
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu- Pc si dělá co chce
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu- Pc si dělá co chce
Logfile of random's system information tool 1.14 (written by random/random)
Run by Jan at 2017-01-03 12:17:20
Microsoft Windows 10 Pro
System drive C: has 62 GB (55%) free of 114 GB
Total RAM: 8139 MB (83% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:17:23, on 03.01.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\trend micro\Jan_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 5654 bytes
======Enumerating Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k AppReadiness
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x324
C:\Program Files\Windows Defender\MpCmdRun.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
C:\WINDOWS\System32\dwm.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\WINDOWS\system32\compattelrunner.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\InstallAgent.exe -Embedding
C:\Windows\System32\InstallAgentUserBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.82_none_5be7b69702339d1d\TiWorker.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-59f95010-da81-47cf-ad7a-22ee7d036033 -SystemEventPortName:HostProcess-638860bb-0569-45c0-9847-c6fccb777173 -IoCancelEventPortName:HostProcess-9e8b8095-08b6-4ebf-beb8-28a0af687767 -NonStateChangingEventPortName:HostProcess-16cdf328-663b-40b9-8aa8-ecd1e0a53efd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7c3f9569-084e-42ef-9dac-10294f311250 -DeviceGroupId:WpdFsGroup
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.4.86.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jan\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\SysResetDelayedCleanup - %windir%\system32\ResetEngine.exe -ExecCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - %systemroot%\System32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - %ProgramFiles%\Windows Defender\MpCmdRun.exe Scan -ScheduleJob
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - %systemroot%\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsDefender"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-01-02 631808]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-01-02 1517280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-03 12:17:20 ----D---- C:\rsit
2017-01-03 12:17:20 ----D---- C:\Program Files\trend micro
2017-01-02 17:23:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-02 17:22:20 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2017-01-02 17:21:37 ----D---- C:\ProgramData\Microsoft OneDrive
2017-01-02 17:20:12 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2017-01-02 17:20:06 ----SHD---- C:\Recovery
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Šablony
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Plocha
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Nabídka Start
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Dokumenty
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Data aplikací
2017-01-02 17:17:05 ----ASH---- C:\hiberfil.sys
2017-01-02 17:15:02 ----SD---- C:\Users\Jan\AppData\Roaming\Microsoft
2017-01-02 17:14:03 ----D---- C:\ProgramData\USOShared
2017-01-02 17:13:56 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-01-02 17:13:54 ----D---- C:\ProgramData\NVIDIA
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-01-02 17:13:46 ----D---- C:\WINDOWS\SoftwareDistribution
2017-01-02 17:13:36 ----D---- C:\ProgramData\NVIDIA Corporation
2017-01-02 17:13:33 ----AS---- C:\WINDOWS\bootstat.dat
2017-01-02 17:13:32 ----D---- C:\Program Files\NVIDIA Corporation
2017-01-02 17:13:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-01-02 17:13:08 ----HD---- C:\Program Files\Uninstall Information
2017-01-02 17:12:50 ----D---- C:\WINDOWS\system32\SleepStudy
2017-01-02 17:12:48 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-01-02 17:12:14 ----D---- C:\WINDOWS\InfusedApps
2017-01-02 17:12:10 ----DC---- C:\WINDOWS\Panther
2017-01-02 17:12:06 ----D---- C:\Windows.old
2017-01-02 17:12:00 ----D---- C:\WINDOWS\system32\Microsoft
2017-01-02 17:12:00 ----D---- C:\WINDOWS\ServiceProfiles
2017-01-02 17:11:28 ----D---- C:\WINDOWS\Setup
2017-01-02 17:10:33 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-01-02 17:10:33 ----D---- C:\WINDOWS\OCR
2017-01-02 17:10:32 ----D---- C:\Program Files\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files\MSBuild
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\MSBuild
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfi005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfh005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfd005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfc005.dat
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\WCN
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\cs
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\0409
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\winrm
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\WCN
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\slmgr
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\cs
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\0409
2017-01-02 17:10:14 ----D---- C:\WINDOWS\en-US
2017-01-02 17:10:14 ----D---- C:\WINDOWS\DigitalLocker
2017-01-02 17:10:14 ----D---- C:\WINDOWS\cs-CZ
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfi009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfh009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfd009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfc009.dat
2017-01-02 17:09:10 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\opencl.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\NOISE.DAT
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\msclmd.dll
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\dssec.dat
2017-01-02 17:08:06 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat
2017-01-02 17:08:06 ----ASH---- C:\Program Files\desktop.ini
2017-01-02 17:08:06 ----ASH---- C:\Program Files (x86)\desktop.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\win.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\system.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\fonts\desktop.ini
2017-01-02 17:08:05 ----SHD---- C:\WINDOWS\BitLockerDiscoveryVolumeContents
2017-01-02 17:08:05 ----SHD---- C:\Program Files\Windows Sidebar
2017-01-02 17:08:05 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\dsc
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-01-02 17:08:05 ----SD---- C:\ProgramData\Microsoft
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Media
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Fonts
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\PrintDialog
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\Offline Web Pages
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\MiracastView
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-01-02 17:08:05 ----HD---- C:\WINDOWS\Installer
2017-01-02 17:08:05 ----HD---- C:\WINDOWS\ELAMBKUP
2017-01-02 17:08:05 ----HD---- C:\ProgramData
2017-01-02 17:08:05 ----HD---- C:\Program Files\WindowsApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Web
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Vss
2017-01-02 17:08:05 ----D---- C:\WINDOWS\twain_32
2017-01-02 17:08:05 ----D---- C:\WINDOWS\tracing
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Temp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\TAPI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\SMI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InstallShield
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\DriverStore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\config
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\catroot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\syswow64
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemResources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\winevt
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WDI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spool
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ProximityToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\PointOfService
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ja-jp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ias
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\drivers\etc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\DDFs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\catroot2
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\appraiser
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\System
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SKB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SchCache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ShellExperiences
2017-01-02 17:08:05 ----D---- C:\WINDOWS\security
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Resources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\rescache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\RemotePackages
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Registration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Provisioning
2017-01-02 17:08:05 ----D---- C:\WINDOWS\prefetch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PolicyDefinitions
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PLA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Performance
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ModemLogs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Logs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\LiveKernelReports
2017-01-02 17:08:05 ----D---- C:\WINDOWS\L2Schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Help
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Globalization
2017-01-02 17:08:05 ----D---- C:\WINDOWS\GameBarPresenceWriter
2017-01-02 17:08:05 ----D---- C:\WINDOWS\diagnostics
2017-01-02 17:08:05 ----D---- C:\WINDOWS\debug
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Cursors
2017-01-02 17:08:05 ----D---- C:\WINDOWS\CSC
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Branding
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\bcastdvr
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppReadiness
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppPatch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\appcompat
2017-01-02 17:08:05 ----D---- C:\WINDOWS\addins
2017-01-02 17:08:05 ----D---- C:\ProgramData\USOPrivate
2017-01-02 17:08:05 ----D---- C:\ProgramData\SoftwareDistribution
2017-01-02 17:08:05 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-01-02 17:08:05 ----D---- C:\ProgramData\Comms
2017-01-02 17:08:05 ----D---- C:\Program Files\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Defender Advanced Threat Protection
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Defender
2017-01-02 17:08:05 ----D---- C:\Program Files\Internet Explorer
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\System
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\Services
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Defender
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Internet Explorer
2017-01-02 17:08:04 ----RD---- C:\WINDOWS\Microsoft.NET
2017-01-02 17:08:04 ----RD---- C:\WINDOWS\assembly
2017-01-02 17:08:04 ----D---- C:\WINDOWS\system32\Sysprep
2017-01-02 17:08:04 ----D---- C:\Program Files\Common Files\microsoft shared
2017-01-02 17:08:04 ----D---- C:\PerfLogs
2017-01-02 17:07:55 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-01-02 17:07:54 ----D---- C:\WINDOWS\system32\drivers
2017-01-02 17:07:25 ----D---- C:\WINDOWS\INF
2017-01-02 17:04:19 ----D---- C:\WINDOWS\CbsTemp
2017-01-02 17:03:49 ----RD---- C:\Users
2017-01-02 17:03:49 ----RD---- C:\Program Files (x86)
2017-01-02 17:03:49 ----RD---- C:\Program Files
2017-01-02 17:03:49 ----D---- C:\WINDOWS\WinSxS
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\SMI
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\DriverStore
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\config
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\CatRoot
2017-01-02 17:03:49 ----D---- C:\WINDOWS\System32
2017-01-02 17:03:49 ----D---- C:\WINDOWS\servicing
2017-01-02 17:03:49 ----D---- C:\Windows
2017-01-02 17:03:49 ----D---- C:\Program Files\Common Files
2017-01-02 17:03:49 ----D---- C:\Program Files (x86)\Common Files
2017-01-02 17:03:48 ----D---- C:\$WINDOWS.~BT
2017-01-02 17:00:19 ----HD---- C:\$SysReset
2017-01-02 16:41:17 ----A---- C:\bdlog.txt
2017-01-02 15:01:40 ----D---- C:\AdwCleaner
======List of files/folders modified in the last 1 month======
2017-01-02 17:07:11 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2017-01-02 17:07:11 ----A---- C:\WINDOWS\system32\wininetlui.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\stobject.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\pdh.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\win32u.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\rshx32.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\fontext.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\dasHost.exe
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\das.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\bdechangepin.exe
2017-01-02 17:07:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\ClipUp.exe
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-01-02 17:07:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-01-02 17:07:07 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-01-02 17:07:07 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\SessEnv.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\PhoneService.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\credprovhost.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-01-02 17:07:05 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\zipfldr.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\wups.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\credprovs.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\setupugc.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\netshell.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\SYSWOW64\iscsiwmi.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\tdh.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\mprdim.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\discan.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\wmpshell.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\BackgroundMediaPolicy.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\DataExchange.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\ActionCenterCPL.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\ole32.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\usbmon.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\sppc.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\smphost.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\slc.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\rdpshell.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\rdpinit.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\mispace.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\AddressParser.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\sud.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2017-01-02 17:06:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\Windows.Devices.Printers.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\sppcext.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\slcext.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\input.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\autoplay.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\DevicePairingFolder.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\dsreg.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\nettrace.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\dsregcmd.exe
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\splwow64.exe
2017-01-02 17:06:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\SYSWOW64\cmifw.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\tcpipcfg.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\sppsvc.exe
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\samsrv.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\samlib.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\offlinesam.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\tsmf.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\localspl.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\easwrt.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\NMAA.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\nativemap.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MosStorage.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MosResource.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\moshostcore.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\moshost.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\mos.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Family.Client.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\DeviceCenter.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\qmgr.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\ListSvc.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\imapi2.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\wmpeffects.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\WpcTok.exe
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\WpcRefreshTask.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\SRH.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\DscCore.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\aitstatic.exe
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\wscinterop.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\invagent.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\ieproxy.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\FSClient.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\devinv.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\aepic.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\system32\twinui.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-01-02 17:06:42 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\wscsvc.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\wscapi.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\winresume.exe
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\winload.exe
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\ntdll.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\winmde.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\LsaIso.exe
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\fveapibase.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\DbgModel.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\adsmsext.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\wifitask.exe
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\pcasvc.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\dwmapi.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\msinfo32.exe
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\wpx.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\usocore.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\msi.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\GenValObj.exe
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\bootux.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\wlancfg.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\umpoext.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\fhcpl.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\bdeunlock.exe
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\wininet.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\wc_storage.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\jsproxy.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\evr.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\hal.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\comdlg32.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\tquery.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\weretw.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\wer.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\taskbarcpl.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\esent.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\explorer.exe
2017-01-02 17:06:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\ffbroker.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-01-02 17:06:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-01-02 17:06:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-01-02 17:06:31 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-01-02 17:06:31 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-01-02 17:06:31 ----A---- C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncPolicy.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetailsUpdate.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
Run by Jan at 2017-01-03 12:17:20
Microsoft Windows 10 Pro
System drive C: has 62 GB (55%) free of 114 GB
Total RAM: 8139 MB (83% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:17:23, on 03.01.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\trend micro\Jan_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 5654 bytes
======Enumerating Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k AppReadiness
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x324
C:\Program Files\Windows Defender\MpCmdRun.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
C:\WINDOWS\System32\dwm.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\WINDOWS\system32\compattelrunner.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\InstallAgent.exe -Embedding
C:\Windows\System32\InstallAgentUserBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.82_none_5be7b69702339d1d\TiWorker.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-59f95010-da81-47cf-ad7a-22ee7d036033 -SystemEventPortName:HostProcess-638860bb-0569-45c0-9847-c6fccb777173 -IoCancelEventPortName:HostProcess-9e8b8095-08b6-4ebf-beb8-28a0af687767 -NonStateChangingEventPortName:HostProcess-16cdf328-663b-40b9-8aa8-ecd1e0a53efd -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7c3f9569-084e-42ef-9dac-10294f311250 -DeviceGroupId:WpdFsGroup
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.4.86.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jan\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\SysResetDelayedCleanup - %windir%\system32\ResetEngine.exe -ExecCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - %systemroot%\System32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - %ProgramFiles%\Windows Defender\MpCmdRun.exe Scan -ScheduleJob
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - %systemroot%\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsDefender"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-01-02 631808]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-01-02 1517280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-03 12:17:20 ----D---- C:\rsit
2017-01-03 12:17:20 ----D---- C:\Program Files\trend micro
2017-01-02 17:23:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-02 17:22:20 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2017-01-02 17:21:37 ----D---- C:\ProgramData\Microsoft OneDrive
2017-01-02 17:20:12 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2017-01-02 17:20:06 ----SHD---- C:\Recovery
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Šablony
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Plocha
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Nabídka Start
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Dokumenty
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Data aplikací
2017-01-02 17:17:05 ----ASH---- C:\hiberfil.sys
2017-01-02 17:15:02 ----SD---- C:\Users\Jan\AppData\Roaming\Microsoft
2017-01-02 17:14:03 ----D---- C:\ProgramData\USOShared
2017-01-02 17:13:56 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-01-02 17:13:54 ----D---- C:\ProgramData\NVIDIA
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-01-02 17:13:46 ----D---- C:\WINDOWS\SoftwareDistribution
2017-01-02 17:13:36 ----D---- C:\ProgramData\NVIDIA Corporation
2017-01-02 17:13:33 ----AS---- C:\WINDOWS\bootstat.dat
2017-01-02 17:13:32 ----D---- C:\Program Files\NVIDIA Corporation
2017-01-02 17:13:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-01-02 17:13:08 ----HD---- C:\Program Files\Uninstall Information
2017-01-02 17:12:50 ----D---- C:\WINDOWS\system32\SleepStudy
2017-01-02 17:12:48 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-01-02 17:12:14 ----D---- C:\WINDOWS\InfusedApps
2017-01-02 17:12:10 ----DC---- C:\WINDOWS\Panther
2017-01-02 17:12:06 ----D---- C:\Windows.old
2017-01-02 17:12:00 ----D---- C:\WINDOWS\system32\Microsoft
2017-01-02 17:12:00 ----D---- C:\WINDOWS\ServiceProfiles
2017-01-02 17:11:28 ----D---- C:\WINDOWS\Setup
2017-01-02 17:10:33 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-01-02 17:10:33 ----D---- C:\WINDOWS\OCR
2017-01-02 17:10:32 ----D---- C:\Program Files\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files\MSBuild
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\MSBuild
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfi005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfh005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfd005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfc005.dat
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\WCN
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\cs
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\0409
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\winrm
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\WCN
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\slmgr
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\cs
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\0409
2017-01-02 17:10:14 ----D---- C:\WINDOWS\en-US
2017-01-02 17:10:14 ----D---- C:\WINDOWS\DigitalLocker
2017-01-02 17:10:14 ----D---- C:\WINDOWS\cs-CZ
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfi009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfh009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfd009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfc009.dat
2017-01-02 17:09:10 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\opencl.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\NOISE.DAT
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\msclmd.dll
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\dssec.dat
2017-01-02 17:08:06 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat
2017-01-02 17:08:06 ----ASH---- C:\Program Files\desktop.ini
2017-01-02 17:08:06 ----ASH---- C:\Program Files (x86)\desktop.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\win.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\system.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\fonts\desktop.ini
2017-01-02 17:08:05 ----SHD---- C:\WINDOWS\BitLockerDiscoveryVolumeContents
2017-01-02 17:08:05 ----SHD---- C:\Program Files\Windows Sidebar
2017-01-02 17:08:05 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\dsc
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-01-02 17:08:05 ----SD---- C:\ProgramData\Microsoft
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Media
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Fonts
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\PrintDialog
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\Offline Web Pages
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\MiracastView
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-01-02 17:08:05 ----HD---- C:\WINDOWS\Installer
2017-01-02 17:08:05 ----HD---- C:\WINDOWS\ELAMBKUP
2017-01-02 17:08:05 ----HD---- C:\ProgramData
2017-01-02 17:08:05 ----HD---- C:\Program Files\WindowsApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Web
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Vss
2017-01-02 17:08:05 ----D---- C:\WINDOWS\twain_32
2017-01-02 17:08:05 ----D---- C:\WINDOWS\tracing
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Temp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\TAPI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\SMI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InstallShield
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\DriverStore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\config
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\catroot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\syswow64
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemResources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\winevt
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WDI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spool
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ProximityToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\PointOfService
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ja-jp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ias
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\drivers\etc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\DDFs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\catroot2
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\appraiser
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\System
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SKB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SchCache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ShellExperiences
2017-01-02 17:08:05 ----D---- C:\WINDOWS\security
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Resources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\rescache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\RemotePackages
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Registration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Provisioning
2017-01-02 17:08:05 ----D---- C:\WINDOWS\prefetch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PolicyDefinitions
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PLA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Performance
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ModemLogs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Logs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\LiveKernelReports
2017-01-02 17:08:05 ----D---- C:\WINDOWS\L2Schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Help
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Globalization
2017-01-02 17:08:05 ----D---- C:\WINDOWS\GameBarPresenceWriter
2017-01-02 17:08:05 ----D---- C:\WINDOWS\diagnostics
2017-01-02 17:08:05 ----D---- C:\WINDOWS\debug
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Cursors
2017-01-02 17:08:05 ----D---- C:\WINDOWS\CSC
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Branding
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\bcastdvr
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppReadiness
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppPatch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\appcompat
2017-01-02 17:08:05 ----D---- C:\WINDOWS\addins
2017-01-02 17:08:05 ----D---- C:\ProgramData\USOPrivate
2017-01-02 17:08:05 ----D---- C:\ProgramData\SoftwareDistribution
2017-01-02 17:08:05 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-01-02 17:08:05 ----D---- C:\ProgramData\Comms
2017-01-02 17:08:05 ----D---- C:\Program Files\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Defender Advanced Threat Protection
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Defender
2017-01-02 17:08:05 ----D---- C:\Program Files\Internet Explorer
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\System
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\Services
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Defender
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Internet Explorer
2017-01-02 17:08:04 ----RD---- C:\WINDOWS\Microsoft.NET
2017-01-02 17:08:04 ----RD---- C:\WINDOWS\assembly
2017-01-02 17:08:04 ----D---- C:\WINDOWS\system32\Sysprep
2017-01-02 17:08:04 ----D---- C:\Program Files\Common Files\microsoft shared
2017-01-02 17:08:04 ----D---- C:\PerfLogs
2017-01-02 17:07:55 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-01-02 17:07:54 ----D---- C:\WINDOWS\system32\drivers
2017-01-02 17:07:25 ----D---- C:\WINDOWS\INF
2017-01-02 17:04:19 ----D---- C:\WINDOWS\CbsTemp
2017-01-02 17:03:49 ----RD---- C:\Users
2017-01-02 17:03:49 ----RD---- C:\Program Files (x86)
2017-01-02 17:03:49 ----RD---- C:\Program Files
2017-01-02 17:03:49 ----D---- C:\WINDOWS\WinSxS
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\SMI
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\DriverStore
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\config
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\CatRoot
2017-01-02 17:03:49 ----D---- C:\WINDOWS\System32
2017-01-02 17:03:49 ----D---- C:\WINDOWS\servicing
2017-01-02 17:03:49 ----D---- C:\Windows
2017-01-02 17:03:49 ----D---- C:\Program Files\Common Files
2017-01-02 17:03:49 ----D---- C:\Program Files (x86)\Common Files
2017-01-02 17:03:48 ----D---- C:\$WINDOWS.~BT
2017-01-02 17:00:19 ----HD---- C:\$SysReset
2017-01-02 16:41:17 ----A---- C:\bdlog.txt
2017-01-02 15:01:40 ----D---- C:\AdwCleaner
======List of files/folders modified in the last 1 month======
2017-01-02 17:07:11 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2017-01-02 17:07:11 ----A---- C:\WINDOWS\system32\wininetlui.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\stobject.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\pdh.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-01-02 17:07:10 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\win32u.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\rshx32.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\fontext.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\deviceassociation.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\dasHost.exe
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\das.dll
2017-01-02 17:07:09 ----A---- C:\WINDOWS\system32\bdechangepin.exe
2017-01-02 17:07:08 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\ClipUp.exe
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-01-02 17:07:08 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-01-02 17:07:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-01-02 17:07:07 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-01-02 17:07:07 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-01-02 17:07:06 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\SessEnv.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\PhoneService.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\credprovhost.dll
2017-01-02 17:07:06 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-01-02 17:07:05 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\zipfldr.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\wups.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-01-02 17:07:05 ----A---- C:\WINDOWS\system32\credprovs.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\setupugc.exe
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\netshell.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-01-02 17:07:04 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\SYSWOW64\iscsiwmi.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\tdh.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\mprdim.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\discan.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2017-01-02 17:07:03 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\wmpshell.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\migisol.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\SYSWOW64\BackgroundMediaPolicy.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\DscCoreConfProv.dll
2017-01-02 17:07:02 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\DataExchange.dll
2017-01-02 17:07:01 ----A---- C:\WINDOWS\system32\ActionCenterCPL.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\ole32.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-01-02 17:07:00 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\SYSWOW64\RTWorkQ.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\UserDataAccessRes.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\usbmon.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\sppc.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\smphost.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\slc.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\rdpshell.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\rdpinit.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\mispace.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\ContactActivation.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2017-01-02 17:06:59 ----A---- C:\WINDOWS\system32\AddressParser.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eappprxy.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\sud.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-01-02 17:06:58 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2017-01-02 17:06:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\XamlTileRender.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\Windows.Devices.Printers.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\sppcext.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\slcext.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\input.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-01-02 17:06:57 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-01-02 17:06:56 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-01-02 17:06:55 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-01-02 17:06:54 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\SYSWOW64\autoplay.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\EAMProgressHandler.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\DevicePairingFolder.dll
2017-01-02 17:06:53 ----A---- C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\dsreg.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\nettrace.dll
2017-01-02 17:06:51 ----A---- C:\WINDOWS\system32\dsregcmd.exe
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-01-02 17:06:50 ----A---- C:\WINDOWS\splwow64.exe
2017-01-02 17:06:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\SYSWOW64\cmifw.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\tcpipcfg.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\sppsvc.exe
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\samsrv.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\samlib.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\offlinesam.dll
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-01-02 17:06:49 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\tsmf.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\localspl.dll
2017-01-02 17:06:48 ----A---- C:\WINDOWS\system32\easwrt.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\NMAA.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\nativemap.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MosStorage.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MosResource.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\moshostcore.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\moshost.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\mos.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\Family.Client.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\DeviceCenter.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2017-01-02 17:06:47 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\qmgr.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\mfksproxy.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\ListSvc.dll
2017-01-02 17:06:46 ----A---- C:\WINDOWS\system32\imapi2.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\wmpeffects.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\SYSWOW64\aclui.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\WpcTok.exe
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\WpcRefreshTask.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\SRH.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\DscCore.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-01-02 17:06:45 ----A---- C:\WINDOWS\system32\aitstatic.exe
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.UXRes.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\wscinterop.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\invagent.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\ieproxy.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\FSClient.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\devinv.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\DeviceReactivation.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\aepic.dll
2017-01-02 17:06:44 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\storagewmi_passthru.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\mfaudiocnv.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\SYSWOW64\delegatorprovider.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\system32\twinui.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-01-02 17:06:43 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-01-02 17:06:42 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\wscsvc.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\wscapi.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\winresume.exe
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\winload.exe
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-01-02 17:06:42 ----A---- C:\WINDOWS\system32\ntdll.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\winmde.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\Phoneutil.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\MSAJApi.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\LsaIso.exe
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\fveapibase.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\DbgModel.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-01-02 17:06:41 ----A---- C:\WINDOWS\system32\adsmsext.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\wifitask.exe
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\pcasvc.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\dwmapi.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2017-01-02 17:06:40 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\msinfo32.exe
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\GlobCollationHost.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\wpx.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\usocore.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\msi.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\GenValObj.exe
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\bootux.dll
2017-01-02 17:06:39 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\wlancfg.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-01-02 17:06:38 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\umpoext.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\fhcpl.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-01-02 17:06:38 ----A---- C:\WINDOWS\system32\bdeunlock.exe
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\wininet.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\wc_storage.dll
2017-01-02 17:06:37 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\jsproxy.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\evr.dll
2017-01-02 17:06:36 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\hal.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\comdlg32.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\BcastDVRHelper.dll
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2017-01-02 17:06:35 ----A---- C:\WINDOWS\system32\AppCapture.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\tquery.dll
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-01-02 17:06:34 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\weretw.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\wer.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\taskbarcpl.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\system32\esent.dll
2017-01-02 17:06:33 ----A---- C:\WINDOWS\explorer.exe
2017-01-02 17:06:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\ffbroker.dll
2017-01-02 17:06:32 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-01-02 17:06:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-01-02 17:06:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-01-02 17:06:31 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-01-02 17:06:31 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-01-02 17:06:31 ----A---- C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncPolicy.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetailsUpdate.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
Re: Prosím o kontrolu- Pc si dělá co chce
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\smartscreen.exe
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\pwrshplugin.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\mprapi.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\biwinrt.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\sbe.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\icsvc.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2017-01-02 17:06:26 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\system32\cloudAP.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\authui.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\StorSvc.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eappprxy.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eapphost.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eappgnui.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eappcfg.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\wmpshell.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\migisol.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\InputService.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\cdp.dll
2017-01-02 17:06:22 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-01-02 17:06:22 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2017-01-02 17:06:22 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2017-01-02 17:06:22 ----A---- C:\WINDOWS\system32\lsm.dll
2017-01-02 17:06:21 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-01-02 17:06:21 ----A---- C:\WINDOWS\system32\cdd.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\SYSWOW64\esentutl.exe
2017-01-02 17:06:20 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\shell32.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\shdocvw.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\powercfg.exe
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\usermgr.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\gdi32.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\dsreg.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\SndVolSSO.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\NotificationController.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\NetworkUXBroker.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\container.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2017-01-02 17:06:15 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-01-02 17:06:15 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2017-01-02 17:06:15 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\D3D12.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\system32\nltest.exe
2017-01-02 17:06:12 ----A---- C:\WINDOWS\system32\fvenotify.exe
2017-01-02 17:06:12 ----A---- C:\WINDOWS\system32\ci.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\chartv.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\efsext.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\SensorService.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\sendmail.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\MDEServer.exe
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\dlnashext.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\dafBth.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\cscui.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\SYSWOW64\NetworkCollectionAgent.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\sspicli.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\manage-bde.exe
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\lsass.exe
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\lpremove.exe
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\wpnprv.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\resutils.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\qedit.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\autoplay.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provtool.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provops.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provhandlers.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provengine.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provdatastore.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\NPSM.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\bcdedit.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\netplwiz.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\fveui.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\bdeui.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\msinfo32.exe
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\cryptngc.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\cmifw.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\spwmp.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\dxmasf.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\rdpudd.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\ActionCenterCPL.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\dialserver.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AudioEng.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\Windows.Media.Ocr.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\aclui.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\pidgenx.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\nlasvc.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\ncsi.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\iesetup.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\iernonce.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\Family.Authentication.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\browserbroker.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\wsecedit.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\wlancfg.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\fveprompt.exe
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\energy.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\dafpos.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\Sens.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\rdpcore.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\slc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\skci.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\pwcreator.exe
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\profsvc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ErrorDetailsUpdate.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\ws2_32.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\wkssvc.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\pwrshplugin.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\NetworkDesktopSettings.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\fvewiz.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\fvecpl.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\biwinrt.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\bdesvc.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\securekernel.exe
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\msctf.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mprapi.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mfpmp.exe
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mf.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\EncDec.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\drvstore.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\DataExchange.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\user32.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.UserDeviceAssociation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\FontProvider.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\Display.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\CPFilters.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\sppnp.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\RMapi.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\offreg.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\credprovslegacy.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\dtdump.exe
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\tspubwmi.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\powercfg.exe
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\dab.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\baaupdate.exe
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-01-02 17:05:52 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\mfps.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\SYSWOW64\adsmsext.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\sppwinob.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\schannel.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\NfcRadioMedia.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\msvproc.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\AppVClient.exe
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\wevtapi.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\bcrypt.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\wincorlib.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\w32time.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\combase.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\actxprxy.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\devenum.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\csrsrv.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\mstsc.exe
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\chartv.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\esentutl.exe
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\efsext.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\d3d9.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\webio.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\services.exe
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2017-01-02 17:05:44 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\wups2.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\wuauclt.exe
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\system32\Windows.Energy.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\wmploc.DLL
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\TSpkg.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\NetworkCollectionAgent.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\encapi.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\wmp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\spwmp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\dxmasf.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-01-02 17:05:38 ----A---- C:\WINDOWS\system32\gameux.dll
2017-01-02 16:29:57 ----SHD---- C:\System Volume Information
2016-12-11 10:53:58 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2016-12-10 15:06:46 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2017-01-02 45920]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R3 iaLPSS2_UART2;@oem22.inf,%iaLPSS2_UART2.SVCDESC%;Intel(R) Serial IO UART Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [2016-01-22 281400]
R3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
R3 KillerEth;@oem12.inf,%RIVET.Service.DispName%;NDIS Miniport Driver for Killer e2400 PCI-E Ehternet Controller; C:\WINDOWS\System32\drivers\e24w10x64.sys [2015-10-07 156744]
R3 NVHDA;@oem19.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2016-08-26 240704]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys [2016-08-26 13754936]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2016-07-16 132096]
R3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\System32\drivers\usbscan.sys [2016-07-16 46592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2017-01-02 226816]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2017-01-02 126304]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2016-07-16 157024]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2016-07-16 141152]
S3 dg_ssudbus;@oem25.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2016-04-24 129152]
S3 dtlitescsibus;@oem11.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-05-05 30264]
S3 dtliteusbbus;@oem3.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-05-05 47672]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-01-02 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2_GPIO2;@oem0.inf,%iaLPSS2_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [2016-01-22 83768]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2016-07-16 179040]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 NvStUSB;@oem10.inf,%NvStUSB.SvcDesc%;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2016-08-26 486968]
S3 NVSWCFilter;@oem4.inf,%NVSWCFilter.SvcDesc%;NVIDIA SHIELD Wireless Controller Trackpad Service; C:\WINDOWS\System32\drivers\nvswcfilter.sys [2016-03-17 28344]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudqcfilter;@oem25.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2016-04-24 64640]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\WINDOWS\system32\drivers\tsusbhub.sys [2016-07-16 123392]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S4 UevAgentDriver;@%systemroot%\system32\drivers\UevAgentDriver.sys,-101; C:\WINDOWS\system32\drivers\UevAgentDriver.sys [2016-07-16 40288]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CDPUserSvc_184b34;CDPUserSvc_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_184b34;Hostitel synchronizace_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\TimeBrokerServer.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_184b34;Služba zasílání zpráv_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 PimIndexMaintenanceSvc_184b34;Data kontaktů_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2017-01-02 2889896]
S3 UnistoreSvc_184b34;Úložiště uživatelských dat_184b34; C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2017-01-02 823136]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll
S4 UevAgentService;@%systemroot%\system32\AgentService.exe,-102; C:\WINDOWS\system32\AgentService.exe [2016-07-16 1227264]
-----------------EOF-----------------
2017-01-02 17:06:30 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-01-02 17:06:30 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\smartscreen.exe
2017-01-02 17:06:29 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\pwrshplugin.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2017-01-02 17:06:28 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\mprapi.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\SYSWOW64\biwinrt.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\sbe.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\icsvc.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-01-02 17:06:27 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2017-01-02 17:06:26 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\system32\RTWorkQ.dll
2017-01-02 17:06:26 ----A---- C:\WINDOWS\system32\cloudAP.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-01-02 17:06:25 ----A---- C:\WINDOWS\system32\authui.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\StorSvc.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eappprxy.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eapphost.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eappgnui.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eappcfg.dll
2017-01-02 17:06:24 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\UIAnimation.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\wmpshell.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\migisol.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\InputService.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2017-01-02 17:06:23 ----A---- C:\WINDOWS\system32\cdp.dll
2017-01-02 17:06:22 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-01-02 17:06:22 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2017-01-02 17:06:22 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2017-01-02 17:06:22 ----A---- C:\WINDOWS\system32\lsm.dll
2017-01-02 17:06:21 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-01-02 17:06:21 ----A---- C:\WINDOWS\system32\cdd.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\SYSWOW64\esentutl.exe
2017-01-02 17:06:20 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\shell32.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\shdocvw.dll
2017-01-02 17:06:20 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\SYSWOW64\wevtapi.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2017-01-02 17:06:19 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\powercfg.exe
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\usermgr.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\gdi32.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\EDPCleanup.exe
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\dsreg.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-01-02 17:06:18 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\SndVolSSO.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2017-01-02 17:06:17 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\SYSWOW64\CloudStorageWizard.exe
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\NotificationController.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\NetworkUXBroker.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\container.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-01-02 17:06:16 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2017-01-02 17:06:15 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-01-02 17:06:15 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2017-01-02 17:06:15 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-01-02 17:06:14 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\C_IS2022.DLL
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\c_GSM7.DLL
2017-01-02 17:06:13 ----A---- C:\WINDOWS\SYSWOW64\C_G18030.DLL
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-01-02 17:06:13 ----A---- C:\WINDOWS\system32\D3D12.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2017-01-02 17:06:12 ----A---- C:\WINDOWS\system32\nltest.exe
2017-01-02 17:06:12 ----A---- C:\WINDOWS\system32\fvenotify.exe
2017-01-02 17:06:12 ----A---- C:\WINDOWS\system32\ci.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\chartv.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\efsext.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\SensorService.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\sendmail.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\MDEServer.exe
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\dlnashext.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\dafBth.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\cscui.dll
2017-01-02 17:06:11 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\SYSWOW64\NetworkCollectionAgent.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\storagewmi_passthru.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\sspicli.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\mfaudiocnv.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\manage-bde.exe
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\lsass.exe
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\lpremove.exe
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\delegatorprovider.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2017-01-02 17:06:10 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\wpnprv.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\resutils.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\qedit.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-01-02 17:06:09 ----A---- C:\WINDOWS\system32\autoplay.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provtool.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provops.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provhandlers.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provengine.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\provdatastore.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\NPSM.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\bcdedit.exe
2017-01-02 17:06:08 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\netplwiz.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\fveui.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-01-02 17:06:07 ----A---- C:\WINDOWS\system32\bdeui.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\msinfo32.exe
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\cryptngc.dll
2017-01-02 17:06:06 ----A---- C:\WINDOWS\system32\cmifw.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\spwmp.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\encapi.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\dxmasf.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\rdpudd.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2017-01-02 17:06:05 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\SYSWOW64\ActionCenterCPL.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\dialserver.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AudioEng.dll
2017-01-02 17:06:04 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\setupugc.exe
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\SYSWOW64\deviceassociation.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\Windows.Media.Ocr.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-01-02 17:06:03 ----A---- C:\WINDOWS\system32\aclui.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\pidgenx.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\nlasvc.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\ncsi.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\iesetup.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\iernonce.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\Family.Authentication.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2017-01-02 17:06:02 ----A---- C:\WINDOWS\system32\browserbroker.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\SessEnv.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\wsecedit.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\wlancfg.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\fveprompt.exe
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\energy.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\dafpos.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-01-02 17:06:01 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\zipfldr.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\Sens.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\rdpcore.dll
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-01-02 17:06:00 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\slc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-01-02 17:05:59 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\skci.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\pwcreator.exe
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\profsvc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ErrorDetailsUpdate.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-01-02 17:05:59 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\SYSWOW64\DscCoreConfProv.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\ws2_32.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\wkssvc.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\pwrshplugin.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\NetworkDesktopSettings.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\fvewiz.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\fvecpl.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\biwinrt.dll
2017-01-02 17:05:58 ----A---- C:\WINDOWS\system32\bdesvc.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\securekernel.exe
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\msctf.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mprapi.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mfpmp.exe
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\mf.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\EncDec.dll
2017-01-02 17:05:57 ----A---- C:\WINDOWS\system32\drvstore.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\DataExchange.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\user32.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-01-02 17:05:56 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.UserDeviceAssociation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccessRes.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\ContactActivation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\SYSWOW64\AddressParser.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\UIAnimation.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\SettingSyncPolicy.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\FontProvider.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\Display.dll
2017-01-02 17:05:55 ----A---- C:\WINDOWS\system32\CPFilters.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\SYSWOW64\smphost.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\sppnp.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\RMapi.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\offreg.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\credprovslegacy.dll
2017-01-02 17:05:54 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\dtdump.exe
2017-01-02 17:05:53 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\tspubwmi.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\ReportingCSP.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\powercfg.exe
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\dab.dll
2017-01-02 17:05:53 ----A---- C:\WINDOWS\system32\baaupdate.exe
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\wlanhlp.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-01-02 17:05:52 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-01-02 17:05:52 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\mfps.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\LicenseManagerSvc.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-01-02 17:05:51 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\SYSWOW64\adsmsext.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\sppwinob.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\schannel.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\NfcRadioMedia.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\msvproc.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-01-02 17:05:50 ----A---- C:\WINDOWS\system32\AppVClient.exe
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\offlinesam.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\wevtapi.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\C_IS2022.DLL
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\c_GSM7.DLL
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\C_G18030.DLL
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\bcrypt.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-01-02 17:05:49 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\wincorlib.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\w32time.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\combase.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-01-02 17:05:48 ----A---- C:\WINDOWS\system32\actxprxy.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\devenum.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\csrsrv.dll
2017-01-02 17:05:47 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\mfksproxy.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\mstsc.exe
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\chartv.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\esentutl.exe
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\efsext.dll
2017-01-02 17:05:46 ----A---- C:\WINDOWS\system32\d3d9.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\webio.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\services.exe
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-01-02 17:05:45 ----A---- C:\WINDOWS\system32\CloudStorageWizard.exe
2017-01-02 17:05:44 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\wups2.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\wuauclt.exe
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-01-02 17:05:44 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\FSClient.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-01-02 17:05:43 ----A---- C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-01-02 17:05:42 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\Phoneutil.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\SYSWOW64\DbgModel.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\system32\Windows.Energy.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-01-02 17:05:41 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\MSAJApi.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\wmploc.DLL
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\TSpkg.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\NetworkCollectionAgent.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\encapi.dll
2017-01-02 17:05:40 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\NetCfgNotifyObjectHost.exe
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\wmp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\spwmp.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\dxmasf.dll
2017-01-02 17:05:39 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-01-02 17:05:38 ----A---- C:\WINDOWS\system32\gameux.dll
2017-01-02 16:29:57 ----SHD---- C:\System Volume Information
2016-12-11 10:53:58 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2016-12-10 15:06:46 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2017-01-02 45920]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R3 iaLPSS2_UART2;@oem22.inf,%iaLPSS2_UART2.SVCDESC%;Intel(R) Serial IO UART Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [2016-01-22 281400]
R3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
R3 KillerEth;@oem12.inf,%RIVET.Service.DispName%;NDIS Miniport Driver for Killer e2400 PCI-E Ehternet Controller; C:\WINDOWS\System32\drivers\e24w10x64.sys [2015-10-07 156744]
R3 NVHDA;@oem19.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2016-08-26 240704]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys [2016-08-26 13754936]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2016-07-16 132096]
R3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\System32\drivers\usbscan.sys [2016-07-16 46592]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2017-01-02 226816]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2017-01-02 126304]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2016-07-16 157024]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2016-07-16 141152]
S3 dg_ssudbus;@oem25.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2016-04-24 129152]
S3 dtlitescsibus;@oem11.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-05-05 30264]
S3 dtliteusbbus;@oem3.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-05-05 47672]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-01-02 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2_GPIO2;@oem0.inf,%iaLPSS2_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [2016-01-22 83768]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2016-07-16 179040]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 NvStUSB;@oem10.inf,%NvStUSB.SvcDesc%;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2016-08-26 486968]
S3 NVSWCFilter;@oem4.inf,%NVSWCFilter.SvcDesc%;NVIDIA SHIELD Wireless Controller Trackpad Service; C:\WINDOWS\System32\drivers\nvswcfilter.sys [2016-03-17 28344]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudqcfilter;@oem25.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2016-04-24 64640]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\WINDOWS\system32\drivers\tsusbhub.sys [2016-07-16 123392]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [2016-07-16 108544]
S4 UevAgentDriver;@%systemroot%\system32\drivers\UevAgentDriver.sys,-101; C:\WINDOWS\system32\drivers\UevAgentDriver.sys [2016-07-16 40288]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CDPUserSvc_184b34;CDPUserSvc_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_184b34;Hostitel synchronizace_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\TimeBrokerServer.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_184b34;Služba zasílání zpráv_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 PimIndexMaintenanceSvc_184b34;Data kontaktů_184b34; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2017-01-02 2889896]
S3 UnistoreSvc_184b34;Úložiště uživatelských dat_184b34; C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2017-01-02 823136]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll
S4 UevAgentService;@%systemroot%\system32\AgentService.exe,-102; C:\WINDOWS\system32\AgentService.exe [2016-07-16 1227264]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu- Pc si dělá co chce
# AdwCleaner v6.041 - Log vytvořen 03/01/2017 v 19:18:45
# Aktualizováno dne 16/12/2016 z Malwarebytes
# Databáze : 2017-01-03.1 [Server]
# Operační systém : Windows 10 Pro (X64)
# Uživatelské jméno : Jan - DESKTOP-3RABBJS
# Spuštěno z : C:\Users\Jan\Desktop\adwcleaner_6.041.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
***** [ Prohlížeče ] *****
*************************
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1429 Bajty] - [02/01/2017 15:02:56]
C:\AdwCleaner\AdwCleaner[C2].txt - [867 Bajty] - [03/01/2017 19:18:45]
C:\AdwCleaner\AdwCleaner[S0].txt - [1679 Bajty] - [02/01/2017 15:02:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [1511 Bajty] - [03/01/2017 19:18:16]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1085 Bajty] ##########
# Aktualizováno dne 16/12/2016 z Malwarebytes
# Databáze : 2017-01-03.1 [Server]
# Operační systém : Windows 10 Pro (X64)
# Uživatelské jméno : Jan - DESKTOP-3RABBJS
# Spuštěno z : C:\Users\Jan\Desktop\adwcleaner_6.041.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
***** [ Složky ] *****
***** [ Soubory ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Zástupci ] *****
***** [ Naplánované úlohy ] *****
***** [ Registry ] *****
***** [ Prohlížeče ] *****
*************************
:: Winsock nastavení vyčištěno
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1429 Bajty] - [02/01/2017 15:02:56]
C:\AdwCleaner\AdwCleaner[C2].txt - [867 Bajty] - [03/01/2017 19:18:45]
C:\AdwCleaner\AdwCleaner[S0].txt - [1679 Bajty] - [02/01/2017 15:02:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [1511 Bajty] - [03/01/2017 19:18:16]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1085 Bajty] ##########
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
Toto je OK. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu- Pc si dělá co chce
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-01-2017
Ran by Jan (administrator) on DESKTOP-3RABBJS (03-01-2017 20:52:25)
Running from C:\Users\Jan\Downloads
Loaded Profiles: Jan (Available Profiles: Jan)
Platform: Windows 10 Pro Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation)
HKU\S-1-5-21-2118643751-1762355453-266845150-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27230168 2016-11-15] (Skype Technologies S.A.)
HKU\S-1-5-21-2118643751-1762355453-266845150-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [152064 2016-07-16] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 0.0.0.0
Tcpip\..\Interfaces\{07db4e6a-87aa-41ee-819b-a5e636b9072e}: [DhcpNameServer] 192.168.2.1 0.0.0.0
Internet Explorer:
==================
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [129152 2016-04-24] (Samsung Electronics Co., Ltd.)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-05-05] (Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-05-05] (Disc Soft Ltd)
S3 iaLPSS2_GPIO2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [83768 2016-01-22] (Windows (R) Win 7 DDK provider)
R3 iaLPSS2_UART2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [281400 2016-01-22] (Intel Corporation)
R3 KillerEth; C:\WINDOWS\System32\drivers\e24w10x64.sys [156744 2015-10-07] (Qualcomm Atheros, Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys [13754936 2016-08-26] (NVIDIA Corporation)
S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-03-17] (Windows (R) Win 7 DDK provider)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64640 2016-04-24] (QUALCOMM Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-03 20:52 - 2017-01-03 20:52 - 00005713 _____ C:\Users\Jan\Downloads\FRST.txt
2017-01-03 20:51 - 2017-01-03 20:52 - 00000000 ____D C:\FRST
2017-01-03 20:51 - 2017-01-03 20:51 - 02418176 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe
2017-01-03 20:47 - 2017-01-03 20:47 - 00001112 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-01-03 20:47 - 2017-01-03 20:47 - 00001100 _____ C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-01-03 20:47 - 2017-01-03 20:47 - 00000000 ____D C:\Users\Jan\AppData\Roaming\TeamViewer
2017-01-03 20:47 - 2017-01-03 20:47 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2017-01-03 20:46 - 2017-01-03 20:47 - 12975024 _____ (TeamViewer GmbH) C:\Users\Jan\Downloads\TeamViewer_Setup_cs-iuu.exe
2017-01-03 19:20 - 2017-01-03 19:20 - 00001167 _____ C:\Users\Jan\Desktop\AdwCleaner[C2].txt
2017-01-03 19:16 - 2017-01-03 19:16 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-01-03 19:16 - 2017-01-03 19:16 - 00000000 ____D C:\ProgramData\Skype
2017-01-03 19:16 - 2017-01-03 19:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-01-03 19:14 - 2017-01-03 19:16 - 43878872 _____ (Skype Technologies S.A.) C:\Users\Jan\Downloads\SkypeSetupFull.exe
2017-01-03 17:48 - 2017-01-03 17:48 - 00000000 ____D C:\Users\Jan\AppData\Local\PeerDistRepub
2017-01-03 12:36 - 2017-01-03 12:36 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Macromedia
2017-01-03 12:26 - 2017-01-03 12:26 - 06770304 _____ (ESET spol. s r.o.) C:\Users\Jan\Downloads\ESETOnlineScanner_CSY.exe
2017-01-03 12:26 - 2017-01-03 12:26 - 00000000 ____D C:\Users\Jan\AppData\Local\ESET
2017-01-03 12:23 - 2017-01-03 12:18 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-01-03 12:21 - 2017-01-03 12:21 - 135632432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-01-03 12:21 - 2017-01-03 12:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-01-03 12:17 - 2017-01-03 12:17 - 00000000 ____D C:\Users\Jan\AppData\Local\MicrosoftEdge
2017-01-03 12:17 - 2017-01-03 12:17 - 00000000 ____D C:\rsit
2017-01-03 12:17 - 2017-01-03 12:17 - 00000000 ____D C:\Program Files\trend micro
2017-01-03 12:17 - 2017-01-03 00:31 - 03977168 _____ C:\Users\Jan\Desktop\adwcleaner_6.041.exe
2017-01-03 12:17 - 2017-01-03 00:31 - 01323520 _____ C:\Users\Jan\Desktop\RSITx64.exe
2017-01-03 12:16 - 2017-01-03 12:16 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-01-02 17:24 - 2017-01-02 17:24 - 00000000 ____D C:\Users\Jan\AppData\Local\Comms
2017-01-02 17:23 - 2017-01-03 19:23 - 01855796 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-02 17:22 - 2017-01-03 20:19 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype
2017-01-02 17:22 - 2017-01-02 17:22 - 00003286 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-01-02 17:21 - 2017-01-02 17:22 - 00002381 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-01-02 17:21 - 2017-01-02 17:21 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2017-01-02 17:20 - 2017-01-03 12:29 - 00000000 ____D C:\Users\Jan\AppData\Local\Packages
2017-01-02 17:20 - 2017-01-02 17:24 - 00000000 ____D C:\Users\Jan\AppData\Local\ConnectedDevicesPlatform
2017-01-02 17:20 - 2017-01-02 17:20 - 00000020 ___SH C:\Users\Jan\ntuser.ini
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Šablony
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Poslední
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Okolní síť
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Dokumenty
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\All Users
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Šablony
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Plocha
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Dokumenty
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Adobe
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Local\VirtualStore
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Local\TileDataLayer
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Local\Publishers
2017-01-02 17:19 - 2017-01-02 17:19 - 00013938 _____ C:\Users\Jan\Desktop\Odebrané aplikace.html
2017-01-02 17:15 - 2017-01-03 19:19 - 00000000 ____D C:\Users\Jan
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Šablony
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Soubory cookie
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Poslední
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Okolní tiskárny
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Okolní síť
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Nabídka Start
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Dokumenty
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Documents\Obrázky
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Documents\Hudba
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Documents\Filmy
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Data aplikací
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\AppData\Local\Data aplikací
2017-01-02 17:14 - 2017-01-02 17:14 - 00000000 ____D C:\ProgramData\USOShared
2017-01-02 17:13 - 2017-01-03 19:19 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\ProgramData\NVIDIA
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-01-02 17:13 - 2016-08-01 13:54 - 06386744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 02466360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 01365048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2017-01-02 17:13 - 2016-08-01 13:54 - 00547896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 00393784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 00071224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-01-02 17:13 - 2016-07-28 14:02 - 07242545 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-01-02 17:13 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-01-02 17:12 - 2017-01-03 20:45 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-01-02 17:12 - 2017-01-03 17:38 - 00194440 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-01-02 17:12 - 2017-01-03 13:10 - 00000000 ____D C:\Windows.old
2017-01-02 17:12 - 2017-01-02 17:20 - 00000000 ___DC C:\WINDOWS\Panther
2017-01-02 17:12 - 2017-01-02 17:12 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2017-01-02 17:12 - 2017-01-02 17:12 - 00000000 ____D C:\WINDOWS\InfusedApps
2017-01-02 17:11 - 2017-01-02 17:11 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2017-01-02 17:11 - 2017-01-02 17:11 - 00000000 ____D C:\WINDOWS\Setup
2017-01-02 17:10 - 2017-01-03 19:23 - 00791848 _____ C:\WINDOWS\system32\perfh005.dat
2017-01-02 17:10 - 2017-01-03 19:23 - 00163878 _____ C:\WINDOWS\system32\perfc005.dat
2017-01-02 17:10 - 2017-01-02 17:10 - 00296654 _____ C:\WINDOWS\system32\perfi005.dat
2017-01-02 17:10 - 2017-01-02 17:10 - 00038682 _____ C:\WINDOWS\system32\perfd005.dat
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\cs
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\winrm
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\WCN
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\slmgr
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\cs
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\0409
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\OCR
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\DigitalLocker
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\MSBuild
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-01-02 17:09 - 2016-12-12 00:56 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-01-02 17:09 - 2016-12-12 00:56 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-01-02 17:08 - 2017-01-03 17:38 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\system32\F12
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\system32\dsc
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___RD C:\Program Files\Windows Defender
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\setup
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\migwiz
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\Dism
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\Provisioning
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\bcastdvr
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-01-02 17:08 - 2017-01-03 17:36 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2017-01-02 17:08 - 2017-01-03 14:09 - 00000000 ___HD C:\Program Files\WindowsApps
2017-01-02 17:08 - 2017-01-03 12:17 - 00000000 ____D C:\WINDOWS\appcompat
2017-01-02 17:08 - 2017-01-02 17:20 - 00000000 ____D C:\Program Files\Windows NT
2017-01-02 17:08 - 2017-01-02 17:19 - 00000000 __RHD C:\Users\Public\Libraries
2017-01-02 17:08 - 2017-01-02 17:19 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-01-02 17:08 - 2017-01-02 17:18 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-01-02 17:08 - 2017-01-02 17:15 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2017-01-02 17:08 - 2017-01-02 17:15 - 00000000 ____D C:\WINDOWS\CSC
2017-01-02 17:08 - 2017-01-02 17:14 - 00000000 ___RD C:\WINDOWS\PrintDialog
2017-01-02 17:08 - 2017-01-02 17:14 - 00000000 ___RD C:\WINDOWS\MiracastView
2017-01-02 17:08 - 2017-01-02 17:14 - 00000000 ____D C:\ProgramData\USOPrivate
2017-01-02 17:08 - 2017-01-02 17:13 - 00000000 ____D C:\WINDOWS\Help
2017-01-02 17:08 - 2017-01-02 17:12 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SystemApps
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\MUI
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\Com
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\IME
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\Common Files\System
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __SHD C:\Program Files\Windows Sidebar
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __RSD C:\WINDOWS\Media
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\system32\Nui
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Web
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Vss
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\tracing
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\TAPI
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SystemResources
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\winevt
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\spool
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\ras
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\IME
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\icsxml
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\ias
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\downlevel
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\DDFs
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\System
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SKB
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\schemas
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SchCache
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\security
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Resources
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\rescache
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\RemotePackages
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Registration
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\PLA
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Performance
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\ModemLogs
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\L2Schemas
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\InputMethod
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Globalization
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\GameBarPresenceWriter
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Cursors
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Branding
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\addins
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\ProgramData\Comms
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files\Windows Portable Devices
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files\Common Files\Services
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files (x86)\Windows NT
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2017-01-02 17:08 - 2017-01-02 17:07 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-01-02 17:08 - 2017-01-02 17:07 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2017-01-02 17:08 - 2017-01-02 17:07 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2017-01-02 17:08 - 2017-01-02 17:07 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2017-01-02 17:08 - 2017-01-02 17:07 - 00027136 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2017-01-02 17:08 - 2017-01-02 17:07 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2017-01-02 17:08 - 2017-01-02 17:07 - 00004096 _____ C:\WINDOWS\system32\config\VSMIDK
2017-01-02 17:08 - 2017-01-02 17:07 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2017-01-02 17:08 - 2017-01-02 17:07 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2017-01-02 17:08 - 2017-01-02 17:07 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2017-01-02 17:08 - 2017-01-02 17:07 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2017-01-02 17:08 - 2017-01-02 17:07 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2017-01-02 17:08 - 2017-01-02 17:07 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2017-01-02 17:08 - 2017-01-02 17:07 - 00000219 _____ C:\WINDOWS\system.ini
2017-01-02 17:08 - 2017-01-02 17:07 - 00000092 _____ C:\WINDOWS\win.ini
2017-01-02 17:07 - 2017-01-03 19:15 - 00000000 ____D C:\WINDOWS\INF
2017-01-02 17:04 - 2017-01-03 12:23 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-01-02 17:03 - 2017-01-03 19:18 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2017-01-02 17:03 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\servicing
2017-01-02 17:03 - 2017-01-02 17:13 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2017-01-02 17:03 - 2017-01-02 17:11 - 00000000 ____D C:\$WINDOWS.~BT
2017-01-02 17:03 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\SMI
2017-01-02 16:41 - 2017-01-02 16:41 - 00000788 _____ C:\bdlog.txt
2017-01-02 16:33 - 2017-01-02 16:33 - 00000000 ____D C:\Users\Jan\AppData\Temp
2017-01-02 16:06 - 2015-11-19 20:31 - 00000000 ____D C:\Users\Jan\Downloads\KMSpico 10.1.8 FINAL + Portable (Office and Windows 10 Activator) [TechTools.net]
2017-01-02 16:03 - 2017-01-02 16:04 - 07194302 ____R C:\Users\Jan\Downloads\KMSpico 10.1.8 FINAL + Portable (Office a Windows 10 Aktivator).rar
2017-01-02 16:02 - 2017-01-02 16:02 - 00007989 _____ C:\Users\Jan\Downloads\[CzT]Aktivator_Windows_10_KMSAuto.torrent
2017-01-02 16:02 - 2017-01-02 16:02 - 00002704 _____ C:\Users\Jan\Downloads\[CzT]KMSpico_v10_1_8_Final_Portable_Office_a_Windows_10_Aktivator_2015_.torrent
2017-01-02 15:47 - 2017-01-02 15:57 - 107799896 _____ (Kaspersky Lab ZAO) C:\Users\Jan\Downloads\KVRT.exe
2017-01-02 15:43 - 2017-01-02 15:44 - 11842648 _____ C:\Users\Jan\Downloads\bitdefender_windows_4f3c1309-f248-425e-a542-40bb47633612.exe
2017-01-02 15:15 - 2017-01-02 15:19 - 08459976 _____ C:\Users\Jan\Downloads\bitdefender_online.exe
2017-01-02 15:06 - 2017-01-02 15:11 - 54199488 _____ (Malwarebytes ) C:\Users\Jan\Downloads\mb3-setup-consumer-3.0.5.1299.exe
2017-01-02 15:01 - 2017-01-03 19:18 - 00000000 ____D C:\AdwCleaner
2017-01-02 15:01 - 2017-01-02 15:01 - 03977168 _____ C:\Users\Jan\Downloads\adwcleaner_6.041.exe
2017-01-01 17:32 - 2017-01-01 17:35 - 92695552 _____ C:\Users\Jan\Downloads\HappyFoto-FOTO-64.msi
2016-12-29 14:29 - 2016-12-29 14:29 - 00150735 _____ C:\Users\Jan\Downloads\schema topeni bez solaru05.jpg
2016-12-29 14:23 - 2016-12-29 14:23 - 00395581 _____ C:\Users\Jan\Downloads\rd-drnovice-pd-ut-schema_516d8aff.pdf
2016-12-29 11:21 - 2016-12-29 11:21 - 01548280 _____ C:\Users\Jan\Downloads\IMG_0610.JPG
2016-12-29 11:21 - 2016-12-29 11:21 - 00025133 _____ C:\Users\Jan\Downloads\rez-nado-cs.png
2016-12-29 11:20 - 2016-12-29 11:20 - 00102166 _____ C:\Users\Jan\Downloads\schema-1sv-s-kotlem-a-tech-mistnosti.jpg
2016-12-29 11:19 - 2016-12-29 11:19 - 00119594 _____ C:\Users\Jan\Downloads\schema-1sv-s-kotlem.jpg
2016-12-29 11:18 - 2016-12-29 11:18 - 00020121 _____ C:\Users\Jan\Downloads\schema-s-nadrzi_m.jpg
2016-12-29 09:47 - 2016-12-29 09:49 - 00010315 _____ C:\Users\Jan\Documents\Babice.xlsx
2016-12-27 18:58 - 2016-12-27 20:45 - 1737062444 _____ C:\Users\Jan\Downloads\dite-bridget-jonesove-bridget-joness-baby-2016-cz-titulky.avi
2016-12-26 08:33 - 2017-01-01 17:47 - 00000000 ____D C:\Users\Jan\Desktop\Cenkovi foto
2016-12-23 09:17 - 2016-12-23 09:17 - 00047364 _____ C:\Users\Jan\Downloads\IMG_0245.PNG
2016-12-21 13:25 - 2016-12-21 15:18 - 2027232820 _____ C:\Users\Jan\Downloads\Sebevrazedny-oddil-CZ.avi
2016-12-21 09:56 - 2016-12-21 09:56 - 00231931 _____ C:\Users\Jan\Downloads\15578144_10210812369252868_7308439336349200866_o.jpg
2016-12-21 09:56 - 2016-12-21 09:56 - 00186082 _____ C:\Users\Jan\Downloads\15540732_10210812368212842_6327810796993519184_o.jpg
2016-12-21 09:56 - 2016-12-21 09:56 - 00150190 _____ C:\Users\Jan\Downloads\15625959_10210812367972836_2758299612608269653_o.jpg
2016-12-19 11:55 - 2016-12-19 11:55 - 31717016 _____ C:\Users\Jan\Downloads\vlc-2.2.4-win64.exe
2016-12-15 17:43 - 2016-12-15 17:43 - 00000000 ____D C:\Users\Jan\Documents\TrackMania
2016-12-15 17:35 - 2016-12-15 17:35 - 00000201 _____ C:\Users\Jan\Desktop\TrackMania Nations Forever.url
2016-12-15 17:33 - 2016-12-15 17:34 - 00000000 ____D C:\Users\Jan\AppData\LocalLow\Unity
2016-12-15 17:33 - 2016-12-15 17:33 - 03249480 _____ (Unity Technologies ApS) C:\Users\Jan\Downloads\UnityWebPlayer.exe
2016-12-14 16:19 - 2016-12-09 11:11 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-14 16:19 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-14 16:19 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-14 16:19 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-14 16:19 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2016-12-14 16:19 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-12-14 16:19 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-14 16:19 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 16:19 - 2016-12-09 10:57 - 01852720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-14 16:19 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-12-14 16:19 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-14 16:19 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-14 16:19 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-14 16:19 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-12-14 16:19 - 2016-12-09 10:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-12-14 16:19 - 2016-12-09 10:36 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-14 16:19 - 2016-12-09 10:34 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-14 16:19 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-14 16:19 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-14 16:19 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-14 16:19 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-14 16:19 - 2016-12-09 10:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-14 16:19 - 2016-12-09 10:30 - 19413504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-14 16:19 - 2016-12-09 10:30 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-14 16:19 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-14 16:19 - 2016-12-09 10:27 - 19417088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-14 16:19 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-14 16:19 - 2016-12-09 10:20 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-14 16:19 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-12-14 16:19 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-14 16:19 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-12-14 16:19 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-12-14 16:19 - 2016-12-09 10:17 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-14 16:19 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-14 16:19 - 2016-12-09 10:16 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-14 16:19 - 2016-12-09 10:16 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-12-14 16:19 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-12-14 16:19 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 16:19 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-12-14 16:19 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-12-14 16:19 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-14 16:19 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 16:15 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-12-14 16:15 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-12-14 16:15 - 2016-12-09 11:32 - 07816032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 16:15 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-14 16:15 - 2016-12-09 11:29 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 16:15 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-12-14 16:15 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 16:15 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-12-14 16:15 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 16:15 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-12-14 16:15 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-12-14 16:15 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 16:15 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-12-14 16:15 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-12-14 16:15 - 2016-12-09 11:18 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-14 16:15 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 16:15 - 2016-12-09 11:15 - 01988560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 16:15 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-12-14 16:15 - 2016-12-09 11:14 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 16:15 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-12-14 16:15 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-14 16:15 - 2016-12-09 10:47 - 22563328 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-12-14 16:15 - 2016-12-09 10:45 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-14 16:15 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 16:15 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-12-14 16:15 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-12-14 16:15 - 2016-12-09 10:37 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 16:15 - 2016-12-09 10:37 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 16:15 - 2016-12-09 10:36 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 16:15 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-14 16:15 - 2016-12-09 10:36 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 16:15 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 16:15 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-12-14 16:15 - 2016-12-09 10:30 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-14 16:15 - 2016-12-09 10:29 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 16:15 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 16:15 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-14 16:15 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-12-14 16:15 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 16:15 - 2016-12-09 10:26 - 08129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-12-14 16:15 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-14 16:15 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-12-14 16:15 - 2016-12-09 10:22 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 16:15 - 2016-12-09 10:22 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-12-14 16:15 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-14 16:15 - 2016-12-09 10:21 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-12-14 16:15 - 2016-12-09 10:21 - 01512960 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-12-14 16:15 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-12-14 16:15 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 16:15 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 16:15 - 2016-12-09 10:19 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 16:15 - 2016-09-15 17:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-12-14 16:14 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-12-14 16:14 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-12-14 16:14 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-12-14 16:14 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-12-14 16:14 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 16:14 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2016-12-14 16:14 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-12-14 16:14 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-12-14 16:14 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-12-14 16:14 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-12-14 16:14 - 2016-12-09 11:09 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-12-14 16:14 - 2016-12-09 10:38 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 16:14 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 16:14 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 16:14 - 2016-12-09 10:26 - 01692672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 16:14 - 2016-12-09 10:24 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 16:14 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-12-14 16:14 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-12 20:35 - 2016-12-12 20:35 - 00000000 ____D C:\Users\Jan\Downloads\Jack
2016-12-12 20:26 - 2016-12-12 20:34 - 60555129 _____ C:\Users\Jan\Downloads\Jack.rar
2016-12-10 16:01 - 2016-12-10 16:01 - 00134029 _____ C:\Users\Jan\Downloads\Faktura_16049.pdf
2016-12-10 15:12 - 2016-11-11 11:22 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-12-10 15:12 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-12-10 15:12 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-10 15:12 - 2016-11-11 11:14 - 02482280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-10 15:12 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-12-10 15:12 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-10 15:12 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-12-10 15:12 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-12-10 15:12 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-12-10 15:12 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-12-10 15:12 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2016-12-10 15:12 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-12-10 15:12 - 2016-11-11 11:03 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-10 15:12 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-12-10 15:12 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-12-10 15:12 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-10 15:12 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-12-10 15:12 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-10 15:12 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-12-10 15:12 - 2016-11-11 11:00 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-12-10 15:12 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-12-10 15:12 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-12-10 15:12 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-12-10 15:12 - 2016-11-11 10:57 - 22224480 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-12-10 15:12 - 2016-11-11 10:57 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-12-10 15:12 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-12-10 15:12 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00418952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-10 15:12 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-10 15:12 - 2016-11-11 10:55 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-12-10 15:12 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-10 15:12 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-12-10 15:12 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-12-10 15:12 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-12-10 15:12 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-10 15:12 - 2016-11-11 10:29 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-10 15:12 - 2016-11-11 10:28 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-10 15:12 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-10 15:12 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2016-12-10 15:12 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-12-10 15:12 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-10 15:12 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReportingCSP.dll
2016-12-10 15:12 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\modem.sys
2016-12-10 15:12 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2016-12-10 15:12 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-12-10 15:12 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-10 15:12 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-12-10 15:12 - 2016-11-11 10:22 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-12-10 15:12 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2016-12-10 15:12 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-10 15:12 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-12-10 15:12 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-12-10 15:12 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2016-12-10 15:12 - 2016-11-11 10:18 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-10 15:12 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-10 15:12 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-12-10 15:12 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2016-12-10 15:12 - 2016-11-11 10:17 - 01002496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-12-10 15:12 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-10 15:12 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-12-10 15:12 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2016-12-10 15:12 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-10 15:12 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-12-10 15:12 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-12-10 15:12 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-12-10 15:12 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-12-10 15:12 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2016-12-10 15:12 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-12-10 15:12 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-12-10 15:12 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2016-12-10 15:12 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2016-12-10 15:12 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-12-10 15:12 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-12-10 15:12 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-12-10 15:12 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-12-10 15:12 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-12-10 15:12 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-12-10 15:12 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-12-10 15:12 - 2016-11-11 10:04 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-12-10 15:12 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 02317312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-12-10 15:12 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-12-10 15:12 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-10 15:12 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-12-10 15:12 - 2016-11-11 09:39 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-12-10 15:12 - 2016-11-11 09:01 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-12-10 15:12 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-12-10 15:12 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2016-12-10 15:12 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-12-10 15:12 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-12-10 15:12 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2016-12-10 15:12 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-12-10 15:12 - 2016-11-11 08:49 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-12-10 15:12 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-12-10 15:12 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-12-10 15:12 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-12-10 15:12 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-10 15:12 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 03892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00382784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfaudiocnv.dll
2016-12-10 15:12 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-12-10 15:12 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2016-12-10 15:12 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-12-10 15:12 - 2016-11-11 08:28 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-12-10 15:12 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-10 15:12 - 2016-11-11 08:27 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-12-10 15:12 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2016-12-10 15:12 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-12-10 15:12 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-10 15:12 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-12-10 15:12 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-10 15:12 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-12-10 15:12 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2016-12-10 15:12 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-12-10 15:12 - 2016-11-11 08:21 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-12-10 15:12 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 08:20 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-12-10 15:12 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-12-10 15:12 - 2016-11-11 08:20 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-12-10 15:12 - 2016-11-11 08:19 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-12-10 15:12 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2016-12-10 15:12 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2016-12-10 15:12 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2016-12-10 15:12 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-12-10 15:12 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-12-10 15:12 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-12-10 15:12 - 2016-11-11 08:13 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-12-10 15:12 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
2016-12-10 15:12 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-12-10 15:12 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2016-12-10 15:12 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-12-10 15:12 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-12-10 15:12 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-12-10 15:12 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxclu.dll
2016-12-10 15:12 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-12-10 15:12 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-12-10 15:12 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-12-10 15:01 - 2016-12-10 15:02 - 08576448 _____ (Piriform Ltd) C:\Users\Jan\Downloads\ccsetup524.exe
2016-12-10 14:39 - 2016-12-10 15:00 - 384927256 _____ C:\Users\Jan\Downloads\Outlander-Cizinka-02x02-Not-in-Scotland-anymore-cz-titulky-ve-filmu.avi.crdownload
2016-12-08 19:17 - 2016-12-08 19:17 - 00000000 ____D C:\Users\Jan\Desktop\priznani
2016-12-07 18:09 - 2016-12-07 18:09 - 02926320 _____ C:\Users\Jan\Downloads\IMG_0021.JPG
2016-12-07 18:03 - 2016-12-07 19:56 - 1792829698 _____ C:\Users\Jan\Downloads\Creed-CZ-dabing-(2015).avi
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-03 19:16 - 2016-05-04 17:13 - 00002658 _____ C:\Users\Public\Desktop\Skype.lnk
2017-01-03 17:38 - 2016-02-13 14:14 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-01-02 17:22 - 2016-05-04 14:32 - 00000000 ___RD C:\Users\Jan\OneDrive
2017-01-02 16:54 - 2016-05-25 18:52 - 00000000 ___RD C:\Users\Jan\Disk Google
2017-01-02 16:10 - 2016-05-05 03:07 - 00000000 ____D C:\Users\Jan\Documents\Assassin's Creed Unity
2016-12-24 12:42 - 2016-10-30 19:23 - 00000000 ____D C:\Users\Jan\Documents\Euro Truck Simulator 2
2016-12-24 11:12 - 2016-10-22 19:15 - 00000000 ____D C:\Users\Jan\Documents\Max Payne 2 Savegames
2016-12-10 15:06 - 2016-07-16 12:42 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-12-08 19:18 - 2016-05-05 19:42 - 00000000 ___RD C:\Users\Jan\Documents\Scanned Documents
2016-12-07 18:31 - 2016-12-03 11:22 - 51178016 _____ C:\Users\Jan\Downloads\K-Lite_Codec_Pack_1265_Mega.exe
Some files in TEMP:
====================
C:\Users\Jan\AppData\Local\Temp\libeay32.dll
C:\Users\Jan\AppData\Local\Temp\msvcr120.dll
C:\Users\Jan\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-01-02 17:12
==================== End of FRST.txt ============================
Ran by Jan (administrator) on DESKTOP-3RABBJS (03-01-2017 20:52:25)
Running from C:\Users\Jan\Downloads
Loaded Profiles: Jan (Available Profiles: Jan)
Platform: Windows 10 Pro Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation)
HKU\S-1-5-21-2118643751-1762355453-266845150-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27230168 2016-11-15] (Skype Technologies S.A.)
HKU\S-1-5-21-2118643751-1762355453-266845150-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [152064 2016-07-16] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 0.0.0.0
Tcpip\..\Interfaces\{07db4e6a-87aa-41ee-819b-a5e636b9072e}: [DhcpNameServer] 192.168.2.1 0.0.0.0
Internet Explorer:
==================
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [129152 2016-04-24] (Samsung Electronics Co., Ltd.)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-05-05] (Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-05-05] (Disc Soft Ltd)
S3 iaLPSS2_GPIO2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [83768 2016-01-22] (Windows (R) Win 7 DDK provider)
R3 iaLPSS2_UART2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [281400 2016-01-22] (Intel Corporation)
R3 KillerEth; C:\WINDOWS\System32\drivers\e24w10x64.sys [156744 2015-10-07] (Qualcomm Atheros, Inc.)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys [13754936 2016-08-26] (NVIDIA Corporation)
S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-03-17] (Windows (R) Win 7 DDK provider)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64640 2016-04-24] (QUALCOMM Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-03 20:52 - 2017-01-03 20:52 - 00005713 _____ C:\Users\Jan\Downloads\FRST.txt
2017-01-03 20:51 - 2017-01-03 20:52 - 00000000 ____D C:\FRST
2017-01-03 20:51 - 2017-01-03 20:51 - 02418176 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe
2017-01-03 20:47 - 2017-01-03 20:47 - 00001112 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-01-03 20:47 - 2017-01-03 20:47 - 00001100 _____ C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-01-03 20:47 - 2017-01-03 20:47 - 00000000 ____D C:\Users\Jan\AppData\Roaming\TeamViewer
2017-01-03 20:47 - 2017-01-03 20:47 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2017-01-03 20:46 - 2017-01-03 20:47 - 12975024 _____ (TeamViewer GmbH) C:\Users\Jan\Downloads\TeamViewer_Setup_cs-iuu.exe
2017-01-03 19:20 - 2017-01-03 19:20 - 00001167 _____ C:\Users\Jan\Desktop\AdwCleaner[C2].txt
2017-01-03 19:16 - 2017-01-03 19:16 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-01-03 19:16 - 2017-01-03 19:16 - 00000000 ____D C:\ProgramData\Skype
2017-01-03 19:16 - 2017-01-03 19:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-01-03 19:14 - 2017-01-03 19:16 - 43878872 _____ (Skype Technologies S.A.) C:\Users\Jan\Downloads\SkypeSetupFull.exe
2017-01-03 17:48 - 2017-01-03 17:48 - 00000000 ____D C:\Users\Jan\AppData\Local\PeerDistRepub
2017-01-03 12:36 - 2017-01-03 12:36 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Macromedia
2017-01-03 12:26 - 2017-01-03 12:26 - 06770304 _____ (ESET spol. s r.o.) C:\Users\Jan\Downloads\ESETOnlineScanner_CSY.exe
2017-01-03 12:26 - 2017-01-03 12:26 - 00000000 ____D C:\Users\Jan\AppData\Local\ESET
2017-01-03 12:23 - 2017-01-03 12:18 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-01-03 12:21 - 2017-01-03 12:21 - 135632432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-01-03 12:21 - 2017-01-03 12:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-01-03 12:17 - 2017-01-03 12:17 - 00000000 ____D C:\Users\Jan\AppData\Local\MicrosoftEdge
2017-01-03 12:17 - 2017-01-03 12:17 - 00000000 ____D C:\rsit
2017-01-03 12:17 - 2017-01-03 12:17 - 00000000 ____D C:\Program Files\trend micro
2017-01-03 12:17 - 2017-01-03 00:31 - 03977168 _____ C:\Users\Jan\Desktop\adwcleaner_6.041.exe
2017-01-03 12:17 - 2017-01-03 00:31 - 01323520 _____ C:\Users\Jan\Desktop\RSITx64.exe
2017-01-03 12:16 - 2017-01-03 12:16 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-01-02 17:24 - 2017-01-02 17:24 - 00000000 ____D C:\Users\Jan\AppData\Local\Comms
2017-01-02 17:23 - 2017-01-03 19:23 - 01855796 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-02 17:22 - 2017-01-03 20:19 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype
2017-01-02 17:22 - 2017-01-02 17:22 - 00003286 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-01-02 17:21 - 2017-01-02 17:22 - 00002381 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-01-02 17:21 - 2017-01-02 17:21 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2017-01-02 17:20 - 2017-01-03 12:29 - 00000000 ____D C:\Users\Jan\AppData\Local\Packages
2017-01-02 17:20 - 2017-01-02 17:24 - 00000000 ____D C:\Users\Jan\AppData\Local\ConnectedDevicesPlatform
2017-01-02 17:20 - 2017-01-02 17:20 - 00000020 ___SH C:\Users\Jan\ntuser.ini
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Šablony
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Poslední
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Okolní síť
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Dokumenty
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\Default User
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\Users\All Users
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Šablony
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Plocha
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Dokumenty
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 _SHDL C:\ProgramData\Data aplikací
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Adobe
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Local\VirtualStore
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Local\TileDataLayer
2017-01-02 17:20 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Jan\AppData\Local\Publishers
2017-01-02 17:19 - 2017-01-02 17:19 - 00013938 _____ C:\Users\Jan\Desktop\Odebrané aplikace.html
2017-01-02 17:15 - 2017-01-03 19:19 - 00000000 ____D C:\Users\Jan
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Šablony
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Soubory cookie
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Poslední
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Okolní tiskárny
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Okolní síť
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Nabídka Start
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Dokumenty
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Documents\Obrázky
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Documents\Hudba
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Documents\Filmy
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\Data aplikací
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-01-02 17:15 - 2017-01-02 17:15 - 00000000 _SHDL C:\Users\Jan\AppData\Local\Data aplikací
2017-01-02 17:14 - 2017-01-02 17:14 - 00000000 ____D C:\ProgramData\USOShared
2017-01-02 17:13 - 2017-01-03 19:19 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\ProgramData\NVIDIA
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-01-02 17:13 - 2017-01-02 17:13 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-01-02 17:13 - 2016-08-01 13:54 - 06386744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 02466360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 01365048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2017-01-02 17:13 - 2016-08-01 13:54 - 00547896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 00393784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-01-02 17:13 - 2016-08-01 13:54 - 00071224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-01-02 17:13 - 2016-07-28 14:02 - 07242545 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-01-02 17:13 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-01-02 17:12 - 2017-01-03 20:45 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-01-02 17:12 - 2017-01-03 17:38 - 00194440 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-01-02 17:12 - 2017-01-03 13:10 - 00000000 ____D C:\Windows.old
2017-01-02 17:12 - 2017-01-02 17:20 - 00000000 ___DC C:\WINDOWS\Panther
2017-01-02 17:12 - 2017-01-02 17:12 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2017-01-02 17:12 - 2017-01-02 17:12 - 00000000 ____D C:\WINDOWS\InfusedApps
2017-01-02 17:11 - 2017-01-02 17:11 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2017-01-02 17:11 - 2017-01-02 17:11 - 00000000 ____D C:\WINDOWS\Setup
2017-01-02 17:10 - 2017-01-03 19:23 - 00791848 _____ C:\WINDOWS\system32\perfh005.dat
2017-01-02 17:10 - 2017-01-03 19:23 - 00163878 _____ C:\WINDOWS\system32\perfc005.dat
2017-01-02 17:10 - 2017-01-02 17:10 - 00296654 _____ C:\WINDOWS\system32\perfi005.dat
2017-01-02 17:10 - 2017-01-02 17:10 - 00038682 _____ C:\WINDOWS\system32\perfd005.dat
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\cs
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\winrm
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\WCN
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\slmgr
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\cs
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\0409
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\OCR
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\DigitalLocker
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\MSBuild
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-01-02 17:10 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-01-02 17:09 - 2016-12-12 00:56 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-01-02 17:09 - 2016-12-12 00:56 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-01-02 17:08 - 2017-01-03 17:38 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\system32\F12
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\system32\dsc
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ___RD C:\Program Files\Windows Defender
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\setup
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\migwiz
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\Dism
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\Provisioning
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\bcastdvr
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-01-02 17:08 - 2017-01-03 17:37 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-01-02 17:08 - 2017-01-03 17:36 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2017-01-02 17:08 - 2017-01-03 14:09 - 00000000 ___HD C:\Program Files\WindowsApps
2017-01-02 17:08 - 2017-01-03 12:17 - 00000000 ____D C:\WINDOWS\appcompat
2017-01-02 17:08 - 2017-01-02 17:20 - 00000000 ____D C:\Program Files\Windows NT
2017-01-02 17:08 - 2017-01-02 17:19 - 00000000 __RHD C:\Users\Public\Libraries
2017-01-02 17:08 - 2017-01-02 17:19 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-01-02 17:08 - 2017-01-02 17:18 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-01-02 17:08 - 2017-01-02 17:15 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2017-01-02 17:08 - 2017-01-02 17:15 - 00000000 ____D C:\WINDOWS\CSC
2017-01-02 17:08 - 2017-01-02 17:14 - 00000000 ___RD C:\WINDOWS\PrintDialog
2017-01-02 17:08 - 2017-01-02 17:14 - 00000000 ___RD C:\WINDOWS\MiracastView
2017-01-02 17:08 - 2017-01-02 17:14 - 00000000 ____D C:\ProgramData\USOPrivate
2017-01-02 17:08 - 2017-01-02 17:13 - 00000000 ____D C:\WINDOWS\Help
2017-01-02 17:08 - 2017-01-02 17:12 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\SystemApps
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\MUI
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\system32\Com
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\WINDOWS\IME
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\Common Files\System
2017-01-02 17:08 - 2017-01-02 17:10 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __SHD C:\Program Files\Windows Sidebar
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 __RSD C:\WINDOWS\Media
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\system32\Nui
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Web
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Vss
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\tracing
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\TAPI
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SystemResources
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\winevt
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\spool
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\ras
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\IME
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\icsxml
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\ias
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\downlevel
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\DDFs
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\System
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SKB
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\schemas
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\SchCache
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\security
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Resources
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\rescache
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\RemotePackages
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Registration
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\PLA
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Performance
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\ModemLogs
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\L2Schemas
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\InputMethod
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Globalization
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\GameBarPresenceWriter
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Cursors
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\Branding
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\addins
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\ProgramData\Comms
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files\Windows Portable Devices
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files\Common Files\Services
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files (x86)\Windows NT
2017-01-02 17:08 - 2017-01-02 17:08 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2017-01-02 17:08 - 2017-01-02 17:07 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-01-02 17:08 - 2017-01-02 17:07 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2017-01-02 17:08 - 2017-01-02 17:07 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2017-01-02 17:08 - 2017-01-02 17:07 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2017-01-02 17:08 - 2017-01-02 17:07 - 00027136 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2017-01-02 17:08 - 2017-01-02 17:07 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2017-01-02 17:08 - 2017-01-02 17:07 - 00004096 _____ C:\WINDOWS\system32\config\VSMIDK
2017-01-02 17:08 - 2017-01-02 17:07 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2017-01-02 17:08 - 2017-01-02 17:07 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2017-01-02 17:08 - 2017-01-02 17:07 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2017-01-02 17:08 - 2017-01-02 17:07 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2017-01-02 17:08 - 2017-01-02 17:07 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2017-01-02 17:08 - 2017-01-02 17:07 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2017-01-02 17:08 - 2017-01-02 17:07 - 00000219 _____ C:\WINDOWS\system.ini
2017-01-02 17:08 - 2017-01-02 17:07 - 00000092 _____ C:\WINDOWS\win.ini
2017-01-02 17:07 - 2017-01-03 19:15 - 00000000 ____D C:\WINDOWS\INF
2017-01-02 17:04 - 2017-01-03 12:23 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-01-02 17:03 - 2017-01-03 19:18 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2017-01-02 17:03 - 2017-01-03 17:37 - 00000000 ____D C:\WINDOWS\servicing
2017-01-02 17:03 - 2017-01-02 17:13 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2017-01-02 17:03 - 2017-01-02 17:11 - 00000000 ____D C:\$WINDOWS.~BT
2017-01-02 17:03 - 2017-01-02 17:08 - 00000000 ____D C:\WINDOWS\system32\SMI
2017-01-02 16:41 - 2017-01-02 16:41 - 00000788 _____ C:\bdlog.txt
2017-01-02 16:33 - 2017-01-02 16:33 - 00000000 ____D C:\Users\Jan\AppData\Temp
2017-01-02 16:06 - 2015-11-19 20:31 - 00000000 ____D C:\Users\Jan\Downloads\KMSpico 10.1.8 FINAL + Portable (Office and Windows 10 Activator) [TechTools.net]
2017-01-02 16:03 - 2017-01-02 16:04 - 07194302 ____R C:\Users\Jan\Downloads\KMSpico 10.1.8 FINAL + Portable (Office a Windows 10 Aktivator).rar
2017-01-02 16:02 - 2017-01-02 16:02 - 00007989 _____ C:\Users\Jan\Downloads\[CzT]Aktivator_Windows_10_KMSAuto.torrent
2017-01-02 16:02 - 2017-01-02 16:02 - 00002704 _____ C:\Users\Jan\Downloads\[CzT]KMSpico_v10_1_8_Final_Portable_Office_a_Windows_10_Aktivator_2015_.torrent
2017-01-02 15:47 - 2017-01-02 15:57 - 107799896 _____ (Kaspersky Lab ZAO) C:\Users\Jan\Downloads\KVRT.exe
2017-01-02 15:43 - 2017-01-02 15:44 - 11842648 _____ C:\Users\Jan\Downloads\bitdefender_windows_4f3c1309-f248-425e-a542-40bb47633612.exe
2017-01-02 15:15 - 2017-01-02 15:19 - 08459976 _____ C:\Users\Jan\Downloads\bitdefender_online.exe
2017-01-02 15:06 - 2017-01-02 15:11 - 54199488 _____ (Malwarebytes ) C:\Users\Jan\Downloads\mb3-setup-consumer-3.0.5.1299.exe
2017-01-02 15:01 - 2017-01-03 19:18 - 00000000 ____D C:\AdwCleaner
2017-01-02 15:01 - 2017-01-02 15:01 - 03977168 _____ C:\Users\Jan\Downloads\adwcleaner_6.041.exe
2017-01-01 17:32 - 2017-01-01 17:35 - 92695552 _____ C:\Users\Jan\Downloads\HappyFoto-FOTO-64.msi
2016-12-29 14:29 - 2016-12-29 14:29 - 00150735 _____ C:\Users\Jan\Downloads\schema topeni bez solaru05.jpg
2016-12-29 14:23 - 2016-12-29 14:23 - 00395581 _____ C:\Users\Jan\Downloads\rd-drnovice-pd-ut-schema_516d8aff.pdf
2016-12-29 11:21 - 2016-12-29 11:21 - 01548280 _____ C:\Users\Jan\Downloads\IMG_0610.JPG
2016-12-29 11:21 - 2016-12-29 11:21 - 00025133 _____ C:\Users\Jan\Downloads\rez-nado-cs.png
2016-12-29 11:20 - 2016-12-29 11:20 - 00102166 _____ C:\Users\Jan\Downloads\schema-1sv-s-kotlem-a-tech-mistnosti.jpg
2016-12-29 11:19 - 2016-12-29 11:19 - 00119594 _____ C:\Users\Jan\Downloads\schema-1sv-s-kotlem.jpg
2016-12-29 11:18 - 2016-12-29 11:18 - 00020121 _____ C:\Users\Jan\Downloads\schema-s-nadrzi_m.jpg
2016-12-29 09:47 - 2016-12-29 09:49 - 00010315 _____ C:\Users\Jan\Documents\Babice.xlsx
2016-12-27 18:58 - 2016-12-27 20:45 - 1737062444 _____ C:\Users\Jan\Downloads\dite-bridget-jonesove-bridget-joness-baby-2016-cz-titulky.avi
2016-12-26 08:33 - 2017-01-01 17:47 - 00000000 ____D C:\Users\Jan\Desktop\Cenkovi foto
2016-12-23 09:17 - 2016-12-23 09:17 - 00047364 _____ C:\Users\Jan\Downloads\IMG_0245.PNG
2016-12-21 13:25 - 2016-12-21 15:18 - 2027232820 _____ C:\Users\Jan\Downloads\Sebevrazedny-oddil-CZ.avi
2016-12-21 09:56 - 2016-12-21 09:56 - 00231931 _____ C:\Users\Jan\Downloads\15578144_10210812369252868_7308439336349200866_o.jpg
2016-12-21 09:56 - 2016-12-21 09:56 - 00186082 _____ C:\Users\Jan\Downloads\15540732_10210812368212842_6327810796993519184_o.jpg
2016-12-21 09:56 - 2016-12-21 09:56 - 00150190 _____ C:\Users\Jan\Downloads\15625959_10210812367972836_2758299612608269653_o.jpg
2016-12-19 11:55 - 2016-12-19 11:55 - 31717016 _____ C:\Users\Jan\Downloads\vlc-2.2.4-win64.exe
2016-12-15 17:43 - 2016-12-15 17:43 - 00000000 ____D C:\Users\Jan\Documents\TrackMania
2016-12-15 17:35 - 2016-12-15 17:35 - 00000201 _____ C:\Users\Jan\Desktop\TrackMania Nations Forever.url
2016-12-15 17:33 - 2016-12-15 17:34 - 00000000 ____D C:\Users\Jan\AppData\LocalLow\Unity
2016-12-15 17:33 - 2016-12-15 17:33 - 03249480 _____ (Unity Technologies ApS) C:\Users\Jan\Downloads\UnityWebPlayer.exe
2016-12-14 16:19 - 2016-12-09 11:11 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-14 16:19 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-14 16:19 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-14 16:19 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-14 16:19 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2016-12-14 16:19 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-12-14 16:19 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-14 16:19 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-14 16:19 - 2016-12-09 10:57 - 01852720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-14 16:19 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-12-14 16:19 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-12-14 16:19 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-14 16:19 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-14 16:19 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-12-14 16:19 - 2016-12-09 10:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2016-12-14 16:19 - 2016-12-09 10:36 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2016-12-14 16:19 - 2016-12-09 10:34 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-14 16:19 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-14 16:19 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-14 16:19 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-12-14 16:19 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-14 16:19 - 2016-12-09 10:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-14 16:19 - 2016-12-09 10:30 - 19413504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-14 16:19 - 2016-12-09 10:30 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-14 16:19 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-14 16:19 - 2016-12-09 10:27 - 19417088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-14 16:19 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-14 16:19 - 2016-12-09 10:20 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-14 16:19 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-12-14 16:19 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-14 16:19 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-12-14 16:19 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-12-14 16:19 - 2016-12-09 10:17 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-14 16:19 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-14 16:19 - 2016-12-09 10:16 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-14 16:19 - 2016-12-09 10:16 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-12-14 16:19 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-12-14 16:19 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-14 16:19 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-12-14 16:19 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-12-14 16:19 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-14 16:19 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-14 16:15 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-12-14 16:15 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-12-14 16:15 - 2016-12-09 11:32 - 07816032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-12-14 16:15 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2016-12-14 16:15 - 2016-12-09 11:29 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-12-14 16:15 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-12-14 16:15 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-12-14 16:15 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-12-14 16:15 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-12-14 16:15 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-12-14 16:15 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-12-14 16:15 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-12-14 16:15 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-12-14 16:15 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-12-14 16:15 - 2016-12-09 11:18 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-12-14 16:15 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 16:15 - 2016-12-09 11:15 - 01988560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-12-14 16:15 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-12-14 16:15 - 2016-12-09 11:14 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-12-14 16:15 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-12-14 16:15 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-12-14 16:15 - 2016-12-09 10:47 - 22563328 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-12-14 16:15 - 2016-12-09 10:45 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-12-14 16:15 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-12-14 16:15 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-12-14 16:15 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-12-14 16:15 - 2016-12-09 10:37 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-12-14 16:15 - 2016-12-09 10:37 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-12-14 16:15 - 2016-12-09 10:36 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-12-14 16:15 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-12-14 16:15 - 2016-12-09 10:36 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-12-14 16:15 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-12-14 16:15 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-12-14 16:15 - 2016-12-09 10:30 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-12-14 16:15 - 2016-12-09 10:29 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-12-14 16:15 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-12-14 16:15 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-12-14 16:15 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-12-14 16:15 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-14 16:15 - 2016-12-09 10:26 - 08129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-12-14 16:15 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-12-14 16:15 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-12-14 16:15 - 2016-12-09 10:22 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-12-14 16:15 - 2016-12-09 10:22 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-12-14 16:15 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-12-14 16:15 - 2016-12-09 10:21 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-12-14 16:15 - 2016-12-09 10:21 - 01512960 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-12-14 16:15 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-12-14 16:15 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-12-14 16:15 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-12-14 16:15 - 2016-12-09 10:19 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-12-14 16:15 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-12-14 16:15 - 2016-09-15 17:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-12-14 16:14 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-12-14 16:14 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-12-14 16:14 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-12-14 16:14 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-12-14 16:14 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-12-14 16:14 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2016-12-14 16:14 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2016-12-14 16:14 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2016-12-14 16:14 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2016-12-14 16:14 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2016-12-14 16:14 - 2016-12-09 11:09 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2016-12-14 16:14 - 2016-12-09 10:38 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 16:14 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-12-14 16:14 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-12-14 16:14 - 2016-12-09 10:26 - 01692672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-12-14 16:14 - 2016-12-09 10:24 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-12-14 16:14 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-12-14 16:14 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-12-12 20:35 - 2016-12-12 20:35 - 00000000 ____D C:\Users\Jan\Downloads\Jack
2016-12-12 20:26 - 2016-12-12 20:34 - 60555129 _____ C:\Users\Jan\Downloads\Jack.rar
2016-12-10 16:01 - 2016-12-10 16:01 - 00134029 _____ C:\Users\Jan\Downloads\Faktura_16049.pdf
2016-12-10 15:12 - 2016-11-11 11:22 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-12-10 15:12 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-12-10 15:12 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2016-12-10 15:12 - 2016-11-11 11:14 - 02482280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-12-10 15:12 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-12-10 15:12 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-12-10 15:12 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-12-10 15:12 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-12-10 15:12 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-12-10 15:12 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-12-10 15:12 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\migisol.dll
2016-12-10 15:12 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-12-10 15:12 - 2016-11-11 11:03 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-12-10 15:12 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-12-10 15:12 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-12-10 15:12 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-12-10 15:12 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-12-10 15:12 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-12-10 15:12 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-12-10 15:12 - 2016-11-11 11:00 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-12-10 15:12 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-12-10 15:12 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-12-10 15:12 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-12-10 15:12 - 2016-11-11 10:57 - 22224480 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-12-10 15:12 - 2016-11-11 10:57 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-12-10 15:12 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-12-10 15:12 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00418952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2016-12-10 15:12 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2016-12-10 15:12 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfaudiocnv.dll
2016-12-10 15:12 - 2016-11-11 10:55 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-12-10 15:12 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-12-10 15:12 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-12-10 15:12 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-12-10 15:12 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-12-10 15:12 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-12-10 15:12 - 2016-11-11 10:29 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-12-10 15:12 - 2016-11-11 10:28 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-12-10 15:12 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CbtBackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-12-10 15:12 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2016-12-10 15:12 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-12-10 15:12 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-10 15:12 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReportingCSP.dll
2016-12-10 15:12 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\modem.sys
2016-12-10 15:12 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2016-12-10 15:12 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-12-10 15:12 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-12-10 15:12 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-12-10 15:12 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-12-10 15:12 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\EAMProgressHandler.dll
2016-12-10 15:12 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-12-10 15:12 - 2016-11-11 10:22 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-12-10 15:12 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\EDPCleanup.exe
2016-12-10 15:12 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-12-10 15:12 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-12-10 15:12 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-12-10 15:12 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-12-10 15:12 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-12-10 15:12 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-12-10 15:12 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2016-12-10 15:12 - 2016-11-11 10:18 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-12-10 15:12 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-12-10 15:12 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-12-10 15:12 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2016-12-10 15:12 - 2016-11-11 10:17 - 01002496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-12-10 15:12 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-12-10 15:12 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll
2016-12-10 15:12 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-12-10 15:12 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2016-12-10 15:12 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-12-10 15:12 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-12-10 15:12 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-12-10 15:12 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-12-10 15:12 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-12-10 15:12 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2016-12-10 15:12 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-12-10 15:12 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-12-10 15:12 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2016-12-10 15:12 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-12-10 15:12 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2016-12-10 15:12 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-12-10 15:12 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-12-10 15:12 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-12-10 15:12 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2016-12-10 15:12 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-12-10 15:12 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-12-10 15:12 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-12-10 15:12 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-12-10 15:12 - 2016-11-11 10:05 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-12-10 15:12 - 2016-11-11 10:04 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-12-10 15:12 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 02317312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-12-10 15:12 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-12-10 15:12 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-12-10 15:12 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-12-10 15:12 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-12-10 15:12 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-12-10 15:12 - 2016-11-11 09:39 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-12-10 15:12 - 2016-11-11 09:01 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-12-10 15:12 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
2016-12-10 15:12 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2016-12-10 15:12 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-12-10 15:12 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-12-10 15:12 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\migisol.dll
2016-12-10 15:12 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2016-12-10 15:12 - 2016-11-11 08:49 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-12-10 15:12 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-12-10 15:12 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-12-10 15:12 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-12-10 15:12 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-10 15:12 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 03892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00382784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2016-12-10 15:12 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfaudiocnv.dll
2016-12-10 15:12 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-12-10 15:12 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2016-12-10 15:12 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-12-10 15:12 - 2016-11-11 08:28 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-12-10 15:12 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-10 15:12 - 2016-11-11 08:27 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-12-10 15:12 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgentc.exe
2016-12-10 15:12 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-12-10 15:12 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-12-10 15:12 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-10 15:12 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-12-10 15:12 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-10 15:12 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-12-10 15:12 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2016-12-10 15:12 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-12-10 15:12 - 2016-11-11 08:21 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-12-10 15:12 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-10 15:12 - 2016-11-11 08:20 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-12-10 15:12 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-12-10 15:12 - 2016-11-11 08:20 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2016-12-10 15:12 - 2016-11-11 08:19 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-12-10 15:12 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2016-12-10 15:12 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2016-12-10 15:12 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-12-10 15:12 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2016-12-10 15:12 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2016-12-10 15:12 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2016-12-10 15:12 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-12-10 15:12 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-12-10 15:12 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2016-12-10 15:12 - 2016-11-11 08:13 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-12-10 15:12 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
2016-12-10 15:12 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-12-10 15:12 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2016-12-10 15:12 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-12-10 15:12 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-12-10 15:12 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-12-10 15:12 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-12-10 15:12 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxclu.dll
2016-12-10 15:12 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-12-10 15:12 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-12-10 15:12 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-12-10 15:12 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-12-10 15:12 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-12-10 15:01 - 2016-12-10 15:02 - 08576448 _____ (Piriform Ltd) C:\Users\Jan\Downloads\ccsetup524.exe
2016-12-10 14:39 - 2016-12-10 15:00 - 384927256 _____ C:\Users\Jan\Downloads\Outlander-Cizinka-02x02-Not-in-Scotland-anymore-cz-titulky-ve-filmu.avi.crdownload
2016-12-08 19:17 - 2016-12-08 19:17 - 00000000 ____D C:\Users\Jan\Desktop\priznani
2016-12-07 18:09 - 2016-12-07 18:09 - 02926320 _____ C:\Users\Jan\Downloads\IMG_0021.JPG
2016-12-07 18:03 - 2016-12-07 19:56 - 1792829698 _____ C:\Users\Jan\Downloads\Creed-CZ-dabing-(2015).avi
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-03 19:16 - 2016-05-04 17:13 - 00002658 _____ C:\Users\Public\Desktop\Skype.lnk
2017-01-03 17:38 - 2016-02-13 14:14 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-01-02 17:22 - 2016-05-04 14:32 - 00000000 ___RD C:\Users\Jan\OneDrive
2017-01-02 16:54 - 2016-05-25 18:52 - 00000000 ___RD C:\Users\Jan\Disk Google
2017-01-02 16:10 - 2016-05-05 03:07 - 00000000 ____D C:\Users\Jan\Documents\Assassin's Creed Unity
2016-12-24 12:42 - 2016-10-30 19:23 - 00000000 ____D C:\Users\Jan\Documents\Euro Truck Simulator 2
2016-12-24 11:12 - 2016-10-22 19:15 - 00000000 ____D C:\Users\Jan\Documents\Max Payne 2 Savegames
2016-12-10 15:06 - 2016-07-16 12:42 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-12-08 19:18 - 2016-05-05 19:42 - 00000000 ___RD C:\Users\Jan\Documents\Scanned Documents
2016-12-07 18:31 - 2016-12-03 11:22 - 51178016 _____ C:\Users\Jan\Downloads\K-Lite_Codec_Pack_1265_Mega.exe
Some files in TEMP:
====================
C:\Users\Jan\AppData\Local\Temp\libeay32.dll
C:\Users\Jan\AppData\Local\Temp\msvcr120.dll
C:\Users\Jan\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-01-02 17:12
==================== End of FRST.txt ============================
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
Otevřte poznámkový blok a zkopírujte do něj:
Uložte do C:\Users\Jan\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
C:\Users\Jan\AppData\Local\Temp
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu- Pc si dělá co chce
Fix result of Farbar Recovery Scan Tool (x64) Version: 01-01-2017
Ran by Jan (03-01-2017 21:32:03) Run:1
Running from C:\Users\Jan\Downloads
Loaded Profiles: Jan (Available Profiles: Jan)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
C:\Users\Jan\AppData\Local\Temp
EmptyTemp:
End
*****************
C:\Users\Jan\AppData\Local\Temp => moved successfully
=========== EmptyTemp: ==========
BITS transfer queue => 1997712 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 21146114 B
Java, Flash, Steam htmlcache => 1037 B
Windows/system/drivers => 6487553 B
Edge => 60008211 B
Chrome => 0 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => -656 B
Jan => 36871 B
RecycleBin => 0 B
EmptyTemp: => 85.5 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 21:32:05 ====
Ran by Jan (03-01-2017 21:32:03) Run:1
Running from C:\Users\Jan\Downloads
Loaded Profiles: Jan (Available Profiles: Jan)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
C:\Users\Jan\AppData\Local\Temp
EmptyTemp:
End
*****************
C:\Users\Jan\AppData\Local\Temp => moved successfully
=========== EmptyTemp: ==========
BITS transfer queue => 1997712 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 21146114 B
Java, Flash, Steam htmlcache => 1037 B
Windows/system/drivers => 6487553 B
Edge => 60008211 B
Chrome => 0 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => -656 B
Jan => 36871 B
RecycleBin => 0 B
EmptyTemp: => 85.5 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 21:32:05 ====
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu- Pc si dělá co chce
Momentálně to fičí, budu to sledovat, protože před smazáním to taky jelo v pohodě, ale z toho se to zbláznilo a nešlo na nic kliknout. Složky se samy otevíraly a nešlo vůbec myší pohybovat z
oknem a při tažení myší se vše otevíralo.
Každopádně moc, moc děkuji a kdyby nastal ještě problém, tak bych se ozval

oknem a při tažení myší se vše otevíralo.
Každopádně moc, moc děkuji a kdyby nastal ještě problém, tak bych se ozval
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
OK, zatím není zač. Nechám to tu otevřené.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu- Pc si dělá co chce
Zdravím, prosím o kontrolu, do PC se mi zase něco dostalo, mění se mi sama tapeta plochy. Ikony jsou rozházené a stejné příznaky, jako před 14 dny : /
Logfile of random's system information tool 1.14 (written by random/random)
Run by Jan at 2017-01-25 20:25:37
Microsoft Windows 10 Pro
System drive C: has 16 GB (14%) free of 114 GB
Total RAM: 8139 MB (75% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:25:39, on 25.01.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe
C:\Program Files (x86)\GlassWire\GWIdlMon.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\GlassWire\GlassWire.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\Program Files\trend micro\Jan_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [AVGUI.exe] "C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe" /nogui
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [GlassWire] "C:\Program Files (x86)\GlassWire\glasswire.exe" -hide
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Jan\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVG Antivirus - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
O23 - Service: AVG Firewall Service (AVG Firewall) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\afwServ.exe
O23 - Service: avgbIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GlassWire Control Service (GlassWire) - SecureMix LLC - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Bitdefender Product Agent Service (ProductAgentService) - Bitdefender - C:\Program Files\Bitdefender Agent\ProductAgentService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 12 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8831 bytes
======Enumerating Processes======
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"C:\Program Files\Bitdefender Agent\ProductAgentService.exe"
"C:\Program Files (x86)\GlassWire\GWCtlSrv.exe"
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\taskhostw.exe
"C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe" -boot
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:2364
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\GlassWire\GWIdlMon.exe" --cookie 4471060974603 --port 26887
C:\WINDOWS\Explorer.EXE
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\fontdrvhost.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
"C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\GlassWire\GlassWire.exe" -hide
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x3a4
C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
"C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe" /nogui
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1612.3341.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer12_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer12_Logfile.log
"c:\program files (x86)\teamviewer\TeamViewer_Desktop.exe" --IPCport 5939
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jan\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AVG Driver Updater Scan.job - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe scheduled
C:\WINDOWS\tasks\AVG Driver Updater Startup.job - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe -boot
C:\WINDOWS\system32\tasks\Antivirus Emergency Update - C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe
C:\WINDOWS\system32\tasks\avast! Emergency Update - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\system32\tasks\AVG Driver Updater Scan - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe scheduled
C:\WINDOWS\system32\tasks\AVG Driver Updater Startup - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe -boot
C:\WINDOWS\system32\tasks\AVG EUpdate Task - avgsetupx.exe /eu
C:\WINDOWS\system32\tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 - C:\Program Files\Bitdefender Agent\WatchDog.exe repair
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1485287275 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe Reboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - %systemroot%\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\addons.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\extensions.json
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
=========Google Chrome=========
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.3.19
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.3
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 0 Avast Online Security 12.0.163
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.1
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.1
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.5
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5516.1005.0.3
Homepage:
default_search_provider.search_url:
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage: http://www.seznam.cz/?clid=12454
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [2017-01-09 239672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-01-24 1517280]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-12-20 27262432]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-01-19 2881824]
"GlassWire"=C:\Program Files (x86)\GlassWire\glasswire.exe [2016-12-26 5788112]
"cz.seznam.software.autoupdate"=C:\Users\Jan\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"AVGUI.exe"=C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe [2017-01-24 9523496]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2017-01-24 9080768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-24 22:36:47 ----D---- C:\%LOCALAPPDATA%
2017-01-24 22:17:56 ----D---- C:\WINDOWS\Minidump
2017-01-24 20:46:24 ----D---- C:\Program Files (x86)\Google
2017-01-24 20:46:18 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2017-01-24 20:41:09 ----D---- C:\Users\Jan\AppData\Roaming\AVAST Software
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswvmm.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswsp.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswsnx.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2017-01-24 20:40:49 ----A---- C:\WINDOWS\system32\aswBoot.exe
2017-01-24 20:40:46 ----A---- C:\WINDOWS\avastSS.scr
2017-01-24 20:39:01 ----D---- C:\Program Files\AVAST Software
2017-01-24 20:38:49 ----D---- C:\ProgramData\AVAST Software
2017-01-24 17:07:59 ----D---- C:\Program Files\Bitdefender Antivirus Free
2017-01-24 17:07:56 ----D---- C:\Users\Jan\AppData\Roaming\QuickScan
2017-01-24 16:55:56 ----D---- C:\ProgramData\Bitdefender Agent
2017-01-24 16:55:56 ----D---- C:\ProgramData\BDLogging
2017-01-24 16:55:56 ----AD---- C:\Program Files\Bitdefender Agent
2017-01-24 15:51:12 ----A---- C:\WINDOWS\system32\drivers\SWDUMon.sys
2017-01-24 15:51:10 ----AD---- C:\Program Files (x86)\AVG Driver Updater
2017-01-24 15:44:00 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2017-01-24 15:40:07 ----D---- C:\Users\Jan\AppData\Roaming\AVG
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgVmm.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgStm.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgSP.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgsnx.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgRvrt.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgRdr2.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgNetSec.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgMonFlt.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgHwid.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbuniva.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbloga.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbidsha.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbidsdrivera.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbdiska.sys
2017-01-24 15:39:26 ----A---- C:\WINDOWS\system32\avgBoot.exe
2017-01-24 15:36:58 ----D---- C:\Program Files (x86)\AVG
2017-01-24 15:36:08 ----HD---- C:\ProgramData\Common Files
2017-01-24 15:36:08 ----AD---- C:\ProgramData\Avg
2017-01-22 13:16:38 ----D---- C:\Program Files (x86)\Seznam.cz
2017-01-22 13:16:19 ----D---- C:\Users\Jan\AppData\Roaming\Seznam.cz
2017-01-22 13:16:12 ----D---- C:\Program Files (x86)\Microsoft Office
2017-01-22 13:16:03 ----D---- C:\Program Files (x86)\MSECache
2017-01-21 15:48:10 ----A---- C:\WINDOWS\system32\drivers\gwdrv.sys
2017-01-21 15:48:09 ----D---- C:\ProgramData\GlassWire
2017-01-21 15:47:56 ----D---- C:\Program Files (x86)\GlassWire
2017-01-14 20:57:25 ----D---- C:\Users\Jan\AppData\Roaming\Milestone
2017-01-06 15:20:23 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2017-01-06 15:20:23 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2017-01-06 15:20:23 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2017-01-06 15:20:23 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\d3dx10.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2017-01-04 13:48:11 ----D---- C:\Program Files (x86)\Steam
2017-01-04 13:03:46 ----D---- C:\Users\Jan\AppData\Roaming\Mozilla
2017-01-04 13:03:34 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-01-04 13:03:33 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-01-03 20:51:46 ----D---- C:\FRST
2017-01-03 20:47:47 ----D---- C:\Users\Jan\AppData\Roaming\TeamViewer
2017-01-03 20:47:42 ----AD---- C:\Program Files (x86)\TeamViewer
2017-01-03 19:16:09 ----RD---- C:\Program Files (x86)\Skype
2017-01-03 19:16:07 ----D---- C:\ProgramData\Skype
2017-01-03 12:36:57 ----D---- C:\Users\Jan\AppData\Roaming\Macromedia
2017-01-03 12:23:15 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2017-01-03 12:21:34 ----D---- C:\WINDOWS\system32\MRT
2017-01-03 12:21:32 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-01-03 12:17:20 ----D---- C:\rsit
2017-01-03 12:17:20 ----D---- C:\Program Files\trend micro
2017-01-02 17:23:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-02 17:22:20 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2017-01-02 17:21:37 ----D---- C:\ProgramData\Microsoft OneDrive
2017-01-02 17:20:12 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2017-01-02 17:20:06 ----SHD---- C:\Recovery
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Šablony
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Plocha
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Nabídka Start
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Dokumenty
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Data aplikací
2017-01-02 17:17:05 ----ASH---- C:\hiberfil.sys
2017-01-02 17:15:02 ----SD---- C:\Users\Jan\AppData\Roaming\Microsoft
2017-01-02 17:14:03 ----D---- C:\ProgramData\USOShared
2017-01-02 17:13:56 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-01-02 17:13:54 ----D---- C:\ProgramData\NVIDIA
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-01-02 17:13:46 ----D---- C:\WINDOWS\SoftwareDistribution
2017-01-02 17:13:36 ----D---- C:\ProgramData\NVIDIA Corporation
2017-01-02 17:13:33 ----AS---- C:\WINDOWS\bootstat.dat
2017-01-02 17:13:32 ----D---- C:\Program Files\NVIDIA Corporation
2017-01-02 17:13:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-01-02 17:13:08 ----HD---- C:\Program Files\Uninstall Information
2017-01-02 17:12:50 ----D---- C:\WINDOWS\system32\SleepStudy
2017-01-02 17:12:48 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-01-02 17:12:14 ----D---- C:\WINDOWS\InfusedApps
2017-01-02 17:12:10 ----DC---- C:\WINDOWS\Panther
2017-01-02 17:12:06 ----D---- C:\Windows.old
2017-01-02 17:12:00 ----D---- C:\WINDOWS\system32\Microsoft
2017-01-02 17:12:00 ----D---- C:\WINDOWS\ServiceProfiles
2017-01-02 17:11:28 ----D---- C:\WINDOWS\Setup
2017-01-02 17:10:33 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-01-02 17:10:33 ----D---- C:\WINDOWS\OCR
2017-01-02 17:10:32 ----D---- C:\Program Files\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files\MSBuild
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\MSBuild
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfi005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfh005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfd005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfc005.dat
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\WCN
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\cs
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\0409
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\winrm
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\WCN
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\slmgr
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\cs
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\0409
2017-01-02 17:10:14 ----D---- C:\WINDOWS\en-US
2017-01-02 17:10:14 ----D---- C:\WINDOWS\DigitalLocker
2017-01-02 17:10:14 ----D---- C:\WINDOWS\cs-CZ
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfi009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfh009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfd009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfc009.dat
2017-01-02 17:09:10 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\opencl.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\NOISE.DAT
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\msclmd.dll
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\dssec.dat
2017-01-02 17:08:06 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat
2017-01-02 17:08:06 ----ASH---- C:\Program Files\desktop.ini
2017-01-02 17:08:06 ----ASH---- C:\Program Files (x86)\desktop.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\win.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\system.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\fonts\desktop.ini
2017-01-02 17:08:05 ----SHD---- C:\WINDOWS\Installer
2017-01-02 17:08:05 ----SHD---- C:\WINDOWS\BitLockerDiscoveryVolumeContents
2017-01-02 17:08:05 ----SHD---- C:\Program Files\Windows Sidebar
2017-01-02 17:08:05 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\dsc
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-01-02 17:08:05 ----SD---- C:\ProgramData\Microsoft
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Media
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Fonts
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\PrintDialog
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\Offline Web Pages
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\MiracastView
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-01-02 17:08:05 ----RD---- C:\Program Files\Windows Defender
2017-01-02 17:08:05 ----HD---- C:\WINDOWS\ELAMBKUP
2017-01-02 17:08:05 ----HD---- C:\ProgramData
2017-01-02 17:08:05 ----HD---- C:\Program Files\WindowsApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Web
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Vss
2017-01-02 17:08:05 ----D---- C:\WINDOWS\twain_32
2017-01-02 17:08:05 ----D---- C:\WINDOWS\tracing
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Temp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\TAPI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\SMI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InstallShield
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\DriverStore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\config
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\catroot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\syswow64
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemResources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\winevt
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WDI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spool
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ProximityToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\PointOfService
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ja-jp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ias
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\drivers\etc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\DDFs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\catroot2
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\appraiser
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\System
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SKB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SchCache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ShellExperiences
2017-01-02 17:08:05 ----D---- C:\WINDOWS\security
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Resources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\rescache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\RemotePackages
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Registration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Provisioning
2017-01-02 17:08:05 ----D---- C:\WINDOWS\prefetch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PolicyDefinitions
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PLA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Performance
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ModemLogs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Logs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\LiveKernelReports
2017-01-02 17:08:05 ----D---- C:\WINDOWS\L2Schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Help
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Globalization
2017-01-02 17:08:05 ----D---- C:\WINDOWS\GameBarPresenceWriter
2017-01-02 17:08:05 ----D---- C:\WINDOWS\diagnostics
2017-01-02 17:08:05 ----D---- C:\WINDOWS\debug
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Cursors
2017-01-02 17:08:05 ----D---- C:\WINDOWS\CSC
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Branding
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\bcastdvr
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppReadiness
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppPatch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\appcompat
2017-01-02 17:08:05 ----D---- C:\WINDOWS\addins
2017-01-02 17:08:05 ----D---- C:\ProgramData\USOPrivate
2017-01-02 17:08:05 ----D---- C:\ProgramData\SoftwareDistribution
2017-01-02 17:08:05 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-01-02 17:08:05 ----D---- C:\ProgramData\Comms
2017-01-02 17:08:05 ----D---- C:\Program Files\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Defender Advanced Threat Protection
2017-01-02 17:08:05 ----D---- C:\Program Files\Internet Explorer
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\System
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\Services
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Defender
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Internet Explorer
2017-01-02 17:08:04 ----RSD---- C:\WINDOWS\assembly
2017-01-02 17:08:04 ----RD---- C:\WINDOWS\Microsoft.NET
2017-01-02 17:08:04 ----D---- C:\WINDOWS\system32\Sysprep
2017-01-02 17:08:04 ----D---- C:\Program Files\Common Files\microsoft shared
2017-01-02 17:08:04 ----D---- C:\PerfLogs
2017-01-02 17:07:55 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-01-02 17:07:54 ----D---- C:\WINDOWS\system32\drivers
2017-01-02 17:07:25 ----D---- C:\WINDOWS\INF
2017-01-02 17:04:19 ----D---- C:\WINDOWS\CbsTemp
2017-01-02 17:03:49 ----RD---- C:\Users
2017-01-02 17:03:49 ----RD---- C:\Program Files (x86)
2017-01-02 17:03:49 ----RD---- C:\Program Files
2017-01-02 17:03:49 ----D---- C:\WINDOWS\WinSxS
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\SMI
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\DriverStore
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\config
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\CatRoot
2017-01-02 17:03:49 ----D---- C:\WINDOWS\System32
2017-01-02 17:03:49 ----D---- C:\WINDOWS\servicing
2017-01-02 17:03:49 ----D---- C:\Windows
2017-01-02 17:03:49 ----D---- C:\Program Files\Common Files
2017-01-02 17:03:49 ----D---- C:\Program Files (x86)\Common Files
2017-01-02 16:41:17 ----A---- C:\bdlog.txt
2017-01-02 15:01:40 ----D---- C:\AdwCleaner
======List of files/folders modified in the last 1 month======
2017-01-24 15:40:40 ----SHD---- C:\System Volume Information
2017-01-04 13:51:44 ----D---- C:\Logs
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2017-01-24 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2017-01-24 293352]
R0 avgbidsh;avgbidsh; C:\WINDOWS\system32\drivers\avgbidsha.sys [2017-01-24 192096]
R0 avgblog;avgblog; C:\WINDOWS\system32\drivers\avgbloga.sys [2017-01-24 336920]
R0 avgbuniv;avgbuniv; C:\WINDOWS\system32\drivers\avgbuniva.sys [2017-01-24 50848]
R0 avgRvrt;avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [2017-01-24 75664]
R0 avgVmm;avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [2017-01-24 311472]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2017-01-24 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2017-01-24 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2017-01-24 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2017-01-24 513632]
R1 avgbdisk;avgbdisk; C:\WINDOWS\system32\drivers\avgbdiska.sys [2017-01-24 165624]
R1 avgbidsdriver;avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdrivera.sys [2017-01-24 311592]
R1 avgNetSec;avgNetSec; C:\WINDOWS\system32\drivers\avgNetSec.sys [2017-01-24 456936]
R1 avgRdr;avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [2017-01-24 101624]
R1 avgSnx;avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [2017-01-24 992488]
R1 avgSP;avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [2017-01-24 555152]
R1 gwdrv;GlassWire Driver; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [2015-05-29 33152]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2017-01-24 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2017-01-24 163416]
R2 avgMonFlt;avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [2017-01-24 127072]
R2 avgStm;avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [2017-01-24 163512]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R3 iaLPSS2_UART2;@oem22.inf,%iaLPSS2_UART2.SVCDESC%;Intel(R) Serial IO UART Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [2016-01-22 281400]
R3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
R3 KillerEth;@oem12.inf,%RIVET.Service.DispName%;NDIS Miniport Driver for Killer e2400 PCI-E Ehternet Controller; C:\WINDOWS\System32\drivers\e24w10x64.sys [2015-10-07 156744]
R3 NVHDA;@oem19.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2016-08-26 240704]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys [2016-08-26 13754936]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2016-09-15 127328]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2016-07-16 157024]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2016-07-16 141152]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2017-01-24 37656]
S3 avgHwid;avgHwid; C:\WINDOWS\system32\drivers\avgHwid.sys [2017-01-24 39288]
S3 dg_ssudbus;@oem25.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2016-04-24 129152]
S3 dtlitescsibus;@oem11.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-05-05 30264]
S3 dtliteusbbus;@oem3.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-05-05 47672]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2_GPIO2;@oem0.inf,%iaLPSS2_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [2016-01-22 83768]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2016-07-16 179040]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 NvStUSB;@oem10.inf,%NvStUSB.SvcDesc%;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2016-08-26 486968]
S3 NVSWCFilter;@oem4.inf,%NVSWCFilter.SvcDesc%;NVIDIA SHIELD Wireless Controller Trackpad Service; C:\WINDOWS\System32\drivers\nvswcfilter.sys [2016-03-17 28344]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudqcfilter;@oem25.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2016-04-24 64640]
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2017-01-24 25608]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\WINDOWS\system32\drivers\tsusbhub.sys [2016-07-16 123392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-01-24 197128]
R2 AVG Antivirus;AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [2017-01-24 260080]
R2 AVG Firewall;AVG Firewall Service; C:\Program Files (x86)\AVG\Antivirus\afwServ.exe [2017-01-24 275616]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2017-01-09 1255272]
R2 CDPUserSvc_34431;CDPUserSvc_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 GlassWire;GlassWire Control Service; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [2016-12-26 4393936]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_34431;Hostitel synchronizace_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 ProductAgentService;Bitdefender Product Agent Service; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [2016-11-21 1104544]
R2 TeamViewer;TeamViewer 12; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-12-15 10351856]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2017-01-09 5907216]
R3 PimIndexMaintenanceSvc_34431;Data kontaktů_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\TimeBrokerServer.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 avgbIDSAgent;avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [2017-01-24 6183576]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_34431;Služba zasílání zpráv_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-12-09 172488]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2016-09-15 2889896]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-01-19 1464096]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2016-09-15 823136]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll
-----------------EOF-----------------
Logfile of random's system information tool 1.14 (written by random/random)
Run by Jan at 2017-01-25 20:25:37
Microsoft Windows 10 Pro
System drive C: has 16 GB (14%) free of 114 GB
Total RAM: 8139 MB (75% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:25:39, on 25.01.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe
C:\Program Files (x86)\GlassWire\GWIdlMon.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\GlassWire\GlassWire.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\Program Files\trend micro\Jan_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [AVGUI.exe] "C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe" /nogui
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [GlassWire] "C:\Program Files (x86)\GlassWire\glasswire.exe" -hide
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Jan\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AVG Antivirus - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
O23 - Service: AVG Firewall Service (AVG Firewall) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\afwServ.exe
O23 - Service: avgbIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GlassWire Control Service (GlassWire) - SecureMix LLC - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Bitdefender Product Agent Service (ProductAgentService) - Bitdefender - C:\Program Files\Bitdefender Agent\ProductAgentService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 12 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8831 bytes
======Enumerating Processes======
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"C:\Program Files\Bitdefender Agent\ProductAgentService.exe"
"C:\Program Files (x86)\GlassWire\GWCtlSrv.exe"
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\taskhostw.exe
"C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe" -boot
"C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe" /TUStart /pid:2364
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\GlassWire\GWIdlMon.exe" --cookie 4471060974603 --port 26887
C:\WINDOWS\Explorer.EXE
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\fontdrvhost.exe
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
"C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\GlassWire\GlassWire.exe" -hide
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
C:\WINDOWS\system32\AUDIODG.EXE 0x3a4
C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
"C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe" /nogui
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1612.3341.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer12_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer12_Logfile.log
"c:\program files (x86)\teamviewer\TeamViewer_Desktop.exe" --IPCport 5939
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jan\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\AVG Driver Updater Scan.job - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe scheduled
C:\WINDOWS\tasks\AVG Driver Updater Startup.job - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe -boot
C:\WINDOWS\system32\tasks\Antivirus Emergency Update - C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe
C:\WINDOWS\system32\tasks\avast! Emergency Update - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\system32\tasks\AVG Driver Updater Scan - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe scheduled
C:\WINDOWS\system32\tasks\AVG Driver Updater Startup - C:\Program Files (x86)\AVG Driver Updater\AVG Driver Updater.exe -boot
C:\WINDOWS\system32\tasks\AVG EUpdate Task - avgsetupx.exe /eu
C:\WINDOWS\system32\tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 - C:\Program Files\Bitdefender Agent\WatchDog.exe repair
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1485287275 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe Reboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - %systemroot%\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\applicationdata\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
=========Mozilla firefox=========
ProfilePath - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\addons.json
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\extensions.json
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Seznam lištička - extension - {ea614400-e918-4741-9a97-7a972ff7c30b} - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\qzsoh7co.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
=========Google Chrome=========
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bgjpfhpjcgdppjbgnpnjllokbmcdllig 1 Seznam Lištička - Email 1.3.19
Extension blmojkbhnkkphngknkmgccmlenfaelkd 1 Seznam Lištička - Slovník 1.4.3
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 0 Avast Online Security 12.0.163
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.1
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.1
Extension olfeabkoenfaoljndfecamgilllcpiak 1 Seznam Lištička - Rychlá volba 1.8.5
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5516.1005.0.3
Homepage:
default_search_provider.search_url:
C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage: http://www.seznam.cz/?clid=12454
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [2017-01-09 239672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-01-24 1517280]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-12-20 27262432]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-01-19 2881824]
"GlassWire"=C:\Program Files (x86)\GlassWire\glasswire.exe [2016-12-26 5788112]
"cz.seznam.software.autoupdate"=C:\Users\Jan\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Jan\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"AVGUI.exe"=C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe [2017-01-24 9523496]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2017-01-24 9080768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2017-01-24 22:36:47 ----D---- C:\%LOCALAPPDATA%
2017-01-24 22:17:56 ----D---- C:\WINDOWS\Minidump
2017-01-24 20:46:24 ----D---- C:\Program Files (x86)\Google
2017-01-24 20:46:18 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2017-01-24 20:41:09 ----D---- C:\Users\Jan\AppData\Roaming\AVAST Software
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswvmm.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswsp.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswsnx.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2017-01-24 20:40:52 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2017-01-24 20:40:49 ----A---- C:\WINDOWS\system32\aswBoot.exe
2017-01-24 20:40:46 ----A---- C:\WINDOWS\avastSS.scr
2017-01-24 20:39:01 ----D---- C:\Program Files\AVAST Software
2017-01-24 20:38:49 ----D---- C:\ProgramData\AVAST Software
2017-01-24 17:07:59 ----D---- C:\Program Files\Bitdefender Antivirus Free
2017-01-24 17:07:56 ----D---- C:\Users\Jan\AppData\Roaming\QuickScan
2017-01-24 16:55:56 ----D---- C:\ProgramData\Bitdefender Agent
2017-01-24 16:55:56 ----D---- C:\ProgramData\BDLogging
2017-01-24 16:55:56 ----AD---- C:\Program Files\Bitdefender Agent
2017-01-24 15:51:12 ----A---- C:\WINDOWS\system32\drivers\SWDUMon.sys
2017-01-24 15:51:10 ----AD---- C:\Program Files (x86)\AVG Driver Updater
2017-01-24 15:44:00 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2017-01-24 15:40:07 ----D---- C:\Users\Jan\AppData\Roaming\AVG
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgVmm.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgStm.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgSP.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgsnx.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgRvrt.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgRdr2.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgNetSec.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgMonFlt.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgHwid.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbuniva.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbloga.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbidsha.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbidsdrivera.sys
2017-01-24 15:39:29 ----A---- C:\WINDOWS\system32\drivers\avgbdiska.sys
2017-01-24 15:39:26 ----A---- C:\WINDOWS\system32\avgBoot.exe
2017-01-24 15:36:58 ----D---- C:\Program Files (x86)\AVG
2017-01-24 15:36:08 ----HD---- C:\ProgramData\Common Files
2017-01-24 15:36:08 ----AD---- C:\ProgramData\Avg
2017-01-22 13:16:38 ----D---- C:\Program Files (x86)\Seznam.cz
2017-01-22 13:16:19 ----D---- C:\Users\Jan\AppData\Roaming\Seznam.cz
2017-01-22 13:16:12 ----D---- C:\Program Files (x86)\Microsoft Office
2017-01-22 13:16:03 ----D---- C:\Program Files (x86)\MSECache
2017-01-21 15:48:10 ----A---- C:\WINDOWS\system32\drivers\gwdrv.sys
2017-01-21 15:48:09 ----D---- C:\ProgramData\GlassWire
2017-01-21 15:47:56 ----D---- C:\Program Files (x86)\GlassWire
2017-01-14 20:57:25 ----D---- C:\Users\Jan\AppData\Roaming\Milestone
2017-01-06 15:20:23 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2017-01-06 15:20:23 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2017-01-06 15:20:23 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2017-01-06 15:20:23 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2017-01-06 15:20:22 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2017-01-06 15:20:21 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2017-01-06 15:20:20 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2017-01-06 15:20:19 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2017-01-06 15:20:18 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2017-01-06 15:20:17 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2017-01-06 15:20:16 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2017-01-06 15:20:15 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2017-01-06 15:20:14 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2017-01-06 15:20:13 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2017-01-06 15:20:12 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2017-01-06 15:20:11 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2017-01-06 15:20:10 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2017-01-06 15:20:09 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2017-01-06 15:20:08 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2017-01-06 15:20:07 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2017-01-06 15:20:06 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2017-01-06 15:20:05 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2017-01-06 15:20:04 ----A---- C:\WINDOWS\system32\d3dx10.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2017-01-06 15:20:03 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2017-01-06 15:20:02 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2017-01-06 15:19:59 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2017-01-06 15:19:58 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2017-01-06 15:19:57 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2017-01-04 13:48:11 ----D---- C:\Program Files (x86)\Steam
2017-01-04 13:03:46 ----D---- C:\Users\Jan\AppData\Roaming\Mozilla
2017-01-04 13:03:34 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-01-04 13:03:33 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-01-03 20:51:46 ----D---- C:\FRST
2017-01-03 20:47:47 ----D---- C:\Users\Jan\AppData\Roaming\TeamViewer
2017-01-03 20:47:42 ----AD---- C:\Program Files (x86)\TeamViewer
2017-01-03 19:16:09 ----RD---- C:\Program Files (x86)\Skype
2017-01-03 19:16:07 ----D---- C:\ProgramData\Skype
2017-01-03 12:36:57 ----D---- C:\Users\Jan\AppData\Roaming\Macromedia
2017-01-03 12:23:15 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2017-01-03 12:21:34 ----D---- C:\WINDOWS\system32\MRT
2017-01-03 12:21:32 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-01-03 12:17:20 ----D---- C:\rsit
2017-01-03 12:17:20 ----D---- C:\Program Files\trend micro
2017-01-02 17:23:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-01-02 17:22:20 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2017-01-02 17:21:37 ----D---- C:\ProgramData\Microsoft OneDrive
2017-01-02 17:20:12 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2017-01-02 17:20:06 ----SHD---- C:\Recovery
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Šablony
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Plocha
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Nabídka Start
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Dokumenty
2017-01-02 17:20:06 ----SHD---- C:\ProgramData\Data aplikací
2017-01-02 17:17:05 ----ASH---- C:\hiberfil.sys
2017-01-02 17:15:02 ----SD---- C:\Users\Jan\AppData\Roaming\Microsoft
2017-01-02 17:14:03 ----D---- C:\ProgramData\USOShared
2017-01-02 17:13:56 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-01-02 17:13:54 ----D---- C:\ProgramData\NVIDIA
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-01-02 17:13:47 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-01-02 17:13:46 ----D---- C:\WINDOWS\SoftwareDistribution
2017-01-02 17:13:36 ----D---- C:\ProgramData\NVIDIA Corporation
2017-01-02 17:13:33 ----AS---- C:\WINDOWS\bootstat.dat
2017-01-02 17:13:32 ----D---- C:\Program Files\NVIDIA Corporation
2017-01-02 17:13:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-01-02 17:13:08 ----HD---- C:\Program Files\Uninstall Information
2017-01-02 17:12:50 ----D---- C:\WINDOWS\system32\SleepStudy
2017-01-02 17:12:48 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-01-02 17:12:14 ----D---- C:\WINDOWS\InfusedApps
2017-01-02 17:12:10 ----DC---- C:\WINDOWS\Panther
2017-01-02 17:12:06 ----D---- C:\Windows.old
2017-01-02 17:12:00 ----D---- C:\WINDOWS\system32\Microsoft
2017-01-02 17:12:00 ----D---- C:\WINDOWS\ServiceProfiles
2017-01-02 17:11:28 ----D---- C:\WINDOWS\Setup
2017-01-02 17:10:33 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-01-02 17:10:33 ----D---- C:\WINDOWS\OCR
2017-01-02 17:10:32 ----D---- C:\Program Files\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files\MSBuild
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-01-02 17:10:32 ----D---- C:\Program Files (x86)\MSBuild
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfi005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfh005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfd005.dat
2017-01-02 17:10:22 ----A---- C:\WINDOWS\system32\perfc005.dat
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\winrm
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\WCN
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2017-01-02 17:10:16 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\cs
2017-01-02 17:10:15 ----D---- C:\WINDOWS\SYSWOW64\0409
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\winrm
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\WCN
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\slmgr
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\en
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\en-US
2017-01-02 17:10:15 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\cs
2017-01-02 17:10:14 ----D---- C:\WINDOWS\system32\0409
2017-01-02 17:10:14 ----D---- C:\WINDOWS\en-US
2017-01-02 17:10:14 ----D---- C:\WINDOWS\DigitalLocker
2017-01-02 17:10:14 ----D---- C:\WINDOWS\cs-CZ
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfi009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfh009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfd009.dat
2017-01-02 17:09:17 ----A---- C:\WINDOWS\system32\perfc009.dat
2017-01-02 17:09:10 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\opencl.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\NOISE.DAT
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\msclmd.dll
2017-01-02 17:08:11 ----A---- C:\WINDOWS\SYSWOW64\dssec.dat
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\NOISE.DAT
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\msclmd.dll
2017-01-02 17:08:08 ----A---- C:\WINDOWS\system32\dssec.dat
2017-01-02 17:08:06 ----RSH---- C:\WINDOWS\fonts\StaticCache.dat
2017-01-02 17:08:06 ----ASH---- C:\Program Files\desktop.ini
2017-01-02 17:08:06 ----ASH---- C:\Program Files (x86)\desktop.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\win.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\system.ini
2017-01-02 17:08:06 ----A---- C:\WINDOWS\fonts\desktop.ini
2017-01-02 17:08:05 ----SHD---- C:\WINDOWS\Installer
2017-01-02 17:08:05 ----SHD---- C:\WINDOWS\BitLockerDiscoveryVolumeContents
2017-01-02 17:08:05 ----SHD---- C:\Program Files\Windows Sidebar
2017-01-02 17:08:05 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\SYSWOW64\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Nui
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\F12
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\dsc
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\DiagSvcs
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\system32\Configuration
2017-01-02 17:08:05 ----SD---- C:\WINDOWS\Downloaded Program Files
2017-01-02 17:08:05 ----SD---- C:\ProgramData\Microsoft
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Media
2017-01-02 17:08:05 ----RSD---- C:\WINDOWS\Fonts
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\PrintDialog
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\Offline Web Pages
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\MiracastView
2017-01-02 17:08:05 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-01-02 17:08:05 ----RD---- C:\Program Files\Windows Defender
2017-01-02 17:08:05 ----HD---- C:\WINDOWS\ELAMBKUP
2017-01-02 17:08:05 ----HD---- C:\ProgramData
2017-01-02 17:08:05 ----HD---- C:\Program Files\WindowsApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Web
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Vss
2017-01-02 17:08:05 ----D---- C:\WINDOWS\twain_32
2017-01-02 17:08:05 ----D---- C:\WINDOWS\tracing
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Temp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\TAPI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\SMI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InstallShield
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\DriverStore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\config
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\catroot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SYSWOW64\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\syswow64
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemResources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SystemApps
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-TW
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-HK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\zh-CN
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinMetadata
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\winevt
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\WDI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\wbem
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\uk-UA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\tr-TR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\th-TH
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Tasks
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sv-SE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sru
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sppui
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\spool
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sl-SI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\sk-SK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\setup
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ru-RU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ro-RO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\restore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Recovery
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\RasToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ras
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-PT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pt-BR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ProximityToast
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\PointOfService
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\pl-PL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\oobe
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nl-NL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\networklist
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\NDF
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\nb-NO
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MUI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MsDtc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MSDRM
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migwiz
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\MailContactsCalendarSync
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Macromed
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lv-LV
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\lt-LT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\LogFiles
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Licenses
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ko-KR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ja-jp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\it-IT
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Ipmi
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\inetsrv
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\icsxml
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ias
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hu-HU
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\hr-HR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\he-IL
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicyUsers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\GroupPolicy
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\FxsTmp
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-FR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fr-CA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\fi-FI
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\et-EE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-MX
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\es-ES
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-US
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\en-GB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\el-GR
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\drivers\etc
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\downlevel
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Dism
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\de-DE
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\DDFs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\da-DK
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\cs-CZ
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Com
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\catroot2
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Bthprops
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\bg-BG
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\ar-SA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\appraiser
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AppLocker
2017-01-02 17:08:05 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2017-01-02 17:08:05 ----D---- C:\WINDOWS\System
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech_OneCore
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Speech
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SKB
2017-01-02 17:08:05 ----D---- C:\WINDOWS\schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\SchCache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ShellExperiences
2017-01-02 17:08:05 ----D---- C:\WINDOWS\security
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Resources
2017-01-02 17:08:05 ----D---- C:\WINDOWS\rescache
2017-01-02 17:08:05 ----D---- C:\WINDOWS\RemotePackages
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Registration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Provisioning
2017-01-02 17:08:05 ----D---- C:\WINDOWS\prefetch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PolicyDefinitions
2017-01-02 17:08:05 ----D---- C:\WINDOWS\PLA
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Performance
2017-01-02 17:08:05 ----D---- C:\WINDOWS\ModemLogs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Migration
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Logs
2017-01-02 17:08:05 ----D---- C:\WINDOWS\LiveKernelReports
2017-01-02 17:08:05 ----D---- C:\WINDOWS\L2Schemas
2017-01-02 17:08:05 ----D---- C:\WINDOWS\InputMethod
2017-01-02 17:08:05 ----D---- C:\WINDOWS\IME
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Help
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Globalization
2017-01-02 17:08:05 ----D---- C:\WINDOWS\GameBarPresenceWriter
2017-01-02 17:08:05 ----D---- C:\WINDOWS\diagnostics
2017-01-02 17:08:05 ----D---- C:\WINDOWS\debug
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Cursors
2017-01-02 17:08:05 ----D---- C:\WINDOWS\CSC
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Branding
2017-01-02 17:08:05 ----D---- C:\WINDOWS\Boot
2017-01-02 17:08:05 ----D---- C:\WINDOWS\bcastdvr
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppReadiness
2017-01-02 17:08:05 ----D---- C:\WINDOWS\AppPatch
2017-01-02 17:08:05 ----D---- C:\WINDOWS\appcompat
2017-01-02 17:08:05 ----D---- C:\WINDOWS\addins
2017-01-02 17:08:05 ----D---- C:\ProgramData\USOPrivate
2017-01-02 17:08:05 ----D---- C:\ProgramData\SoftwareDistribution
2017-01-02 17:08:05 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-01-02 17:08:05 ----D---- C:\ProgramData\Comms
2017-01-02 17:08:05 ----D---- C:\Program Files\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files\Windows Defender Advanced Threat Protection
2017-01-02 17:08:05 ----D---- C:\Program Files\Internet Explorer
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\System
2017-01-02 17:08:05 ----D---- C:\Program Files\Common Files\Services
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\WindowsPowerShell
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Portable Devices
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows NT
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Media Player
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Mail
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Windows Defender
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-01-02 17:08:05 ----D---- C:\Program Files (x86)\Internet Explorer
2017-01-02 17:08:04 ----RSD---- C:\WINDOWS\assembly
2017-01-02 17:08:04 ----RD---- C:\WINDOWS\Microsoft.NET
2017-01-02 17:08:04 ----D---- C:\WINDOWS\system32\Sysprep
2017-01-02 17:08:04 ----D---- C:\Program Files\Common Files\microsoft shared
2017-01-02 17:08:04 ----D---- C:\PerfLogs
2017-01-02 17:07:55 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-01-02 17:07:54 ----D---- C:\WINDOWS\system32\drivers
2017-01-02 17:07:25 ----D---- C:\WINDOWS\INF
2017-01-02 17:04:19 ----D---- C:\WINDOWS\CbsTemp
2017-01-02 17:03:49 ----RD---- C:\Users
2017-01-02 17:03:49 ----RD---- C:\Program Files (x86)
2017-01-02 17:03:49 ----RD---- C:\Program Files
2017-01-02 17:03:49 ----D---- C:\WINDOWS\WinSxS
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\SMI
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\DriverStore
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\config
2017-01-02 17:03:49 ----D---- C:\WINDOWS\system32\CatRoot
2017-01-02 17:03:49 ----D---- C:\WINDOWS\System32
2017-01-02 17:03:49 ----D---- C:\WINDOWS\servicing
2017-01-02 17:03:49 ----D---- C:\Windows
2017-01-02 17:03:49 ----D---- C:\Program Files\Common Files
2017-01-02 17:03:49 ----D---- C:\Program Files (x86)\Common Files
2017-01-02 16:41:17 ----A---- C:\bdlog.txt
2017-01-02 15:01:40 ----D---- C:\AdwCleaner
======List of files/folders modified in the last 1 month======
2017-01-24 15:40:40 ----SHD---- C:\System Volume Information
2017-01-04 13:51:44 ----D---- C:\Logs
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2017-01-24 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2017-01-24 293352]
R0 avgbidsh;avgbidsh; C:\WINDOWS\system32\drivers\avgbidsha.sys [2017-01-24 192096]
R0 avgblog;avgblog; C:\WINDOWS\system32\drivers\avgbloga.sys [2017-01-24 336920]
R0 avgbuniv;avgbuniv; C:\WINDOWS\system32\drivers\avgbuniva.sys [2017-01-24 50848]
R0 avgRvrt;avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [2017-01-24 75664]
R0 avgVmm;avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [2017-01-24 311472]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2017-01-24 37144]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2017-01-24 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2017-01-24 969184]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2017-01-24 513632]
R1 avgbdisk;avgbdisk; C:\WINDOWS\system32\drivers\avgbdiska.sys [2017-01-24 165624]
R1 avgbidsdriver;avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdrivera.sys [2017-01-24 311592]
R1 avgNetSec;avgNetSec; C:\WINDOWS\system32\drivers\avgNetSec.sys [2017-01-24 456936]
R1 avgRdr;avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [2017-01-24 101624]
R1 avgSnx;avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [2017-01-24 992488]
R1 avgSP;avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [2017-01-24 555152]
R1 gwdrv;GlassWire Driver; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [2015-05-29 33152]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2017-01-24 108816]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2017-01-24 163416]
R2 avgMonFlt;avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [2017-01-24 127072]
R2 avgStm;avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [2017-01-24 163512]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R3 iaLPSS2_UART2;@oem22.inf,%iaLPSS2_UART2.SVCDESC%;Intel(R) Serial IO UART Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_UART2.sys [2016-01-22 281400]
R3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
R3 KillerEth;@oem12.inf,%RIVET.Service.DispName%;NDIS Miniport Driver for Killer e2400 PCI-E Ehternet Controller; C:\WINDOWS\System32\drivers\e24w10x64.sys [2015-10-07 156744]
R3 NVHDA;@oem19.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2016-08-26 240704]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispiwu.inf_amd64_9ff5ab165faead52\nvlddmkm.sys [2016-08-26 13754936]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2016-09-15 127328]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2016-07-16 157024]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2016-07-16 141152]
S3 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2017-01-24 37656]
S3 avgHwid;avgHwid; C:\WINDOWS\system32\drivers\avgHwid.sys [2017-01-24 39288]
S3 dg_ssudbus;@oem25.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\System32\drivers\ssudbus.sys [2016-04-24 129152]
S3 dtlitescsibus;@oem11.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-05-05 30264]
S3 dtliteusbbus;@oem3.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-05-05 47672]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-08-06 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2_GPIO2;@oem0.inf,%iaLPSS2_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [2016-01-22 83768]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2016-07-16 179040]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 NvStUSB;@oem10.inf,%NvStUSB.SvcDesc%;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2016-08-26 486968]
S3 NVSWCFilter;@oem4.inf,%NVSWCFilter.SvcDesc%;NVIDIA SHIELD Wireless Controller Trackpad Service; C:\WINDOWS\System32\drivers\nvswcfilter.sys [2016-03-17 28344]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudqcfilter;@oem25.inf,%ssudqcfilter.SvcDesc%;SAMSUNG Mobile USB QCRMNET Filter Driver; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [2016-04-24 64640]
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2017-01-24 25608]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\WINDOWS\system32\drivers\tsusbhub.sys [2016-07-16 123392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-01-24 197128]
R2 AVG Antivirus;AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [2017-01-24 260080]
R2 AVG Firewall;AVG Firewall Service; C:\Program Files (x86)\AVG\Antivirus\afwServ.exe [2017-01-24 275616]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2017-01-09 1255272]
R2 CDPUserSvc_34431;CDPUserSvc_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 GlassWire;GlassWire Control Service; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [2016-12-26 4393936]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-08-01 1365048]
R2 OneSyncSvc_34431;Hostitel synchronizace_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 ProductAgentService;Bitdefender Product Agent Service; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [2016-11-21 1104544]
R2 TeamViewer;TeamViewer 12; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-12-15 10351856]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2017-01-09 5907216]
R3 PimIndexMaintenanceSvc_34431;Data kontaktů_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\TimeBrokerServer.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-09-20 324224]
S3 avgbIDSAgent;avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [2017-01-24 6183576]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_34431;Služba zasílání zpráv_34431; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-12-09 172488]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2016-09-15 2889896]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-01-19 1464096]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2016-09-15 823136]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu- Pc si dělá co chce
# AdwCleaner v6.042 - Log vytvořen 26/01/2017 v 20:14:35
# Aktualizováno dne 06/01/2017 z Malwarebytes
# Databáze : 2017-01-26.2 [Server]
# Operační systém : Windows 10 Pro (X64)
# Uživatelské jméno : Jan - DESKTOP-3RABBJS
# Spuštěno z : C:\Users\Jan\Desktop\adwcleaner_6.042 (1).exe
# Mod: Skenování
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
Služba nalezena: swdumon
***** [ Složky ] *****
Nebyly nalezeny žádné škodlivé složky.
***** [ Soubory ] *****
Soubor nalezen: C:\WINDOWS\SysNative\drivers\swdumon.sys
***** [ DLL ] *****
Nebyly nalezeny žádné škodlivé DLL.
***** [ WMI ] *****
Nebyly nalezeny žádné škodlivé klíče.
***** [ Zástupci ] *****
Žádný infikovaný zástupce nenalezen.
***** [ Naplánované úlohy ] *****
Žádná nebezpečná úloha nenalezena.
***** [ Registry ] *****
Klíč nalezen: HKLM\SOFTWARE\SlimWare Utilities Inc
***** [ Internetové prohlížeče ] *****
Nebyly nalezeny žádné škodlivé položky prohlížeče Firefox.
Nebyly nalezeny žádné škodlivé položky prohlížeče Chromium.
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1429 Bajty] - [02/01/2017 15:02:56]
C:\AdwCleaner\AdwCleaner[C2].txt - [1164 Bajty] - [03/01/2017 19:18:45]
C:\AdwCleaner\AdwCleaner[C3].txt - [1385 Bajty] - [21/01/2017 15:44:17]
C:\AdwCleaner\AdwCleaner[C4].txt - [2007 Bajty] - [24/01/2017 16:56:47]
C:\AdwCleaner\AdwCleaner[C5].txt - [1835 Bajty] - [24/01/2017 17:00:56]
C:\AdwCleaner\AdwCleaner[C6].txt - [2052 Bajty] - [24/01/2017 20:33:53]
C:\AdwCleaner\AdwCleaner[S0].txt - [1679 Bajty] - [02/01/2017 15:02:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [1511 Bajty] - [03/01/2017 19:18:16]
C:\AdwCleaner\AdwCleaner[S2].txt - [3341 Bajty] - [04/01/2017 13:45:46]
C:\AdwCleaner\AdwCleaner[S3].txt - [1732 Bajty] - [21/01/2017 15:43:55]
C:\AdwCleaner\AdwCleaner[S4].txt - [2107 Bajty] - [24/01/2017 16:56:39]
C:\AdwCleaner\AdwCleaner[S5].txt - [2021 Bajty] - [24/01/2017 17:00:49]
C:\AdwCleaner\AdwCleaner[S6].txt - [2167 Bajty] - [24/01/2017 17:02:37]
C:\AdwCleaner\AdwCleaner[S7].txt - [2238 Bajty] - [24/01/2017 20:33:45]
C:\AdwCleaner\AdwCleaner[S8].txt - [2230 Bajty] - [26/01/2017 20:14:35]
########## EOF - C:\AdwCleaner\AdwCleaner[S8].txt - [2303 Bajty] ##########
# Aktualizováno dne 06/01/2017 z Malwarebytes
# Databáze : 2017-01-26.2 [Server]
# Operační systém : Windows 10 Pro (X64)
# Uživatelské jméno : Jan - DESKTOP-3RABBJS
# Spuštěno z : C:\Users\Jan\Desktop\adwcleaner_6.042 (1).exe
# Mod: Skenování
# Podpora : https://www.malwarebytes.com/support
***** [ Služby ] *****
Služba nalezena: swdumon
***** [ Složky ] *****
Nebyly nalezeny žádné škodlivé složky.
***** [ Soubory ] *****
Soubor nalezen: C:\WINDOWS\SysNative\drivers\swdumon.sys
***** [ DLL ] *****
Nebyly nalezeny žádné škodlivé DLL.
***** [ WMI ] *****
Nebyly nalezeny žádné škodlivé klíče.
***** [ Zástupci ] *****
Žádný infikovaný zástupce nenalezen.
***** [ Naplánované úlohy ] *****
Žádná nebezpečná úloha nenalezena.
***** [ Registry ] *****
Klíč nalezen: HKLM\SOFTWARE\SlimWare Utilities Inc
***** [ Internetové prohlížeče ] *****
Nebyly nalezeny žádné škodlivé položky prohlížeče Firefox.
Nebyly nalezeny žádné škodlivé položky prohlížeče Chromium.
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1429 Bajty] - [02/01/2017 15:02:56]
C:\AdwCleaner\AdwCleaner[C2].txt - [1164 Bajty] - [03/01/2017 19:18:45]
C:\AdwCleaner\AdwCleaner[C3].txt - [1385 Bajty] - [21/01/2017 15:44:17]
C:\AdwCleaner\AdwCleaner[C4].txt - [2007 Bajty] - [24/01/2017 16:56:47]
C:\AdwCleaner\AdwCleaner[C5].txt - [1835 Bajty] - [24/01/2017 17:00:56]
C:\AdwCleaner\AdwCleaner[C6].txt - [2052 Bajty] - [24/01/2017 20:33:53]
C:\AdwCleaner\AdwCleaner[S0].txt - [1679 Bajty] - [02/01/2017 15:02:30]
C:\AdwCleaner\AdwCleaner[S1].txt - [1511 Bajty] - [03/01/2017 19:18:16]
C:\AdwCleaner\AdwCleaner[S2].txt - [3341 Bajty] - [04/01/2017 13:45:46]
C:\AdwCleaner\AdwCleaner[S3].txt - [1732 Bajty] - [21/01/2017 15:43:55]
C:\AdwCleaner\AdwCleaner[S4].txt - [2107 Bajty] - [24/01/2017 16:56:39]
C:\AdwCleaner\AdwCleaner[S5].txt - [2021 Bajty] - [24/01/2017 17:00:49]
C:\AdwCleaner\AdwCleaner[S6].txt - [2167 Bajty] - [24/01/2017 17:02:37]
C:\AdwCleaner\AdwCleaner[S7].txt - [2238 Bajty] - [24/01/2017 20:33:45]
C:\AdwCleaner\AdwCleaner[S8].txt - [2230 Bajty] - [26/01/2017 20:14:35]
########## EOF - C:\AdwCleaner\AdwCleaner[S8].txt - [2303 Bajty] ##########
- Rudy
- Site Admin

- Příspěvky: 119672
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu- Pc si dělá co chce
Teď dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?