Povedlo se odstranění škodlivého kódu BitDefenderem a ASC?
Napsal: 12 bře 2018 11:50
Prosím o kontrolu, jestli škodlivý kód byl úplně odstraněn za použití BitDefenderu Free a Advanced System Care? Děkuji za spolupráci
Lukáš
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11.03.2018 01
Ran by vonos (administrator) on ASUS-UX410UA (12-03-2018 11:34:40)
Running from C:\Users\vonos\Downloads
Loaded Profiles: vonos (Available Profiles: vonos)
Platform: Windows 10 Pro Version 1709 16299.251 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ef5ab69e3a8baed2\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Adobe Systems Incorporated) C:\ProgramData\dahjService\dahjService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ef5ab69e3a8baed2\igfxEM.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ef5ab69e3a8baed2\igfxext.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(www.xmrig.com) C:\Users\vonos\AppData\Local\Temp\xmrig.exe
Failed to access process -> chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [599896 2015-06-10] (Conexant Systems, Inc.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.3.0.595\ASUSWSLoader.exe [63968 2017-12-12] (ASUS Cloud Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880 2018-01-05] (Adobe Systems, Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-01-22] (Apple Inc.)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\Run: [GoogleChromeAutoLaunch_C4467C35F065BE0C1EFF51B8B675992D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592 2018-03-06] (Google Inc.)
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1595368 2018-02-21] (Digital Wave Ltd)
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\Run: [4227690] => C:\Users\vonos\AppData\Roaming\dommeeo3zqd\3idwuramhiz.exe [567174 2018-03-12] ( )
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe [1049608 2017-07-03] (ASUSTek Computer Inc)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
SSODL: EldosMountNotificator-cbfs6 - {B34879AF-13C8-450B-AF7F-52CB3E3DFA8B} - C:\WINDOWS\system32\cbfsMntNtf6.dll (/n software, Inc.)
SSODL-x32: EldosMountNotificator-cbfs6 - {B34879AF-13C8-450B-AF7F-52CB3E3DFA8B} - C:\WINDOWS\SysWOW64\cbfsMntNtf6.dll (/n software, Inc.)
ShellExecuteHooks: No Name - {BFD98515-CD74-48A4-98E2-13D209E3EE4F} - C:\Windows\System32\mcicda64.dll [904704 2018-03-10] ()
GroupPolicy: Restriction - Chrome <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{0aba4b8d-059e-436b-92d5-8c72f6255135}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{93dc49da-1d3f-4316-bb42-4b2c4497a962}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\S-1-5-21-1190194901-555339887-805972429-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1190194901-555339887-805972429-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2018-02-15] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-09-12] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
Handler: mso-minsb-roaming.16 - No CLSID Value
Handler: mso-minsb.16 - No CLSID Value
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler: osf-roaming.16 - No CLSID Value
Handler: osf.16 - No CLSID Value
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-09-12] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-24] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-24] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-11] (Adobe Systems Inc.)
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.omniboxes.com/?type=hp&ts=143689576 ... XXW763551F"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default [2018-03-12]
CHR Extension: (Překladač Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2018-01-17]
CHR Extension: (Prezentace) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-01-17]
CHR Extension: (iVysilani pro Chromecast) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\andeafimjbobmfgmlhhbgfdlfhppdgeb [2018-01-21]
CHR Extension: (Dokumenty) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-17]
CHR Extension: (Disk Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-01-17]
CHR Extension: (YouTube) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-01-17]
CHR Extension: (Facebook) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2018-01-17]
CHR Extension: (Adblock Plus) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-01-26]
CHR Extension: (Videostream for Google Chromecast™) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnciopoikihiagdjbjpnocolokfelagl [2018-01-17]
CHR Extension: (Play.cz) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacomocbpihfdldecacpjedmmcbdgdop [2018-01-17]
CHR Extension: (Google+) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlppkpafhbajpcmmoheippocdidnckmm [2018-01-17]
CHR Extension: (Go Back With Backspace) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekailopagacbcdloonjhbiecobagjci [2018-01-17]
CHR Extension: (Gmail Offline) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2018-01-17]
CHR Extension: (Kalendář Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2018-01-17]
CHR Extension: (Photo Zoom for Facebook) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2018-01-17]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2018-01-17]
CHR Extension: (Adblocker for Youtube™) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcpkohnhcheajaneelkpaiebgkbdafmi [2018-03-12]
CHR Extension: (CastBuddy) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghagedffjalchgcgdgfindabkpnmalel [2018-03-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-01-17]
CHR Extension: (AdBlock) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-03-07]
CHR Extension: (Google Kalendář) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2018-02-16]
CHR Extension: (WebCast) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmenldaghgogpiajaipajaphcjbankna [2018-01-17]
CHR Extension: (Google Keep – poznámky a seznamy) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2018-03-02]
CHR Extension: (Downloads) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2018-01-17]
CHR Extension: (Hangouts Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\knipolnnllmklapflnccelgolnpehhpl [2018-02-16]
CHR Extension: (Mapy Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2018-01-17]
CHR Extension: (Kontrola e-mailu Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2018-01-17]
CHR Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2018-03-09]
CHR Extension: (OneDrive) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2018-01-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-01-17]
CHR Extension: (Prohlížeč dokumentů ve formátu PDF/PowerPoint (od společnosti Google)) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2018-01-17]
CHR Extension: (Picasa) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2018-01-17]
CHR Extension: (Gmail) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-01-17]
CHR Extension: (Chrome Media Router) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-08]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-01-05] (Apple Inc.)
S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\65.0.3325.40\remoting_host.exe [71512 2018-02-01] (Google Inc.)
R2 CxUtilSvc; C:\Program Files\Conexant\SAII\CxUtilSvc.exe [139864 2017-03-23] (Conexant Systems, Inc.)
R2 dahjService; C:\ProgramData\dahjService\dahjService.exe [2179240 2018-03-12] (Adobe Systems Incorporated)
R2 esifsvc; C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe [1701480 2018-01-30] (Intel Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [542320 2018-01-10] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268968 2018-01-17] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1282232 2018-01-19] (Bitdefender)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] ()
R2 SAService; C:\WINDOWS\system32\SAsrv.exe [416576 2016-10-27] (Conexant Systems, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2018-02-03] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10945776 2017-12-15] (TeamViewer GmbH)
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2018-03-12] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2018-03-12] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2018-03-12] (Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\NisSrv.exe [356152 2018-03-07] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MsMpEng.exe [106280 2018-03-07] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3758760 2018-01-17] (Intel® Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [90560 2018-01-20] (Alcorlink Corp.)
S3 AppleODD; C:\WINDOWS\system32\DRIVERS\AppleODD.sys [8704 2012-12-22] (Apple Inc.)
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [97784 2016-07-13] (ASUS Corporation)
R0 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [1177720 2018-03-12] (BitDefender S.R.L. Bucharest, ROMANIA)
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (ASUSTek Computer Inc.)
R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [1725800 2018-03-12] (BitDefender)
R0 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [154888 2018-03-12] (Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [23672 2016-03-14] (Bitdefender)
R1 cbfs6; C:\WINDOWS\system32\drivers\cbfs6.sys [460992 2016-09-21] (/n software, Inc.)
S3 cpuz143; C:\WINDOWS\temp\cpuz143\cpuz143_x64.sys [48960 2018-03-12] (CPUID)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [74168 2018-01-30] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [69560 2018-01-30] (Intel Corporation)
R3 edrsensor; C:\WINDOWS\System32\DRIVERS\edrsensor.sys [248336 2018-03-12] (BitDefender S.R.L. Bucharest, ROMANIA)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [382392 2018-01-30] (Intel Corporation)
R0 gzflt; C:\WINDOWS\System32\drivers\gzflt.sys [191784 2018-03-12] (BitDefender LLC)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [31112 2018-01-20] (ASUS)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-01-20] (REALiX(tm))
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [136128 2018-01-10] (Intel Corporation)
S3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7689728 2017-09-29] (Intel Corporation)
R3 Netwtw06; C:\WINDOWS\System32\drivers\Netwtw06.sys [8646632 2018-01-17] (Intel Corporation)
S1 prilock; C:\WINDOWS\System32\drivers\prilock.sys [122776 2018-02-08] ()
S3 rtux64w10; C:\WINDOWS\System32\drivers\rtux64w10.sys [428992 2018-02-02] (Realtek Corporation )
S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [41512 2018-01-11] ()
R3 SensorsAlsDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [259584 2017-09-29] (Microsoft Corporation)
S3 smbdirect; C:\WINDOWS\System32\DRIVERS\smbdirect.sys [151552 2018-01-29] (Microsoft Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
R2 trufos; C:\WINDOWS\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2018-03-07] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [288296 2018-03-07] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129568 2018-03-07] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-12 11:32 - 2018-03-12 11:32 - 001388432 _____ C:\Users\Public\VOIP.dat
2018-03-12 11:29 - 2018-03-12 11:29 - 001725800 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2018-03-12 11:29 - 2018-03-12 11:29 - 001177720 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\atc.sys
2018-03-12 11:29 - 2018-03-12 11:29 - 000191784 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2018-03-12 11:29 - 2018-03-12 11:29 - 000154888 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys
2018-03-12 11:28 - 2018-03-12 11:28 - 000013510 _____ C:\Users\vonos\Downloads\Addition.zip
2018-03-12 11:18 - 2018-03-12 11:18 - 000053849 _____ C:\Users\vonos\Downloads\Addition.txt
2018-03-12 11:17 - 2018-03-12 11:34 - 000024075 _____ C:\Users\vonos\Downloads\FRST.txt
2018-03-12 11:16 - 2018-03-12 11:34 - 000000000 ____D C:\FRST
2018-03-12 11:15 - 2018-03-12 11:15 - 002402816 _____ (Farbar) C:\Users\vonos\Downloads\FRST64.exe
2018-03-12 11:06 - 2018-03-12 11:06 - 000000000 ____D C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
2018-03-12 11:03 - 2018-03-12 11:03 - 090458280 _____ (IObit ) C:\Users\vonos\Downloads\asc-ultimate-setup.exe
2018-03-12 10:36 - 2018-03-12 10:36 - 000000000 ____D C:\ProgramData\bdch
2018-03-12 10:30 - 2018-03-12 10:38 - 000000000 ____D C:\Program Files (x86)\pidIvTaYsJowC
2018-03-12 10:30 - 2018-03-12 10:30 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2018-03-12 10:29 - 2018-03-12 10:29 - 000001194 _____ C:\Users\vonos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free.lnk
2018-03-12 10:28 - 2018-03-12 10:28 - 000000000 ____D C:\Users\vonos\AppData\LocalLow\HHbsGmflFYCDR
2018-03-12 10:28 - 2018-03-12 10:28 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2018-03-12 10:27 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\5yyjxusjutp
2018-03-12 10:27 - 2016-03-14 22:04 - 000023672 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2018-03-12 10:25 - 2018-03-12 11:29 - 000248336 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\edrsensor.sys
2018-03-12 10:25 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\jgyd0fhnivs
2018-03-12 10:25 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\3hc3nbmmkru
2018-03-12 10:25 - 2018-03-12 10:25 - 000001209 _____ C:\Users\Public\Desktop\Bitdefender Antivirus Free.lnk
2018-03-12 10:25 - 2018-03-12 10:25 - 000000000 ____D C:\Users\vonos\AppData\Roaming\dommeeo3zqd
2018-03-12 10:25 - 2018-03-12 10:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free
2018-03-12 10:24 - 2018-03-12 10:24 - 000003802 _____ C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2018-03-12 10:23 - 2018-03-12 11:31 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2018-03-12 10:23 - 2016-06-22 15:40 - 000520032 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2018-03-12 10:22 - 2018-03-12 10:32 - 000000000 ____D C:\Program Files\Bitdefender Agent
2018-03-12 10:22 - 2018-03-12 10:22 - 000048919 _____ C:\ProgramData\agent.1520846534.bdinstall.bin
2018-03-12 10:21 - 2018-03-12 10:21 - 010160608 _____ C:\Users\vonos\Downloads\bitdefender_online.exe
2018-03-12 10:09 - 2018-03-12 11:34 - 000000004 _____ C:\ProgramData\lock.dat
2018-03-12 10:09 - 2018-03-12 11:32 - 000000020 _____ C:\ProgramData\rwi.jhad
2018-03-12 10:07 - 2018-03-12 10:08 - 000000008 __RSH C:\ProgramData\ntuser.pol
2018-03-12 10:07 - 2018-03-12 10:07 - 000003650 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2018-03-12 10:07 - 2018-03-12 10:07 - 000000000 ____D C:\ProgramData\39073fdc-72a5-0
2018-03-12 10:07 - 2018-03-12 10:07 - 000000000 ____D C:\ProgramData\39073fdc-0cc5-1
2018-03-12 10:07 - 2018-03-10 18:41 - 000904704 _____ C:\WINDOWS\system32\mcicda64.dll
2018-03-12 10:06 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\zftvldcws5t
2018-03-12 10:06 - 2018-03-12 10:33 - 000000000 ____D C:\Disk
2018-03-12 10:06 - 2018-03-12 10:29 - 000000000 ____D C:\Program Files (x86)\Script
2018-03-12 10:06 - 2018-03-12 10:25 - 000930816 _____ C:\Users\vonos\AppData\Local\po.db
2018-03-12 10:06 - 2018-03-12 10:14 - 000000000 ____D C:\Windat
2018-03-12 10:06 - 2018-03-12 10:06 - 000140800 _____ C:\Users\vonos\AppData\Local\installer.dat
2018-03-12 10:06 - 2018-03-12 10:06 - 000011568 _____ C:\Users\vonos\AppData\Local\InstallationConfiguration.xml
2018-03-12 10:06 - 2018-03-12 10:06 - 000000003 _____ C:\Users\vonos\AppData\Local\wbem.ini
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\vonos\AppData\Roaming\SystemHealer
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\vonos\AppData\Roaming\OneSystemCare
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\vonos\AppData\Local\FastDataX
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\Public\Documents\XMUpdate
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\ProgramData\dahjService
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\ProgramData\d6e6c038-42a7-0
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\ProgramData\d6e6c038-1b41-1
2018-03-12 10:03 - 2018-03-12 10:12 - 000000000 ____D C:\Users\vonos\AppData\Roaming\uTorrent
2018-03-12 09:56 - 2018-03-12 09:56 - 000002569 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoteBurner iTunes DRM Audio Converter.lnk
2018-03-12 09:56 - 2018-03-12 09:56 - 000002557 _____ C:\Users\Public\Desktop\NoteBurner iTunes DRM Audio Converter.lnk
2018-03-12 09:56 - 2018-03-12 09:56 - 000000000 ____D C:\Users\vonos\Documents\NoteBurner iTunes DRM Audio Converter
2018-03-12 09:56 - 2018-03-12 09:56 - 000000000 ____D C:\Program Files (x86)\NoteBurner iTunes DRM Audio Converter
2018-03-12 09:47 - 2018-03-12 09:47 - 000001346 _____ C:\Users\Public\Desktop\Easy M4P Converter.lnk
2018-03-12 09:47 - 2018-03-12 09:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M4PConverter
2018-03-12 09:31 - 2018-03-12 09:31 - 000000000 ____D C:\Program Files (x86)\Elaborate Bytes
2018-03-12 09:02 - 2018-03-12 09:03 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Macsome iTunes Converter
2018-03-12 09:02 - 2018-03-12 09:02 - 000000000 ____D C:\Users\vonos\AppData\Local\CrashRpt
2018-03-12 09:01 - 2018-03-12 09:01 - 011016080 _____ C:\Users\vonos\Downloads\MacsomeIC.exe
2018-03-11 22:04 - 2018-03-12 09:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\NoteBurner iTunes DRM Audio Converter
2018-03-11 22:03 - 2018-03-11 22:03 - 070430576 _____ C:\Users\vonos\Downloads\noteburner-itunes-drm-audio-converter.exe
2018-03-11 21:59 - 2018-03-11 21:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\freemkvtomp4converter
2018-03-11 21:59 - 2018-03-11 21:59 - 000000000 ____D C:\Users\vonos\AppData\Local\SkinSoft
2018-03-11 21:57 - 2018-03-11 21:57 - 009291638 _____ (Free M4P To MP3 Converter) C:\Users\vonos\Downloads\m4ptomp3_setup.exe
2018-03-11 21:18 - 2018-03-11 21:18 - 022803288 _____ (M4P Converter, Inc. ) C:\Users\vonos\Downloads\EasyM4PConverter.exe
2018-03-11 21:18 - 2018-03-11 21:18 - 000000000 ____D C:\Users\vonos\AppData\Roaming\M4P Converter
2018-03-11 21:18 - 2018-03-11 21:18 - 000000000 ____D C:\Program Files (x86)\M4PConverter
2018-03-08 08:38 - 2018-03-08 08:38 - 018617536 _____ (Microsoft Corporation) C:\Users\vonos\Downloads\MediaCreationTool.exe
2018-03-08 08:38 - 2018-03-08 08:38 - 000000000 ___HD C:\$Windows.~WS
2018-03-07 20:25 - 2018-03-09 19:51 - 000000000 ____D C:\Users\vonos\AppData\Local\Avg
2018-03-07 20:25 - 2018-03-07 20:25 - 000000000 ____D C:\Program Files\Common Files\AVG
2018-03-07 20:14 - 2018-03-09 19:51 - 000000000 ____D C:\ProgramData\AVG
2018-03-07 20:14 - 2018-03-07 20:14 - 007371128 _____ (AVG Technologies CZ, s.r.o.) C:\Users\vonos\Downloads\avg_antivirus_free_setup.exe
2018-03-07 20:11 - 2018-03-07 20:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Apple Computer
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\Users\vonos\AppData\Local\Apple Computer
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\Program Files\iPod
2018-03-06 17:09 - 2018-03-06 17:10 - 000000000 ____D C:\Program Files\iTunes
2018-03-06 17:09 - 2018-03-06 17:09 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Users\vonos\AppData\Local\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\ProgramData\Apple Computer
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\ProgramData\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files\Common Files\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files\Bonjour
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files (x86)\Bonjour
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2018-03-06 07:17 - 2018-02-22 03:23 - 001092016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-03-06 07:17 - 2018-02-22 03:23 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-03-06 07:17 - 2018-02-22 03:14 - 000270752 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2018-03-06 07:17 - 2018-02-22 03:13 - 000279456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2018-03-06 07:17 - 2018-02-22 03:13 - 000077216 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-03-06 07:17 - 2018-02-22 03:12 - 000613280 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2018-03-06 07:17 - 2018-02-22 03:11 - 000138136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2018-03-06 07:17 - 2018-02-22 03:11 - 000109984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2018-03-06 07:17 - 2018-02-22 03:10 - 001577880 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2018-03-06 07:17 - 2018-02-22 03:10 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2018-03-06 07:17 - 2018-02-22 03:09 - 000070040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2018-03-06 07:17 - 2018-02-22 03:08 - 001206688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-03-06 07:17 - 2018-02-22 03:08 - 001055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-03-06 07:17 - 2018-02-22 03:08 - 000758168 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2018-03-06 07:17 - 2018-02-22 03:08 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-03-06 07:17 - 2018-02-22 03:08 - 000387488 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2018-03-06 07:17 - 2018-02-22 03:07 - 008603040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-03-06 07:17 - 2018-02-22 03:07 - 001415296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-03-06 07:17 - 2018-02-22 03:07 - 001209248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-03-06 07:17 - 2018-02-22 03:07 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2018-03-06 07:17 - 2018-02-22 03:06 - 002003352 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2018-03-06 07:17 - 2018-02-22 03:06 - 000662936 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2018-03-06 07:17 - 2018-02-22 03:06 - 000460704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-03-06 07:17 - 2018-02-22 03:06 - 000272792 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2018-03-06 07:17 - 2018-02-22 03:03 - 000733600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2018-03-06 07:17 - 2018-02-22 03:03 - 000712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-03-06 07:17 - 2018-02-22 03:03 - 000082848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2018-03-06 07:17 - 2018-02-22 03:02 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2018-03-06 07:17 - 2018-02-22 03:00 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-03-06 07:17 - 2018-02-22 03:00 - 000187296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2018-03-06 07:17 - 2018-02-22 02:59 - 021351624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-03-06 07:17 - 2018-02-22 02:54 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2018-03-06 07:17 - 2018-02-22 02:52 - 000103328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2018-03-06 07:17 - 2018-02-22 02:51 - 000555424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2018-03-06 07:17 - 2018-02-22 02:51 - 000097176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2018-03-06 07:17 - 2018-02-22 02:51 - 000045472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2018-03-06 07:17 - 2018-02-22 02:50 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-03-06 07:17 - 2018-02-22 01:53 - 000211872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2018-03-06 07:17 - 2018-02-22 01:50 - 025253376 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-03-06 07:17 - 2018-02-22 01:41 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-03-06 07:17 - 2018-02-22 01:31 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2018-03-06 07:17 - 2018-02-22 01:31 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2018-03-06 07:17 - 2018-02-22 01:30 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-03-06 07:17 - 2018-02-22 01:30 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2018-03-06 07:17 - 2018-02-22 01:30 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2018-03-06 07:17 - 2018-02-22 01:30 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
2018-03-06 07:17 - 2018-02-22 01:28 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-03-06 07:17 - 2018-02-22 01:27 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2018-03-06 07:17 - 2018-02-22 01:26 - 023671808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-03-06 07:17 - 2018-02-22 01:26 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-03-06 07:17 - 2018-02-22 01:25 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2018-03-06 07:17 - 2018-02-22 01:22 - 008110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-03-06 07:17 - 2018-02-22 01:20 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2018-03-06 07:17 - 2018-02-22 01:18 - 019352576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-03-06 07:17 - 2018-02-22 01:18 - 018923008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-03-06 07:17 - 2018-02-22 01:18 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-03-06 07:17 - 2018-02-22 01:16 - 001286144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2018-03-06 07:17 - 2018-02-22 01:16 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-03-06 07:17 - 2018-02-22 01:16 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2018-03-06 07:17 - 2018-02-22 01:12 - 006031360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-03-06 07:17 - 2018-02-22 01:12 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2018-03-06 07:16 - 2018-02-22 03:07 - 000194456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2018-03-06 07:16 - 2018-02-22 02:50 - 000229272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2018-03-04 15:00 - 2018-03-04 15:00 - 000000000 ____D C:\Users\vonos\Downloads\zasilka-WGUK5ULGBM733GSA
2018-03-04 14:58 - 2018-03-04 14:59 - 759972133 _____ C:\Users\vonos\Downloads\zasilka-WGUK5ULGBM733GSA.zip
2018-02-28 20:09 - 2018-02-28 20:31 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Opera Software
2018-02-28 20:09 - 2018-02-28 20:31 - 000000000 ____D C:\Users\vonos\AppData\Local\Opera Software
2018-02-28 20:09 - 2018-02-28 20:31 - 000000000 ____D C:\Program Files\Opera
2018-02-26 15:32 - 2018-02-26 15:32 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2018-02-24 18:25 - 2018-02-24 18:25 - 000615496 _____ C:\Users\vonos\Downloads\CZ-Manual-Lamax Beat Sentinel SE-1.pdf
2018-02-21 19:26 - 2018-02-21 19:28 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Novabench
2018-02-21 19:26 - 2018-02-21 19:27 - 000000000 ____D C:\ProgramData\Novabench
2018-02-21 19:26 - 2018-02-21 19:26 - 000000000 ____D C:\Users\vonos\AppData\Local\Novabench
2018-02-19 05:31 - 2018-02-19 05:31 - 000000000 ____D C:\ProgramData\Google
2018-02-18 17:24 - 2018-02-18 17:24 - 000003368 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1190194901-555339887-805972429-1002
2018-02-18 17:17 - 2018-02-18 17:17 - 000000000 ____D C:\Asus WebStorage
2018-02-18 11:51 - 2018-02-18 11:51 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2018-02-18 11:05 - 2018-02-18 11:05 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2018-02-18 11:05 - 2018-02-18 11:05 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2018-02-18 10:56 - 2018-03-08 12:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\WINDOWS\PCHEALTH
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2018-02-18 10:54 - 2018-02-18 10:55 - 000000000 ____D C:\WINDOWS\SHELLNEW
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 __RHD C:\MSOCache
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 ____D C:\Users\vonos\AppData\Local\Microsoft Help
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2018-02-18 10:20 - 2018-02-18 10:20 - 006985000 _____ (Microsoft Corporation) C:\Users\vonos\Downloads\Setup.x64.cs-cz_ProfessionalRetail_NKGG6-WBPCC-HXWMY-6DQGJ-CPQVG_act_1_.exe
2018-02-18 10:17 - 2018-02-18 17:24 - 000002389 _____ C:\Users\vonos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-02-18 10:17 - 2018-02-18 17:24 - 000000000 ___RD C:\Users\vonos\OneDrive
2018-02-18 10:17 - 2018-02-18 10:39 - 000002325 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-02-18 10:17 - 2018-02-18 10:39 - 000002325 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-02-18 10:17 - 2018-02-18 10:39 - 000000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2018-02-18 10:10 - 2018-02-18 10:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-02-18 10:06 - 2018-02-18 10:10 - 2825566208 _____ C:\Users\vonos\Downloads\ProfessionalRetail.img
2018-02-18 09:58 - 2018-02-18 09:58 - 000000000 ___HD C:\Users\vonos\Documents\KingsoftData
2018-02-18 09:58 - 2018-02-18 09:58 - 000000000 ____D C:\Users\vonos\Documents\Kingsoft
2018-02-17 18:48 - 2018-03-12 11:32 - 000000219 _____ C:\Users\vonos\AppData\Roaming\sp_data.sys
2018-02-17 18:46 - 2018-02-17 18:46 - 000003108 _____ C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON
2018-02-17 18:42 - 2018-02-17 18:42 - 034533557 _____ C:\Users\vonos\Downloads\Splendid_Win_10_VER3220005.zip
2018-02-17 14:15 - 2018-02-17 14:15 - 000007605 _____ C:\Users\vonos\AppData\Local\Resmon.ResmonCfg
2018-02-17 13:50 - 2018-02-17 14:00 - 000002268 ____H C:\Users\vonos\Documents\Default.rdp
2018-02-16 21:23 - 2018-02-16 21:23 - 000003618 _____ C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-vonostransky@gmail.com
2018-02-16 13:15 - 2018-02-16 13:15 - 000000041 ____H C:\Users\vonos\Documents\.picasa.ini
2018-02-14 17:48 - 2018-02-10 07:21 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-02-14 17:48 - 2018-02-10 07:20 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-02-14 17:48 - 2018-02-10 07:18 - 001193192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2018-02-14 17:48 - 2018-02-10 07:18 - 000319864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2018-02-14 17:48 - 2018-02-10 07:16 - 002406456 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-02-14 17:48 - 2018-02-10 07:16 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2018-02-14 17:48 - 2018-02-10 07:15 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-02-14 17:48 - 2018-02-10 07:15 - 000471968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-02-14 17:48 - 2018-02-10 07:14 - 004504464 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-02-14 17:48 - 2018-02-10 07:14 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-02-14 17:48 - 2018-02-10 07:14 - 001002592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2018-02-14 17:48 - 2018-02-10 07:13 - 001416392 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2018-02-14 17:48 - 2018-02-10 07:13 - 000408984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-02-14 17:48 - 2018-02-10 07:13 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2018-02-14 17:48 - 2018-02-10 07:12 - 004537040 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2018-02-14 17:48 - 2018-02-10 07:12 - 001313016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2018-02-14 17:48 - 2018-02-10 07:12 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-02-14 17:48 - 2018-02-10 07:11 - 001029528 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2018-02-14 17:48 - 2018-02-10 07:11 - 000711432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-02-14 17:48 - 2018-02-10 07:11 - 000677784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-02-14 17:48 - 2018-02-10 07:10 - 002447768 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2018-02-14 17:48 - 2018-02-10 07:10 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-02-14 17:48 - 2018-02-10 07:10 - 000614160 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2018-02-14 17:48 - 2018-02-10 07:10 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-02-14 17:48 - 2018-02-10 07:10 - 000154520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2018-02-14 17:48 - 2018-02-10 07:09 - 003904296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2018-02-14 17:48 - 2018-02-10 07:09 - 000755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2018-02-14 17:48 - 2018-02-10 07:09 - 000075160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 007675784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 003010248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 002574232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-02-14 17:48 - 2018-02-10 07:08 - 000096200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2018-02-14 17:48 - 2018-02-10 07:07 - 004506576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-02-14 17:48 - 2018-02-10 07:07 - 002710728 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 004486904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000824896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000727448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-02-14 17:48 - 2018-02-10 07:06 - 000519144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2018-02-14 17:48 - 2018-02-10 07:06 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2018-02-14 17:48 - 2018-02-10 07:06 - 000189336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000100248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000087384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2018-02-14 17:48 - 2018-02-10 07:05 - 000688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2018-02-14 17:48 - 2018-02-10 07:05 - 000413888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 007384576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 006791984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001430760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2018-02-14 17:48 - 2018-02-10 07:04 - 001426672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001254144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 000614296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2018-02-14 17:48 - 2018-02-10 07:04 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-02-14 17:48 - 2018-02-10 07:04 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2018-02-14 17:48 - 2018-02-10 07:04 - 000339872 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 000093592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2018-02-14 17:48 - 2018-02-10 07:03 - 001619808 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-02-14 17:48 - 2018-02-10 07:03 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 002773400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-02-14 17:48 - 2018-02-10 07:02 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 001103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-02-14 17:48 - 2018-02-10 07:02 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 000670104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 000617304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-02-14 17:48 - 2018-02-10 06:21 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-02-14 17:48 - 2018-02-10 06:17 - 002255112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-02-14 17:48 - 2018-02-10 06:17 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2018-02-14 17:48 - 2018-02-10 06:17 - 000542856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2018-02-14 17:48 - 2018-02-10 06:15 - 001145624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2018-02-14 17:48 - 2018-02-10 06:12 - 004382032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2018-02-14 17:48 - 2018-02-10 06:11 - 001250528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2018-02-14 17:48 - 2018-02-10 06:09 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-02-14 17:48 - 2018-02-10 06:09 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2018-02-14 17:48 - 2018-02-10 06:09 - 002338776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-02-14 17:48 - 2018-02-10 06:09 - 001123456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2018-02-14 17:48 - 2018-02-10 06:08 - 003980720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2018-02-14 17:48 - 2018-02-10 06:08 - 002193168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000543920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000527864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000123808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000089504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000083216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 006481640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 006014688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 004670728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 001149272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 000662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 000386424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
Lukáš
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11.03.2018 01
Ran by vonos (administrator) on ASUS-UX410UA (12-03-2018 11:34:40)
Running from C:\Users\vonos\Downloads
Loaded Profiles: vonos (Available Profiles: vonos)
Platform: Windows 10 Pro Version 1709 16299.251 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ef5ab69e3a8baed2\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Adobe Systems Incorporated) C:\ProgramData\dahjService\dahjService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ef5ab69e3a8baed2\igfxEM.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(ASUSTek Computer Inc) C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ef5ab69e3a8baed2\igfxext.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(www.xmrig.com) C:\Users\vonos\AppData\Local\Temp\xmrig.exe
Failed to access process -> chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [599896 2015-06-10] (Conexant Systems, Inc.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.3.0.595\ASUSWSLoader.exe [63968 2017-12-12] (ASUS Cloud Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880 2018-01-05] (Adobe Systems, Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-01-22] (Apple Inc.)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\Run: [GoogleChromeAutoLaunch_C4467C35F065BE0C1EFF51B8B675992D] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592 2018-03-06] (Google Inc.)
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\Run: [vidnotifier.exe] => C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\vidnotifier\vidnotifier.exe [1595368 2018-02-21] (Digital Wave Ltd)
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\Run: [4227690] => C:\Users\vonos\AppData\Roaming\dommeeo3zqd\3idwuramhiz.exe [567174 2018-03-12] ( )
HKU\S-1-5-21-1190194901-555339887-805972429-1002\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe [1049608 2017-07-03] (ASUSTek Computer Inc)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
SSODL: EldosMountNotificator-cbfs6 - {B34879AF-13C8-450B-AF7F-52CB3E3DFA8B} - C:\WINDOWS\system32\cbfsMntNtf6.dll (/n software, Inc.)
SSODL-x32: EldosMountNotificator-cbfs6 - {B34879AF-13C8-450B-AF7F-52CB3E3DFA8B} - C:\WINDOWS\SysWOW64\cbfsMntNtf6.dll (/n software, Inc.)
ShellExecuteHooks: No Name - {BFD98515-CD74-48A4-98E2-13D209E3EE4F} - C:\Windows\System32\mcicda64.dll [904704 2018-03-10] ()
GroupPolicy: Restriction - Chrome <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{0aba4b8d-059e-436b-92d5-8c72f6255135}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{93dc49da-1d3f-4316-bb42-4b2c4497a962}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\S-1-5-21-1190194901-555339887-805972429-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1190194901-555339887-805972429-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2018-02-15] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-09-12] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation)
Handler: mso-minsb-roaming.16 - No CLSID Value
Handler: mso-minsb.16 - No CLSID Value
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler: osf-roaming.16 - No CLSID Value
Handler: osf.16 - No CLSID Value
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-02-27] (VideoLAN)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-09-12] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-24] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-01-24] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-11] (Adobe Systems Inc.)
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.omniboxes.com/?type=hp&ts=143689576 ... XXW763551F"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default [2018-03-12]
CHR Extension: (Překladač Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2018-01-17]
CHR Extension: (Prezentace) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-01-17]
CHR Extension: (iVysilani pro Chromecast) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\andeafimjbobmfgmlhhbgfdlfhppdgeb [2018-01-21]
CHR Extension: (Dokumenty) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-17]
CHR Extension: (Disk Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-01-17]
CHR Extension: (YouTube) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-01-17]
CHR Extension: (Facebook) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm [2018-01-17]
CHR Extension: (Adblock Plus) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-01-26]
CHR Extension: (Videostream for Google Chromecast™) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnciopoikihiagdjbjpnocolokfelagl [2018-01-17]
CHR Extension: (Play.cz) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacomocbpihfdldecacpjedmmcbdgdop [2018-01-17]
CHR Extension: (Google+) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlppkpafhbajpcmmoheippocdidnckmm [2018-01-17]
CHR Extension: (Go Back With Backspace) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekailopagacbcdloonjhbiecobagjci [2018-01-17]
CHR Extension: (Gmail Offline) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2018-01-17]
CHR Extension: (Kalendář Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2018-01-17]
CHR Extension: (Photo Zoom for Facebook) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2018-01-17]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2018-01-17]
CHR Extension: (Adblocker for Youtube™) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcpkohnhcheajaneelkpaiebgkbdafmi [2018-03-12]
CHR Extension: (CastBuddy) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghagedffjalchgcgdgfindabkpnmalel [2018-03-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-01-17]
CHR Extension: (AdBlock) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-03-07]
CHR Extension: (Google Kalendář) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2018-02-16]
CHR Extension: (WebCast) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmenldaghgogpiajaipajaphcjbankna [2018-01-17]
CHR Extension: (Google Keep – poznámky a seznamy) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2018-03-02]
CHR Extension: (Downloads) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2018-01-17]
CHR Extension: (Hangouts Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\knipolnnllmklapflnccelgolnpehhpl [2018-02-16]
CHR Extension: (Mapy Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2018-01-17]
CHR Extension: (Kontrola e-mailu Google) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2018-01-17]
CHR Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2018-03-09]
CHR Extension: (OneDrive) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2018-01-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-01-17]
CHR Extension: (Prohlížeč dokumentů ve formátu PDF/PowerPoint (od společnosti Google)) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2018-01-17]
CHR Extension: (Picasa) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2018-01-17]
CHR Extension: (Gmail) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-01-17]
CHR Extension: (Chrome Media Router) - C:\Users\vonos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-08]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-01-05] (Apple Inc.)
S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\65.0.3325.40\remoting_host.exe [71512 2018-02-01] (Google Inc.)
R2 CxUtilSvc; C:\Program Files\Conexant\SAII\CxUtilSvc.exe [139864 2017-03-23] (Conexant Systems, Inc.)
R2 dahjService; C:\ProgramData\dahjService\dahjService.exe [2179240 2018-03-12] (Adobe Systems Incorporated)
R2 esifsvc; C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe [1701480 2018-01-30] (Intel Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [542320 2018-01-10] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268968 2018-01-17] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1282232 2018-01-19] (Bitdefender)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] ()
R2 SAService; C:\WINDOWS\system32\SAsrv.exe [416576 2016-10-27] (Conexant Systems, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2018-02-03] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10945776 2017-12-15] (TeamViewer GmbH)
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2018-03-12] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2018-03-12] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2018-03-12] (Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\NisSrv.exe [356152 2018-03-07] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MsMpEng.exe [106280 2018-03-07] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3758760 2018-01-17] (Intel® Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStor.SYS [90560 2018-01-20] (Alcorlink Corp.)
S3 AppleODD; C:\WINDOWS\system32\DRIVERS\AppleODD.sys [8704 2012-12-22] (Apple Inc.)
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [97784 2016-07-13] (ASUS Corporation)
R0 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [1177720 2018-03-12] (BitDefender S.R.L. Bucharest, ROMANIA)
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (ASUSTek Computer Inc.)
R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [1725800 2018-03-12] (BitDefender)
R0 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [154888 2018-03-12] (Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [23672 2016-03-14] (Bitdefender)
R1 cbfs6; C:\WINDOWS\system32\drivers\cbfs6.sys [460992 2016-09-21] (/n software, Inc.)
S3 cpuz143; C:\WINDOWS\temp\cpuz143\cpuz143_x64.sys [48960 2018-03-12] (CPUID)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [74168 2018-01-30] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [69560 2018-01-30] (Intel Corporation)
R3 edrsensor; C:\WINDOWS\System32\DRIVERS\edrsensor.sys [248336 2018-03-12] (BitDefender S.R.L. Bucharest, ROMANIA)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [382392 2018-01-30] (Intel Corporation)
R0 gzflt; C:\WINDOWS\System32\drivers\gzflt.sys [191784 2018-03-12] (BitDefender LLC)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [31112 2018-01-20] (ASUS)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-01-20] (REALiX(tm))
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [136128 2018-01-10] (Intel Corporation)
S3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7689728 2017-09-29] (Intel Corporation)
R3 Netwtw06; C:\WINDOWS\System32\drivers\Netwtw06.sys [8646632 2018-01-17] (Intel Corporation)
S1 prilock; C:\WINDOWS\System32\drivers\prilock.sys [122776 2018-02-08] ()
S3 rtux64w10; C:\WINDOWS\System32\drivers\rtux64w10.sys [428992 2018-02-02] (Realtek Corporation )
S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [41512 2018-01-11] ()
R3 SensorsAlsDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [259584 2017-09-29] (Microsoft Corporation)
S3 smbdirect; C:\WINDOWS\System32\DRIVERS\smbdirect.sys [151552 2018-01-29] (Microsoft Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
R2 trufos; C:\WINDOWS\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2018-03-07] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [288296 2018-03-07] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129568 2018-03-07] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-12 11:32 - 2018-03-12 11:32 - 001388432 _____ C:\Users\Public\VOIP.dat
2018-03-12 11:29 - 2018-03-12 11:29 - 001725800 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2018-03-12 11:29 - 2018-03-12 11:29 - 001177720 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\atc.sys
2018-03-12 11:29 - 2018-03-12 11:29 - 000191784 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2018-03-12 11:29 - 2018-03-12 11:29 - 000154888 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys
2018-03-12 11:28 - 2018-03-12 11:28 - 000013510 _____ C:\Users\vonos\Downloads\Addition.zip
2018-03-12 11:18 - 2018-03-12 11:18 - 000053849 _____ C:\Users\vonos\Downloads\Addition.txt
2018-03-12 11:17 - 2018-03-12 11:34 - 000024075 _____ C:\Users\vonos\Downloads\FRST.txt
2018-03-12 11:16 - 2018-03-12 11:34 - 000000000 ____D C:\FRST
2018-03-12 11:15 - 2018-03-12 11:15 - 002402816 _____ (Farbar) C:\Users\vonos\Downloads\FRST64.exe
2018-03-12 11:06 - 2018-03-12 11:06 - 000000000 ____D C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
2018-03-12 11:03 - 2018-03-12 11:03 - 090458280 _____ (IObit ) C:\Users\vonos\Downloads\asc-ultimate-setup.exe
2018-03-12 10:36 - 2018-03-12 10:36 - 000000000 ____D C:\ProgramData\bdch
2018-03-12 10:30 - 2018-03-12 10:38 - 000000000 ____D C:\Program Files (x86)\pidIvTaYsJowC
2018-03-12 10:30 - 2018-03-12 10:30 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2018-03-12 10:29 - 2018-03-12 10:29 - 000001194 _____ C:\Users\vonos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free.lnk
2018-03-12 10:28 - 2018-03-12 10:28 - 000000000 ____D C:\Users\vonos\AppData\LocalLow\HHbsGmflFYCDR
2018-03-12 10:28 - 2018-03-12 10:28 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2018-03-12 10:27 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\5yyjxusjutp
2018-03-12 10:27 - 2016-03-14 22:04 - 000023672 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2018-03-12 10:25 - 2018-03-12 11:29 - 000248336 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\edrsensor.sys
2018-03-12 10:25 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\jgyd0fhnivs
2018-03-12 10:25 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\3hc3nbmmkru
2018-03-12 10:25 - 2018-03-12 10:25 - 000001209 _____ C:\Users\Public\Desktop\Bitdefender Antivirus Free.lnk
2018-03-12 10:25 - 2018-03-12 10:25 - 000000000 ____D C:\Users\vonos\AppData\Roaming\dommeeo3zqd
2018-03-12 10:25 - 2018-03-12 10:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Antivirus Free
2018-03-12 10:24 - 2018-03-12 10:24 - 000003802 _____ C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2018-03-12 10:23 - 2018-03-12 11:31 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2018-03-12 10:23 - 2016-06-22 15:40 - 000520032 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2018-03-12 10:22 - 2018-03-12 10:32 - 000000000 ____D C:\Program Files\Bitdefender Agent
2018-03-12 10:22 - 2018-03-12 10:22 - 000048919 _____ C:\ProgramData\agent.1520846534.bdinstall.bin
2018-03-12 10:21 - 2018-03-12 10:21 - 010160608 _____ C:\Users\vonos\Downloads\bitdefender_online.exe
2018-03-12 10:09 - 2018-03-12 11:34 - 000000004 _____ C:\ProgramData\lock.dat
2018-03-12 10:09 - 2018-03-12 11:32 - 000000020 _____ C:\ProgramData\rwi.jhad
2018-03-12 10:07 - 2018-03-12 10:08 - 000000008 __RSH C:\ProgramData\ntuser.pol
2018-03-12 10:07 - 2018-03-12 10:07 - 000003650 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2018-03-12 10:07 - 2018-03-12 10:07 - 000000000 ____D C:\ProgramData\39073fdc-72a5-0
2018-03-12 10:07 - 2018-03-12 10:07 - 000000000 ____D C:\ProgramData\39073fdc-0cc5-1
2018-03-12 10:07 - 2018-03-10 18:41 - 000904704 _____ C:\WINDOWS\system32\mcicda64.dll
2018-03-12 10:06 - 2018-03-12 10:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\zftvldcws5t
2018-03-12 10:06 - 2018-03-12 10:33 - 000000000 ____D C:\Disk
2018-03-12 10:06 - 2018-03-12 10:29 - 000000000 ____D C:\Program Files (x86)\Script
2018-03-12 10:06 - 2018-03-12 10:25 - 000930816 _____ C:\Users\vonos\AppData\Local\po.db
2018-03-12 10:06 - 2018-03-12 10:14 - 000000000 ____D C:\Windat
2018-03-12 10:06 - 2018-03-12 10:06 - 000140800 _____ C:\Users\vonos\AppData\Local\installer.dat
2018-03-12 10:06 - 2018-03-12 10:06 - 000011568 _____ C:\Users\vonos\AppData\Local\InstallationConfiguration.xml
2018-03-12 10:06 - 2018-03-12 10:06 - 000000003 _____ C:\Users\vonos\AppData\Local\wbem.ini
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\vonos\AppData\Roaming\SystemHealer
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\vonos\AppData\Roaming\OneSystemCare
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\vonos\AppData\Local\FastDataX
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\Users\Public\Documents\XMUpdate
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\ProgramData\dahjService
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\ProgramData\d6e6c038-42a7-0
2018-03-12 10:06 - 2018-03-12 10:06 - 000000000 ____D C:\ProgramData\d6e6c038-1b41-1
2018-03-12 10:03 - 2018-03-12 10:12 - 000000000 ____D C:\Users\vonos\AppData\Roaming\uTorrent
2018-03-12 09:56 - 2018-03-12 09:56 - 000002569 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoteBurner iTunes DRM Audio Converter.lnk
2018-03-12 09:56 - 2018-03-12 09:56 - 000002557 _____ C:\Users\Public\Desktop\NoteBurner iTunes DRM Audio Converter.lnk
2018-03-12 09:56 - 2018-03-12 09:56 - 000000000 ____D C:\Users\vonos\Documents\NoteBurner iTunes DRM Audio Converter
2018-03-12 09:56 - 2018-03-12 09:56 - 000000000 ____D C:\Program Files (x86)\NoteBurner iTunes DRM Audio Converter
2018-03-12 09:47 - 2018-03-12 09:47 - 000001346 _____ C:\Users\Public\Desktop\Easy M4P Converter.lnk
2018-03-12 09:47 - 2018-03-12 09:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M4PConverter
2018-03-12 09:31 - 2018-03-12 09:31 - 000000000 ____D C:\Program Files (x86)\Elaborate Bytes
2018-03-12 09:02 - 2018-03-12 09:03 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Macsome iTunes Converter
2018-03-12 09:02 - 2018-03-12 09:02 - 000000000 ____D C:\Users\vonos\AppData\Local\CrashRpt
2018-03-12 09:01 - 2018-03-12 09:01 - 011016080 _____ C:\Users\vonos\Downloads\MacsomeIC.exe
2018-03-11 22:04 - 2018-03-12 09:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\NoteBurner iTunes DRM Audio Converter
2018-03-11 22:03 - 2018-03-11 22:03 - 070430576 _____ C:\Users\vonos\Downloads\noteburner-itunes-drm-audio-converter.exe
2018-03-11 21:59 - 2018-03-11 21:59 - 000000000 ____D C:\Users\vonos\AppData\Roaming\freemkvtomp4converter
2018-03-11 21:59 - 2018-03-11 21:59 - 000000000 ____D C:\Users\vonos\AppData\Local\SkinSoft
2018-03-11 21:57 - 2018-03-11 21:57 - 009291638 _____ (Free M4P To MP3 Converter) C:\Users\vonos\Downloads\m4ptomp3_setup.exe
2018-03-11 21:18 - 2018-03-11 21:18 - 022803288 _____ (M4P Converter, Inc. ) C:\Users\vonos\Downloads\EasyM4PConverter.exe
2018-03-11 21:18 - 2018-03-11 21:18 - 000000000 ____D C:\Users\vonos\AppData\Roaming\M4P Converter
2018-03-11 21:18 - 2018-03-11 21:18 - 000000000 ____D C:\Program Files (x86)\M4PConverter
2018-03-08 08:38 - 2018-03-08 08:38 - 018617536 _____ (Microsoft Corporation) C:\Users\vonos\Downloads\MediaCreationTool.exe
2018-03-08 08:38 - 2018-03-08 08:38 - 000000000 ___HD C:\$Windows.~WS
2018-03-07 20:25 - 2018-03-09 19:51 - 000000000 ____D C:\Users\vonos\AppData\Local\Avg
2018-03-07 20:25 - 2018-03-07 20:25 - 000000000 ____D C:\Program Files\Common Files\AVG
2018-03-07 20:14 - 2018-03-09 19:51 - 000000000 ____D C:\ProgramData\AVG
2018-03-07 20:14 - 2018-03-07 20:14 - 007371128 _____ (AVG Technologies CZ, s.r.o.) C:\Users\vonos\Downloads\avg_antivirus_free_setup.exe
2018-03-07 20:11 - 2018-03-07 20:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Apple Computer
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\Users\vonos\AppData\Local\Apple Computer
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2018-03-06 17:10 - 2018-03-06 17:10 - 000000000 ____D C:\Program Files\iPod
2018-03-06 17:09 - 2018-03-06 17:10 - 000000000 ____D C:\Program Files\iTunes
2018-03-06 17:09 - 2018-03-06 17:09 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Users\vonos\AppData\Local\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\ProgramData\Apple Computer
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\ProgramData\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files\Common Files\Apple
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files\Bonjour
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files (x86)\Bonjour
2018-03-06 17:09 - 2018-03-06 17:09 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2018-03-06 07:17 - 2018-02-22 03:23 - 001092016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-03-06 07:17 - 2018-02-22 03:23 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-03-06 07:17 - 2018-02-22 03:14 - 000270752 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2018-03-06 07:17 - 2018-02-22 03:13 - 000279456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2018-03-06 07:17 - 2018-02-22 03:13 - 000077216 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-03-06 07:17 - 2018-02-22 03:12 - 000613280 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2018-03-06 07:17 - 2018-02-22 03:11 - 000138136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2018-03-06 07:17 - 2018-02-22 03:11 - 000109984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2018-03-06 07:17 - 2018-02-22 03:10 - 001577880 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2018-03-06 07:17 - 2018-02-22 03:10 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2018-03-06 07:17 - 2018-02-22 03:09 - 000070040 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2018-03-06 07:17 - 2018-02-22 03:08 - 001206688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-03-06 07:17 - 2018-02-22 03:08 - 001055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-03-06 07:17 - 2018-02-22 03:08 - 000758168 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2018-03-06 07:17 - 2018-02-22 03:08 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-03-06 07:17 - 2018-02-22 03:08 - 000387488 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2018-03-06 07:17 - 2018-02-22 03:07 - 008603040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-03-06 07:17 - 2018-02-22 03:07 - 001415296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-03-06 07:17 - 2018-02-22 03:07 - 001209248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-03-06 07:17 - 2018-02-22 03:07 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2018-03-06 07:17 - 2018-02-22 03:06 - 002003352 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2018-03-06 07:17 - 2018-02-22 03:06 - 000662936 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2018-03-06 07:17 - 2018-02-22 03:06 - 000460704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-03-06 07:17 - 2018-02-22 03:06 - 000272792 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2018-03-06 07:17 - 2018-02-22 03:03 - 000733600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2018-03-06 07:17 - 2018-02-22 03:03 - 000712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-03-06 07:17 - 2018-02-22 03:03 - 000082848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2018-03-06 07:17 - 2018-02-22 03:02 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2018-03-06 07:17 - 2018-02-22 03:00 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-03-06 07:17 - 2018-02-22 03:00 - 000187296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2018-03-06 07:17 - 2018-02-22 02:59 - 021351624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-03-06 07:17 - 2018-02-22 02:54 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2018-03-06 07:17 - 2018-02-22 02:52 - 000103328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2018-03-06 07:17 - 2018-02-22 02:51 - 000555424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2018-03-06 07:17 - 2018-02-22 02:51 - 000097176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2018-03-06 07:17 - 2018-02-22 02:51 - 000045472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2018-03-06 07:17 - 2018-02-22 02:50 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-03-06 07:17 - 2018-02-22 01:53 - 000211872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2018-03-06 07:17 - 2018-02-22 01:50 - 025253376 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-03-06 07:17 - 2018-02-22 01:41 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-03-06 07:17 - 2018-02-22 01:31 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2018-03-06 07:17 - 2018-02-22 01:31 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2018-03-06 07:17 - 2018-02-22 01:30 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-03-06 07:17 - 2018-02-22 01:30 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2018-03-06 07:17 - 2018-02-22 01:30 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2018-03-06 07:17 - 2018-02-22 01:30 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys
2018-03-06 07:17 - 2018-02-22 01:28 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-03-06 07:17 - 2018-02-22 01:27 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2018-03-06 07:17 - 2018-02-22 01:26 - 023671808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-03-06 07:17 - 2018-02-22 01:26 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-03-06 07:17 - 2018-02-22 01:25 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2018-03-06 07:17 - 2018-02-22 01:22 - 008110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-03-06 07:17 - 2018-02-22 01:20 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2018-03-06 07:17 - 2018-02-22 01:18 - 019352576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-03-06 07:17 - 2018-02-22 01:18 - 018923008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-03-06 07:17 - 2018-02-22 01:18 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-03-06 07:17 - 2018-02-22 01:16 - 001286144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2018-03-06 07:17 - 2018-02-22 01:16 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-03-06 07:17 - 2018-02-22 01:16 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2018-03-06 07:17 - 2018-02-22 01:12 - 006031360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-03-06 07:17 - 2018-02-22 01:12 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2018-03-06 07:16 - 2018-02-22 03:07 - 000194456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2018-03-06 07:16 - 2018-02-22 02:50 - 000229272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2018-03-04 15:00 - 2018-03-04 15:00 - 000000000 ____D C:\Users\vonos\Downloads\zasilka-WGUK5ULGBM733GSA
2018-03-04 14:58 - 2018-03-04 14:59 - 759972133 _____ C:\Users\vonos\Downloads\zasilka-WGUK5ULGBM733GSA.zip
2018-02-28 20:09 - 2018-02-28 20:31 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Opera Software
2018-02-28 20:09 - 2018-02-28 20:31 - 000000000 ____D C:\Users\vonos\AppData\Local\Opera Software
2018-02-28 20:09 - 2018-02-28 20:31 - 000000000 ____D C:\Program Files\Opera
2018-02-26 15:32 - 2018-02-26 15:32 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2018-02-24 18:25 - 2018-02-24 18:25 - 000615496 _____ C:\Users\vonos\Downloads\CZ-Manual-Lamax Beat Sentinel SE-1.pdf
2018-02-21 19:26 - 2018-02-21 19:28 - 000000000 ____D C:\Users\vonos\AppData\Roaming\Novabench
2018-02-21 19:26 - 2018-02-21 19:27 - 000000000 ____D C:\ProgramData\Novabench
2018-02-21 19:26 - 2018-02-21 19:26 - 000000000 ____D C:\Users\vonos\AppData\Local\Novabench
2018-02-19 05:31 - 2018-02-19 05:31 - 000000000 ____D C:\ProgramData\Google
2018-02-18 17:24 - 2018-02-18 17:24 - 000003368 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1190194901-555339887-805972429-1002
2018-02-18 17:17 - 2018-02-18 17:17 - 000000000 ____D C:\Asus WebStorage
2018-02-18 11:51 - 2018-02-18 11:51 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2018-02-18 11:05 - 2018-02-18 11:05 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2018-02-18 11:05 - 2018-02-18 11:05 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2018-02-18 10:56 - 2018-03-08 12:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\WINDOWS\PCHEALTH
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\Program Files\Microsoft SQL Server
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2018-02-18 10:55 - 2018-02-18 10:55 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2018-02-18 10:54 - 2018-02-18 10:55 - 000000000 ____D C:\WINDOWS\SHELLNEW
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 __RHD C:\MSOCache
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 ____D C:\Users\vonos\AppData\Local\Microsoft Help
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 ____D C:\Program Files\Microsoft Analysis Services
2018-02-18 10:54 - 2018-02-18 10:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2018-02-18 10:20 - 2018-02-18 10:20 - 006985000 _____ (Microsoft Corporation) C:\Users\vonos\Downloads\Setup.x64.cs-cz_ProfessionalRetail_NKGG6-WBPCC-HXWMY-6DQGJ-CPQVG_act_1_.exe
2018-02-18 10:17 - 2018-02-18 17:24 - 000002389 _____ C:\Users\vonos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-02-18 10:17 - 2018-02-18 17:24 - 000000000 ___RD C:\Users\vonos\OneDrive
2018-02-18 10:17 - 2018-02-18 10:39 - 000002325 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-02-18 10:17 - 2018-02-18 10:39 - 000002325 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-02-18 10:17 - 2018-02-18 10:39 - 000000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2018-02-18 10:10 - 2018-02-18 10:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-02-18 10:06 - 2018-02-18 10:10 - 2825566208 _____ C:\Users\vonos\Downloads\ProfessionalRetail.img
2018-02-18 09:58 - 2018-02-18 09:58 - 000000000 ___HD C:\Users\vonos\Documents\KingsoftData
2018-02-18 09:58 - 2018-02-18 09:58 - 000000000 ____D C:\Users\vonos\Documents\Kingsoft
2018-02-17 18:48 - 2018-03-12 11:32 - 000000219 _____ C:\Users\vonos\AppData\Roaming\sp_data.sys
2018-02-17 18:46 - 2018-02-17 18:46 - 000003108 _____ C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON
2018-02-17 18:42 - 2018-02-17 18:42 - 034533557 _____ C:\Users\vonos\Downloads\Splendid_Win_10_VER3220005.zip
2018-02-17 14:15 - 2018-02-17 14:15 - 000007605 _____ C:\Users\vonos\AppData\Local\Resmon.ResmonCfg
2018-02-17 13:50 - 2018-02-17 14:00 - 000002268 ____H C:\Users\vonos\Documents\Default.rdp
2018-02-16 21:23 - 2018-02-16 21:23 - 000003618 _____ C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-vonostransky@gmail.com
2018-02-16 13:15 - 2018-02-16 13:15 - 000000041 ____H C:\Users\vonos\Documents\.picasa.ini
2018-02-14 17:48 - 2018-02-10 07:21 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2018-02-14 17:48 - 2018-02-10 07:20 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-02-14 17:48 - 2018-02-10 07:18 - 001193192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2018-02-14 17:48 - 2018-02-10 07:18 - 000319864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2018-02-14 17:48 - 2018-02-10 07:16 - 002406456 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-02-14 17:48 - 2018-02-10 07:16 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2018-02-14 17:48 - 2018-02-10 07:15 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-02-14 17:48 - 2018-02-10 07:15 - 000471968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-02-14 17:48 - 2018-02-10 07:14 - 004504464 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-02-14 17:48 - 2018-02-10 07:14 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-02-14 17:48 - 2018-02-10 07:14 - 001002592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2018-02-14 17:48 - 2018-02-10 07:13 - 001416392 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2018-02-14 17:48 - 2018-02-10 07:13 - 000408984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-02-14 17:48 - 2018-02-10 07:13 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2018-02-14 17:48 - 2018-02-10 07:12 - 004537040 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2018-02-14 17:48 - 2018-02-10 07:12 - 001313016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2018-02-14 17:48 - 2018-02-10 07:12 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-02-14 17:48 - 2018-02-10 07:11 - 001029528 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2018-02-14 17:48 - 2018-02-10 07:11 - 000711432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-02-14 17:48 - 2018-02-10 07:11 - 000677784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-02-14 17:48 - 2018-02-10 07:10 - 002447768 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2018-02-14 17:48 - 2018-02-10 07:10 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-02-14 17:48 - 2018-02-10 07:10 - 000614160 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2018-02-14 17:48 - 2018-02-10 07:10 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-02-14 17:48 - 2018-02-10 07:10 - 000154520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2018-02-14 17:48 - 2018-02-10 07:09 - 003904296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2018-02-14 17:48 - 2018-02-10 07:09 - 000755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2018-02-14 17:48 - 2018-02-10 07:09 - 000075160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 007675784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 003010248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 002574232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-02-14 17:48 - 2018-02-10 07:08 - 000096200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2018-02-14 17:48 - 2018-02-10 07:08 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2018-02-14 17:48 - 2018-02-10 07:07 - 004506576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-02-14 17:48 - 2018-02-10 07:07 - 002710728 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 004486904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000824896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000727448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-02-14 17:48 - 2018-02-10 07:06 - 000519144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2018-02-14 17:48 - 2018-02-10 07:06 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2018-02-14 17:48 - 2018-02-10 07:06 - 000189336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000100248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2018-02-14 17:48 - 2018-02-10 07:06 - 000087384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2018-02-14 17:48 - 2018-02-10 07:05 - 000688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2018-02-14 17:48 - 2018-02-10 07:05 - 000413888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 007384576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 006791984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001430760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2018-02-14 17:48 - 2018-02-10 07:04 - 001426672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001254144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 000614296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2018-02-14 17:48 - 2018-02-10 07:04 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-02-14 17:48 - 2018-02-10 07:04 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2018-02-14 17:48 - 2018-02-10 07:04 - 000339872 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-02-14 17:48 - 2018-02-10 07:04 - 000093592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2018-02-14 17:48 - 2018-02-10 07:03 - 001619808 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-02-14 17:48 - 2018-02-10 07:03 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 002773400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-02-14 17:48 - 2018-02-10 07:02 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 001103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-02-14 17:48 - 2018-02-10 07:02 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 000670104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2018-02-14 17:48 - 2018-02-10 07:02 - 000617304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-02-14 17:48 - 2018-02-10 06:21 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-02-14 17:48 - 2018-02-10 06:17 - 002255112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-02-14 17:48 - 2018-02-10 06:17 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2018-02-14 17:48 - 2018-02-10 06:17 - 000542856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2018-02-14 17:48 - 2018-02-10 06:15 - 001145624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2018-02-14 17:48 - 2018-02-10 06:12 - 004382032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2018-02-14 17:48 - 2018-02-10 06:11 - 001250528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2018-02-14 17:48 - 2018-02-10 06:09 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-02-14 17:48 - 2018-02-10 06:09 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2018-02-14 17:48 - 2018-02-10 06:09 - 002338776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-02-14 17:48 - 2018-02-10 06:09 - 001123456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2018-02-14 17:48 - 2018-02-10 06:08 - 003980720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2018-02-14 17:48 - 2018-02-10 06:08 - 002193168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000543920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000527864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000123808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000089504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2018-02-14 17:48 - 2018-02-10 06:07 - 000083216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbrand.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 006481640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 006014688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 004670728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-02-14 17:48 - 2018-02-10 06:06 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 001149272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 000662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 000386424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2018-02-14 17:48 - 2018-02-10 06:05 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll