Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08.11.2018
Ran by MeGret-TPC (administrator) on FRNDA (09-11-2018 21:54:22)
Running from C:\Users\MeGret-TPC\Downloads
Loaded Profiles: MeGret-TPC (Available Profiles: MeGret-TPC)
Platform: Windows 10 Pro Version 1803 17134.165 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AMD) C:\Windows\System32\DriverStore\FileRepository\c0335076.inf_amd64_86bc242f42070102\B334840\atiesrxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AMD) C:\Windows\System32\DriverStore\FileRepository\c0335076.inf_amd64_86bc242f42070102\B334840\atieclxx.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
() C:\Windows\SysWOW64\ASGT.exe
() C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\MsMpEng.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\NisSrv.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\steam\Steam.exe
() C:\Users\MeGret-TPC\AppData\Local\GameCenter\GameCenter.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Valve Corporation) C:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(InstallShield Software Corporation) C:\Windows\SysWOW64\InstallShield\setup.exe
(Valve Corporation) C:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
() C:\Users\MeGret-TPC\AppData\Local\GameCenter\GameCenter.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe
(EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18081.14710.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-08-17] (Realtek Semiconductor)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [CTxfiHlp] => CTXFIHLP.EXE*
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\Run: [World of Tanks] => "C:\World_of_Tanks\WargamingGameUpdater.exe"
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\Run: [World of Warships] => "C:\World_of_Warships\WargamingGameUpdater.exe"
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\Run: [Steam] => C:\steam\steam.exe [3131680 2018-11-08] (Valve Corporation)
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\Run: [World of Tanks (1)] => C:\Games\World_of_Tanks\WargamingGameUpdater.exe [3139936 2018-06-25] (Wargaming.net)
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\Run: [GameCenter] => C:\Users\MeGret-TPC\AppData\Local\GameCenter\GameCenter.exe [9660032 2018-11-07] ()
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\MountPoints2: {0a26cf40-38e2-11e6-9bc2-806e6f6e6963} - "I:\setup.exe"
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\MountPoints2: {6faddee6-cef4-11e8-9c3f-806e6f6e6963} - "D:\DVDSetup.exe"
HKU\S-1-5-21-819675408-2753461327-3771956256-1001\...\MountPoints2: {8b1956be-cef6-11e8-9c42-309c23650ed5} - "E:\Lenovo_Suite.exe"
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe [6310864 2015-12-29] (TODO: <Company name>)
HKU\S-1-5-18\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\ASUS\GPU TweakII\Monitor.exe [2670032 2015-11-30] (TODO: <Company name>)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyEnable: [S-1-5-21-819675408-2753461327-3771956256-1001] => Proxy is enabled.
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{3d7f9148-dbce-4743-8c61-116810bab61a}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{7fc6b593-8724-4a27-8431-9e2851ce2358}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\ssv.dll => No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\jp2ssv.dll => No File
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_31_0_0_122.dll [2018-10-14] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_122.dll [2018-10-14] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [No File]
FF Plugin-x32: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [No File]
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [No File]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-10-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-10-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.5.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [No File]
Chrome:
=======
CHR HomePage: Default -> hxxp://searchya.com/
CHR StartupUrls: Default -> "hxxp://search.b1.org/?bsrc=hmcor&chid=c167991","hxxp://search.babylon.com/?babsrc=HP_ss&mntrId=B8B1001A92E7EC77&affID=123897&tsp=4992","hxxp://www.google.com","hxxp://www.mystartsearch.com/?type=hp&ts=1419621420&from=amt&uid=ST3500418AS_9VMNAB90XXXX9VMNAB90"
CHR Profile: C:\Users\MeGret-TPC\AppData\Local\Google\Chrome\User Data\Default [2018-11-09]
CHR Extension: (Překladač Google) - C:\Users\MeGret-TPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2018-11-08]
CHR Extension: (Proxy SwitchySharp) - C:\Users\MeGret-TPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpplabbmogkhghncfbfdeeokoefdjegm [2018-11-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\MeGret-TPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-11-08]
CHR Extension: (Evernote Web Clipper) - C:\Users\MeGret-TPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2018-11-08]
CHR Extension: (Chrome Media Router) - C:\Users\MeGret-TPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-08]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\c0335076.inf_amd64_86bc242f42070102\B334840\atiesrxx.exe [508000 2018-10-25] (AMD)
R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [48640 2015-08-18] () [File not signed]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1404936 2018-11-03] ()
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [9872688 2018-11-09] (EnigmaSoft Limited)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
R2 SamsungUPDUtilSvc; C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe [143664 2017-06-08] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-04-12] (Microsoft Corporation)
R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [538416 2018-11-09] (EnigmaSoft Limited)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\NisSrv.exe [3917016 2018-10-23] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MsMpEng.exe [114208 2018-10-23] (Microsoft Corporation)
S3 Creative Audio Engine Licensing Service; "C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe" [X]
S3 MozillaMaintenance; "C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
S3 ose; "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE" [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [43400 2017-03-01] (Advanced Micro Devices, Inc)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [24424 2016-08-12] (Advanced Micro Devices, Inc)
S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [67576 2018-10-25] (Advanced Micro Devices, Inc.)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-12] (Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0335076.inf_amd64_86bc242f42070102\B334840\atikmdag.sys [47503976 2018-10-25] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0335076.inf_amd64_86bc242f42070102\B334840\atikmpag.sys [589920 2018-10-25] (Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [103928 2018-10-11] (Advanced Micro Devices, Inc.)
R3 AMDPCIDev; C:\WINDOWS\System32\drivers\AMDPCIDev.sys [31592 2018-04-25] (Advanced Micro Devices)
R0 amdpsp; C:\WINDOWS\System32\DRIVERS\amdpsp.sys [243048 2017-06-12] (Advanced Micro Devices, Inc. )
R0 asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [89448 2015-10-01] (Asmedia Technology)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [107400 2018-10-03] (Advanced Micro Devices)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 EnigmaFileMonDriver; C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys [61624 2018-11-09] (EnigmaSoft Limited)
R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2014-10-23] (ASUSTeK Computer Inc.)
S3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_2e7fa54192fe16d0\nvlddmkm.sys [16936048 2017-11-09] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [984032 2017-06-05] (Realtek )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46184 2018-10-23] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [328696 2018-10-23] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60408 2018-10-23] (Microsoft Corporation)
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-09 21:54 - 2018-11-09 21:54 - 000016596 _____ C:\Users\MeGret-TPC\Downloads\FRST.txt
2018-11-09 21:54 - 2018-11-09 21:54 - 000000000 ____D C:\FRST
2018-11-09 21:53 - 2018-11-09 21:53 - 002415616 _____ (Farbar) C:\Users\MeGret-TPC\Downloads\FRST64.exe
2018-11-09 20:52 - 2018-11-09 20:53 - 075919050 _____ C:\Users\MeGret-TPC\Downloads\SpyHunter 4.16.5.4290 CZ (ML) Portable.rar
2018-11-09 20:49 - 2018-11-09 20:49 - 003393800 _____ (ParetoLogic) C:\Users\MeGret-TPC\Downloads\Pareto_DR_Setup_RW.exe
2018-11-09 20:41 - 2018-11-09 20:41 - 000379392 _____ C:\Users\MeGret-TPC\Downloads\subinacl.msi
2018-11-09 20:41 - 2018-11-09 20:41 - 000000000 ____D C:\Program Files (x86)\Windows Resource Kits
2018-11-09 20:36 - 2018-11-09 20:36 - 005937968 _____ (EnigmaSoft Limited) C:\Users\MeGret-TPC\Downloads\SpyHunter-Installer (3).exe
2018-11-09 20:35 - 2018-11-09 20:36 - 005937968 _____ (EnigmaSoft Limited) C:\Users\MeGret-TPC\Downloads\SpyHunter-Installer (2).exe
2018-11-09 20:30 - 2018-11-09 20:30 - 011546736 _____ (Bitdefender LLC) C:\Users\MeGret-TPC\Downloads\BDGandCrabDecryptTool.exe
2018-11-09 20:29 - 2018-11-09 20:29 - 005937968 _____ (EnigmaSoft Limited) C:\Users\MeGret-TPC\Downloads\SpyHunter-Installer (1).exe
2018-11-09 20:19 - 2018-11-09 20:19 - 000061624 _____ (EnigmaSoft Limited) C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys
2018-11-09 20:19 - 2018-11-09 20:19 - 000001055 _____ C:\Users\Public\Desktop\SpyHunter5.lnk
2018-11-09 20:19 - 2018-11-09 20:19 - 000000000 ____D C:\sh5ldr
2018-11-09 20:19 - 2018-11-09 20:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft
2018-11-09 20:19 - 2018-11-09 20:19 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited
2018-11-09 20:18 - 2018-11-09 20:18 - 005937968 _____ (EnigmaSoft Limited) C:\Users\MeGret-TPC\Downloads\SpyHunter-Installer.exe
2018-11-09 20:18 - 2018-11-09 20:18 - 000000000 ____D C:\Program Files\EnigmaSoft
2018-11-09 19:54 - 2018-11-09 19:55 - 006066688 _____ C:\Users\MeGret-TPC\AppData\Local\dump007.dat
2018-11-08 23:31 - 2018-11-08 23:31 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Google
2018-11-08 23:21 - 2018-11-08 23:21 - 000000020 ___SH C:\Users\MeGret-TPC\ntuser.ini
2018-11-08 18:40 - 2018-11-08 18:40 - 000008914 _____ C:\Users\Public\RZKCMSV-DECRYPT.txt
2018-11-08 18:40 - 2018-11-08 18:40 - 000008914 _____ C:\Users\MeGret-TPC\Downloads\RZKCMSV-DECRYPT.txt
2018-11-08 18:40 - 2018-11-08 18:40 - 000008914 _____ C:\Users\MeGret-TPC\Documents\RZKCMSV-DECRYPT.txt
2018-11-08 18:40 - 2018-11-08 18:40 - 000008914 _____ C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\RZKCMSV-DECRYPT.txt
2018-11-08 18:40 - 2018-11-08 18:40 - 000000000 ____D C:\ProgramData\Blogger
2018-11-08 18:38 - 2018-11-08 18:38 - 000008914 _____ C:\Users\MeGret-TPC\AppData\Roaming\RZKCMSV-DECRYPT.txt
2018-11-08 18:38 - 2018-11-08 18:38 - 000008914 _____ C:\Users\MeGret-TPC\AppData\LocalLow\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Survarium
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\MeGret-TPC\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\MeGret-TPC\AppData\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\MeGret-TPC\AppData\Local\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\Downloads\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\Documents\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\Desktop\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\AppData\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\AppData\Roaming\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default\AppData\Local\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\Downloads\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\Documents\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\Desktop\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\AppData\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\AppData\Roaming\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Users\Default User\AppData\Local\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Program Files\RZKCMSV-DECRYPT.txt
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ C:\Program Files (x86)\RZKCMSV-DECRYPT.txt
2018-11-08 18:35 - 2018-11-09 20:23 - 000000000 ____D C:\ProgramData\kitot
2018-11-08 18:35 - 2018-11-08 18:35 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2018-11-08 18:35 - 2018-11-08 18:35 - 000000000 ____D C:\Program Files\Reference Assemblies
2018-11-08 18:35 - 2018-11-08 18:35 - 000000000 ____D C:\Program Files\MSBuild
2018-11-08 18:35 - 2018-11-08 18:35 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2018-11-08 18:35 - 2018-11-08 18:35 - 000000000 ____D C:\Program Files (x86)\MSBuild
2018-11-08 18:34 - 2018-11-08 23:21 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\William
2018-11-08 18:34 - 2018-03-05 16:07 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2018-11-08 18:34 - 2018-03-05 16:07 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2018-11-08 18:34 - 2018-03-05 16:07 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2018-11-08 18:34 - 2018-02-14 16:21 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2018-11-08 18:34 - 2018-02-14 16:21 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2018-11-08 18:34 - 2018-02-14 16:21 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2018-11-08 18:11 - 2018-11-08 18:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\Creepy Jar
2018-11-08 18:02 - 2018-11-08 18:40 - 000000000 ____D C:\Users\MeGret-TPC\Downloads\Green.Hell
2018-11-08 01:37 - 2018-11-08 18:40 - 3971751114 _____ C:\Users\MeGret-TPC\Downloads\Green.Hell.rar.rzkcmsv
2018-11-08 01:34 - 2018-11-08 18:40 - 000667312 _____ C:\Users\MeGret-TPC\Downloads\The.Forest.Steamworks.Fix.V7-REVOLT.rar.rzkcmsv
2018-11-08 01:30 - 2018-11-08 18:40 - 2455714870 _____ C:\Users\MeGret-TPC\Downloads\The.Forest.V0.73b.Steam.Rip.rar.rzkcmsv
2018-11-08 00:58 - 2018-11-08 18:37 - 000000542 _____ C:\Users\MeGret-TPC\AppData\Local\imw.ini.rzkcmsv
2018-11-08 00:58 - 2018-11-08 00:58 - 000003892 _____ C:\WINDOWS\System32\Tasks\{B4B9A496-1465-614B-42E6-E9FACFD9FDCB}
2018-11-08 00:58 - 2018-11-08 00:58 - 000003716 _____ C:\WINDOWS\System32\Tasks\{63FF5D84-F332-3C55-1873-E2C6DE6F96AA}
2018-11-08 00:58 - 2018-11-08 00:58 - 000003504 _____ C:\WINDOWS\System32\Tasks\{36E954AC-8F78-691F-B718-D4CE7E4BCF08}
2018-11-08 00:52 - 2018-11-08 18:40 - 001055148 _____ C:\Users\MeGret-TPC\Downloads\rubinumpatcher_d7927.zip.rzkcmsv
2018-11-03 22:28 - 2018-11-08 18:39 - 000018925 _____ C:\Users\MeGret-TPC\Desktop\avatar-therapy-early-trial-results-very-encouraging-20171123-600x600.jpg.rzkcmsv
2018-11-03 19:45 - 2018-11-08 18:39 - 000000742 _____ C:\Users\MeGret-TPC\Desktop\ARK Survival Of The Fittest.url.rzkcmsv
2018-11-03 19:42 - 2018-11-08 18:40 - 000000000 ____D C:\Users\MeGret-TPC\Desktop\screenshots
2018-11-03 19:23 - 2018-11-08 18:40 - 000000000 ____D C:\Users\MeGret-TPC\Desktop\Nová složka
2018-11-03 18:36 - 2018-11-08 18:40 - 000000000 ___RD C:\Users\MeGret-TPC\Downloads\325289AEDD75.TorrentRTFREE_qtx9tqphctw9r!App
2018-11-03 12:07 - 2018-11-08 18:39 - 000133585 _____ C:\Users\MeGret-TPC\Desktop\bubny.jpg.rzkcmsv
2018-11-03 11:37 - 2018-11-09 20:07 - 000000000 ____D C:\steam
2018-11-03 11:37 - 2018-11-03 11:37 - 000000599 _____ C:\Users\Public\Desktop\Steam.lnk
2018-11-03 11:36 - 2018-11-03 11:36 - 001573568 _____ C:\Users\MeGret-TPC\Downloads\SteamSetup.exe
2018-11-02 16:12 - 2018-11-08 18:40 - 096827379 _____ C:\Users\MeGret-TPC\Downloads\Power Metal Collection Vol.172.aac.rzkcmsv
2018-11-02 16:01 - 2018-11-08 18:40 - 089166651 _____ C:\Users\MeGret-TPC\Downloads\Epic Rock Metal Aggressive Gaming Music __ 2017.aac.rzkcmsv
2018-11-02 15:56 - 2018-11-08 18:40 - 100272106 _____ C:\Users\MeGret-TPC\Downloads\Metal Covers of Popular Songs 2015.aac.rzkcmsv
2018-11-02 15:49 - 2018-11-08 18:40 - 111787356 _____ C:\Users\MeGret-TPC\Downloads\Metal Covers of Popular Songs _ Ultimate Mix.aac.rzkcmsv
2018-11-02 15:33 - 2018-11-08 18:39 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Bigasoft Total Video Converter 5
2018-11-02 15:33 - 2018-11-02 15:33 - 000001306 _____ C:\Users\Public\Desktop\Bigasoft Total Video Converter 5.lnk
2018-11-02 15:33 - 2018-11-02 15:33 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bigasoft
2018-11-02 15:33 - 2018-11-02 15:33 - 000000000 ____D C:\Program Files (x86)\Bigasoft
2018-11-02 15:32 - 2018-11-08 18:40 - 019880832 _____ C:\Users\MeGret-TPC\Downloads\Bigasoft-Total-Video-Converter-5.1.1.6250.rar.rzkcmsv
2018-11-02 13:56 - 2018-11-02 13:56 - 006145289 _____ () C:\Users\MeGret-TPC\Downloads\SlovenčinaAW (1).exe
2018-11-02 13:54 - 2018-11-02 13:55 - 006145289 _____ () C:\Users\MeGret-TPC\Downloads\SlovenčinaAW.exe
2018-11-02 09:41 - 2018-11-02 09:43 - 141060687 _____ (Aslain ) C:\Users\MeGret-TPC\Downloads\Aslains_WoT_Modpack_Installer_v.1.2.0.1_10 (1).exe
2018-11-02 09:30 - 2018-11-02 11:11 - 000000880 _____ C:\Users\MeGret-TPC\Desktop\Aslains WoT Logs Archiver.lnk
2018-11-02 09:24 - 2018-11-02 09:25 - 141060687 _____ (Aslain ) C:\Users\MeGret-TPC\Downloads\Aslains_WoT_Modpack_Installer_v.1.2.0.1_10.exe
2018-10-30 19:11 - 2018-11-08 18:40 - 000000000 ____D C:\Users\MeGret-TPC\Desktop\Camera
2018-10-29 23:30 - 2018-11-08 18:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\AMD
2018-10-29 23:29 - 2018-10-29 23:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings
2018-10-29 23:25 - 2018-11-08 18:39 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\ATI
2018-10-29 23:25 - 2018-11-08 18:36 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\ATI
2018-10-29 23:25 - 2018-10-29 23:25 - 000000060 _____ C:\ProgramData\SoftwareUpdateTemp.xml
2018-10-29 23:25 - 2018-10-29 23:25 - 000000000 ____D C:\ProgramData\ATI
2018-10-29 17:42 - 2018-11-08 18:40 - 000000000 ____D C:\Users\MeGret-TPC\Downloads\MediaHuman
2018-10-29 17:40 - 2018-11-08 18:40 - 000000760 _____ C:\Users\MeGret-TPC\Desktop\Visit MediaHuman Website.url.rzkcmsv
2018-10-29 17:40 - 2018-11-08 18:37 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\MediaHuman
2018-10-29 17:40 - 2018-10-29 17:42 - 000001317 _____ C:\Users\MeGret-TPC\Desktop\MediaHuman YouTube to MP3 Converter.lnk
2018-10-29 17:40 - 2018-10-29 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaHuman
2018-10-29 17:40 - 2018-10-29 17:40 - 000000000 ____D C:\Program Files (x86)\MediaHuman
2018-10-25 19:50 - 2018-10-25 19:50 - 001587816 _____ (AMD) C:\WINDOWS\system32\coinst_18.40.dll
2018-10-25 19:50 - 2018-10-25 19:50 - 001192032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2018-10-25 19:50 - 2018-10-25 19:50 - 000178792 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2018-10-25 19:50 - 2018-10-25 19:50 - 000154720 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2018-10-25 19:50 - 2018-10-25 19:50 - 000019392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2018-10-25 19:50 - 2018-10-25 19:50 - 000019392 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2018-10-22 12:32 - 2018-11-08 18:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\RadeonSettings
2018-10-19 23:06 - 2018-10-19 23:06 - 000166728 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2018-10-19 23:06 - 2018-10-19 23:06 - 000137888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2018-10-19 21:32 - 2018-11-08 18:36 - 000000620 ___SH C:\bootTel.dat.rzkcmsv
2018-10-17 20:15 - 2018-11-08 18:40 - 000000000 ___RD C:\Users\MeGret-TPC\OneDrive
2018-10-15 22:55 - 2018-10-15 22:55 - 000000000 ____D C:\Program Files\Microsoft Office
2018-10-15 22:55 - 2018-10-15 22:55 - 000000000 ____D C:\Program Files (x86)\Microsoft Works
2018-10-15 20:19 - 2018-11-08 18:36 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2018-10-15 20:19 - 2018-11-08 18:36 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2018-10-15 20:19 - 2018-10-15 22:55 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-10-15 20:19 - 2018-10-15 20:19 - 000000000 ____D C:\WINDOWS\PCHEALTH
2018-10-15 20:19 - 2018-10-15 20:19 - 000000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2018-10-14 21:34 - 2018-10-14 21:34 - 000003472 _____ C:\WINDOWS\System32\Tasks\CrystalDiskInfo
2018-10-14 21:33 - 2018-11-08 18:39 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Seznam.cz
2018-10-14 21:33 - 2018-10-20 12:41 - 000000000 ____D C:\Program Files (x86)\Seznam.cz
2018-10-14 21:33 - 2018-10-14 21:33 - 000001229 _____ C:\Users\MeGret-TPC\Desktop\CrystalDiskInfo.lnk
2018-10-14 21:33 - 2018-10-14 21:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2018-10-14 21:33 - 2018-10-14 21:33 - 000000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2018-10-14 18:42 - 2018-10-14 18:46 - 000000000 ____D C:\WINDOWS\AutoKMS
2018-10-14 18:38 - 2018-10-14 18:38 - 000000000 ____D C:\ProgramData\Microsoft Toolkit
2018-10-14 18:32 - 2018-10-14 18:32 - 000000000 ____D C:\Program Files\WinRAR
2018-10-14 18:19 - 2018-09-04 23:36 - 001476904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2018-10-14 12:10 - 2018-11-08 18:36 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\CrashRpt
2018-10-14 10:56 - 2018-10-14 10:56 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Armored Warfare MyCom Beta
2018-10-14 09:24 - 2018-11-08 18:39 - 000000663 _____ C:\Users\MeGret-TPC\Desktop\Armored Warfare.url.rzkcmsv
2018-10-14 09:24 - 2018-11-08 18:36 - 000000000 ____D C:\MyGames
2018-10-14 09:24 - 2018-10-14 09:24 - 000002143 _____ C:\Users\MeGret-TPC\Desktop\GameCenter My.com.lnk
2018-10-14 09:24 - 2018-10-14 09:24 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2018-10-14 09:23 - 2018-11-09 21:28 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\GameCenter
2018-10-14 09:23 - 2018-10-14 09:23 - 008769664 _____ C:\Users\MeGret-TPC\ArmoredWarfareMycomLoader_fb3ab908112fbbbacaafe8d75cdbd00d_A_en.exe
2018-10-14 09:04 - 2018-10-29 23:29 - 000003074 _____ C:\WINDOWS\System32\Tasks\StartDVR
2018-10-14 09:04 - 2018-10-25 19:50 - 000067576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdkmafd.sys
2018-10-14 09:04 - 2018-10-14 09:04 - 000000000 ____D C:\WINDOWS\system32\AMD
2018-10-14 09:04 - 2018-10-14 09:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\##ID_STRING16##
2018-10-14 07:44 - 2018-10-29 23:29 - 000003160 _____ C:\WINDOWS\System32\Tasks\StartCN
2018-10-14 07:44 - 2018-10-14 09:04 - 000000000 ____D C:\Program Files (x86)\AMD
2018-10-14 07:20 - 2018-10-14 07:20 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2018-10-14 07:20 - 2018-10-11 20:41 - 000103928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdkmpfd.sys
2018-10-14 07:19 - 2018-10-29 23:28 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-10-14 07:18 - 2018-11-08 18:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\RadeonInstaller
2018-10-14 07:13 - 2018-10-14 07:16 - 334555304 _____ (AMD Inc.) C:\Users\MeGret-TPC\win10-64bit-radeon-software-adrenalin-edition-18.10.1-oct10.exe
2018-10-14 01:18 - 2018-11-08 18:36 - 000000000 ____D C:\Games
2018-10-14 01:18 - 2018-10-14 01:18 - 000000810 _____ C:\Users\MeGret-TPC\Desktop\World of Tanks.lnk
2018-10-14 01:18 - 2018-10-14 01:18 - 000000000 ___HD C:\WINDOWS\msdownld.tmp
2018-10-14 01:18 - 2018-10-14 01:18 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2018-10-14 01:18 - 2018-10-14 01:18 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2018-10-14 01:17 - 2018-10-14 01:17 - 004685584 _____ (Wargaming.net ) C:\Users\MeGret-TPC\wot.exe
2018-10-14 01:13 - 2018-10-26 19:58 - 000002261 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-10-14 01:13 - 2018-10-26 19:58 - 000002220 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-10-14 01:12 - 2018-11-08 18:37 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Google
2018-10-14 01:12 - 2018-10-14 01:13 - 000000000 ____D C:\Program Files (x86)\Google
2018-10-14 01:12 - 2018-10-14 01:12 - 000003472 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2018-10-14 01:12 - 2018-10-14 01:12 - 000003348 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2018-10-13 15:47 - 2018-10-13 15:47 - 000000000 ____D C:\Program Files (x86)\ASM106xSATA
2018-10-13 15:44 - 2018-10-13 15:44 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2018-10-13 15:44 - 2018-10-13 15:44 - 000000000 ____D C:\WINDOWS\system32\DAX3
2018-10-13 15:44 - 2018-10-13 15:44 - 000000000 ____D C:\WINDOWS\system32\DAX2
2018-10-13 15:43 - 2017-08-17 15:17 - 003299816 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 002190984 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 001382232 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 001337640 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000873456 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000852136 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000604800 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000532376 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000221968 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000166200 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000158696 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2018-10-13 15:43 - 2017-08-17 15:17 - 000075536 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 072520712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2018-10-13 15:43 - 2017-08-17 15:16 - 007172912 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 005899752 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2018-10-13 15:43 - 2017-08-17 15:16 - 003677160 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2018-10-13 15:43 - 2017-08-17 15:16 - 003509200 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 003410832 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 003205120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 003122656 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 001435136 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 001348160 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 001016928 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000984912 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000965024 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000877432 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000868176 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000866640 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000737968 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000691680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000526280 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000467152 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000387312 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000381408 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000343704 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000341152 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000341152 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000321712 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000321712 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000258864 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000231912 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000214832 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000192976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000110976 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000090912 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000088344 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000088320 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000083624 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2018-10-13 15:43 - 2017-08-17 15:16 - 000023696 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 007096184 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 006264632 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 005346992 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 003517496 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 003099544 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 002444680 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001965808 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001959600 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001780616 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001591056 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001554600 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001508928 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001326424 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001170872 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 001159184 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000743960 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000727432 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000708312 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000680544 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000504304 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000447720 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000445400 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000441264 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000416504 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000406456 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000378384 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000366120 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000362056 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000360344 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000327456 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000310424 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000272712 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000253896 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000253856 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000252872 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000203840 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000190936 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000190928 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000179592 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000154360 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000151784 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000134200 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000122320 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000118592 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000105304 _____ C:\WINDOWS\system32\audioLibVc.dll
2018-10-13 15:43 - 2017-08-17 15:15 - 000084616 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2018-10-13 15:43 - 2017-08-16 19:35 - 013213369 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2018-10-13 15:43 - 2017-08-16 19:35 - 005804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2018-10-13 15:43 - 2017-07-21 10:17 - 002839488 ____R (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2018-10-13 15:42 - 2018-11-08 18:36 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\AMD
2018-10-13 15:40 - 2018-11-09 20:06 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2018-10-13 15:40 - 2018-11-08 18:36 - 000000000 ____D C:\AMD
2018-10-13 15:35 - 2018-10-13 15:35 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2018-10-13 15:35 - 2017-06-12 04:07 - 000091632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdumcsp.dll
2018-10-13 15:35 - 2017-06-12 04:07 - 000071664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdumcsp.dll
2018-10-13 15:35 - 2017-06-12 04:07 - 000026096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\t-base_client_api.dll
2018-10-13 15:35 - 2017-06-12 04:07 - 000022000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\t-base_client_api.dll
2018-10-13 15:33 - 2018-10-29 23:29 - 000000000 ____D C:\Program Files\AMD
2018-10-13 15:32 - 2018-10-13 15:43 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2018-10-13 15:32 - 2018-10-13 15:38 - 000000000 ____D C:\Program Files (x86)\Realtek
2018-10-13 15:32 - 2017-06-05 08:20 - 000984032 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2018-10-11 20:41 - 2018-10-25 19:50 - 003712096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2018-10-11 20:41 - 2018-10-25 19:50 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2018-10-11 20:41 - 2018-10-25 19:50 - 003340896 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 001629280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 001192032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000920160 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000899920 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2018-10-11 20:41 - 2018-10-25 19:50 - 000899920 _____ C:\WINDOWS\system32\atiapfxx.blb
2018-10-11 20:41 - 2018-10-25 19:50 - 000753256 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2018-10-11 20:41 - 2018-10-25 19:50 - 000750688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000570992 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000553064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000544816 _____ C:\WINDOWS\system32\amdmiracast.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000492136 _____ C:\WINDOWS\system32\dgtrayicon.exe
2018-10-11 20:41 - 2018-10-25 19:50 - 000481904 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000476768 _____ C:\WINDOWS\system32\GameManager64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000468072 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000465504 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000432224 _____ C:\WINDOWS\system32\atieah64.exe
2018-10-11 20:41 - 2018-10-25 19:50 - 000383072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000381544 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000377448 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000349288 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2018-10-11 20:41 - 2018-10-25 19:50 - 000339552 _____ C:\WINDOWS\system32\clinfo.exe
2018-10-11 20:41 - 2018-10-25 19:50 - 000249440 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000218208 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000199360 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000184424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000173392 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000169264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000162912 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000159848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000153192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000149128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000144816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000138344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000137080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000137080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000135776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000132712 _____ C:\WINDOWS\system32\atidxx64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000128104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000125024 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000124552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000113104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000113104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000111712 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000108648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000069736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000046192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2018-10-11 20:41 - 2018-10-25 19:50 - 000043120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2018-10-11 20:41 - 2018-10-11 20:41 - 001663112 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2018-10-11 20:41 - 2018-10-11 20:41 - 001629296 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\SETDB6B.tmp
2018-10-11 20:41 - 2018-10-11 20:41 - 001347184 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2018-10-11 20:41 - 2018-10-11 20:41 - 000413600 _____ C:\WINDOWS\system32\EEURestart.exe
2018-10-11 20:41 - 2018-10-11 20:41 - 000204952 _____ C:\WINDOWS\SysWOW64\ativvsvl.dat
2018-10-11 20:41 - 2018-10-11 20:41 - 000204952 _____ C:\WINDOWS\system32\ativvsvl.dat
2018-10-11 20:41 - 2018-10-11 20:41 - 000157144 _____ C:\WINDOWS\SysWOW64\ativvsva.dat
2018-10-11 20:41 - 2018-10-11 20:41 - 000157144 _____ C:\WINDOWS\system32\ativvsva.dat
2018-10-11 20:41 - 2018-10-11 20:41 - 000154384 _____ C:\WINDOWS\system32\samu_krnl_ci.sbin
2018-10-11 20:41 - 2018-10-11 20:41 - 000138832 _____ C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
2018-10-11 20:41 - 2018-10-11 20:41 - 000124464 _____ C:\WINDOWS\system32\kapp_ci.sbin
2018-10-11 20:41 - 2018-10-11 20:41 - 000119760 _____ C:\WINDOWS\system32\kapp_si.sbin
2018-10-11 20:41 - 2018-10-11 20:41 - 000090232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mcl64.dll
2018-10-11 20:41 - 2018-10-11 20:41 - 000074864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mcl32.dll
2018-10-11 20:41 - 2018-10-11 20:41 - 000034450 _____ C:\WINDOWS\system32\AMDKernelEvents.man
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-09 21:49 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-11-09 21:28 - 2018-04-12 00:36 - 000000000 ____D C:\WINDOWS\INF
2018-11-09 21:05 - 2018-06-10 21:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-11-09 20:12 - 2018-06-10 21:32 - 001689050 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-11-09 20:12 - 2018-04-12 16:51 - 000715034 _____ C:\WINDOWS\system32\perfh005.dat
2018-11-09 20:12 - 2018-04-12 16:51 - 000144328 _____ C:\WINDOWS\system32\perfc005.dat
2018-11-09 20:06 - 2018-06-10 21:30 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-11-09 20:06 - 2018-04-11 22:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2018-11-09 20:06 - 2017-03-03 15:13 - 000000000 ____D C:\ProgramData\NVIDIA
2018-11-08 23:21 - 2018-06-10 21:25 - 000000000 ____D C:\Users\MeGret-TPC
2018-11-08 23:21 - 2018-06-10 21:24 - 000425760 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-11-08 23:21 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-11-08 23:21 - 2017-03-13 20:45 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\ConnectedDevicesPlatform
2018-11-08 22:43 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-11-08 22:43 - 2018-04-12 00:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-11-08 18:40 - 2018-06-10 21:30 - 000000560 ___SH C:\Users\MeGret-TPC\ntuser.ini.rzkcmsv
2018-11-08 18:40 - 2018-04-12 00:38 - 000000000 __RHD C:\Users\Public\Libraries
2018-11-08 18:40 - 2017-11-19 10:19 - 000000000 ___HD C:\Users\MeGret-TPC\MicrosoftEdgeBackups
2018-11-08 18:40 - 2016-11-21 05:46 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-11-08 18:39 - 2018-08-11 14:21 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\SpaceEngineers
2018-11-08 18:39 - 2018-02-17 20:28 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Battle.net
2018-11-08 18:39 - 2017-12-23 22:18 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\TS3Client
2018-11-08 18:39 - 2017-11-19 19:25 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Creative
2018-11-08 18:39 - 2017-10-10 20:08 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Sun
2018-11-08 18:39 - 2017-10-10 20:08 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\.minecraft
2018-11-08 18:39 - 2017-09-08 17:24 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\calibre
2018-11-08 18:39 - 2017-08-16 19:04 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Ashampoo
2018-11-08 18:39 - 2017-06-25 22:59 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\vlc
2018-11-08 18:39 - 2017-06-10 09:02 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Macromedia
2018-11-08 18:39 - 2017-05-21 20:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\WinRAR
2018-11-08 18:39 - 2017-04-19 13:28 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Samsung
2018-11-08 18:39 - 2017-03-30 16:39 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Mozilla
2018-11-08 18:39 - 2017-03-12 14:42 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\NVIDIA
2018-11-08 18:39 - 2017-03-03 15:55 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Wargaming.net
2018-11-08 18:39 - 2017-03-03 15:46 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\SplitmediaLabs
2018-11-08 18:39 - 2017-03-03 15:24 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Skype
2018-11-08 18:39 - 2017-03-03 15:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Adobe
2018-11-08 18:38 - 2018-09-14 06:49 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\OneDrive
2018-11-08 18:38 - 2018-08-11 09:35 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Steam
2018-11-08 18:38 - 2018-02-17 22:44 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\PlaceholderTileLogoFolder
2018-11-08 18:38 - 2017-12-23 22:18 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\TeamSpeak 3 Client
2018-11-08 18:38 - 2017-11-19 10:13 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Packages
2018-11-08 18:38 - 2017-10-19 18:09 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\Oracle
2018-11-08 18:38 - 2017-10-10 20:08 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\Sun
2018-11-08 18:38 - 2017-08-19 07:48 - 000008145 _____ C:\Users\MeGret-TPC\AppData\Local\Resmon.ResmonCfg.rzkcmsv
2018-11-08 18:38 - 2017-05-26 16:25 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\UNP
2018-11-08 18:38 - 2017-04-27 10:42 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\Adobe
2018-11-08 18:38 - 2017-03-30 16:39 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\Mozilla
2018-11-08 18:38 - 2017-03-30 16:39 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Mozilla
2018-11-08 18:38 - 2017-03-25 18:58 - 000000000 ____D C:\Users\MeGret-TPC\AppData\LocalLow\Temp
2018-11-08 18:38 - 2017-03-13 20:18 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\PeerDistRepub
2018-11-08 18:38 - 2017-03-03 15:45 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\NVIDIA Corporation
2018-11-08 18:38 - 2017-03-03 15:45 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\NVIDIA
2018-11-08 18:38 - 2017-03-03 15:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\VirtualStore
2018-11-08 18:38 - 2017-03-03 15:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\TileDataLayer
2018-11-08 18:38 - 2017-03-03 15:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Publishers
2018-11-08 18:37 - 2017-06-15 18:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Microsoft Help
2018-11-08 18:37 - 2017-03-04 22:43 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\MicrosoftEdge
2018-11-08 18:36 - 2018-08-11 14:21 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\GameAnalytics
2018-11-08 18:36 - 2018-07-17 23:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\D3DSCache
2018-11-08 18:36 - 2018-04-12 00:38 - 000000000 ____D C:\PerfLogs
2018-11-08 18:36 - 2018-02-17 20:28 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Battle.net
2018-11-08 18:36 - 2017-12-01 18:43 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Blizzard
2018-11-08 18:36 - 2017-09-30 15:04 - 000092548 _____ C:\Users\MeGret-TPC\AppData\Local\GDIPFONTCACHEV1.DAT.rzkcmsv
2018-11-08 18:36 - 2017-09-08 17:28 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\calibre-cache
2018-11-08 18:36 - 2017-08-21 19:32 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\AdFender
2018-11-08 18:36 - 2017-08-16 19:03 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\ashampoo
2018-11-08 18:36 - 2017-07-01 16:42 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\DBG
2018-11-08 18:36 - 2017-06-15 18:38 - 000000000 __RHD C:\MSOCache
2018-11-08 18:36 - 2017-04-27 10:42 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Adobe
2018-11-08 18:36 - 2017-04-24 18:35 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Blizzard Entertainment
2018-11-08 18:36 - 2017-04-19 13:27 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\ElevatedDiagnostics
2018-11-08 18:36 - 2017-03-13 20:45 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\Comms
2018-11-08 18:36 - 2017-03-03 15:56 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Local\CEF
2018-11-08 18:35 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2018-11-08 18:35 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MUI
2018-11-03 23:42 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-11-03 23:42 - 2017-03-03 15:43 - 000000000 ____D C:\ProgramData\Package Cache
2018-11-03 19:45 - 2018-08-11 10:38 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2018-10-23 23:43 - 2018-07-13 16:31 - 000000000 ____D C:\ProgramData\Packages
2018-10-23 21:12 - 2018-03-01 15:05 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2018-10-19 21:50 - 2015-07-10 12:04 - 000000167 _____ C:\WINDOWS\win.ini
2018-10-17 20:24 - 2017-03-04 23:13 - 000559880 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2018-10-17 20:15 - 2018-06-10 21:30 - 000003366 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-819675408-2753461327-3771956256-1001
2018-10-17 20:15 - 2018-06-10 21:25 - 000002437 _____ C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-10-14 18:46 - 2018-06-10 21:30 - 000004644 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-10-14 18:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2018-10-14 18:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2018-10-14 18:32 - 2017-05-21 20:22 - 000000000 ____D C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-10-14 18:32 - 2017-05-21 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-10-14 01:07 - 2017-03-04 23:11 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-10-14 01:06 - 2017-03-04 23:11 - 136745976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-10-13 18:59 - 2017-11-19 10:13 - 000061256 _____ C:\WINDOWS\system32\BMXState-{00000008-00000000-00000005-00001102-00000005-00231102}.rfx
2018-10-13 18:59 - 2017-11-19 10:13 - 000000788 _____ C:\WINDOWS\system32\DVCState-{00000008-00000000-00000005-00001102-00000005-00231102}.rfx
2018-10-13 18:59 - 2017-07-01 16:33 - 000061256 _____ C:\WINDOWS\system32\BMXStateBkp-{00000008-00000000-00000005-00001102-00000005-00231102}.rfx
2018-10-13 18:58 - 2017-10-14 19:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2018-10-13 18:57 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\windows nt
2018-10-13 18:57 - 2018-04-12 00:38 - 000000000 ____D C:\Program Files\Common Files\system
2018-10-13 18:54 - 2018-08-11 09:33 - 000000000 ____D C:\Program Files (x86)\Steam
2018-10-13 18:54 - 2017-07-01 16:33 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-10-13 18:54 - 2017-03-30 21:12 - 000000000 ____D C:\Program Files (x86)\Creative
2018-10-13 18:43 - 2018-06-10 21:30 - 000002562 _____ C:\WINDOWS\diagwrn.xml
2018-10-13 18:43 - 2018-06-10 21:30 - 000001908 _____ C:\WINDOWS\diagerr.xml
2018-10-13 15:44 - 2017-07-01 16:33 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2018-10-13 15:44 - 2017-03-03 15:31 - 000000000 ___HD C:\Program Files (x86)\Temp
2018-10-13 15:29 - 2018-04-11 22:04 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2018-10-11 20:41 - 2017-05-16 17:06 - 001629296 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\SET11C1.tmp
==================== Files in the root of some directories =======
2018-10-14 09:23 - 2018-10-14 09:23 - 008769664 _____ () C:\Users\MeGret-TPC\ArmoredWarfareMycomLoader_fb3ab908112fbbbacaafe8d75cdbd00d_A_en.exe
2018-04-12 00:34 - 2018-04-12 00:34 - 000059904 ____N (Microsoft Corporation) C:\Users\MeGret-TPC\deiefECnJ.exe
2018-10-14 07:13 - 2018-10-14 07:16 - 334555304 _____ (AMD Inc.) C:\Users\MeGret-TPC\win10-64bit-radeon-software-adrenalin-edition-18.10.1-oct10.exe
2018-10-14 01:17 - 2018-10-14 01:17 - 004685584 _____ (Wargaming.net ) C:\Users\MeGret-TPC\wot.exe
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ () C:\Program Files\RZKCMSV-DECRYPT.txt
2018-04-12 00:34 - 2018-04-12 00:34 - 000178688 ____N (Microsoft Corporation) C:\Program Files (x86)\IfeuDZEaOEUA.exe
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ () C:\Program Files (x86)\RZKCMSV-DECRYPT.txt
2018-11-08 18:38 - 2018-11-08 18:38 - 000008914 _____ () C:\Users\MeGret-TPC\AppData\Roaming\RZKCMSV-DECRYPT.txt
2018-11-08 18:39 - 2018-11-08 18:39 - 000008914 _____ () C:\Users\MeGret-TPC\AppData\Roaming\Microsoft\RZKCMSV-DECRYPT.txt
2018-11-09 19:54 - 2018-11-09 19:55 - 006066688 _____ () C:\Users\MeGret-TPC\AppData\Local\dump007.dat
2018-11-08 00:58 - 2018-11-08 18:37 - 000000542 _____ () C:\Users\MeGret-TPC\AppData\Local\imw.ini.rzkcmsv
2018-04-12 00:34 - 2018-04-12 00:34 - 000059904 ____N (Microsoft Corporation) C:\Users\MeGret-TPC\AppData\Local\kAyeMDseXh.exe
2017-08-19 07:48 - 2018-11-08 18:38 - 000008145 _____ () C:\Users\MeGret-TPC\AppData\Local\Resmon.ResmonCfg.rzkcmsv
2018-11-08 18:36 - 2018-11-08 18:36 - 000008914 _____ () C:\Users\MeGret-TPC\AppData\Local\RZKCMSV-DECRYPT.txt
Some files in TEMP:
====================
2018-11-08 18:36 - 2018-11-08 18:36 - 002575888 _____ () C:\Users\MeGret-TPC\AppData\Local\Temp\867184789.exe
2018-11-08 18:36 - 2018-11-08 18:36 - 000003072 _____ () C:\Users\MeGret-TPC\AppData\Local\Temp\921123295.exe
2018-11-08 18:34 - 2018-11-08 18:34 - 000101888 _____ () C:\Users\MeGret-TPC\AppData\Local\Temp\Heart.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-06-10 21:23
==================== End of FRST.txt ============================