19:08:23 ----A---- C:\WINDOWS\system32\sppc.dll
2020-10-28 19:08:23 ----A---- C:\WINDOWS\system32\slc.dll
2020-10-28 19:08:22 ----A---- C:\WINDOWS\system32\msxml3r.dll
2020-10-28 19:08:22 ----A---- C:\WINDOWS\system32\msxml3.dll
2020-10-28 19:08:09 ----A---- C:\WINDOWS\system32\ktmw32.dll
2020-10-28 19:08:09 ----A---- C:\WINDOWS\system32\consent.exe
2020-10-28 19:08:09 ----A---- C:\WINDOWS\system32\appinfoext.dll
2020-10-28 19:08:08 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-10-28 19:08:08 ----A---- C:\WINDOWS\system32\hid.dll
2020-10-28 19:08:07 ----A---- C:\WINDOWS\system32\wininet.dll
2020-10-28 19:08:07 ----A---- C:\WINDOWS\system32\jsproxy.dll
2020-10-28 19:08:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2020-10-28 19:08:06 ----A---- C:\WINDOWS\system32\DismApi.dll
2020-10-28 19:08:06 ----A---- C:\WINDOWS\system32\Dism.exe
2020-10-28 19:08:05 ----A---- C:\WINDOWS\system32\gpsvc.dll
2020-10-28 19:08:05 ----A---- C:\WINDOWS\system32\gpapi.dll
2020-10-28 19:08:05 ----A---- C:\WINDOWS\system32\gdi32full.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\winrnr.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\edputil.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\duser.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\dui70.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\dnscacheugc.exe
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\d3d9.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2020-10-28 19:08:04 ----A---- C:\WINDOWS\system32\BitLockerCsp.dll
2020-10-28 19:08:03 ----A---- C:\WINDOWS\system32\tdh.dll
2020-10-28 19:08:03 ----A---- C:\WINDOWS\system32\pdh.dll
2020-10-28 19:08:03 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2020-10-28 19:08:03 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2020-10-28 19:08:03 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2020-10-28 19:08:03 ----A---- C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\omadmapi.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\iri.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\dmiso8601utils.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\dmcmnutils.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\deploymentcsps.dll
2020-10-28 19:08:02 ----A---- C:\WINDOWS\system32\credui.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\xmllite.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\winlogon.exe
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\wininitext.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\usp10.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\usermgrcli.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\usermgr.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\ntlanman.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\normaliz.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\MuiUnattend.exe
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\cryptui.dll
2020-10-28 19:08:01 ----A---- C:\WINDOWS\system32\cryptext.dll
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\msimg32.dll
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\mf3216.dll
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\lpk.dll
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\imm32.dll
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\fontsub.dll
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2020-10-28 19:08:00 ----A---- C:\WINDOWS\system32\atmlib.dll
2020-10-28 19:07:59 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2020-10-28 19:07:59 ----A---- C:\WINDOWS\system32\dciman32.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\SYSWOW64\winnsi.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\SYSWOW64\imagehlp.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\system32\NetDriverInstall.dll
2020-10-28 19:07:58 ----A---- C:\WINDOWS\system32\mpr.dll
2020-10-28 19:07:57 ----A---- C:\WINDOWS\system32\KernelBase.dll
2020-10-28 19:07:57 ----A---- C:\WINDOWS\system32\fltMC.exe
2020-10-28 19:07:57 ----A---- C:\WINDOWS\system32\fltLib.dll
2020-10-28 19:07:57 ----A---- C:\WINDOWS\system32\drivers\NetAdapterCx.sys
2020-10-28 19:07:57 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\ws2_32.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\winnsi.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\sechost.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\RpcEpMap.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\profapi.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\nsisvc.dll
2020-10-28 19:07:56 ----A---- C:\WINDOWS\system32\drivers\nsiproxy.sys
2020-10-28 19:07:55 ----A---- C:\WINDOWS\system32\sspisrv.dll
2020-10-28 19:07:55 ----A---- C:\WINDOWS\system32\sspicli.dll
2020-10-28 19:07:55 ----A---- C:\WINDOWS\system32\lsass.exe
2020-10-28 19:07:55 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2020-10-28 19:07:54 ----A---- C:\WINDOWS\system32\smss.exe
2020-10-28 19:07:54 ----A---- C:\WINDOWS\system32\cryptbase.dll
2020-10-28 19:07:52 ----A---- C:\WINDOWS\system32\msvcrt.dll
2020-10-28 19:07:52 ----A---- C:\WINDOWS\system32\KBDUS.DLL
2020-10-28 19:07:52 ----A---- C:\WINDOWS\system32\imagehlp.dll
2020-10-28 19:07:52 ----A---- C:\WINDOWS\system32\dbgcore.dll
2020-10-28 19:07:52 ----A---- C:\WINDOWS\system32\csrss.exe
2020-10-28 19:07:52 ----A---- C:\WINDOWS\system32\bcd.dll
2020-10-28 19:07:51 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2020-10-28 19:07:51 ----A---- C:\WINDOWS\system32\WerEnc.dll
2020-10-28 19:07:51 ----A---- C:\WINDOWS\system32\runexehelper.exe
2020-10-28 19:07:39 ----A---- C:\WINDOWS\system32\diagnosticdataquery.dll
2020-10-28 19:07:38 ----A---- C:\WINDOWS\system32\utcutil.dll
2020-10-28 19:07:38 ----A---- C:\WINDOWS\system32\devrtl.dll
2020-10-28 19:07:38 ----A---- C:\WINDOWS\system32\devobj.dll
2020-10-28 19:07:38 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2020-10-28 19:07:37 ----A---- C:\WINDOWS\system32\oleaut32.dll
2020-10-28 19:07:37 ----A---- C:\WINDOWS\system32\httpapi.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\wmsgapi.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\wkscli.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\wininit.exe
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\winhttp.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\Websocket.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\webio.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\userenv.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\tokenbinding.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\srvcli.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\schannel.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\powrprof.dll
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\pacjsworker.exe
2020-10-28 19:07:36 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\Wldap32.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\rsaenh.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\profsvc.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\ntmarta.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\ntasn1.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\netutils.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\ncrypt.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\msasn1.dll
2020-10-28 19:07:35 ----A---- C:\WINDOWS\system32\authz.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\samcli.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\dsrole.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\dsparse.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\dpapi.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\dcntel.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\cryptsp.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\cryptnet.dll
2020-10-28 19:07:34 ----A---- C:\WINDOWS\system32\cryptdll.dll
2020-10-28 19:07:33 ----A---- C:\WINDOWS\system32\WinTypes.dll
2020-10-28 19:07:33 ----A---- C:\WINDOWS\system32\wincorlib.dll
2020-10-28 19:07:33 ----A---- C:\WINDOWS\system32\rpcss.dll
2020-10-28 19:07:33 ----A---- C:\WINDOWS\system32\dllhost.exe
2020-10-28 19:07:33 ----A---- C:\WINDOWS\system32\crypt32.dll
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\WSHTCPIP.DLL
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\wship6.dll
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\wldp.dll
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\combase.dll
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\ci.dll
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\bcrypt.dll
2020-10-28 19:07:32 ----A---- C:\WINDOWS\system32\aepic.dll
2020-10-28 19:07:31 ----A---- C:\WINDOWS\system32\mswsock.dll
2020-10-28 19:07:31 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2020-10-28 19:07:31 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2020-10-28 19:07:31 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2020-10-28 19:07:31 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2020-10-28 19:07:30 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2020-10-28 19:07:30 ----A---- C:\WINDOWS\system32\svchost.exe
2020-10-28 19:07:30 ----A---- C:\WINDOWS\system32\msvcp_win.dll
2020-10-28 19:07:30 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2020-10-28 19:07:28 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2020-10-28 19:07:28 ----A---- C:\WINDOWS\system32\wow64.dll
2020-10-28 19:07:28 ----A---- C:\WINDOWS\system32\conhost.exe
2020-10-28 19:07:28 ----A---- C:\WINDOWS\system32\cabinet.dll
2020-10-28 19:07:27 ----A---- C:\WINDOWS\system32\wuceffects.dll
2020-10-28 19:07:27 ----A---- C:\WINDOWS\system32\dwmcore.dll
2020-10-28 19:07:27 ----A---- C:\WINDOWS\system32\dcomp.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\wimserv.exe
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\wimgapi.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\uDWM.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\ole32.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\es.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\dwmredir.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\dwmapi.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\colbact.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\clbcatq.dll
2020-10-28 19:07:26 ----A---- C:\WINDOWS\system32\catsrv.dll
2020-10-28 19:07:25 ----A---- C:\WINDOWS\system32\winbrand.dll
2020-10-28 19:07:25 ----A---- C:\WINDOWS\system32\setupugc.exe
2020-10-28 19:07:25 ----A---- C:\WINDOWS\system32\eShims.dll
2020-10-28 19:07:25 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-10-28 19:07:25 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2020-10-28 19:07:24 ----A---- C:\WINDOWS\system32\winresume.exe
2020-10-28 19:07:23 ----A---- C:\WINDOWS\system32\winload.exe
2020-10-28 19:07:20 ----A---- C:\WINDOWS\system32\psapi.dll
2020-10-28 19:07:20 ----A---- C:\WINDOWS\system32\appidpolicyconverter.exe
2020-10-28 19:07:20 ----A---- C:\WINDOWS\system32\appidcertstorecheck.exe
2020-10-28 19:07:19 ----A---- C:\WINDOWS\system32\srpapi.dll
2020-10-28 19:07:19 ----A---- C:\WINDOWS\system32\AppLockerCSP.dll
2020-10-28 19:07:19 ----A---- C:\WINDOWS\system32\appidtel.exe
2020-10-28 19:07:19 ----A---- C:\WINDOWS\system32\appidsvc.dll
2020-10-28 19:07:19 ----A---- C:\WINDOWS\system32\appidapi.dll
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\shimeng.dll
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\sdbinst.exe
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\generaltel.dll
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\drivers\applockerfltr.sys
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2020-10-28 19:07:18 ----A---- C:\WINDOWS\system32\apphelp.dll
2020-10-28 19:07:17 ----A---- C:\WINDOWS\system32\acmigration.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\pcaui.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\pcacli.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\invagent.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\devinv.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\appraiser.dll
2020-10-28 19:07:08 ----A---- C:\WINDOWS\system32\aeinv.dll
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\pcasvc.dll
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\pcalua.exe
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\pcaevts.dll
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\pcadm.dll
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\LaunchTM.exe
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\aitstatic.exe
2020-10-28 19:07:07 ----A---- C:\WINDOWS\system32\activeds.dll
2020-10-28 19:07:06 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2020-10-28 19:07:06 ----A---- C:\WINDOWS\system32\SRH.dll
2020-10-28 19:07:06 ----A---- C:\WINDOWS\system32\NapiNSP.dll
2020-10-28 19:07:06 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2020-10-28 19:07:06 ----A---- C:\WINDOWS\system32\adsldpc.dll
2020-10-28 19:07:05 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-10-28 19:07:05 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-10-28 19:07:05 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-10-28 19:07:04 ----A---- C:\WINDOWS\system32\WinREAgent.dll
2020-10-28 19:07:04 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2020-10-28 19:07:04 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2020-10-28 19:07:04 ----A---- C:\WINDOWS\system32\ReAgent.dll
2020-10-28 19:07:04 ----A---- C:\WINDOWS\system32\Facilitator.dll
2020-10-28 19:07:04 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2020-10-28 19:07:03 ----A---- C:\WINDOWS\system32\wmidcom.dll
2020-10-28 19:07:03 ----A---- C:\WINDOWS\system32\miutils.dll
2020-10-28 19:07:03 ----A---- C:\WINDOWS\system32\mi.dll
2020-10-28 19:07:03 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2020-10-28 19:07:02 ----A---- C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-10-28 19:07:01 ----A---- C:\WINDOWS\system32\vsstrace.dll
2020-10-28 19:07:01 ----A---- C:\WINDOWS\system32\vssapi.dll
2020-10-28 19:07:01 ----A---- C:\WINDOWS\system32\virtdisk.dll
2020-10-28 19:07:01 ----A---- C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-10-28 19:07:01 ----A---- C:\WINDOWS\system32\convertvhd.exe
2020-10-28 19:07:01 ----A---- C:\WINDOWS\system32\AppResolver.dll
2020-10-28 19:07:00 ----A---- C:\WINDOWS\system32\wups.dll
2020-10-28 19:07:00 ----A---- C:\WINDOWS\system32\wuapi.dll
2020-10-28 19:07:00 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2020-10-28 19:06:59 ----A---- C:\WINDOWS\system32\updatecsp.dll
2020-10-28 19:06:58 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\wshbth.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\wevtapi.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\w32topl.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\ntdsapi.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\NetworkQoSPolicyCSP.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\netapi32.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\drivers\IndirectKmd.sys
2020-10-28 19:06:57 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2020-10-28 19:06:56 ----A---- C:\WINDOWS\system32\daxexec.dll
2020-10-28 19:06:56 ----A---- C:\WINDOWS\system32\container.dll
2020-10-28 19:06:56 ----A---- C:\WINDOWS\system32\cmd.exe
2020-10-28 19:06:55 ----A---- C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-10-28 19:06:55 ----A---- C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\wpnapps.dll
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\rmclient.dll
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\psmsrv.dll
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2020-10-28 19:06:54 ----A---- C:\WINDOWS\system32\coml2.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\wshqos.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\sbservicetrigger.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\ncbservice.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\keepaliveprovider.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\fwbase.dll
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\drivers\pacer.sys
2020-10-28 19:06:53 ----A---- C:\WINDOWS\system32\BFE.DLL
2020-10-28 19:06:52 ----A---- C:\WINDOWS\system32\wfapigp.dll
2020-10-28 19:06:52 ----A---- C:\WINDOWS\system32\webservices.dll
2020-10-28 19:06:52 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2020-10-28 19:06:52 ----A---- C:\WINDOWS\system32\icfupgd.dll
2020-10-28 19:06:52 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2020-10-28 19:06:51 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2020-10-28 19:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-10-28 19:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-10-28 19:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-10-28 19:06:36 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-10-28 19:06:36 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-10-28 19:06:36 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\profext.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\kernel.appcore.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\BCP47mrm.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\BCP47Langs.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\AppxSip.dll
2020-10-28 19:06:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-10-28 19:06:34 ----A---- C:\WINDOWS\system32\propsys.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\Winlangdb.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\icuuc.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\icuin.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\icu.dll
2020-10-28 19:06:33 ----A---- C:\WINDOWS\system32\globinputhost.dll
2020-10-28 19:06:32 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-10-28 19:06:32 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-10-28 19:06:32 ----A---- C:\WINDOWS\system32\WindowManagementAPI.dll
2020-10-28 19:06:32 ----A---- C:\WINDOWS\system32\storewuauth.dll
2020-10-28 19:06:32 ----A---- C:\WINDOWS\system32\esent.dll
2020-10-28 19:06:31 ----A---- C:\WINDOWS\system32\PushToInstall.dll
2020-10-28 19:06:31 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2020-10-28 19:06:31 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2020-10-28 19:06:31 ----A---- C:\WINDOWS\system32\InstallService.dll
2020-10-28 19:06:30 ----A---- C:\WINDOWS\system32\Windows.Shell.ServiceHostBuilder.dll
2020-10-28 19:06:30 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2020-10-28 19:06:30 ----A---- C:\WINDOWS\system32\rdpsharercom.dll
2020-10-28 19:06:30 ----A---- C:\WINDOWS\system32\mobilenetworking.dll
2020-10-28 19:06:30 ----A---- C:\WINDOWS\system32\fidocredprov.dll
2020-10-28 19:06:29 ----A---- C:\WINDOWS\system32\TempSignedLicenseExchangeTask.dll
2020-10-28 19:06:29 ----A---- C:\WINDOWS\system32\InputHost.dll
2020-10-28 19:06:28 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-10-28 19:06:24 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2020-10-28 19:06:24 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2020-10-28 19:06:24 ----A---- C:\WINDOWS\system32\TextShaping.dll
2020-10-28 19:06:24 ----A---- C:\WINDOWS\system32\gdi32.dll
2020-10-28 19:06:24 ----A---- C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-10-28 19:06:23 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2020-10-28 19:06:23 ----A---- C:\WINDOWS\system32\mscms.dll
2020-10-28 19:06:23 ----A---- C:\WINDOWS\system32\icm32.dll
2020-10-28 19:06:23 ----A---- C:\WINDOWS\system32\dxgiadaptercache.exe
2020-10-28 19:06:23 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2020-10-28 19:06:23 ----A---- C:\WINDOWS\system32\coloradapterclient.dll
2020-10-28 19:06:22 ----A---- C:\WINDOWS\system32\dxgi.dll
2020-10-28 19:06:22 ----A---- C:\WINDOWS\system32\D3DSCache.dll
2020-10-28 19:06:22 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2020-10-28 19:06:22 ----A---- C:\WINDOWS\system32\d3d11.dll
2020-10-28 19:06:21 ----A---- C:\WINDOWS\system32\DWrite.dll
2020-10-28 19:06:21 ----A---- C:\WINDOWS\system32\domgmt.dll
2020-10-28 19:06:21 ----A---- C:\WINDOWS\system32\d2d1.dll
2020-10-28 19:06:20 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\vaultcli.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\msxml6r.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\msxml6.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\biwinrt.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\bisrv.dll
2020-10-28 19:05:40 ----A---- C:\WINDOWS\system32\backgroundTaskHost.exe
2020-10-28 19:05:39 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2020-10-28 19:05:39 ----A---- C:\WINDOWS\system32\cryptngc.dll
2020-10-28 19:05:38 ----A---- C:\WINDOWS\system32\DXCore.dll
2020-10-28 19:05:38 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2020-10-28 19:05:38 ----A---- C:\WINDOWS\system32\D3D12.dll
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\oemlicense.dll
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\licensingdiag.exe
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\Clipc.dll
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\CertEnrollCtrl.exe
2020-10-28 19:05:37 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\RuntimeBroker.exe
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\mskeyprotect.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\certca.dll
2020-10-28 19:05:36 ----A---- C:\WINDOWS\system32\capauthz.dll
2020-10-28 19:05:35 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2020-10-28 19:05:35 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-10-28 19:05:35 ----A---- C:\WINDOWS\system32\threadpoolwinrt.dll
2020-10-28 19:05:34 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2020-10-28 19:05:34 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-10-28 19:05:34 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2020-10-28 19:05:33 ----A---- C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-10-28 19:05:33 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-10-28 19:05:33 ----A---- C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-10-28 19:05:33 ----A---- C:\WINDOWS\system32\DevDispItemProvider.dll
2020-10-28 19:05:33 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-10-28 19:05:33 ----A---- C:\WINDOWS\system32\appinfo.dll
2020-10-28 19:05:32 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2020-10-28 19:05:32 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-10-28 19:05:32 ----A---- C:\WINDOWS\system32\tbauth.dll
2020-10-28 19:05:32 ----A---- C:\WINDOWS\system32\smartscreenps.dll
2020-10-28 19:05:32 ----A---- C:\WINDOWS\system32\smartscreen.exe
2020-10-28 19:05:31 ----A---- C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-10-28 19:05:31 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-10-28 19:05:31 ----A---- C:\WINDOWS\system32\UiaManager.dll
2020-10-28 19:05:31 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\wlidprov.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Controls.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\thumbcache.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-10-28 19:05:30 ----A---- C:\WINDOWS\system32\AppExtension.dll
2020-10-28 19:05:29 ----A---- C:\WINDOWS\system32\msftedit.dll
2020-10-28 19:05:29 ----A---- C:\WINDOWS\system32\aadWamExtension.dll
2020-10-28 19:05:28 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-10-28 19:05:28 ----A---- C:\WINDOWS\system32\execmodelproxy.dll
2020-10-28 19:05:28 ----A---- C:\WINDOWS\system32\ExecModelClient.dll
2020-10-28 19:05:27 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-10-28 19:05:27 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2020-10-28 19:05:27 ----A---- C:\WINDOWS\system32\DeviceSetupManager.dll
2020-10-28 19:05:27 ----A---- C:\WINDOWS\system32\DataExchange.dll
2020-10-28 19:05:26 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2020-10-28 19:05:26 ----A---- C:\WINDOWS\system32\authui.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\sfc_os.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\sfc.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\mfc42u.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\mfc42.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\kernel32.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\atlthunk.dll
2020-10-28 19:05:25 ----A---- C:\WINDOWS\system32\atl.dll
2020-10-28 19:05:24 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2020-10-28 19:05:24 ----A---- C:\WINDOWS\system32\winsta.dll
2020-10-28 19:05:24 ----A---- C:\WINDOWS\system32\twinapi.dll
2020-10-28 19:05:24 ----A---- C:\WINDOWS\system32\regapi.dll
2020-10-28 19:05:24 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2020-10-28 19:05:23 ----A---- C:\WINDOWS\system32\StartTileData.dll
2020-10-28 19:05:23 ----A---- C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-10-28 19:05:22 ----A---- C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2020-10-28 19:05:22 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-10-28 19:05:22 ----A---- C:\WINDOWS\system32\pkeyhelper.dll
2020-10-28 19:05:22 ----A---- C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-10-28 19:05:22 ----A---- C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-10-28 19:05:21 ----A---- C:\WINDOWS\system32\usbmon.dll
2020-10-28 19:05:21 ----A---- C:\WINDOWS\system32\MSWB7.dll
2020-10-28 19:05:21 ----A---- C:\WINDOWS\system32\localui.dll
2020-10-28 19:05:20 ----A---- C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-10-28 19:05:20 ----A---- C:\WINDOWS\system32\dot3svc.dll
2020-10-28 19:05:20 ----A---- C:\WINDOWS\system32\dot3msm.dll
2020-10-28 19:05:20 ----A---- C:\WINDOWS\system32\dot3api.dll
2020-10-28 19:05:19 ----A---- C:\WINDOWS\system32\wcmapi.dll
2020-10-28 19:05:07 ----A---- C:\WINDOWS\system32\w32time.dll
2020-10-28 19:05:07 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-10-28 19:05:07 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2020-10-28 19:05:07 ----A---- C:\WINDOWS\system32\tbs.dll
2020-10-28 19:05:07 ----A---- C:\WINDOWS\system32\drivers\tbs.sys
2020-10-28 19:05:06 ----A---- C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-10-28 19:05:06 ----A---- C:\WINDOWS\system32\wbemcomn.dll
2020-10-28 19:05:06 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2020-10-28 19:05:05 ----A---- C:\WINDOWS\system32\netman.dll
2020-10-28 19:05:04 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2020-10-28 19:05:04 ----A---- C:\WINDOWS\system32\eappprxy.dll
2020-10-28 19:05:04 ----A---- C:\WINDOWS\system32\eapphost.dll
2020-10-28 19:05:04 ----A---- C:\WINDOWS\system32\eappgnui.dll
2020-10-28 19:05:04 ----A---- C:\WINDOWS\system32\eappcfg.dll
2020-10-28 19:05:03 ----A---- C:\WINDOWS\system32\umpdc.dll
2020-10-28 19:05:03 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2020-10-28 19:05:03 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-10-28 19:05:02 ----A---- C:\WINDOWS\system32\winmm.dll
2020-10-28 19:05:02 ----A---- C:\WINDOWS\system32\bcdboot.exe
2020-10-28 19:05:02 ----A---- C:\WINDOWS\system32\AudioSes.dll
2020-10-28 19:05:02 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2020-10-28 19:05:02 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2020-10-28 19:05:02 ----A---- C:\WINDOWS\system32\audiodg.exe
2020-10-28 19:05:02 ----A---- C:\WINDOWS\bfsvc.exe
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\CoreMas.dll
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\audiosrv.dll
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\AudioEng.dll
2020-10-28 19:05:01 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\ssdm.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\SpatializerApo.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\HrtfApo.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\drivers\mmcss.sys
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\CompPkgSrv.exe
2020-10-28 19:05:00 ----A---- C:\WINDOWS\system32\avrt.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\wosc.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\Windows.Internal.System.UserProfile.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\PhoneServiceRes.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\PhoneService.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\LanguageOverlayUtil.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\fcon.dll
2020-10-28 19:04:59 ----A---- C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-10-28 19:04:58 ----A---- C:\WINDOWS\system32\wmiclnt.dll
2020-10-28 19:04:58 ----A---- C:\WINDOWS\system32\msvcp110_win.dll
2020-10-28 19:04:58 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2020-10-28 19:04:57 ----A---- C:\WINDOWS\system32\wwapi.dll
2020-10-28 19:04:57 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2020-10-28 19:04:56 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2020-10-28 19:04:56 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\volmgr.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\processr.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\IntelTA.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\intelppm.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\amdppm.sys
2020-10-28 19:04:55 ----A---- C:\WINDOWS\system32\drivers\amdk8.sys
2020-10-28 19:04:54 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2020-10-26 18:24:10 ----A---- C:\WINDOWS\system32\aswBoot.exe
2020-10-26 18:24:07 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2020-10-26 18:24:05 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2020-10-26 18:18:40 ----D---- C:\Users\ltris\AppData\Roaming\Microsoft Teams

======List of files/folders modified in the last 1 month======

2020-11-21 11:02:35 ----D---- C:\WINDOWS\system32\drivers\etc
2020-11-21 11:02:29 ----RD---- C:\Program Files
2020-11-21 11:00:51 ----D---- C:\WINDOWS\Prefetch
2020-11-21 11:00:33 ----D---- C:\WINDOWS\Temp
2020-11-21 10:55:49 ----HD---- C:\Program Files\WindowsApps
2020-11-21 10:51:57 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2020-11-21 10:50:37 ----D---- C:\WINDOWS\AppReadiness
2020-11-21 10:47:20 ----SHDC---- C:\WINDOWS\Installer
2020-11-21 10:47:20 ----SHD---- C:\Config.Msi
2020-11-21 10:46:49 ----RD---- C:\WINDOWS\Microsoft.NET
2020-11-21 10:46:31 ----RD---- C:\WINDOWS\assembly
2020-11-21 10:44:06 ----D---- C:\WINDOWS\INF
2020-11-21 10:43:05 ----D---- C:\Program Files\Microsoft Office 15
2020-11-21 10:40:54 ----D---- C:\WINDOWS\debug
2020-11-21 10:40:54 ----D---- C:\Windows
2020-11-21 10:36:33 ----D---- C:\Program Files\CCleaner
2020-11-21 10:36:21 ----D---- C:\WINDOWS\system32\Tasks
2020-11-21 10:24:22 ----D---- C:\ProgramData\NVIDIA
2020-11-21 10:20:57 ----D---- C:\WINDOWS\system32\sru
2020-11-16 21:49:39 ----D---- C:\WINDOWS\system32\SleepStudy
2020-11-16 21:06:37 ----D---- C:\ProgramData\AVAST Software
2020-11-16 21:00:31 ----D---- C:\WINDOWS\system32\config
2020-11-16 20:54:01 ----D---- C:\WINDOWS\System32
2020-11-16 20:54:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-16 20:50:17 ----D---- C:\WINDOWS\system32\catroot2
2020-11-16 20:49:37 ----D---- C:\WINDOWS\WinSxS
2020-11-16 20:48:33 ----D---- C:\WINDOWS\system32\DriverStore
2020-11-16 20:46:34 ----ASH---- C:\DumpStack.log.tmp
2020-11-16 20:46:33 ----D---- C:\WINDOWS\system32\drivers
2020-11-16 20:45:44 ----D---- C:\WINDOWS\system32\CatRoot
2020-11-16 20:45:19 ----D---- C:\WINDOWS\SYSWOW64\setup
2020-11-16 20:45:19 ----D---- C:\WINDOWS\SysWOW64
2020-11-16 20:45:18 ----D---- C:\WINDOWS\SystemResources
2020-11-16 20:45:17 ----D---- C:\WINDOWS\system32\setup
2020-11-16 20:45:17 ----D---- C:\WINDOWS\system32\oobe
2020-11-16 20:45:17 ----D---- C:\WINDOWS\system32\migwiz
2020-11-16 20:45:17 ----D---- C:\WINDOWS\bcastdvr
2020-11-16 18:52:53 ----SHD---- C:\System Volume Information
2020-11-16 18:45:28 ----D---- C:\WINDOWS\CbsTemp
2020-11-16 18:40:25 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2020-11-16 18:04:58 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-11 18:11:02 ----D---- C:\Users\ltris\AppData\Roaming\calibre
2020-11-11 18:08:08 ----D---- C:\Program Files\Calibre2
2020-11-10 17:49:42 ----D---- C:\Users\ltris\AppData\Roaming\Skype
2020-11-03 19:26:28 ----D---- C:\WINDOWS\SYSWOW64\wbem
2020-11-03 19:26:28 ----D---- C:\WINDOWS\SYSWOW64\migration
2020-11-03 19:26:28 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2020-11-03 19:26:23 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2020-11-03 19:26:23 ----D---- C:\WINDOWS\system32\wbem
2020-11-03 19:26:23 ----D---- C:\WINDOWS\system32\migration
2020-11-03 19:26:23 ----D---- C:\WINDOWS\system32\cs-CZ
2020-11-03 19:26:21 ----D---- C:\WINDOWS\ShellExperiences
2020-11-03 19:26:21 ----D---- C:\WINDOWS\PolicyDefinitions
2020-11-03 19:26:20 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2020-11-03 19:26:20 ----D---- C:\WINDOWS\cs-CZ
2020-11-03 19:26:20 ----D---- C:\WINDOWS\apppatch
2020-11-03 18:10:01 ----D---- C:\ProgramData\Package Cache
2020-11-03 18:08:36 ----RD---- C:\Users
2020-11-03 18:02:08 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2020-11-03 18:00:52 ----D---- C:\ProgramData\Intel
2020-10-31 19:51:56 ----D---- C:\Program Files (x86)\Intel
2020-10-31 19:33:18 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2020-10-31 19:33:18 ----D---- C:\WINDOWS\SYSWOW64\oobe
2020-10-31 19:33:18 ----D---- C:\WINDOWS\SYSWOW64\Dism
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\zh-TW
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\WinMetadata
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\Sysprep
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\ShellExperiences
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\ru-RU
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\ro-RO
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\pt-PT
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\pl-PL
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\nl-NL
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\es-MX
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\en-US
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\el-GR
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\drivers\UMDF
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\Dism
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\de-DE
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\Boot
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\ar-SA
2020-10-31 19:33:07 ----D---- C:\WINDOWS\system32\appraiser
2020-10-31 19:32:58 ----D---- C:\WINDOWS\servicing
2020-10-31 19:32:58 ----D---- C:\WINDOWS\Provisioning
2020-10-28 19:20:08 ----A---- C:\WINDOWS\system32\OEMDefaultAssociations.dll
2020-10-26 18:24:11 ----HD---- C:\WINDOWS\ELAMBKUP
2020-10-26 18:17:57 ----SD---- C:\Users\ltris\AppData\Roaming\Microsoft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswArDisk;aswArDisk; C:\WINDOWS\system32\drivers\aswArDisk.sys [2020-10-26 37152]
R0 aswbidsh;aswbidsh; C:\WINDOWS\system32\drivers\aswbidsh.sys [2020-10-26 195664]
R0 aswbuniv;aswbuniv; C:\WINDOWS\system32\drivers\aswbuniv.sys [2020-10-26 60496]
R0 aswElam;aswElam; C:\WINDOWS\system32\drivers\aswElam.sys [2020-07-24 16824]
R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2020-10-26 84856]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2020-10-26 326928]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2019-12-07 57360]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2019-01-02 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_88e3b1420844e327\nvpciflt.sys [2018-12-17 54928]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2020-09-28 41984]
R1 aswArPot;aswArPot; C:\WINDOWS\system32\drivers\aswArPot.sys [2020-10-26 206408]
R1 aswbidsdriver;aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdriver.sys [2020-10-26 236112]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2020-10-26 42784]
R1 aswNetHub;aswNetHub; C:\WINDOWS\system32\drivers\aswNetHub.sys [2020-10-26 518664]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2020-10-26 109280]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2020-10-26 851608]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2020-10-26 470912]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-12-07 78136]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2019-12-07 91136]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-12-07 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-12-07 8704]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2018-02-03 27552]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2020-10-26 175720]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2020-10-26 217336]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2020-07-26 143160]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2020-09-28 491520]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2020-10-28 53248]
R3 ACPIVPC;@oem15.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\system32\DRIVERS\AcpiVpc.sys [2018-02-03 53688]
R3 bcbtums;@oem6.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\System32\drivers\bcbtums.sys [2018-02-03 186152]
R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2019-12-07 7585280]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2020-09-28 113664]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2020-09-28 106496]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2019-12-07 133632]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2020-09-28 1548288]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2020-09-28 110592]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-12-07 66576]
R3 dtlitescsibus;@oem20.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2018-02-15 30264]
R3 dtliteusbbus;@oem17.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2018-02-15 47672]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2020-08-31 3814240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2018-02-03 5995944]
R3 IntcDAud;@oem36.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\System32\drivers\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem19.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 MEIx64;@oem4.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [2018-02-03 186424]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2020-09-28 322376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_88e3b1420844e327\nvlddmkm.sys [2018-12-17 20424640]
R3 nvvad_WaveExtensible;@oem7.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2018-10-01 70024]
R3 nvvhci;@oem13.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2018-10-01 74576]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-12-07 213504]
R3 rt640x64;@oem8.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2018-02-03 1010624]
R3 RTSUER;@oem14.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2018-02-03 421312]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-12-07 43832]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-12-07 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-12-07 884752]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-12-07 172344]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-12-07 124216]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-12-07 135992]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-12-07 81720]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-12-07 105480]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-12-07 168464]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-12-07 58680]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-12-07 68408]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2019-12-07 138040]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-12-07 42296]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2019-12-07 158736]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-12-07 23040]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2019-12-07 415232]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2019-12-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2019-12-07 45568]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2020-10-28 18432]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-12-07 279040]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2020-09-28 45568]
S3 btwampfl;@oem6.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [2018-02-03 213312]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-12-07 44032]
S3 dlusbaudio;dlusbaudio; C:\WINDOWS\system32\DRIVERS\dlusbaudio_x64.sys [2017-05-29 238320]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys [2019-12-07 23040]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-12-07 55824]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2019-12-07 66560]
S3 HPMoA407;@oem10.inf,%HPMoA407.SvcDesc%;Mouse Suite Driver_A407 (WDF Version); C:\WINDOWS\System32\drivers\HPMoA407.sys [2011-10-31 25088]
S3 HPubA407;@oem10.inf,%HPubA407.SvcDesc%;USB Mouse Low Filter Driver_A407 (WDF Version); C:\WINDOWS\System32\Drivers\HPubA407.sys [2012-06-14 18944]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2020-11-03 95048]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-12-07 30208]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-12-07 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-12-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-12-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-12-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-12-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-12-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-12-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-12-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-12-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-12-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-12-07 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-12-07 558904]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2020-10-28 47104]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-12-07 30720]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-12-07 59704]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-12-07 537608]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-12-07 64016]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2020-09-28 386048]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-12-07 65024]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-12-07 1131320]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-12-07 146232]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-12-07 72720]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2020-10-28 207360]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2018-10-25 30336]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2020-11-16 104760]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-12-07 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-12-07 27136]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2019-12-07 990008]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-12-07 115712]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-12-07 35128]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2020-09-06 169544]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2020-10-26 360408]
R2 avast! Tools;Avast Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [2020-10-26 2748520]
R2 AvastWscReporter;AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [2020-10-26 58048]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R2 CDPUserSvc_60f74a;Uživatelská služba platformy připojených zařízení_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2020-07-14 3052944]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R2 DSAService;Intel(R) Driver & Support Assistant; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [2020-10-14 35688]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R2 ESRV_SVC_QUEENCREEK;Energy Server Service queencreek; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [2020-08-03 948536]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2020-08-31 327008]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-12-06 787336]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2018-12-11 767016]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2018-12-11 649712]
R2 OneSyncSvc_60f74a;Hostitel synchronizace_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2018-02-03 324576]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2020-10-26 8450976]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 cbdhsvc_60f74a;Uživatelská služba schránky_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2018-08-22 3729512]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 DSAUpdateService;Intel(R) Driver & Support Assistant Updater; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [2020-10-14 161640]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S2 BcmBtRSupport;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2015-03-27 2251992]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S2 edgeupdate;Služba Microsoft Edge Update (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-09-28 213392]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-03 153168]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 AarSvc_60f74a;Agent Activation Runtime_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 BcastDVRUserService_60f74a;Uživatelská služba pro GameDVR a vysílání her_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 BluetoothUserService_60f74a;Služba pro podporu uživatelů Bluetooth_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 CaptureService_60f74a;CaptureService_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 ConsentUxUserSvc_60f74a;ConsentUX_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2020-08-31 397664]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2020-10-28 385240]
S3 CredentialEnrollmentManagerUserSvc_60f74a;CredentialEnrollmentManagerUserSvc_60f74a; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2020-10-28 385240]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 DeviceAssociationBrokerSvc_60f74a;DeviceAssociationBroker_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 DevicePickerUserSvc_60f74a;DevicePicker_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 DevicesFlowUserSvc_60f74a;Tok zařízení_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2020-09-28 94208]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 edgeupdatem;Služba Microsoft Edge Update (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-09-28 213392]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 GoogleChromeElevationService;Google Chrome Elevation Service; C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe [2020-11-11 1406448]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-03 153168]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 Intel(R) SUR QC SAM;Intel(R) SUR QC Software Asset Manager; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2020-08-02 3098928]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 MessagingService_60f74a;Služba zasílání zpráv_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.41\elevation_service.exe [2020-11-19 1573784]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2020-11-09 243408]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-12-06 787336]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2018-06-12 160960]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2020-07-26 105984]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 PimIndexMaintenanceSvc_60f74a;Data kontaktů_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 PrintWorkflowUserSvc_60f74a;PrintWorkflow_60f74a; C:\WINDOWS\system32\svchost.exe [2020-10-28 57360]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2020-10-28 57360]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý jako šnek

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#4 Příspěvek od tata22 »

# -------------------------------
# Malwarebytes AdwCleaner 8.0.8.0
# -------------------------------
# Build: 10-08-2020
# Database: 2020-11-12.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-21-2020
# Duration: 00:00:09
# OS: Windows 10 Home
# Cleaned: 3
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\Public\Documents\Downloaded Installers
Deleted C:\Users\ltris\AppData\Local\slimware utilities inc
Deleted C:\Users\ltris\AppData\Roaming\IObit\Advanced SystemCare

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [2554 octets] - [21/11/2020 12:50:25]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý jako šnek

#5 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#6 Příspěvek od tata22 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-11-2020
Ran by ltris (administrator) on DESKTOP-5OI8D17 (LENOVO IdeaPad Z580) (21-11-2020 19:16:32)
Running from C:\Users\ltris\OneDrive\Plocha
Loaded Profiles: ltris
Platform: Windows 10 Home Version 2009 19042.630 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <3>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(IDSA Production signing key -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\ltris\AppData\Local\Microsoft\Teams\current\Teams.exe <9>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [109664 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18383328 2018-02-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2018-02-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2018-02-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079352 2019-01-02] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2019-01-02] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [285544 2020-10-14] (IDSA Production signing key -> Intel)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [731240 2018-08-22] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32281272 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\ltris\AppData\Local\Microsoft\Teams\Update.exe [2453688 2020-11-21] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MG5300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAT.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5300 series: C:\Windows\system32\CNMLMAT.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5300 series XPS: C:\Windows\system32\CNMXLMAT.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [359936 2012-06-14] (CANON INC.) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\Installer\chrmstp.exe [2020-11-21] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0457C69C-3D36-4971-9F51-D99D4F7304BE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [286088 2020-07-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {1C18A633-A8E0-4229-BCFA-77D5DB5AE384} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [855944 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2F3C7651-A5DD-475A-A927-DC3E737C84B4} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887688 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {36D10E76-A964-4BD4-AC7C-06BC81D9D400} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [972176 2020-05-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {4EC69BCC-DD6A-4254-B064-15A929513E4C} - System32\Tasks\Driver Booster SkipUAC (ltris) => C:\Program Files (x86)\IObit\Driver Booster\5.2.0\DriverBooster.exe
Task: {4FF1112C-B249-4132-83B3-B946DC0D438E} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098928 2020-08-02] (Intel(R) Software Development Products -> Intel Corporation)
Task: {578BC0AF-0BF6-411C-8EC0-87683A00DB90} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [1004424 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {62E7BABA-DFB6-4EF1-ADE5-940BA7E99B2A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3560840 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6486A6D4-1EDF-4D49-AC7F-7963CC6EA9B4} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {649066F2-F061-4867-B05E-D20CD5CFCBE0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-03] (Google Inc -> Google Inc.)
Task: {76F9AF45-F19E-4E4C-A62A-786575B155CF} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4617832 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
Task: {8B37FA66-06C1-46FA-AEFA-50A050178ABC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {90B377DC-0042-491E-93FC-976C71447CC1} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1741416 2020-09-20] (Avast Software s.r.o. -> Avast Software)
Task: {9F25EA35-7CA3-42AF-883A-58FC072217A0} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [787336 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {A5C9F6E6-5DC5-4018-B81E-B428A8DB3F4F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [286088 2020-07-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {AFCDF886-295C-44EF-8427-4F9AD569F6EF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [972176 2020-05-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAE99BF5-3745-468B-B3CC-B5D529E06019} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-03] (Google Inc -> Google Inc.)
Task: {C14902FC-558E-4649-9E81-30DEB0ADA053} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {C7730794-3771-495C-848A-6D1952B12809} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [855944 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D579B313-9F9C-44AA-9E55-950AD01548CA} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887688 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D805FCC8-6DD4-4846-99D9-90DBAEEF570B} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098928 2020-08-02] (Intel(R) Software Development Products -> Intel Corporation)
Task: {D92EF79F-6FF9-4C1F-9B64-7392A3404A98} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26781880 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DC3747B4-5478-4988-8C10-257FE243DB44} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [787336 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {E5F5BFFD-709F-46C8-BC03-80A5AAFEAB32} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887688 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E795AEBF-849E-48CD-B8A9-32AFE8F5D4A6} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887688 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ECB79C4C-8D23-49BA-8932-B6BBC4BE1256} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1341008 2020-09-06] (Adobe Inc. -> Adobe Inc.)
Task: {F0317C5C-B0B1-4FA3-BDFD-D87E36A7876F} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [563080 2018-12-06] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F8FCDCBE-0382-4FFB-9B4F-81BDB8A8BE2D} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-11-21] (Mozilla Corporation -> Mozilla Foundation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.255.255.10 10.255.255.20
Tcpip\..\Interfaces\{13082546-5666-48eb-85a9-7388043e8bf7}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{d5cbb77d-a17e-40d6-8740-d93fd0b96982}: [DhcpNameServer] 10.255.255.10 10.255.255.20

Edge:
======
Edge Profile: C:\Users\ltris\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-21]

FireFox:
========
FF DefaultProfile: qxcdat8s.default-1570817262516
FF ProfilePath: C:\Users\ltris\AppData\Roaming\Mozilla\Firefox\Profiles\qxcdat8s.default-1570817262516 [2020-11-21]
FF Homepage: Mozilla\Firefox\Profiles\qxcdat8s.default-1570817262516 -> www.google.com
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-02-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2018-02-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-10-22] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default [2020-11-21]
CHR Extension: (Slides) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-03]
CHR Extension: (Docs) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-03]
CHR Extension: (Google Drive) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-02-03]
CHR Extension: (YouTube) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-02-03]
CHR Extension: (Avast SafePrice) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-02-15]
CHR Extension: (Google Docs Offline) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-02-03]
CHR Extension: (Avast Online Security) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-02-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-02-03]
CHR Extension: (Tumblr Savior) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\oefddkjnflmjbclpnnoegglmmdfkidip [2018-02-19]
CHR Extension: (Gmail) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-02-03]
CHR Profile: C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-11-21]
CHR Notifications: Profile 1 -> hxxps://www.facebook.com; hxxps://www.youtube.com
CHR HomePage: Profile 1 -> hxxp://www.modnipeklo.cz/
CHR StartupUrls: Profile 1 -> "hxxp://search.toggle.com/?lang=en&cid=adfaa7a7","hxxp://www.google.com/","hxxps://www.google.co ... kid=sp-006"
CHR Extension: (Prezentace) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-27]
CHR Extension: (Dokumenty) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-27]
CHR Extension: (Disk Google) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-10]
CHR Extension: (YouTube) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-02-27]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-11-21]
CHR Extension: (Convertio) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eppjkefeiehhflmgkhdooajgbkkegpcl [2020-11-10]
CHR Extension: (Tabulky) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-21]
CHR Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2019-04-30]
CHR Extension: (Kindle Cloud Reader) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\icdipabjmbhpdkjaihfjoikhjjeneebd [2018-02-27]
CHR Extension: (New XKit) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\inobiceghmpkaklcknpniboilbjmlald [2020-11-10] [UpdateUrl:hxxps://new-xkit.github.io/XKit/Extensions/dist/page/FirefoxUpdate.json] <==== ATTENTION
CHR Extension: (View image) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpcmhcelnjdmblfmjabdeclccemkghjk [2020-11-10]
CHR Extension: (F.B.(FluffBusting)Purity) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmkinhboiljjkhaknpaeaicmdjhagpep [2020-11-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-11-10]
CHR Extension: (Tumblr Savior) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oefddkjnflmjbclpnnoegglmmdfkidip [2020-11-21]
CHR Extension: (Gmail) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-21]
CHR Extension: (Chrome Media Router) - C:\Users\ltris\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-21]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169544 2020-09-06] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8450976 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [360408 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [2748520 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3052944 2020-07-14] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3729512 2018-08-22] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\NisSrv.exe [2343112 2020-09-20] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MsMpEng.exe [128360 2020-09-20] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37152 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [206408 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [332368 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [247888 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [97352 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16816 2020-11-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42784 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [176744 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [521752 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109280 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84856 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851608 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [469832 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [217336 2020-10-26] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326416 2020-11-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dlusbaudio; C:\WINDOWS\system32\DRIVERS\dlusbaudio_x64.sys [238320 2017-05-29] (DISPLAYLINK -> DisplayLink Corp.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-02-15] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-02-15] (Disc Soft Ltd -> Disc Soft Ltd)
S3 HPMoA407; C:\WINDOWS\System32\drivers\HPMoA407.sys [25088 2011-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
S3 HPubA407; C:\WINDOWS\System32\Drivers\HPubA407.sys [18944 2012-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-02-03] (Martin Malik - REALiX -> REALiX(tm))
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48520 2020-09-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [428256 2020-09-20] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69856 2020-09-20] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-21 19:15 - 2020-11-21 19:17 - 000000000 ____D C:\FRST
2020-11-21 16:18 - 2020-11-21 16:17 - 000339552 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-11-21 16:18 - 2020-11-21 16:17 - 000217336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswdbbd067a4a1184af.tmp
2020-11-21 13:15 - 2020-11-21 13:15 - 000001765 _____ C:\ProgramData\Plocha\Defraggler.lnk
2020-11-21 13:15 - 2020-11-21 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2020-11-21 13:15 - 2020-11-21 13:15 - 000000000 ____D C:\Program Files\Defraggler
2020-11-21 13:14 - 2020-11-21 13:14 - 007466056 _____ (Piriform Software Ltd) C:\Users\ltris\Downloads\dfsetup222.exe
2020-11-21 12:51 - 2020-11-21 12:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-11-21 12:49 - 2020-11-21 12:52 - 000000000 ____D C:\AdwCleaner
2020-11-21 11:02 - 2020-11-21 11:02 - 000000000 ____D C:\rsit
2020-11-21 11:02 - 2020-11-21 11:02 - 000000000 ____D C:\Program Files\trend micro
2020-11-21 11:00 - 2020-11-21 12:54 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-16 18:41 - 2020-11-16 18:41 - 000009265 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-11-11 18:29 - 2020-11-11 18:29 - 000000000 ____D C:\Users\ltris\AppData\Roaming\Teams
2020-11-11 18:11 - 2020-11-11 18:11 - 000000000 ____D C:\Users\ltris\AppData\Local\calibre-ebook.com
2020-11-03 18:53 - 2020-11-03 18:53 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-03 18:52 - 2020-11-03 18:52 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-03 18:52 - 2020-11-03 18:52 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2020-11-03 18:52 - 2020-11-03 18:52 - 000152576 _____ C:\WINDOWS\system32\EoAExperiences.exe
2020-11-03 17:58 - 2020-11-03 17:58 - 000001424 _____ C:\WINDOWS\system32\default_error_stack-000000-000000.txt
2020-10-28 19:12 - 2020-10-28 19:12 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-10-28 19:11 - 2020-10-28 19:11 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-10-28 19:11 - 2020-10-28 19:11 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2020-10-28 19:10 - 2020-10-28 19:10 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2020-10-28 19:10 - 2020-10-28 19:10 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2020-10-28 19:10 - 2020-10-28 19:10 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2020-10-28 19:10 - 2020-10-28 19:10 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-10-28 19:09 - 2020-10-28 19:09 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-10-28 19:09 - 2020-10-28 19:09 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2020-10-28 19:09 - 2020-10-28 19:09 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-10-28 19:09 - 2020-10-28 19:09 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-10-28 19:08 - 2020-10-28 19:08 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2020-10-28 19:08 - 2020-10-28 19:08 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2020-10-28 19:08 - 2020-10-28 19:08 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-10-28 19:07 - 2020-10-28 19:07 - 001822256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-10-28 19:07 - 2020-10-28 19:07 - 001393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-10-28 19:07 - 2020-10-28 19:07 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2020-10-28 19:07 - 2020-10-28 19:07 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-10-28 19:06 - 2020-10-28 19:06 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-10-28 19:06 - 2020-10-28 19:06 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2020-10-28 19:06 - 2020-10-28 19:06 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2020-10-28 19:06 - 2020-10-28 19:06 - 000645120 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-10-28 19:06 - 2020-10-28 19:06 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2020-10-28 19:06 - 2020-10-28 19:06 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2020-10-28 19:05 - 2020-10-28 19:05 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-10-28 19:05 - 2020-10-28 19:05 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2020-10-28 19:05 - 2020-10-28 19:05 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2020-10-28 19:05 - 2020-10-28 19:05 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-10-28 19:05 - 2020-10-28 19:05 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-10-28 19:05 - 2020-10-28 19:05 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-10-28 19:05 - 2020-10-28 19:05 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2020-10-28 19:04 - 2020-10-28 19:04 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-10-26 18:24 - 2020-11-21 16:17 - 000176744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-10-26 18:24 - 2020-10-26 18:21 - 000217336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-10-26 18:24 - 2020-10-26 18:21 - 000175720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswf01877024ca83be6.tmp
2020-10-26 18:18 - 2020-11-21 17:37 - 000002368 _____ C:\Users\ltris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2020-10-26 18:18 - 2020-10-26 18:18 - 000000000 ____D C:\Users\ltris\AppData\Roaming\Microsoft Teams

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-21 19:20 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-11-21 19:15 - 2018-02-03 12:56 - 000000000 ____D C:\Users\ltris\AppData\LocalLow\Mozilla
2020-11-21 17:37 - 2018-06-22 17:06 - 000000000 ____D C:\Users\ltris\AppData\Local\AVAST Software
2020-11-21 17:20 - 2018-02-03 12:58 - 000000000 ____D C:\ProgramData\AVAST Software
2020-11-21 17:18 - 2019-03-08 20:25 - 000000000 ____D C:\ProgramData\Mozilla
2020-11-21 17:07 - 2018-02-03 12:40 - 000000000 ____D C:\ProgramData\NVIDIA
2020-11-21 17:05 - 2018-02-03 13:44 - 000000000 __SHD C:\Users\ltris\IntelGraphicsProfiles
2020-11-21 17:04 - 2019-04-25 20:36 - 000000000 ____D C:\Users\ltris\Knihovna Calibre
2020-11-21 17:00 - 2020-07-26 19:37 - 000000000 ____D C:\Users\ltris
2020-11-21 16:19 - 2018-02-03 14:40 - 000000000 ____D C:\Program Files\CCleaner
2020-11-21 16:18 - 2020-07-26 20:26 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-11-21 16:18 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-11-21 16:17 - 2020-04-15 12:23 - 000521752 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2020-11-21 16:17 - 2019-01-20 15:25 - 000247888 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-11-21 16:17 - 2019-01-20 15:25 - 000097352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-11-21 16:17 - 2018-10-16 13:32 - 000042784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-11-21 16:17 - 2018-06-21 17:56 - 000016816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2020-11-21 16:17 - 2018-02-03 13:05 - 000469832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-11-21 16:17 - 2018-02-03 13:05 - 000326416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-11-21 16:17 - 2018-02-03 13:05 - 000109280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-11-21 16:17 - 2018-02-03 13:05 - 000084856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-11-21 16:16 - 2019-01-20 16:12 - 000332368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-11-21 16:16 - 2019-01-20 15:25 - 000037152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2020-11-21 16:16 - 2018-02-03 13:05 - 000851608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-11-21 16:16 - 2018-02-03 13:05 - 000206408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-11-21 16:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-21 16:14 - 2020-09-28 18:09 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-11-21 16:14 - 2020-09-28 18:09 - 000002274 _____ C:\ProgramData\Plocha\Microsoft Edge.lnk
2020-11-21 16:13 - 2018-02-03 14:40 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-11-21 16:07 - 2020-07-26 20:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-11-21 16:07 - 2020-07-26 20:00 - 000008192 ___SH C:\DumpStack.log.tmp
2020-11-21 16:06 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-11-21 16:05 - 2020-07-26 20:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-11-21 13:31 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-11-21 13:24 - 2018-02-03 12:51 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-11-21 13:17 - 2018-02-03 12:50 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-11-21 12:54 - 2018-02-03 12:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-21 12:52 - 2018-02-03 14:45 - 000000000 ____D C:\Users\ltris\AppData\Roaming\IObit
2020-11-21 12:51 - 2018-02-03 12:56 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-21 11:21 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-11-21 10:55 - 2019-01-01 17:37 - 000000000 ____D C:\Users\ltris\Jitka soubory
2020-11-21 10:44 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-11-21 10:43 - 2018-02-03 16:08 - 000000000 ____D C:\Program Files\Microsoft Office 15
2020-11-21 10:40 - 2018-02-03 13:57 - 000000000 ____D C:\Users\ltris\AppData\Local\CrashDumps
2020-11-21 10:36 - 2020-07-26 20:26 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-11-21 10:36 - 2019-01-20 17:09 - 000000863 _____ C:\ProgramData\Plocha\CCleaner.lnk
2020-11-21 10:27 - 2018-02-03 12:44 - 000000000 ___RD C:\Users\ltris\OneDrive
2020-11-16 20:54 - 2020-07-26 20:10 - 001605666 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-16 20:54 - 2019-12-07 15:41 - 000683426 _____ C:\WINDOWS\system32\perfh005.dat
2020-11-16 20:54 - 2019-12-07 15:41 - 000137206 _____ C:\WINDOWS\system32\perfc005.dat
2020-11-16 20:47 - 2020-07-26 20:00 - 000453856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-11-16 20:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-11-16 20:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-11-16 20:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2020-11-16 20:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-11-16 20:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-11-16 20:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-11-16 18:40 - 2020-07-26 20:07 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-11-11 18:11 - 2019-04-25 20:38 - 000000000 ____D C:\Users\ltris\AppData\Local\calibre-cache
2020-11-11 18:11 - 2019-04-25 20:36 - 000000000 ____D C:\Users\ltris\AppData\Roaming\calibre
2020-11-11 18:08 - 2019-04-25 20:36 - 000000999 _____ C:\ProgramData\Plocha\calibre 64bit - E-book management.lnk
2020-11-11 18:08 - 2019-04-25 20:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2020-11-11 18:08 - 2019-04-25 20:36 - 000000000 ____D C:\Program Files\Calibre2
2020-11-10 17:49 - 2018-02-03 15:40 - 000000000 ____D C:\Users\ltris\AppData\Roaming\Skype
2020-11-08 17:02 - 2020-09-28 20:27 - 000002678 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2020-11-08 17:02 - 2020-09-28 18:08 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-11-08 17:02 - 2020-09-28 18:08 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-11-08 17:02 - 2020-07-26 20:26 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-11-08 17:02 - 2020-07-26 20:26 - 000003400 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-11-08 17:02 - 2020-07-26 20:26 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000003176 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-11-08 17:02 - 2020-07-26 20:26 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000003042 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2020-11-08 17:02 - 2020-07-26 20:26 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000003016 _____ C:\WINDOWS\system32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000002970 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2020-11-08 17:02 - 2020-07-26 20:26 - 000002956 _____ C:\WINDOWS\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1139971469-3715635046-3152565098-1001
2020-11-08 17:02 - 2020-07-26 20:26 - 000002838 _____ C:\WINDOWS\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-08 17:02 - 2020-07-26 20:26 - 000002604 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2020-11-08 17:02 - 2020-07-26 20:26 - 000002278 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (ltris)
2020-11-08 17:02 - 2020-07-26 20:26 - 000002220 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-11-08 17:02 - 2020-07-26 20:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2020-11-03 19:26 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-11-03 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-11-03 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-11-03 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-11-03 18:25 - 2018-02-03 17:02 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-11-03 18:10 - 2018-02-03 13:54 - 000000000 ____D C:\ProgramData\Package Cache
2020-11-03 18:09 - 2018-02-03 14:14 - 000019722 _____ C:\WINDOWS\system32\results.xml
2020-11-03 18:02 - 2018-02-03 13:43 - 000000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2020-11-03 18:00 - 2018-02-03 13:54 - 000000000 ____D C:\ProgramData\Intel
2020-11-02 20:44 - 2018-02-03 12:40 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-10-31 19:51 - 2020-10-05 17:00 - 000001510 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2020-10-31 19:51 - 2018-02-03 12:33 - 000000000 ____D C:\Program Files (x86)\Intel
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-10-31 19:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-10-31 19:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2020-10-31 19:32 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2020-10-28 19:20 - 2019-12-07 15:44 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2020-10-28 19:20 - 2019-12-07 15:44 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2020-10-27 20:16 - 2018-02-03 14:43 - 000000000 ____D C:\Users\ltris\AppData\Local\PlaceholderTileLogoFolder
2020-10-27 20:16 - 2018-02-03 12:40 - 000000000 ____D C:\Users\ltris\AppData\Local\Packages
2020-10-26 18:25 - 2020-04-15 12:23 - 000518664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw015eded465ad99a3.tmp
2020-10-26 18:21 - 2019-01-20 15:25 - 000195664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2576c0330f0f5ac6.tmp
2020-10-26 18:21 - 2019-01-20 15:25 - 000060496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswca5dfe54042ee189.tmp
2020-10-26 18:21 - 2019-01-20 15:25 - 000037152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw22c826892e4cea78.tmp
2020-10-26 18:21 - 2018-10-16 13:32 - 000042784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswf21ae351c06e4540.tmp
2020-10-26 18:21 - 2018-02-03 13:05 - 000470912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw5b0e16719807355c.tmp
2020-10-26 18:21 - 2018-02-03 13:05 - 000326928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw03aeeece0ab17d04.tmp
2020-10-26 18:21 - 2018-02-03 13:05 - 000206408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbd9b3a60c335f2c6.tmp
2020-10-26 18:21 - 2018-02-03 13:05 - 000109280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw0f9759f8cb0577b2.tmp
2020-10-26 18:21 - 2018-02-03 13:05 - 000084856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw5cea96eaf7795fff.tmp
2020-10-26 18:20 - 2019-01-20 16:12 - 000236112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswac3cd5f58de1ede7.tmp
2020-10-26 18:20 - 2018-02-03 13:05 - 000851608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswf12827304316f635.tmp
2020-10-26 18:19 - 2018-07-27 18:16 - 000000000 ____D C:\Users\ltris\AppData\Local\SquirrelTemp
2020-10-26 18:08 - 2020-07-26 19:37 - 000002365 _____ C:\Users\ltris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk

==================== Files in the root of some directories ========

2018-02-15 11:52 - 2018-02-15 11:52 - 000000038 _____ () C:\Users\ltris\AppData\Roaming\~SiMPLEX.ini

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#7 Příspěvek od tata22 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-11-2020
Ran by ltris (21-11-2020 19:21:16)
Running from C:\Users\ltris\OneDrive\Plocha
Windows 10 Home Version 2009 19042.630 (X64) (2020-07-26 19:27:22)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1139971469-3715635046-3152565098-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1139971469-3715635046-3152565098-503 - Limited - Disabled)
Guest (S-1-5-21-1139971469-3715635046-3152565098-501 - Limited - Disabled)
ltris (S-1-5-21-1139971469-3715635046-3152565098-1001 - Administrator - Enabled) => C:\Users\ltris
WDAGUtilityAccount (S-1-5-21-1139971469-3715635046-3152565098-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
7-Zip 18.06 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1806-000001000000}) (Version: 18.06.00.0 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.013.20064 - Adobe Systems Incorporated)
Aktualizace NVIDIA 34.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 34.0.0.0 - NVIDIA Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 20.9.2437 - Avast Software)
Balíček ovladače systému Windows - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo)
Balíček ovladače systému Windows - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
calibre 64bit (HKLM\...\{89CAD294-1D0A-4D76-A90E-9AC6699022B7}) (Version: 5.4.2 - Kovid Goyal)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.)
Canon MG5300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series) (Version: - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.74 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.9.0.0598 - Disc Soft Ltd)
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.35 - NVIDIA Corporation) Hidden
DisplayLink Graphics Driver (HKLM\...\{3C81A4EC-A02B-4D8F-9482-E922C6B7D84C}) (Version: 8.4.3026.0 - DisplayLink Corp.)
Energy Management (HKLM-x32\...\{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.20 - Lenovo) Hidden
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.20 - Lenovo)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.198 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
HP Port Replicator Software Installer (HKLM-x32\...\{6313BCDF-1109-4682-A19D-413189817787}) (Version: 1.3.58 - HP)
Intel Driver && Support Assistant (HKLM-x32\...\{E051A413-9853-4901-AF60-176ED50E7329}) (Version: 20.10.42.5 - Intel) Hidden
Intel(R) Computing Improvement Program (HKLM\...\{9C2782AC-55D3-4A41-889C-34A51A2CEB67}) (Version: 2.4.05982 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.5161 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{6f610581-f2d3-4d65-9c20-3627d30f5572}) (Version: 20.10.42.5 - Intel)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.41 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft Office Professional Plus 2013 - cs-cz (HKLM\...\ProPlusRetail - cs-cz) (Version: 15.0.5293.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\Teams) (Version: 1.3.00.30866 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{127D3B81-C5CB-4340-AC96-8F7EF322C910}) (Version: 2.60.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox 83.0 (x64 cs) (HKLM\...\Mozilla Firefox 83.0 (x64 cs)) (Version: 83.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0.1 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.12 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.16.0.140 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.16.0.140 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5293.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.5293.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0405-0000-0000000FF1CE}) (Version: 15.0.5293.1000 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Ovládací panel NVIDIA 417.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 417.35 - NVIDIA Corporation) Hidden
Oxford Studijní slovník: výkladový slovník angličtiny s českým překladem (HKLM-x32\...\Oxford Studijní slovník) (Version: - )
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8264 - Realtek Semiconductor Corp.)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH)
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2020-07-09] (Autodesk Inc.)
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.9.0.1_neutral__6e5tt8cgb93ep [2020-10-27] (Canon Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-17] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-17] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-10-27] (Microsoft Studios) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0 [2020-11-16] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\ltris\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20275.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (IDSA Production signing key -> Intel)
CustomCLSID: HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\ltris\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2020-08-03] (Piriform Software Ltd -> Piriform Software Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-08-22] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-08-22] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2020-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-12-11] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-12-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-10-26] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2020-08-03] (Piriform Software Ltd -> Piriform Software Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\ltris\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Pavla - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2018-02-03 17:26 - 2012-06-14 17:18 - 000359936 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMN6PPM.DLL
2018-12-30 12:00 - 2018-12-30 12:00 - 000077824 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2020-08-03 20:23 - 2020-08-03 20:23 - 001918464 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BA170601&iDate=2020-04-20 05:01:46&bName=
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2020-07-08] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2020-11-21] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2020-07-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-11-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2018-02-22] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2020-11-21 11:02 - 000000828 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\ltris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 10.255.255.10 - 10.255.255.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Energy Management"
HKLM\...\StartupApproved\Run: => "EnergyUtility"
HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX"
HKLM\...\StartupApproved\Run32: => "Intel Driver & Support Assistant"
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2D4B7EB4-BB38-4C1C-8F88-3D6837180D99}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5F7FB637-B49F-48B4-B14C-10287946551E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7AB5653C-9155-4AAF-BA0C-D3C75D15A7C7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B0697860-2D53-44B5-BDC4-97816E595858}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{8DED81E9-8427-4F9F-9278-7D298430C156}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{8B06C75F-9F46-4A37-8711-1983969C91B7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C6294FD6-D76F-4DE8-9B91-1570CA055A57}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{1A06340A-A089-41F3-9F7A-1E12DAC86911}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E84EE56A-1211-4E40-A905-677A892F1873}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{DB8A161A-184F-4F85-95FE-BA53983D79F9}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{23E47CB6-477D-4291-AA78-F48073E48D73}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{29C7596A-164E-4130-A831-FEF6CFEA90D9}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B5045305-1C2E-4C09-99FD-0625959DA146}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C64AAB6D-A8BC-475E-B929-AF615D1D2DFC}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{AA0C74B3-EF75-4828-AABA-D81845AAEEF3}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{72D91F92-5AA0-4B16-9C07-B5DC9D227115}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{2DB99202-ABBC-42F9-B4DB-0F468CE77EB7}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{7E978739-C930-4C42-9B18-BFF86D18C08F}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{38CB9FAD-EBFA-4F32-A0B0-CCE4554AB334}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{D34DA222-99AF-471E-B131-D9BB24CAA9F5}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{26A2A824-10BC-46B2-98F3-09C0DB78EFA7}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{44EFB68E-649D-4424-A2C9-AD34C6C3522D}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CD284CC7-4587-47A9-BF48-EB7DD3E509D0}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{738E213C-F74B-40B5-B554-DA8CCAB84EC8}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{F4A59510-406E-4E47-9DFF-E452372239B2}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{3830BD11-EF2A-414E-80D1-F7BC2A7A0C85}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [TCP Query User{A11B4860-7EA8-476B-8549-44688C34A310}C:\users\ltris\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\ltris\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{0BEA99C3-B9CC-446D-8938-92CBB44B70F9}C:\users\ltris\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\ltris\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A8AD7591-9C3D-453A-B320-9BBB5B0CFCD0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{83A801D6-EC72-4828-92C2-E397CB18C88C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CB565581-7945-4402-B71F-4D9302766301}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3E199C1D-D14E-4250-8DCB-DE5C60BD7322}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{00E38B05-7EB7-43EB-BE58-20B747B87515}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{F182039A-68F8-4B5F-A6E2-A7F8B807E745}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9F9F076F-2D96-4110-9D3F-48BE1ACC2AB1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{34CECF79-ACC2-407C-BFAC-353C8ED670AC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.146.916.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{27322CD5-4700-41BF-884C-461709A79BD8}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{A789C6E8-248B-43B8-BA66-BF7AE01D02FB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2E2AE474-6254-43B8-97C9-22DBCF212731}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CA6F7A30-0467-4754-9B34-B9B11534FA08}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3097846E-C5DF-4147-86AE-5DB793C7BC16}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Restore Points =========================

21-11-2020 13:29:19 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/21/2020 05:09:54 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-5OI8D17)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (11/21/2020 04:12:40 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-5OI8D17)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (11/21/2020 04:06:22 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (11/21/2020 04:06:22 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (11/21/2020 04:06:22 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (11/21/2020 04:06:22 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (11/21/2020 04:06:22 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (11/21/2020 04:06:22 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]


System errors:
=============
Error: (11/21/2020 04:11:49 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Optimalizace doručení přestala během spouštění reagovat.

Error: (11/21/2020 04:09:12 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby avast! Tools bylo dosaženo časového limitu (30000 ms).

Error: (11/21/2020 04:08:37 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Intel(R) SUR QC Software Asset Manager bylo dosaženo časového limitu (30000 ms).

Error: (11/21/2020 12:59:29 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Optimalizace doručení přestala během spouštění reagovat.

Error: (11/21/2020 12:56:12 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Intel(R) SUR QC Software Asset Manager bylo dosaženo časového limitu (30000 ms).

Error: (11/21/2020 12:52:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Driver & Support Assistant byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/21/2020 12:52:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Energy Server Service queencreek byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/21/2020 12:52:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office ClickToRun byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.


Windows Defender:
===================================
Date: 2020-09-20 19:02:22.6020000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {BDB306B2-5DFD-42D5-BEDB-60A3C09D674F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-09-28 17:30:24.9080000Z
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.323.1558.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17400.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2020-09-28 17:30:24.9070000Z
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.323.1558.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17400.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2020-09-28 17:30:24.9070000Z
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.323.1558.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17400.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2020-09-28 17:28:09.0320000Z
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.323.1558.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17400.5
Kód chyby: 0x80240016
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2020-09-28 17:00:21.9950000Z
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.323.1558.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.17400.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

CodeIntegrity:
===================================

Date: 2020-11-21 17:00:29.0000000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:55:19.4910000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:54:48.9170000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:52:09.9190000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:48:36.5990000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:47:59.7220000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:47:59.6540000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-11-21 16:46:42.5830000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Phoenix Technologies Ltd. 5FCN95WW 12/25/2012
Motherboard: LENOVO Lenovo
Processor: Intel(R) Core(TM) i7-3632QM CPU @ 2.20GHz
Percentage of memory in use: 49%
Total physical RAM: 8052.91 MB
Available physical RAM: 4052.9 MB
Total Virtual: 9332.91 MB
Available Virtual: 4405.61 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:929.43 GB) (Free:861.7 GB) NTFS

\\?\Volume{ff7dae8f-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.34 GB) (Free:0.29 GB) NTFS
\\?\Volume{ff7dae8f-0000-0000-0000-8071e8000000}\ () (Fixed) (Total:0.8 GB) (Free:0.3 GB) NTFS
\\?\Volume{ff7dae8f-0000-0000-0000-00a5e8000000}\ () (Fixed) (Total:0.93 GB) (Free:0.48 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: FF7DAE8F)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=929.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=823 MB) - (Type=27)
Partition 4: (Not Active) - (Size=956 MB) - (Type=27)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý jako šnek

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\ltris\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {649066F2-F061-4867-B05E-D20CD5CFCBE0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-03] (Google Inc -> Google Inc.)
Task: {BAE99BF5-3745-468B-B3CC-B5D529E06019} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-03] (Google Inc -> Google Inc.)
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
C:\WINDOWS\system32\Drivers\asw015eded465ad99a3.tmp
C:\WINDOWS\system32\Drivers\asw2576c0330f0f5ac6.tmp
C:\WINDOWS\system32\Drivers\aswca5dfe54042ee189.tmp
C:\WINDOWS\system32\Drivers\asw22c826892e4cea78.tmp
C:\WINDOWS\system32\Drivers\aswf21ae351c06e4540.tmp
C:\WINDOWS\system32\Drivers\asw5b0e16719807355c.tmp
C:\WINDOWS\system32\Drivers\asw03aeeece0ab17d04.tmp
C:\WINDOWS\system32\Drivers\aswbd9b3a60c335f2c6.tmp
C:\WINDOWS\system32\Drivers\asw0f9759f8cb0577b2.tmp
C:\WINDOWS\system32\Drivers\asw5cea96eaf7795fff.tmp
C:\WINDOWS\system32\Drivers\aswac3cd5f58de1ede7.tmp
C:\WINDOWS\system32\Drivers\aswf12827304316f635.tmp

EmptyTemp:
End
Uložte do C:\Users\ltris\OneDrive\Plocha jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#9 Příspěvek od tata22 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 21-11-2020
Ran by ltris (21-11-2020 20:07:05) Run:1
Running from C:\Users\ltris\OneDrive\Plocha
Loaded Profiles: ltris
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\ltris\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {649066F2-F061-4867-B05E-D20CD5CFCBE0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-03] (Google Inc -> Google Inc.)
Task: {BAE99BF5-3745-468B-B3CC-B5D529E06019} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-03] (Google Inc -> Google Inc.)
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
C:\WINDOWS\system32\Drivers\asw015eded465ad99a3.tmp
C:\WINDOWS\system32\Drivers\asw2576c0330f0f5ac6.tmp
C:\WINDOWS\system32\Drivers\aswca5dfe54042ee189.tmp
C:\WINDOWS\system32\Drivers\asw22c826892e4cea78.tmp
C:\WINDOWS\system32\Drivers\aswf21ae351c06e4540.tmp
C:\WINDOWS\system32\Drivers\asw5b0e16719807355c.tmp
C:\WINDOWS\system32\Drivers\asw03aeeece0ab17d04.tmp
C:\WINDOWS\system32\Drivers\aswbd9b3a60c335f2c6.tmp
C:\WINDOWS\system32\Drivers\asw0f9759f8cb0577b2.tmp
C:\WINDOWS\system32\Drivers\asw5cea96eaf7795fff.tmp
C:\WINDOWS\system32\Drivers\aswac3cd5f58de1ede7.tmp
C:\WINDOWS\system32\Drivers\aswf12827304316f635.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-1139971469-3715635046-3152565098-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92} => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{649066F2-F061-4867-B05E-D20CD5CFCBE0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{649066F2-F061-4867-B05E-D20CD5CFCBE0}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BAE99BF5-3745-468B-B3CC-B5D529E06019}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAE99BF5-3745-468B-B3CC-B5D529E06019}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat => moved successfully
C:\WINDOWS\system32\Drivers\asw015eded465ad99a3.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw2576c0330f0f5ac6.tmp => moved successfully
C:\WINDOWS\system32\Drivers\aswca5dfe54042ee189.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw22c826892e4cea78.tmp => moved successfully
C:\WINDOWS\system32\Drivers\aswf21ae351c06e4540.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw5b0e16719807355c.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw03aeeece0ab17d04.tmp => moved successfully
C:\WINDOWS\system32\Drivers\aswbd9b3a60c335f2c6.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw0f9759f8cb0577b2.tmp => moved successfully
C:\WINDOWS\system32\Drivers\asw5cea96eaf7795fff.tmp => moved successfully
C:\WINDOWS\system32\Drivers\aswac3cd5f58de1ede7.tmp => moved successfully
C:\WINDOWS\system32\Drivers\aswf12827304316f635.tmp => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8937472 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10597852 B
Java, Flash, Steam htmlcache => 357 B
Windows/system/drivers => 67227012 B
Edge => 77824 B
Chrome => 21284926 B
Firefox => 305139607 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 7774 B
NetworkService => 19867150 B
ltris => 23426007 B

RecycleBin => 0 B
EmptyTemp: => 435.4 MB temporary data Removed.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý jako šnek

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#11 Příspěvek od tata22 »

Je to určitě lepší ale žádná sláva. To bude ale spíš hardwarem. Přeci jen už má něco za sebou. Hlavně je pomalý start. Vypnul jsem nějaké programy při startu, vyčistil plochu od velkých soborů a defragmentoval. To dost pomohlo. To čištění určitě taky. Myslíte, že mohu udělat ještě něco více ? Pokud ne, tak díky za pomoc.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý jako šnek

#12 Příspěvek od Rudy »

Zkuste ještě defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#13 Příspěvek od tata22 »

To jsem už udělal. V každém případě velký dík za pomoc :-) Akorát mi nejde do hlavy, proč i po defragmentaci zůstalo 9% nedefragmentováno. Na ostatních NTB či PC mě vždycky Deflagler hlásil po ukončení nulovou degragmentaci. Ale stejně, z 15% jsem to dostal na 9%, takže lepší než nic. Ještě jednou dík

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý jako šnek

#14 Příspěvek od Rudy »

Některé soubory defragmentovat nelze. Ještě je možné zkusit defrag registry: https://www.stahuj.cz/utility_a_ostatni ... ry-defrag/ .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

tata22
Návštěvník
Návštěvník
Příspěvky: 197
Registrován: 11 říj 2004 08:14
Bydliště: Č.Budějovice

Re: Pomalý jako šnek

#15 Příspěvek od tata22 »

Ten odkaz je na nějaký starý software. Dokonce když se chci dostat na domovskou stránku programu tak na mne vyskočí porno :-( Tak nevím. Jinak jsem včera večer zkoušel NTB a musím říci, že jsem byl dost mile překvapen. Funguje parádně, oproti předchozím stavu je to nebe a dudy. Takže díky moc za pomoc.

Odpovědět