Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-08-2017
Ran by Tom (administrator) on DESKTOP-N90IN5D (04-09-2017 23:41:59)
Running from C:\Users\Tom\Desktop
Loaded Profiles: Tom (Available Profiles: Tom)
Platform: Windows 10 Home Version 1703 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Crystal Rich Ltd) C:\Users\Tom\USBSafelyRemovePortable\App\USBSafelyRemove\USBSRService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\avp.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\avpui.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
() C:\Windows\System\cm106eye.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(Crystal Rich Ltd) C:\Users\Tom\USBSafelyRemovePortable\App\USBSafelyRemove\USBSafelyRemove.exe
(DonationCoder) C:\Program Files (x86)\ScreenshotCaptor\ScreenshotCaptor.exe
(Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Program Files (x86)\DFX\dfx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
() C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(LG Electronics Inc.) C:\Program Files (x86)\LG Software\LG Smart Share\Update\SmartShareTray.exe
(LG Electronics Inc.) C:\Program Files (x86)\LG Software\LG Smart Share\DMS\SmartShareDMS.exe
(LG Electronics Inc.) C:\Program Files (x86)\LG Software\LG Smart Share\DMR\SmartShareDMR.exe
(LG Electronics Inc.) C:\Program Files (x86)\LG Software\LG Smart Share\DMC\SmartShare.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [Cm106Sound] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm106.dll,CMICtrlWnd
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [456328 2017-06-07] (Power Software Ltd)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle Corporation)
HKLM-x32\...\Run: [FxSound Enhancer] => C:\Program Files (x86)\DFX\dfx.exe [1665528 2017-08-29] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4014136 2017-07-15] (Tonec Inc.)
HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\Run: [USB Safely Remove] => C:\Users\Tom\USBSafelyRemovePortable\App\USBSafelyRemove\USBSafelyRemove.exe [6528096 2017-06-03] (Crystal Rich Ltd)
HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\Run: [Screenshot Captor] => C:\Program Files (x86)\ScreenshotCaptor\ScreenshotCaptor.exe [9426192 2017-05-03] (DonationCoder)
HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\MountPoints2: E - "E:\CorelLauncher.exe"
AppInit_DLLs: C:\Windows\system32\DriverStore\FileRepository\nvami.inf_amd64_33462f669491c2ff\nvinitx.dll => C:\Windows\system32\DriverStore\FileRepository\nvami.inf_amd64_33462f669491c2ff\nvinitx.dll [196480 2017-08-22] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\system32\DriverStore\FileRepository\nvami.inf_amd64_33462f669491c2ff\nvinit.dll => C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_33462f669491c2ff\nvinit.dll [169872 2017-08-22] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Vyhledat aktualizace.lnk [2017-08-28]
ShortcutTarget: Vyhledat aktualizace.lnk -> C:\Program Files (x86)\Common Files\PCTV Systems\WebUpdater\WebUpdater.exe (PCTV Systems)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{2a35d7cc-5d66-438d-8d7b-23a49898b1ca}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{2f89dc31-7a4c-4055-ad3b-19ec61eeb65c}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{f2e58bb9-b1a2-427f-b4e2-8d55d293ad6f}: [DhcpNameServer] 8.8.8.8 8.8.4.4
Internet Explorer:
==================
HKU\S-1-5-21-2998713869-107399431-670359513-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10427__170829__yaie
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2017-07-12] (Internet Download Manager, Tonec Inc.)
BHO: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\x64\IEExt\ie_plugin.dll [2017-05-06] (AO Kaspersky Lab)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2017-07-12] (Internet Download Manager, Tonec Inc.)
BHO-x32: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\IEExt\ie_plugin.dll [2017-05-06] (AO Kaspersky Lab)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\ssv.dll [2017-08-29] (Oracle Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-08-29] (Oracle Corporation)
Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\x64\IEExt\ie_plugin.dll [2017-05-06] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\IEExt\ie_plugin.dll [2017-05-06] (AO Kaspersky Lab)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-04-11] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-04-11] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-04-11] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-04-11] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Tom\AppData\Roaming\Mozilla\Firefox\Profiles\3i61fio3.default [2017-09-04]
FF NewTab: Mozilla\Firefox\Profiles\3i61fio3.default -> hxxps://search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10427__170829__yaff
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\3i61fio3.default -> Yahoo®
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\3i61fio3.default -> Yahoo®
FF Homepage: Mozilla\Firefox\Profiles\3i61fio3.default ->
www.seznam.cz
FF Extension: (No Name) - C:\Users\Tom\AppData\Roaming\Mozilla\Firefox\Profiles\3i61fio3.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2017-08-31]
FF Extension: (Firefox Screenshots) - C:\Users\Tom\AppData\Roaming\Mozilla\Firefox\Profiles\3i61fio3.default\features\{f9847410-97c0-4d9a-90b5-b089b2fac9c7}\
screenshots@mozilla.org.xpi [2017-09-03]
FF HKLM\...\Firefox\Extensions: [
light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2017-08-28]
FF HKLM-x32\...\Firefox\Extensions: [
light_plugin_F6F079488B53499DB99380A7E11A93F6@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\FFExt\light_plugin_firefox\addon.xpi
FF HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\Firefox\Extensions: [
mozilla_cc3@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi
FF Extension: (No Name) - C:\Program Files (x86)\Internet Download Manager\idmmzcc3.xpi [2017-07-14]
FF HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\SeaMonkey\Extensions: [
mozilla_cc@internetdownloadmanager.com] - C:\Users\Tom\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Tom\AppData\Roaming\IDM\idmmzcc5 [2017-08-29] [not signed]
FF HKU\S-1-5-21-2998713869-107399431-670359513-1001\...\SeaMonkey\Extensions: [
mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-01-26]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_26_0_0_151.dll [2017-08-29] ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_151.dll [2017-08-29] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.)
FF Plugin-x32: @cuminas.jp/DjVuPlugin -> C:\Program Files (x86)\Cuminas\Document Express DjVu Plug-in\npdjvu.dll [2014-09-04] (Cuminas Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-08-29] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-08-29] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-08-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-08-29] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2017-07-14]
CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2017-07-14]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-07] (ELAN Microelectronics Corp.)
S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab)
S3 KSDE1.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544 2016-06-28] (AO Kaspersky Lab)
S2 Local Synchronization Service; C:\Windows\lsservice.exe [12288 2017-09-03] (Microsoft Corporation) [File not signed]
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes)
S2 Microsoft Windows System Service; C:\Windows\mwss.exe [11776 2017-08-29] (Microsoft Corporation) [File not signed]
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-08-22] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-08-22] (NVIDIA Corporation)
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc)
R2 USBSafelyRemoveService; C:\Users\Tom\USBSafelyRemovePortable\App\USBSafelyRemove\USBSRService.exe [1731168 2017-06-03] (Crystal Rich Ltd)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 azvusb; C:\Windows\System32\drivers\azvusb.sys [54784 2009-08-24] (AzureWave Technologies, Inc.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab)
S3 DFX11_1; C:\Windows\system32\drivers\dfx11_1x64.sys [28008 2017-06-19] (Windows (R) Win 7 DDK provider)
R3 DFX12; C:\Windows\system32\drivers\dfx12x64.sys [39048 2017-06-19] (Windows (R) Win 7 DDK provider)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77376 2017-08-30] ()
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-07] (AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [86352 2016-06-15] (AO Kaspersky Lab)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [78216 2016-05-31] (AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [28792 2016-03-31] (AO Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [197312 2017-08-28] (AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\drivers\klhk.sys [520152 2017-08-28] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1021624 2017-08-28] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [57424 2017-05-06] (AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [52136 2016-05-19] (AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [45488 2016-05-31] (AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\drivers\kltap.sys [52152 2016-06-07] (The OpenVPN Project)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [229288 2017-08-28] (AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\Windows\System32\Drivers\klupd_klif_kimul.sys [87584 2017-08-29] (AO Kaspersky Lab)
R3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [251656 2017-08-28] (AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [112912 2017-08-28] (AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [173144 2017-08-28] (AO Kaspersky Lab)
S4 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [85320 2016-06-18] (AO Kaspersky Lab)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [136416 2017-05-06] (AO Kaspersky Lab)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [199640 2017-08-28] (AO Kaspersky Lab)
R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [188352 2017-08-30] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [101784 2017-09-03] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [45472 2017-09-03] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [253856 2017-09-03] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [93600 2017-09-04] (Malwarebytes)
R3 mod7700; C:\Windows\system32\DRIVERS\mod7700.sys [1077840 2010-11-19] (DiBcom SA)
R3 MODRC; C:\Windows\System32\drivers\modrc.sys [24272 2010-11-19] (DiBcom S.A.)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_33462f669491c2ff\nvlddmkm.sys [15600248 2017-08-22] (NVIDIA Corporation)
R0 nvpciflt; C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_33462f669491c2ff\nvpciflt.sys [47224 2017-08-22] (NVIDIA Corporation)
S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
R3 USBMULCD; C:\Windows\system32\drivers\CM10664.sys [4120576 2015-07-31] (C-Media Electronics Inc)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (MBB)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-04 23:41 - 2017-09-04 23:42 - 000019976 _____ C:\Users\Tom\Desktop\FRST.txt
2017-09-04 23:41 - 2017-09-04 23:41 - 000000000 ____D C:\FRST
2017-09-04 23:40 - 2017-09-04 23:40 - 002395648 _____ (Farbar) C:\Users\Tom\Desktop\FRST64.exe
2017-09-04 17:21 - 2017-09-04 17:21 - 000349985 _____ C:\Users\Tom\Desktop\Kejř.pdf
2017-09-04 08:01 - 2017-09-04 08:01 - 000002049 _____ C:\Users\Public\Desktop\ABBYY PDF Transformer+.lnk
2017-09-04 08:01 - 2017-09-04 08:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY PDF Transformer+
2017-09-04 08:01 - 2017-09-04 08:01 - 000000000 ____D C:\Program Files (x86)\ABBYY PDF Transformer+
2017-09-04 08:01 - 2014-11-13 15:40 - 000058936 _____ (Tracker Software Products (Canada) Ltd.) C:\Windows\system32\pxc50pma.dll
2017-09-03 23:48 - 2017-09-03 23:48 - 127759288 _____ (Kaspersky Lab ZAO) C:\Users\Tom\Desktop\KVRT_2.exe
2017-09-03 23:47 - 2017-09-03 23:47 - 000478392 ____N (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\F958A40C.sys
2017-09-03 23:47 - 2017-09-03 23:47 - 000085600 ____N (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\70677808.sys
2017-09-03 23:47 - 2017-09-03 23:47 - 000000000 ____D C:\KVRT_Data
2017-09-03 22:58 - 2016-03-21 23:15 - 000027648 _____ (Copyright (c) Code Industry Ltd ) C:\Windows\system32\mpelocalmon.dll
2017-09-03 22:58 - 2016-03-21 23:15 - 000017920 _____ (Copyright (c) Code Industry Ltd ) C:\Windows\system32\mpelocalui.dll
2017-09-03 22:26 - 2017-09-03 22:26 - 000000000 ____D C:\Users\Tom\Desktop\nákaza
2017-09-03 21:45 - 2017-09-03 21:45 - 000012288 ___SH (Microsoft Corporation) C:\Windows\lsservice.exe
2017-09-03 21:42 - 2017-09-03 21:42 - 002012032 ___SH C:\Windows\KernelModule.exe
2017-09-03 20:33 - 2017-09-03 20:33 - 000000631 _____ C:\Users\Public\Desktop\DUSK Episode 1.lnk
2017-09-03 20:33 - 2017-09-03 20:33 - 000000000 ____D C:\Users\Tom\AppData\LocalLow\David Szymanski
2017-09-03 19:41 - 2017-09-04 18:32 - 000001548 _____ C:\Users\Tom\Desktop\EZCD.lnk
2017-09-03 19:40 - 2017-09-03 19:40 - 000000964 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZ CD Audio Converter.lnk
2017-09-03 19:40 - 2017-09-03 19:40 - 000000000 ____D C:\Users\Tom\AppData\Local\EZ CD Audio Converter
2017-09-03 19:40 - 2017-09-03 19:40 - 000000000 ____D C:\ProgramData\EZ CD Audio Converter
2017-09-03 19:40 - 2017-09-03 19:40 - 000000000 ____D C:\Program Files\EZ CD Audio Converter
2017-09-03 19:06 - 2017-09-03 19:06 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-09-01 09:06 - 2017-09-01 09:06 - 000000000 ____D C:\Users\Tom\wall
2017-09-01 07:15 - 2017-09-01 07:15 - 000000000 ____D C:\Users\Tom\AppData\Roaming\DivX
2017-08-31 18:45 - 2017-08-31 18:45 - 000000000 ____D C:\Users\Tom\AppData\Roaming\AMAX Interactive
2017-08-30 23:08 - 2017-08-30 23:08 - 004922400 _____ (AO Kaspersky Lab) C:\Users\Tom\Desktop\tdsskiller.exe
2017-08-30 19:00 - 2017-09-03 22:51 - 000000000 ____D C:\Users\Tom\AppData\Roaming\GlarySoft
2017-08-30 12:46 - 2017-08-30 12:46 - 000077376 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-08-30 12:20 - 2017-09-04 17:33 - 000093600 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-08-30 12:20 - 2017-09-03 22:56 - 000253856 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-08-30 12:20 - 2017-09-03 22:56 - 000101784 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-08-30 12:20 - 2017-09-03 22:56 - 000045472 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-08-30 12:20 - 2017-08-30 12:46 - 000188352 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-08-30 12:20 - 2017-08-30 12:20 - 000001920 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-08-30 12:20 - 2017-08-30 12:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-08-30 12:19 - 2017-08-30 12:19 - 000000000 ____D C:\Windows\system32\Drivers\etc\BACKUP
2017-08-30 12:19 - 2017-08-30 12:19 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-08-30 12:19 - 2017-08-30 12:19 - 000000000 ____D C:\Program Files\Malwarebytes
2017-08-29 22:13 - 2017-08-29 22:13 - 000000639 _____ C:\Users\Public\Desktop\Medal of Honor - Allied Assault .lnk
2017-08-29 21:23 - 2017-08-29 21:23 - 000000000 ____D C:\Windows\SysWOW64\Adobe
2017-08-29 21:03 - 2017-08-29 21:03 - 000000000 ____D C:\Users\Tom\AppData\Local\MicrosoftEdge
2017-08-29 18:55 - 2017-08-29 18:55 - 000000946 _____ C:\Users\Tom\Desktop\Haunted Legends 11 - The Cursed Gift Collector's Edition.lnk
2017-08-29 18:55 - 2017-08-29 18:55 - 000000000 ____D C:\Users\Tom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haunted Legends 11 - The Cursed Gift Collector's Edition
2017-08-29 16:50 - 2017-08-29 16:50 - 000000000 ____D C:\Users\Tom\AppData\Roaming\WinRAR
2017-08-29 14:59 - 2017-08-29 14:59 - 000000000 ____D C:\ProgramData\GlarySoft
2017-08-29 14:18 - 2017-09-01 11:01 - 000000000 ____D C:\Users\Tom\Nová složka
2017-08-29 13:57 - 2017-08-29 13:57 - 000087584 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_kimul.sys
2017-08-29 10:33 - 2017-08-30 13:36 - 000000000 ____D C:\Users\Tom\Desktop\Ahmp1Grunds
2017-08-29 10:33 - 2017-08-29 10:34 - 000000000 ____D C:\Users\Tom\Desktop\Koblic orig
2017-08-29 10:33 - 2017-08-29 10:33 - 000000000 ____D C:\Users\Tom\Desktop\AHMP foto origo
2017-08-29 10:26 - 2017-08-29 10:26 - 000000000 ____D C:\Users\Tom\AppData\LocalLow\Adobe
2017-08-29 10:26 - 2017-08-29 10:26 - 000000000 ____D C:\Users\Tom\AppData\Local\CEF
2017-08-29 09:58 - 2017-08-29 09:58 - 000000000 ____D C:\Users\Tom\Documents\Moje palety
2017-08-29 09:57 - 2017-08-29 09:58 - 000000000 ____D C:\Users\Tom\Desktop\Corel
2017-08-29 09:53 - 2017-08-29 09:53 - 000000000 ____D C:\Program Files (x86)\gs
2017-08-29 09:53 - 2017-08-29 09:51 - 000003048 _____ C:\Users\Public\Desktop\Corel PHOTO-PAINT 2017 (64-Bit).lnk
2017-08-29 09:53 - 2017-08-29 09:51 - 000003016 _____ C:\Users\Public\Desktop\CorelDRAW 2017 (64-Bit).lnk
2017-08-29 09:52 - 2017-08-29 09:52 - 000003454 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore
2017-08-29 09:52 - 2017-08-29 09:52 - 000000000 ____D C:\Program Files\Common Files\Corel
2017-08-29 09:52 - 2017-08-29 09:52 - 000000000 ____D C:\Program Files (x86)\Corel
2017-08-29 09:51 - 2017-08-29 09:59 - 000000000 ____D C:\Users\Tom\Documents\Corel
2017-08-29 09:51 - 2017-08-29 09:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite 2017 (64-bit)
2017-08-29 09:51 - 2017-08-29 09:53 - 000000000 ____D C:\Users\Tom\AppData\Roaming\Corel
2017-08-29 09:51 - 2017-08-29 09:51 - 000000000 ____D C:\Users\Public\Documents\Corel
2017-08-29 09:50 - 2017-08-30 09:52 - 000000000 ____D C:\ProgramData\Corel
2017-08-29 09:50 - 2017-08-29 09:52 - 000000000 ____D C:\Program Files\Corel
2017-08-29 09:49 - 2017-08-29 09:49 - 000000000 ____D C:\ProgramData\UniqueId
2017-08-29 09:45 - 2017-08-29 09:45 - 000002297 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2017-08-29 09:45 - 2017-08-29 09:45 - 000000000 ____D C:\Users\Tom\AppData\LocalLow\Google
2017-08-29 09:43 - 2017-08-29 09:45 - 000000000 ____D C:\Program Files (x86)\Google
2017-08-29 09:43 - 2017-08-29 09:43 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2017-08-29 09:43 - 2017-08-29 09:43 - 000003470 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-08-29 09:43 - 2017-08-29 09:43 - 000003346 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-08-29 09:43 - 2017-08-29 09:43 - 000002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-08-29 09:43 - 2017-08-29 09:43 - 000000000 ____D C:\Users\Tom\AppData\Local\Google
2017-08-29 09:24 - 2017-08-29 09:24 - 000000000 ____D C:\Program Files (x86)\Adobe
2017-08-29 09:23 - 2017-08-29 09:43 - 000000000 ____D C:\ProgramData\Adobe
2017-08-29 09:10 - 2017-08-29 15:02 - 000000000 ____D C:\AdwCleaner
2017-08-29 09:10 - 2017-08-29 09:10 - 008185288 _____ (Malwarebytes) C:\Users\Tom\Desktop\adwcleaner_7.0.1.0.exe
2017-08-29 09:05 - 2017-09-04 20:05 - 000000000 ____D C:\Users\Tom\AppData\Roaming\BitTorrent
2017-08-29 09:05 - 2017-08-29 09:05 - 000000918 _____ C:\Users\Tom\Desktop\BitTorrent.lnk
2017-08-29 08:57 - 2017-08-29 08:57 - 000003532 _____ C:\Windows\System32\Tasks\SmartShare
2017-08-29 08:57 - 2017-08-29 08:57 - 000000000 ____D C:\ProgramData\LG Software
2017-08-29 08:56 - 2017-08-29 08:56 - 000002310 _____ C:\Users\Public\Desktop\SmartShare.lnk
2017-08-29 08:56 - 2017-08-29 08:56 - 000000000 ____D C:\Windows\SysWOW64\SSFilter
2017-08-29 08:56 - 2017-08-29 08:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Software
2017-08-29 08:56 - 2017-08-29 08:56 - 000000000 ____D C:\Program Files (x86)\LG Software
2017-08-29 08:56 - 2011-08-10 14:00 - 000378880 _____ C:\Windows\SysWOW64\av_dll.dll
2017-08-29 08:56 - 2011-08-10 14:00 - 000020992 _____ C:\Windows\SysWOW64\av_proxy.dll
2017-08-29 02:38 - 2017-09-04 18:32 - 000001089 _____ C:\Users\Tom\Desktop\PSPad.lnk
2017-08-29 02:38 - 2017-08-29 02:38 - 000000000 ____D C:\Users\Tom\AppData\Roaming\PSpad
2017-08-29 02:38 - 2017-08-29 02:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor
2017-08-29 02:38 - 2017-08-29 02:38 - 000000000 ____D C:\Program Files (x86)\PSPad editor
2017-08-29 02:27 - 2017-08-29 02:29 - 000000000 ____D C:\Windows\system32\MRT
2017-08-29 02:27 - 2017-08-29 02:27 - 140394280 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-08-29 02:27 - 2017-07-31 17:15 - 000835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-08-29 02:27 - 2017-07-31 17:15 - 000177648 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-08-29 02:24 - 2017-08-29 02:24 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2017-08-29 02:24 - 2017-08-29 02:24 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2017-08-29 02:17 - 2017-08-29 09:45 - 000000000 ____D C:\Users\Tom\AppData\Roaming\NVIDIA
2017-08-29 02:17 - 2017-08-29 02:52 - 000000000 ____D C:\Users\Tom\Documents\Picosmos
2017-08-29 02:15 - 2017-09-04 18:32 - 000001188 _____ C:\Users\Tom\Desktop\Screenshot Captor.lnk
2017-08-29 02:15 - 2017-08-29 02:15 - 000000058 _____ C:\Users\Tom\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
2017-08-29 02:15 - 2017-08-29 02:15 - 000000000 ____D C:\Users\Tom\Documents\DonationCoder
2017-08-29 02:15 - 2017-08-29 02:15 - 000000000 ____D C:\Users\Tom\AppData\Roaming\DonationCoder
2017-08-29 02:15 - 2017-08-29 02:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenshotCaptor
2017-08-29 02:15 - 2017-08-29 02:15 - 000000000 ____D C:\ProgramData\DonationCoder
2017-08-29 02:15 - 2017-08-29 02:15 - 000000000 ____D C:\Program Files (x86)\ScreenshotCaptor
2017-08-29 02:13 - 2017-08-29 02:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cuminas
2017-08-29 02:13 - 2017-08-29 02:13 - 000000000 ____D C:\Program Files (x86)\Cuminas
2017-08-29 02:11 - 2017-08-29 02:11 - 000001339 _____ C:\Users\Public\Desktop\Medieval CUE Splitter.lnk
2017-08-29 02:11 - 2017-08-29 02:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medieval Software
2017-08-29 02:11 - 2017-08-29 02:11 - 000000000 ____D C:\Program Files (x86)\Medieval Software
2017-08-29 02:10 - 2017-05-09 15:09 - 001663672 _____ (Malwarebytes) C:\Users\Tom\Desktop\JRT.exe
2017-08-29 02:05 - 2017-08-01 04:38 - 000406544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2017-08-29 02:05 - 2017-08-01 04:36 - 002165752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-08-29 02:05 - 2017-08-01 04:36 - 000750496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2017-08-29 02:05 - 2017-08-01 04:36 - 000119712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-08-29 02:05 - 2017-08-01 04:35 - 000280472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2017-08-29 02:05 - 2017-08-01 04:35 - 000133904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2017-08-29 02:05 - 2017-08-01 04:34 - 000610584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2017-08-29 02:05 - 2017-08-01 04:34 - 000359552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2017-08-29 02:05 - 2017-08-01 04:34 - 000349600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-08-29 02:05 - 2017-08-01 04:34 - 000168864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2017-08-29 02:05 - 2017-08-01 04:32 - 000820128 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2017-08-29 02:05 - 2017-08-01 04:31 - 000176024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2017-08-29 02:05 - 2017-08-01 04:20 - 002956288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-08-29 02:05 - 2017-08-01 04:20 - 000404480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2017-08-29 02:05 - 2017-08-01 04:20 - 000154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2017-08-29 02:05 - 2017-08-01 04:18 - 013841408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-08-29 02:05 - 2017-08-01 04:18 - 002199552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-08-29 02:05 - 2017-08-01 04:17 - 000034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tokenbinding.dll
2017-08-29 02:05 - 2017-08-01 04:14 - 000035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2017-08-29 02:05 - 2017-08-01 04:13 - 000364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2017-08-29 02:05 - 2017-08-01 04:13 - 000127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll
2017-08-29 02:05 - 2017-08-01 04:12 - 000229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2017-08-29 02:05 - 2017-08-01 04:09 - 000394240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2017-08-29 02:05 - 2017-08-01 04:08 - 000267264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2017-08-29 02:05 - 2017-08-01 04:07 - 005961728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2017-08-29 02:05 - 2017-08-01 04:07 - 002671616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2017-08-29 02:05 - 2017-08-01 04:06 - 000798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2017-08-29 02:05 - 2017-08-01 04:03 - 001627136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-08-29 02:05 - 2017-08-01 03:30 - 003377664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2017-08-29 02:05 - 2017-08-01 03:28 - 002516480 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswdat10.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000616448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000518144 _____ C:\Windows\SysWOW64\msjetoledb40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjtes40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstext40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
2017-08-29 02:05 - 2017-08-01 00:45 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter40.dll
2017-08-29 02:05 - 2017-07-28 07:23 - 000723360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2017-08-29 02:05 - 2017-07-28 07:20 - 000279968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2017-08-29 02:05 - 2017-07-28 07:15 - 000554400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2017-08-29 02:05 - 2017-07-28 07:10 - 002679200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-08-29 02:05 - 2017-07-28 07:07 - 000805816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2017-08-29 02:05 - 2017-07-28 06:48 - 001839872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-08-29 02:05 - 2017-07-28 06:48 - 000096648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2017-08-29 02:05 - 2017-07-28 06:47 - 002259768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreUIComponents.dll
2017-08-29 02:05 - 2017-07-28 06:40 - 005820984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2017-08-29 02:05 - 2017-07-28 06:40 - 000551200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2017-08-29 02:05 - 2017-07-28 06:38 - 004213656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2017-08-29 02:05 - 2017-07-28 06:37 - 000519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 020373408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 006761568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 005808640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 002424024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 001195760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 000866808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 000864248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 000173104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsensorgroup.dll
2017-08-29 02:05 - 2017-07-28 06:36 - 000090464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.dll
2017-08-29 02:05 - 2017-07-28 06:35 - 000988168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2017-08-29 02:05 - 2017-07-28 06:35 - 000277432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll
2017-08-29 02:05 - 2017-07-28 06:33 - 000967584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2017-08-29 02:05 - 2017-07-28 06:33 - 000583160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2017-08-29 02:05 - 2017-07-28 06:33 - 000414296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2017-08-29 02:05 - 2017-07-28 06:27 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmUcsi.sys
2017-08-29 02:05 - 2017-07-28 06:26 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2017-08-29 02:05 - 2017-07-28 06:24 - 000184832 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2017-08-29 02:05 - 2017-07-28 06:21 - 000029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmintegrator.dll
2017-08-29 02:05 - 2017-07-28 06:20 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2017-08-29 02:05 - 2017-07-28 06:20 - 000018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IpNatHlpClient.dll
2017-08-29 02:05 - 2017-07-28 06:19 - 000942592 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2017-08-29 02:05 - 2017-07-28 06:19 - 000417792 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2017-08-29 02:05 - 2017-07-28 06:19 - 000147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2017-08-29 02:05 - 2017-07-28 06:19 - 000117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryUpgrade.dll
2017-08-29 02:05 - 2017-07-28 06:18 - 000139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2017-08-29 02:05 - 2017-07-28 06:17 - 006728192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-08-29 02:05 - 2017-07-28 06:16 - 001291776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2017-08-29 02:05 - 2017-07-28 06:16 - 000470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2017-08-29 02:05 - 2017-07-28 06:16 - 000383488 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2017-08-29 02:05 - 2017-07-28 06:16 - 000135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2017-08-29 02:05 - 2017-07-28 06:15 - 005721600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2017-08-29 02:05 - 2017-07-28 06:15 - 000586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2017-08-29 02:05 - 2017-07-28 06:14 - 000368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2017-08-29 02:05 - 2017-07-28 06:14 - 000357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2017-08-29 02:05 - 2017-07-28 06:14 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
2017-08-29 02:05 - 2017-07-28 06:13 - 000932352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2017-08-29 02:05 - 2017-07-28 06:13 - 000665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2017-08-29 02:05 - 2017-07-28 06:13 - 000636416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2017-08-29 02:05 - 2017-07-28 06:12 - 000952832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2017-08-29 02:05 - 2017-07-28 06:12 - 000587776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll
2017-08-29 02:05 - 2017-07-28 06:12 - 000446464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2017-08-29 02:05 - 2017-07-28 06:12 - 000337920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2017-08-29 02:05 - 2017-07-28 06:11 - 003667456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-08-29 02:05 - 2017-07-28 06:11 - 001248768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2017-08-29 02:05 - 2017-07-28 06:10 - 001019904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2017-08-29 02:05 - 2017-07-28 06:10 - 000787456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-08-29 02:05 - 2017-07-28 06:10 - 000564224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll
2017-08-29 02:05 - 2017-07-28 06:09 - 005225984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2017-08-29 02:05 - 2017-07-28 06:08 - 004559360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2017-08-29 02:05 - 2017-07-28 06:08 - 004417024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2017-08-29 02:05 - 2017-07-28 06:08 - 004056064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2017-08-29 02:05 - 2017-07-28 06:08 - 000760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2017-08-29 02:05 - 2017-07-28 06:08 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2017-08-29 02:05 - 2017-07-28 06:07 - 002211840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2017-08-29 02:05 - 2017-07-28 06:05 - 001536512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2017-08-29 02:05 - 2017-07-28 06:05 - 000892928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe
2017-08-29 02:05 - 2017-07-28 06:05 - 000538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2017-08-29 02:05 - 2017-07-28 06:02 - 000877056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2017-08-29 02:05 - 2017-07-28 06:02 - 000853504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe
2017-08-29 02:05 - 2017-07-28 06:02 - 000077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2017-08-29 02:05 - 2017-07-07 09:20 - 002021680 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2017-08-29 02:05 - 2017-07-07 09:13 - 000336320 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2017-08-29 02:05 - 2017-07-07 09:10 - 001670496 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-08-29 02:05 - 2017-07-07 08:57 - 000626528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2017-08-29 02:05 - 2017-07-07 08:57 - 000125344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2017-08-29 02:05 - 2017-07-07 08:37 - 001339352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2017-08-29 02:05 - 2017-07-07 08:31 - 001518088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2017-08-29 02:05 - 2017-07-07 08:31 - 000129184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-08-29 02:05 - 2017-07-07 08:30 - 000949920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2017-08-29 02:05 - 2017-07-07 08:29 - 000123520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Clipc.dll
2017-08-29 02:05 - 2017-07-07 08:26 - 001529384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-08-29 02:05 - 2017-07-07 08:25 - 000035232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininitext.dll
2017-08-29 02:05 - 2017-07-07 08:22 - 000130048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2017-08-29 02:05 - 2017-07-07 08:14 - 008211968 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-08-29 02:05 - 2017-07-07 08:14 - 001448960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2017-08-29 02:05 - 2017-07-07 08:10 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapprovp.dll
2017-08-29 02:05 - 2017-07-07 08:09 - 000365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2017-08-29 02:05 - 2017-07-07 08:07 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll
2017-08-29 02:05 - 2017-07-07 08:06 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2017-08-29 02:05 - 2017-07-07 08:05 - 000502784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2017-08-29 02:05 - 2017-07-07 08:05 - 000312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2017-08-29 02:05 - 2017-07-07 08:04 - 000754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-08-29 02:05 - 2017-07-07 08:04 - 000506368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-08-29 02:05 - 2017-07-07 08:03 - 006123520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2017-08-29 02:05 - 2017-07-07 08:01 - 002859520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-08-29 02:05 - 2017-07-07 08:00 - 007596544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-08-29 02:05 - 2017-07-07 08:00 - 002588160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2017-08-29 02:05 - 2017-07-07 08:00 - 001565184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2017-08-29 02:05 - 2017-07-07 07:59 - 001494016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
2017-08-29 02:05 - 2017-07-07 07:59 - 001355264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2017-08-29 02:05 - 2017-07-07 07:58 - 002782720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2017-08-29 02:05 - 2017-07-07 07:58 - 002298368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2017-08-29 02:05 - 2017-07-07 07:58 - 001237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-08-29 02:05 - 2017-07-07 07:55 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2017-08-29 02:05 - 2017-07-07 07:55 - 000329216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2017-08-29 02:05 - 2017-07-07 07:53 - 001301504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2017-08-29 02:05 - 2017-07-07 07:53 - 000338432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2017-08-29 02:05 - 2017-06-20 08:02 - 001055648 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2017-08-29 02:05 - 2017-06-20 07:34 - 000192416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2017-08-29 02:05 - 2017-06-20 07:15 - 000455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll
2017-08-29 02:05 - 2017-06-20 07:13 - 000787712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-08-29 02:05 - 2017-06-20 07:12 - 000293376 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2017-08-29 02:05 - 2017-06-20 07:12 - 000264192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2017-08-29 02:05 - 2017-06-20 07:12 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2017-08-29 02:05 - 2017-06-20 07:10 - 000722432 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2017-08-29 02:05 - 2017-06-20 07:08 - 004469840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2017-08-29 02:05 - 2017-06-20 07:08 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2017-08-29 02:05 - 2017-06-20 07:07 - 002475136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2017-08-29 02:05 - 2017-06-20 07:07 - 000632832 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll
2017-08-29 02:05 - 2017-06-20 07:07 - 000510976 _____ (Microsoft Corporation) C:\Windows\system32\TDLMigration.dll
2017-08-29 02:05 - 2017-06-20 07:07 - 000346016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2017-08-29 02:05 - 2017-06-20 07:07 - 000138656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2017-08-29 02:05 - 2017-06-20 07:06 - 000754592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2017-08-29 02:05 - 2017-06-20 07:06 - 000278944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2017-08-29 02:05 - 2017-06-20 07:05 - 000438096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2017-08-29 02:05 - 2017-06-20 07:05 - 000364032 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2017-08-29 02:05 - 2017-06-20 07:04 - 002330520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2017-08-29 02:05 - 2017-06-20 07:04 - 001178528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2017-08-29 02:05 - 2017-06-20 07:04 - 001177600 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2017-08-29 02:05 - 2017-06-20 07:04 - 001077496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2017-08-29 02:05 - 2017-06-20 07:04 - 000181656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2017-08-29 02:05 - 2017-06-20 07:04 - 000049656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll
2017-08-29 02:05 - 2017-06-20 07:03 - 000443728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2017-08-29 02:05 - 2017-06-20 07:02 - 001121928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2017-08-29 02:05 - 2017-06-20 07:02 - 000354400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2017-08-29 02:05 - 2017-06-20 07:00 - 002597888 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2017-08-29 02:05 - 2017-06-20 06:49 - 000899072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2017-08-29 02:05 - 2017-06-20 06:49 - 000331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2017-08-29 02:05 - 2017-06-20 06:46 - 000132096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-08-29 02:05 - 2017-06-20 06:45 - 000111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.RetailInfo.dll
2017-08-29 02:05 - 2017-06-20 06:43 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ClipboardServer.dll
2017-08-29 02:05 - 2017-06-20 06:43 - 000151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredui.dll
2017-08-29 02:05 - 2017-06-20 06:43 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll
2017-08-29 02:05 - 2017-06-20 06:42 - 000641024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certca.dll
2017-08-29 02:05 - 2017-06-20 06:42 - 000387584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Payments.dll
2017-08-29 02:05 - 2017-06-20 06:42 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2017-08-29 02:05 - 2017-06-20 06:41 - 000734208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2017-08-29 02:05 - 2017-06-20 06:41 - 000646656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2017-08-29 02:05 - 2017-06-20 06:41 - 000601088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2017-08-29 02:05 - 2017-06-20 06:41 - 000433152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2017-08-29 02:05 - 2017-06-20 06:41 - 000201216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
2017-08-29 02:05 - 2017-06-20 06:40 - 000342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-08-29 02:05 - 2017-06-20 06:40 - 000247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2017-08-29 02:05 - 2017-06-20 06:40 - 000230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edputil.dll
2017-08-29 02:05 - 2017-06-20 06:40 - 000038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBrokerUI.dll
2017-08-29 02:05 - 2017-06-20 06:39 - 002814464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2017-08-29 02:05 - 2017-06-20 06:39 - 000969728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2017-08-29 02:05 - 2017-06-20 06:39 - 000646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2017-08-29 02:05 - 2017-06-20 06:39 - 000471040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2017-08-29 02:05 - 2017-06-20 06:39 - 000312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2017-08-29 02:05 - 2017-06-20 06:38 - 001451008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2017-08-29 02:05 - 2017-06-20 06:38 - 001285120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2017-08-29 02:05 - 2017-06-20 06:38 - 001171968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2017-08-29 02:05 - 2017-06-20 06:38 - 000648192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2017-08-29 02:05 - 2017-06-20 06:35 - 002679296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2017-08-29 02:05 - 2017-06-20 06:35 - 002132480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2017-08-29 02:05 - 2017-06-20 06:35 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cldapi.dll
2017-08-29 02:05 - 2017-06-20 06:34 - 002750464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2017-08-29 02:05 - 2017-06-20 06:34 - 001492480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2017-08-29 02:05 - 2017-06-20 06:31 - 000334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2017-08-29 02:05 - 2017-06-20 06:30 - 000209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2017-08-29 02:05 - 2017-06-20 06:30 - 000157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-08-29 02:05 - 2017-06-20 06:30 - 000089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2017-08-29 02:05 - 2017-06-20 06:28 - 000584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2017-08-29 02:05 - 2017-06-03 12:09 - 001003624 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2017-08-29 02:05 - 2017-06-03 12:00 - 000219040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2017-08-29 02:05 - 2017-06-03 11:59 - 001409048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2017-08-29 02:05 - 2017-06-03 11:59 - 000311200 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2017-08-29 02:05 - 2017-06-03 11:59 - 000259400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2017-08-29 02:05 - 2017-06-03 11:26 - 000266640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capauthz.dll
2017-08-29 02:05 - 2017-06-03 11:23 - 000573856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2017-08-29 02:05 - 2017-06-03 11:14 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2017-08-29 02:05 - 2017-06-03 11:12 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2017-08-29 02:05 - 2017-06-03 11:11 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2017-08-29 02:05 - 2017-06-03 11:11 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2017-08-29 02:05 - 2017-06-03 11:11 - 000038912 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2017-08-29 02:05 - 2017-06-03 11:11 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
2017-08-29 02:05 - 2017-06-03 11:10 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2017-08-29 02:05 - 2017-06-03 11:09 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-08-29 02:05 - 2017-06-03 11:09 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\devicengccredprov.dll
2017-08-29 02:05 - 2017-06-03 11:09 - 000094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2017-08-29 02:05 - 2017-06-03 11:07 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-08-29 02:05 - 2017-06-03 11:05 - 000198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-08-29 02:05 - 2017-06-03 11:05 - 000169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devicengccredprov.dll
2017-08-29 02:05 - 2017-06-03 11:00 - 000933376 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2017-08-29 02:05 - 2017-06-03 10:58 - 001046016 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2017-08-29 02:05 - 2017-06-03 10:57 - 006535168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2017-08-29 02:05 - 2017-06-03 10:57 - 000797184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2017-08-29 02:05 - 2017-06-03 10:54 - 002341376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2017-08-29 02:05 - 2017-05-20 11:13 - 001333136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2017-08-29 02:05 - 2017-05-20 10:55 - 000606960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2017-08-29 02:05 - 2017-05-20 10:47 - 001474800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-08-29 02:05 - 2017-05-20 10:46 - 001266544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2017-08-29 02:05 - 2017-05-20 10:43 - 004672848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-08-29 02:05 - 2017-05-20 10:43 - 001455592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2017-08-29 02:05 - 2017-05-20 10:27 - 000141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smartscreenps.dll
2017-08-29 02:05 - 2017-05-20 10:26 - 000059904 _____ C:\Windows\SysWOW64\xboxgipsynthetic.dll
2017-08-29 02:05 - 2017-05-20 10:26 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2017-08-29 02:05 - 2017-05-20 10:25 - 000826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSMDesktopProvider.dll
2017-08-29 02:05 - 2017-05-20 10:25 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Diagnostics.dll
2017-08-29 02:05 - 2017-05-20 10:22 - 000754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll
2017-08-29 02:05 - 2017-05-20 10:22 - 000394240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DictationManager.dll
2017-08-29 02:05 - 2017-05-20 10:21 - 001984000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
2017-08-29 02:05 - 2017-05-20 10:21 - 000476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2017-08-29 02:05 - 2017-05-20 10:21 - 000444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll
2017-08-29 02:05 - 2017-05-20 10:20 - 000807424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2017-08-29 02:05 - 2017-05-20 10:17 - 000909312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-08-29 02:05 - 2017-05-20 10:16 - 000899584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2017-08-29 02:05 - 2017-05-20 10:15 - 002088960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2017-08-29 02:05 - 2017-05-20 10:14 - 001035264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2017-08-29 02:05 - 2017-05-20 10:10 - 000332800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2017-08-29 02:05 - 2017-05-20 10:10 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2017-08-29 02:05 - 2017-05-20 10:08 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RstrtMgr.dll
2017-08-29 02:05 - 2017-05-20 09:07 - 000287648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2017-08-29 02:05 - 2017-05-20 08:58 - 000188824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2017-08-29 02:05 - 2017-05-20 08:55 - 001911752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2017-08-29 02:05 - 2017-05-20 08:54 - 000730016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-08-29 02:05 - 2017-05-20 08:54 - 000546208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2017-08-29 02:05 - 2017-05-20 08:54 - 000144288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2017-08-29 02:05 - 2017-05-20 08:10 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSSO.dll
2017-08-29 02:05 - 2017-05-20 08:07 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2017-08-29 02:05 - 2017-05-20 08:07 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSaveExt.dll
2017-08-29 02:05 - 2017-05-20 08:06 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2017-08-29 02:05 - 2017-05-20 08:00 - 001078272 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2017-08-29 02:05 - 2017-04-28 03:16 - 000599576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-08-29 02:05 - 2017-04-28 03:09 - 001557288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2017-08-29 02:05 - 2017-04-28 02:59 - 000388000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2017-08-29 02:05 - 2017-04-28 01:54 - 000414208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys