Malware - ad.fly 2
Napsal: 04 črc 2019 01:59
Zdravím,
mám úplně stejný problém který měl kolega qip v tomto vlákně: https://forum.viry.cz/viewtopic.php?f=13&t=155896
Bohužel vlákno je již zamčeno a tak vznáším dotaz zde do nového. I mě se nezačala spouštět po spuštění stránka http://zipansion.com/S7Rk která byla následně hned přesměrována na gloyah.net neboli ad.fly
Problém jsem vyřešil stejně jako kolega, smazáním update.bat z "po spuštění".
Nicméně bych se rád zeptal zda je možnost nějak zjistit, jestli ještě něco z případného malware mohlo zůstat v pc, respektive zda jsem vymazáním nevyřešil jen otravný problém spouštění ale v pc stále něco mám.
Přikládám screenshot se smazaným souborem plus FRST:
Díky
----------------------
FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 3-07-2019
Ran by ASUS (administrator) on DESKTOP-LBQBPRS (ASUSTeK COMPUTER INC. T100HAN) (04-07-2019 02:36:13)
Running from E:\
Loaded Profiles: ASUS (Available Profiles: ASUS)
Platform: Windows 10 Home Version 1803 17134.829 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Safe Mode (minimal)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [118368 2015-11-03] (Intel Corporation -> Intel Corporation)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [177928 2019-04-05] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [279240 2016-12-09] (Canon Inc. -> CANON INC.)
HKLM\...\Providers\Internet Print Provider: inetpp.dll [174080 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Providers\LanMan Print Services: win32spl.dll [836608 2018-09-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> themeui.dll [2018-09-20] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89820200-ECBD-11cf-8B85-00AA005B4340}] -> shell32.dll [2019-06-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\Installer\chrmstp.exe [2019-06-29] (Google LLC -> Google LLC)
HKLM\Software\...\Winlogon\GPExtensions: [{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}] -> wlgpclnt.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{16be69fa-4209-4250-88cb-716cf41954e0}] -> auditcse.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{25537BA6-77A8-11D2-9B6C-0000F8080861}] -> fdeploy.dll [2018-08-09] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{426031c0-0b47-4852-b0ca-ac3d37bfcb39}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4d968b55-cac2-4ff5-983f-0a54603781a3}] -> WorkFoldersGPExt.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{7909AD9E-09EE-4247-BAB9-7029D5F0A278}] -> dmenrollengine.dll [2019-04-19] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] -> scecli.dll [2018-10-21] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}] -> dot3gpclnt.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{BA649533-0AAC-4E04-B9BC-4DBAE0325B12}] -> pwlauncher.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{C34B2751-1CF4-44F5-9262-C3FC39666591}] -> pwlauncher.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{f3ccc681-b74c-4060-9f26-cd84525dca2a}] -> auditcse.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{FB2CA36D-0B40-4307-821B-A13B252DE56C}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Restriction ? <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {02D9C07A-721E-4F6B-9E24-FE23950748A8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {49917ADA-DF9C-4908-8EE5-FDA1571C09FB} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {958DE905-90F6-420A-ACDF-5122C448E2EA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-29] (Google Inc -> Google LLC)
Task: {9C97CB38-2416-494D-B470-47E879BC30C3} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {B18A352E-E7CB-47A6-A238-7C4CDB4CEDEB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-29] (Google Inc -> Google LLC)
Task: {CB7576FC-46D5-4830-89D9-DE1C82925B77} - System32\Tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask => BthUdTask.exe [40448 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
Task: {E6A5480D-EF02-42A3-A7B5-A3E17B024DD2} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18416 2015-10-22] (ASUSTeK Computer Inc. -> AsusTek)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.128.1
Tcpip\..\Interfaces\{20c809e5-553c-4053-acaf-c0d565555b0d}: [DhcpNameServer] 192.168.128.1
Tcpip\..\Interfaces\{4d0a3e54-25ff-48f8-b8a0-ec02cf2abded}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{df6356f4-fb94-4c2f-8402-7c397674b2c8}: [DhcpNameServer] 192.168.135.1 8.8.8.8
Internet Explorer:
==================
FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-29] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-29] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default [2019-07-04]
CHR Extension: (Prezentace) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-06-29]
CHR Extension: (Dokumenty) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-06-29]
CHR Extension: (Disk Google) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-06-29]
CHR Extension: (Seznam doplněk - Email) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2019-06-29]
CHR Extension: (YouTube) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-06-29]
CHR Extension: (Tabulky) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-06-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-06-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-06-29]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2019-06-29]
CHR Extension: (Gmail) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-06-29]
CHR Extension: (Chrome Media Router) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-29]
CHR Profile: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile [2019-06-29]
CHR HKU\S-1-5-21-1499004246-3945328631-3288649750-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1499004246-3945328631-3288649750-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AsHidService; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsHidSrv.exe [126648 2016-06-16] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [122976 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 DptfParticipantWirelessService; C:\WINDOWS\System32\DptfParticipantWirelessService.exe [327264 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [126560 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [130144 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2359312 2019-04-05] (ESET, spol. s r.o. -> ESET)
S3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2359312 2019-04-05] (ESET, spol. s r.o. -> ESET)
S2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [371640 2015-12-02] (Intel Corporation - pGFX -> Intel Corporation)
S2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [397472 2018-03-15] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AsusSGDrv; C:\WINDOWS\System32\drivers\AsusSGDrv.sys [140280 2015-10-22] (ASUSTeK Computer Inc. -> ASUS Corporation)
S1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
S3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [367104 2018-04-12] (Microsoft Windows -> Broadcom Corp)
R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [178984 2015-12-09] (Broadcom Corporation -> Broadcom Corporation.)
S3 camera; C:\WINDOWS\system32\DRIVERS\iacamera64.sys [937856 2015-11-11] (WDKTestCert viedifw,130729819466811601 -> Intel(R) Corporation)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [66656 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [49248 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [51808 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [65136 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [114784 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevWireless; C:\WINDOWS\System32\drivers\DptfDevWireless.sys [67168 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [247920 2015-11-03] (Intel Corporation -> Intel Corporation)
S1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [145600 2019-04-05] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-29] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
S1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [188240 2019-04-05] (ESET, spol. s r.o. -> ESET)
S1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [110000 2019-04-05] (ESET, spol. s r.o. -> ESET)
R3 HidEventFilter; C:\WINDOWS\System32\drivers\HidEventFilter.sys [54816 2016-10-28] (Intel(R) Software -> Intel Corporation)
R3 HID_PCI; C:\WINDOWS\System32\drivers\HID_PCI.sys [47928 2015-08-23] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel)
S3 HPMoA407; C:\WINDOWS\System32\drivers\HPMoA407.sys [25088 2011-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
S3 HPubA407; C:\WINDOWS\System32\Drivers\HPubA407.sys [18944 2012-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
R3 iaisp; C:\WINDOWS\System32\drivers\iaisp64.sys [28432 2015-11-11] (WDKTestCert viedifw,130729819466811601 -> Intel(R) Corporation)
R3 iaspie; C:\WINDOWS\System32\drivers\iaspie.sys [71680 2015-11-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
R3 iauarte; C:\WINDOWS\System32\drivers\iauarte.sys [112632 2015-11-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
S3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [5928888 2015-12-02] (Intel Corporation - pGFX -> Intel Corporation)
S3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [678656 2015-07-24] (Realtek Semiconductor Corp -> )
R3 ISH; C:\WINDOWS\System32\drivers\ISH.sys [135984 2015-08-31] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel)
R3 ISH_BusDriver; C:\WINDOWS\System32\drivers\ISH_BusDriver.sys [68408 2015-08-31] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [199768 2019-07-04] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-07-04] (Malwarebytes Corporation -> Malwarebytes)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [41464 2015-11-20] (Intel(R) CherryTrail Windows -> Intel(R) Corporation)
R3 ov5670; C:\WINDOWS\System32\drivers\ov5670.sys [113312 2018-02-05] (WDKTestCert pingchun,130736352804591975 -> Intel Corporation)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [109568 2015-10-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
S3 rtii2sac64; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [334592 2015-07-31] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [28272 2019-07-02] (Adlice -> )
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [148280 2015-06-26] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 unicam; C:\WINDOWS\System32\drivers\hm2051.sys [129240 2018-02-05] (WDKTestCert huizhou1,130735866078346983 -> Intel(R) Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-06-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [337632 2019-06-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-07-04 02:35 - 2019-07-04 02:36 - 000000000 ____D C:\FRST
2019-07-04 02:32 - 2019-07-04 02:32 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-07-04 02:29 - 2019-07-04 02:29 - 000002560 _____ C:\WINDOWS\system32\Drivers\201974_2295672_CheckPoint_Dump.txt
2019-07-04 02:29 - 2019-07-04 02:29 - 000000256 _____ C:\WINDOWS\system32\Drivers\201974_2295672_SHIM_Dump.txt
2019-07-04 02:26 - 2019-07-04 02:37 - 000434018 _____ C:\WINDOWS\ntbtlog.txt
2019-07-04 02:26 - 2019-07-04 02:26 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-07-04 02:14 - 2019-07-04 02:14 - 000002560 _____ C:\WINDOWS\system32\Drivers\201974_21439673_CheckPoint_Dump.txt
2019-07-04 02:14 - 2019-07-04 02:14 - 000000256 _____ C:\WINDOWS\system32\Drivers\201974_21439673_SHIM_Dump.txt
2019-07-04 02:12 - 2019-07-04 02:12 - 000002560 _____ C:\WINDOWS\system32\Drivers\201974_2121756_CheckPoint_Dump.txt
2019-07-04 02:12 - 2019-07-04 02:12 - 000000256 _____ C:\WINDOWS\system32\Drivers\201974_2121756_SHIM_Dump.txt
2019-07-03 18:46 - 2019-07-03 18:46 - 000002560 _____ C:\WINDOWS\system32\Drivers\201973_184616685_CheckPoint_Dump.txt
2019-07-03 18:46 - 2019-07-03 18:46 - 000000256 _____ C:\WINDOWS\system32\Drivers\201973_184616685_SHIM_Dump.txt
2019-07-03 18:28 - 2019-07-03 18:28 - 000002560 _____ C:\WINDOWS\system32\Drivers\201973_182858873_CheckPoint_Dump.txt
2019-07-03 18:28 - 2019-07-03 18:28 - 000000256 _____ C:\WINDOWS\system32\Drivers\201973_182858873_SHIM_Dump.txt
2019-07-02 23:27 - 2019-07-02 23:27 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_23273753_CheckPoint_Dump.txt
2019-07-02 23:27 - 2019-07-02 23:27 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_23273753_SHIM_Dump.txt
2019-07-02 23:22 - 2019-07-02 23:22 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_232259699_CheckPoint_Dump.txt
2019-07-02 23:22 - 2019-07-02 23:22 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_232259699_SHIM_Dump.txt
2019-07-02 23:16 - 2019-07-02 23:16 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_231628684_CheckPoint_Dump.txt
2019-07-02 23:16 - 2019-07-02 23:16 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_231628684_SHIM_Dump.txt
2019-07-02 04:12 - 2019-07-02 04:12 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_41225839_CheckPoint_Dump.txt
2019-07-02 04:12 - 2019-07-02 04:12 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_41225839_SHIM_Dump.txt
2019-07-02 03:43 - 2019-07-02 03:43 - 000028272 _____ C:\WINDOWS\system32\Drivers\truesight.sys
2019-07-02 00:59 - 2019-07-02 00:59 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_05927762_CheckPoint_Dump.txt
2019-07-02 00:59 - 2019-07-02 00:59 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_05927762_SHIM_Dump.txt
2019-07-02 00:30 - 2019-07-02 00:30 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_03032783_CheckPoint_Dump.txt
2019-07-02 00:30 - 2019-07-02 00:30 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_03032783_SHIM_Dump.txt
2019-07-02 00:27 - 2019-07-02 00:27 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_0274769_CheckPoint_Dump.txt
2019-07-02 00:27 - 2019-07-02 00:27 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_0274769_SHIM_Dump.txt
2019-07-01 05:55 - 2019-07-01 05:55 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_5559863_CheckPoint_Dump.txt
2019-07-01 05:55 - 2019-07-01 05:55 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_5559863_SHIM_Dump.txt
2019-07-01 05:46 - 2019-07-01 05:46 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_54619813_CheckPoint_Dump.txt
2019-07-01 05:46 - 2019-07-01 05:46 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_54619813_SHIM_Dump.txt
2019-07-01 05:35 - 2019-07-01 05:35 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_53525760_CheckPoint_Dump.txt
2019-07-01 05:35 - 2019-07-01 05:35 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_53525760_SHIM_Dump.txt
2019-07-01 05:20 - 2019-07-01 05:20 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_52032791_CheckPoint_Dump.txt
2019-07-01 05:20 - 2019-07-01 05:20 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_52032791_SHIM_Dump.txt
2019-07-01 04:03 - 2019-07-01 05:08 - 598736896 _____ C:\Users\ASUS\Downloads\eset_sysrescue_live_enu.iso
2019-07-01 03:55 - 2019-07-01 03:55 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_35534683_CheckPoint_Dump.txt
2019-07-01 03:55 - 2019-07-01 03:55 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_35534683_SHIM_Dump.txt
2019-07-01 03:51 - 2019-07-01 03:51 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_35136615_CheckPoint_Dump.txt
2019-07-01 03:51 - 2019-07-01 03:51 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_35136615_SHIM_Dump.txt
2019-07-01 03:49 - 2019-07-01 03:49 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_34948696_CheckPoint_Dump.txt
2019-07-01 03:49 - 2019-07-01 03:49 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_34948696_SHIM_Dump.txt
2019-07-01 03:41 - 2019-07-01 03:41 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_34113843_CheckPoint_Dump.txt
2019-07-01 03:41 - 2019-07-01 03:41 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_34113843_SHIM_Dump.txt
2019-07-01 03:34 - 2019-07-01 03:34 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_33442609_CheckPoint_Dump.txt
2019-07-01 03:34 - 2019-07-01 03:34 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_33442609_SHIM_Dump.txt
2019-07-01 03:32 - 2019-07-01 03:32 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_33233697_CheckPoint_Dump.txt
2019-07-01 03:32 - 2019-07-01 03:32 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_33233697_SHIM_Dump.txt
2019-07-01 03:31 - 2019-07-01 03:31 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_3315787_CheckPoint_Dump.txt
2019-07-01 03:31 - 2019-07-01 03:31 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_3315787_SHIM_Dump.txt
2019-07-01 03:25 - 2019-07-01 03:25 - 000000000 ____D C:\Users\ASUS\Downloads\rufus_files
2019-07-01 03:23 - 2019-07-02 00:39 - 000000270 __RSH C:\ProgramData\ntuser.pol
2019-07-01 03:23 - 2019-07-01 03:23 - 001052728 _____ (Akeo Consulting) C:\Users\ASUS\Downloads\rufus-3.5.exe
2019-07-01 02:36 - 2019-07-01 02:36 - 003189892 _____ C:\Users\ASUS\Desktop\ESET-SysRescue-Live-userguide-enu.pdf
2019-06-29 22:33 - 2019-06-29 22:33 - 000000027 ____C C:\Users\ASUS\Desktop\zipnasion.txt
2019-06-29 22:28 - 2019-07-04 02:32 - 000199768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-06-29 22:28 - 2019-06-29 22:28 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-06-29 22:28 - 2019-06-29 22:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-06-29 22:28 - 2019-06-29 22:28 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-06-29 22:28 - 2019-06-29 22:28 - 000000000 ____D C:\Program Files\Malwarebytes
2019-06-29 22:28 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-06-29 22:28 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-06-29 22:16 - 2019-06-29 22:16 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_221625682_CheckPoint_Dump.txt
2019-06-29 22:16 - 2019-06-29 22:16 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_221625682_SHIM_Dump.txt
2019-06-29 22:12 - 2019-06-29 22:12 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_221247811_CheckPoint_Dump.txt
2019-06-29 22:12 - 2019-06-29 22:12 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_221247811_SHIM_Dump.txt
2019-06-29 22:03 - 2019-06-29 22:03 - 000002377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-06-29 22:03 - 2019-06-29 22:03 - 000002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-06-29 22:02 - 2019-06-29 22:02 - 000003472 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-06-29 22:02 - 2019-06-29 22:02 - 000003348 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-06-29 21:39 - 2019-06-29 21:39 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_21392730_CheckPoint_Dump.txt
2019-06-29 21:39 - 2019-06-29 21:39 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_21392730_SHIM_Dump.txt
2019-06-29 21:23 - 2019-06-29 21:23 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_212341629_CheckPoint_Dump.txt
2019-06-29 21:23 - 2019-06-29 21:23 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_212341629_SHIM_Dump.txt
2019-06-29 21:16 - 2019-06-29 21:16 - 000000000 ___DC C:\Users\ASUS\AppData\Local\ESET
2019-06-29 21:15 - 2019-06-29 21:15 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_211514924_CheckPoint_Dump.txt
2019-06-29 21:15 - 2019-06-29 21:15 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_211514924_SHIM_Dump.txt
2019-06-29 19:53 - 2019-06-29 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2019-06-29 19:53 - 2019-06-29 19:53 - 000000000 ____D C:\ProgramData\ESET
2019-06-29 19:53 - 2019-06-29 19:53 - 000000000 ____D C:\Program Files\ESET
2019-06-29 19:43 - 2019-06-29 19:43 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_194350474_CheckPoint_Dump.txt
2019-06-29 19:43 - 2019-06-29 19:43 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_194350474_SHIM_Dump.txt
2019-06-29 19:40 - 2019-06-29 19:40 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_19406471_CheckPoint_Dump.txt
2019-06-29 19:40 - 2019-06-29 19:40 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_19406471_SHIM_Dump.txt
2019-06-29 17:55 - 2019-06-29 17:55 - 000000000 ___DC C:\Users\ASUS\Documents\TotalAV
2019-06-29 17:55 - 2019-06-29 17:55 - 000000000 ____D C:\ProgramData\SecuritySuite
2019-06-29 17:42 - 2019-06-29 17:42 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_174231496_CheckPoint_Dump.txt
2019-06-29 17:42 - 2019-06-29 17:42 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_174231496_SHIM_Dump.txt
2019-06-29 17:36 - 2019-06-29 17:36 - 000000085 _____ C:\WINDOWS\wininit.ini
2019-06-29 17:22 - 2019-06-29 17:22 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_17220306_CheckPoint_Dump.txt
2019-06-29 17:22 - 2019-06-29 17:22 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_17220306_SHIM_Dump.txt
2019-06-29 17:20 - 2019-06-29 17:20 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_172058398_CheckPoint_Dump.txt
2019-06-29 17:20 - 2019-06-29 17:20 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_172058398_SHIM_Dump.txt
2019-06-29 09:06 - 2019-06-29 17:42 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2019-06-29 09:06 - 2019-06-29 17:36 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
2019-06-29 09:06 - 2019-06-29 09:06 - 000000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2019-06-29 09:00 - 2019-02-13 07:47 - 001909560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-06-29 08:59 - 2019-06-29 08:59 - 000000000 ___DC C:\Users\ASUS\AppData\Local\mbamtray
2019-06-29 08:59 - 2019-06-29 08:59 - 000000000 ___DC C:\Users\ASUS\AppData\Local\mbam
2019-06-29 08:50 - 2019-06-29 08:50 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_85016632_CheckPoint_Dump.txt
2019-06-29 08:50 - 2019-06-29 08:50 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_85016635_SHIM_Dump.txt
2019-06-29 08:45 - 2019-06-29 08:45 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_84551399_CheckPoint_Dump.txt
2019-06-29 08:45 - 2019-06-29 08:45 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_84551399_SHIM_Dump.txt
2019-06-29 08:10 - 2019-06-29 08:10 - 000001991 _____ C:\Users\Public\Desktop\DOSBox 0.74.lnk
2019-06-29 08:10 - 2019-06-29 08:10 - 000000000 ___DC C:\Users\ASUS\AppData\Local\DOSBox
2019-06-29 08:10 - 2019-06-29 08:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74
2019-06-29 08:10 - 2019-06-29 08:10 - 000000000 ____D C:\Program Files (x86)\DOSBox-0.74
2019-06-29 07:44 - 2019-06-29 07:44 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_7447534_CheckPoint_Dump.txt
2019-06-29 07:44 - 2019-06-29 07:44 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_7447537_SHIM_Dump.txt
2019-06-29 06:50 - 2019-06-29 06:50 - 000000000 ___DC C:\Users\ASUS\AppData\Roaming\Ubisoft
2019-06-29 06:48 - 2019-06-29 06:48 - 000000000 ___DC C:\Users\ASUS\AppData\Roaming\WinRAR
2019-06-29 06:47 - 2019-06-29 06:47 - 000000000 ___DC C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-29 06:47 - 2019-06-29 06:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-29 06:47 - 2019-06-29 06:47 - 000000000 ____D C:\Program Files\WinRAR
2019-06-29 03:40 - 2019-06-29 03:40 - 000057923 _____ C:\Users\ASUS\Downloads\Vyplatni_listek_3207233_201903.PDF
2019-06-29 03:40 - 2019-06-29 03:40 - 000056860 _____ C:\Users\ASUS\Downloads\Vyplatni_listek_3207233_201904.PDF
2019-06-29 03:40 - 2019-06-29 03:40 - 000056221 _____ C:\Users\ASUS\Downloads\Vyplatni_listek_3207233_201905.PDF
2019-06-28 18:49 - 2019-07-04 01:56 - 000000314 ____C C:\Users\ASUS\Desktop\Seznam nože.txt
2019-06-28 18:22 - 2019-06-28 18:22 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019628_18224854_CheckPoint_Dump.txt
2019-06-28 18:22 - 2019-06-28 18:22 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019628_18224854_SHIM_Dump.txt
2019-06-20 13:22 - 2019-06-20 13:22 - 000000000 ____D C:\Program Files\UNP
2019-06-20 07:22 - 2019-06-20 09:39 - 2156438438 _____ C:\Users\ASUS\Downloads\The Sims 1 - The Complete Collection.rar
2019-06-12 04:31 - 2019-06-12 04:31 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019612_43150237_CheckPoint_Dump.txt
2019-06-12 04:31 - 2019-06-12 04:31 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019612_43150237_SHIM_Dump.txt
2019-06-12 02:49 - 2019-06-07 08:07 - 000707384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-06-12 02:49 - 2019-06-07 07:57 - 007519896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-06-12 02:49 - 2019-06-07 07:57 - 001209696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-06-12 02:49 - 2019-06-07 07:57 - 000594024 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-06-12 02:49 - 2019-06-07 07:46 - 006569344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-06-12 02:49 - 2019-06-07 07:46 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-06-12 02:49 - 2019-06-07 07:21 - 001778688 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-06-12 02:49 - 2019-06-07 07:19 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-06-12 02:49 - 2019-06-07 07:18 - 000686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-06-12 02:49 - 2019-06-07 07:16 - 001102336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-06-12 02:49 - 2019-06-07 07:16 - 000900096 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-06-12 02:49 - 2019-05-17 14:21 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-06-12 02:49 - 2019-05-17 13:55 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-06-12 02:49 - 2019-05-17 08:44 - 000829960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-06-12 02:49 - 2019-05-17 08:44 - 000550520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 004789944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 001380096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 001130568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2019-06-12 02:49 - 2019-05-17 08:30 - 013878784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-06-12 02:49 - 2019-05-17 08:21 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2019-06-12 02:49 - 2019-05-17 08:19 - 004515840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-06-12 02:49 - 2019-05-17 08:08 - 000491200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-06-12 02:49 - 2019-05-17 08:07 - 001288712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-06-12 02:49 - 2019-05-17 08:07 - 000930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-06-12 02:49 - 2019-05-17 08:07 - 000260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-06-12 02:49 - 2019-05-17 08:06 - 001784696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-06-12 02:49 - 2019-05-17 07:34 - 000671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-06-12 02:49 - 2019-05-17 07:34 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2019-06-12 02:49 - 2019-05-17 07:31 - 004937216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-06-12 02:49 - 2019-05-17 07:31 - 003293184 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-06-12 02:48 - 2019-06-07 13:04 - 021388752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-06-12 02:48 - 2019-06-07 12:45 - 012756480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-06-12 02:48 - 2019-06-07 12:42 - 003613696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-06-12 02:48 - 2019-06-07 12:07 - 011942400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 007436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 001934808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 000413720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 000383504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-06-12 02:48 - 2019-06-07 07:57 - 000170296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-06-12 02:48 - 2019-06-07 07:56 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-06-12 02:48 - 2019-06-07 07:46 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-06-12 02:48 - 2019-06-07 07:46 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-06-12 02:48 - 2019-06-07 07:38 - 025857536 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-06-12 02:48 - 2019-06-07 07:37 - 022019584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-06-12 02:48 - 2019-06-07 07:31 - 019372544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-06-12 02:48 - 2019-06-07 07:27 - 022718976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-06-12 02:48 - 2019-06-07 07:24 - 005784064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-06-12 02:48 - 2019-06-07 07:21 - 007588864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-06-12 02:48 - 2019-06-07 07:20 - 002610688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-06-12 02:48 - 2019-06-07 07:20 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2019-06-12 02:48 - 2019-06-07 07:19 - 003212288 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-06-12 02:48 - 2019-06-07 07:19 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-06-12 02:48 - 2019-06-07 07:17 - 001920000 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-06-12 02:48 - 2019-06-07 07:17 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-06-12 02:48 - 2019-05-17 14:44 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-06-12 02:48 - 2019-05-17 14:40 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-06-12 02:48 - 2019-05-17 14:27 - 006586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-06-12 02:48 - 2019-05-17 14:26 - 004393984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-06-12 02:48 - 2019-05-17 14:25 - 004718080 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-06-12 02:48 - 2019-05-17 14:25 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-06-12 02:48 - 2019-05-17 14:24 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-06-12 02:48 - 2019-05-17 14:22 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2019-06-12 02:48 - 2019-05-17 14:22 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-06-12 02:48 - 2019-05-17 14:21 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-06-12 02:48 - 2019-05-17 14:21 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-06-12 02:48 - 2019-05-17 14:21 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2019-06-12 02:48 - 2019-05-17 14:20 - 002084864 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-06-12 02:48 - 2019-05-17 14:19 - 000757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2019-06-12 02:48 - 2019-05-17 14:07 - 002206424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-06-12 02:48 - 2019-05-17 14:00 - 005658112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-06-12 02:48 - 2019-05-17 13:58 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-06-12 02:48 - 2019-05-17 13:56 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2019-06-12 02:48 - 2019-05-17 13:55 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2019-06-12 02:48 - 2019-05-17 13:55 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2019-06-12 02:48 - 2019-05-17 13:54 - 002016768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-06-12 02:48 - 2019-05-17 13:54 - 000908288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-06-12 02:48 - 2019-05-17 09:07 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-06-12 02:48 - 2019-05-17 08:42 - 005625160 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-06-12 02:48 - 2019-05-17 08:42 - 001980256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-06-12 02:48 - 2019-05-17 08:42 - 001620264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-06-12 02:48 - 2019-05-17 08:22 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 001630720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-06-12 02:48 - 2019-05-17 08:18 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-06-12 02:48 - 2019-05-17 08:08 - 000723432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-06-12 02:48 - 2019-05-17 08:07 - 004404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-06-12 02:48 - 2019-05-17 08:07 - 002571640 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-06-12 02:48 - 2019-05-17 08:07 - 000275768 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-06-12 02:48 - 2019-05-17 08:06 - 001943136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-06-12 02:48 - 2019-05-17 08:06 - 001098056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-06-12 02:48 - 2019-05-17 08:04 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-06-12 02:48 - 2019-05-17 07:44 - 016597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-06-12 02:48 - 2019-05-17 07:38 - 004709376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-06-12 02:48 - 2019-05-17 07:37 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-06-12 02:48 - 2019-05-17 07:36 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-06-12 02:48 - 2019-05-17 07:36 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-06-12 02:48 - 2019-05-17 07:35 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-06-12 02:48 - 2019-05-17 07:35 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-06-12 02:48 - 2019-05-17 07:34 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-06-12 02:48 - 2019-05-17 07:34 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-06-12 02:48 - 2019-05-17 07:34 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2019-06-12 02:48 - 2019-05-17 07:33 - 003091456 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-06-12 02:48 - 2019-05-17 07:33 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-06-12 02:48 - 2019-05-17 07:32 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 003376640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001805312 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 000620032 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-06-12 02:48 - 2019-05-17 07:30 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-06-12 02:47 - 2019-06-07 13:04 - 001633136 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-06-12 02:47 - 2019-06-07 12:48 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-06-12 02:47 - 2019-06-07 12:47 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-06-12 02:47 - 2019-06-07 12:41 - 004055552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-06-12 02:47 - 2019-06-07 12:40 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-06-12 02:47 - 2019-06-07 12:40 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-06-12 02:47 - 2019-06-07 12:23 - 001453920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-06-12 02:47 - 2019-06-07 12:19 - 020383832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-06-12 02:47 - 2019-06-07 12:10 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-06-12 02:47 - 2019-06-07 12:04 - 004056064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-06-12 02:47 - 2019-06-07 12:04 - 002881536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-06-12 02:47 - 2019-06-07 12:04 - 001471488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-06-12 02:47 - 2019-06-07 08:01 - 001035040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 001220112 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 001027384 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 000422416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-06-12 02:47 - 2019-06-07 07:58 - 000135176 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-06-12 02:47 - 2019-06-07 07:58 - 000076304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 002811192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 002719032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000792888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000709728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000494304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-06-12 02:47 - 2019-06-07 07:57 - 000435000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-06-12 02:47 - 2019-06-07 07:57 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-06-12 02:47 - 2019-06-07 07:57 - 000137448 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2019-06-12 02:47 - 2019-06-07 07:56 - 000713272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2019-06-12 02:47 - 2019-06-07 07:47 - 000380432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-06-12 02:47 - 2019-06-07 07:47 - 000097272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2019-06-12 02:47 - 2019-06-07 07:46 - 000581048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2019-06-12 02:47 - 2019-06-07 07:46 - 000357072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-06-12 02:47 - 2019-06-07 07:46 - 000128792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-06-12 02:47 - 2019-06-07 07:24 - 003400704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-06-12 02:47 - 2019-06-07 07:24 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2019-06-12 02:47 - 2019-06-07 07:23 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-06-12 02:47 - 2019-06-07 07:23 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-06-12 02:47 - 2019-06-07 07:23 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 003710976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 004866048 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-06-12 02:47 - 2019-06-07 07:20 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-06-12 02:47 - 2019-06-07 07:20 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-06-12 02:47 - 2019-06-07 07:19 - 002175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-06-12 02:47 - 2019-06-07 07:19 - 001560576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-06-12 02:47 - 2019-06-07 07:19 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-06-12 02:47 - 2019-06-07 07:18 - 002166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-06-12 02:47 - 2019-06-07 07:18 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-06-12 02:47 - 2019-06-07 07:17 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-06-12 02:47 - 2019-06-07 07:16 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-06-12 02:47 - 2019-06-07 07:16 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-06-12 02:47 - 2019-06-07 06:00 - 000001308 _____ C:\WINDOWS\system32\tcbres.wim
2019-06-12 02:47 - 2019-05-19 00:12 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-06-12 02:47 - 2019-05-19 00:12 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-06-12 02:47 - 2019-05-19 00:12 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-06-12 02:47 - 2019-05-19 00:12 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-06-12 02:47 - 2019-05-17 14:40 - 000280888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-06-12 02:47 - 2019-05-17 14:25 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
2019-06-12 02:47 - 2019-05-17 14:23 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-06-12 02:47 - 2019-05-17 14:21 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3gpui.dll
2019-06-12 02:47 - 2019-05-17 13:56 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3gpui.dll
2019-06-12 02:47 - 2019-05-17 11:33 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2019-06-12 02:47 - 2019-05-17 10:52 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-06-12 02:47 - 2019-05-17 08:43 - 000297688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2019-06-12 02:47 - 2019-05-17 08:42 - 002256560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-06-12 02:47 - 2019-05-17 08:42 - 001989552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-06-12 02:47 - 2019-05-17 08:42 - 000125504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-06-12 02:47 - 2019-05-17 08:26 - 002969600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-06-12 02:47 - 2019-05-17 08:23 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-06-12 02:47 - 2019-05-17 08:23 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-06-12 02:47 - 2019-05-17 08:23 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-06-12 02:47 - 2019-05-17 08:22 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-06-12 02:47 - 2019-05-17 08:21 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-06-12 02:47 - 2019-05-17 08:21 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe
2019-06-12 02:47 - 2019-05-17 08:20 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-06-12 02:47 - 2019-05-17 08:20 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2019-06-12 02:47 - 2019-05-17 08:19 - 001073664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-06-12 02:47 - 2019-05-17 08:18 - 002796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-06-12 02:47 - 2019-05-17 08:18 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-06-12 02:47 - 2019-05-17 08:08 - 001063224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-06-12 02:47 - 2019-05-17 08:08 - 000401328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2019-06-12 02:47 - 2019-05-17 08:07 - 002768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-06-12 02:47 - 2019-05-17 08:07 - 002467320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-06-12 02:47 - 2019-05-17 08:07 - 001459120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-06-12 02:47 - 2019-05-17 08:07 - 001260272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-06-12 02:47 - 2019-05-17 08:06 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2019-06-12 02:47 - 2019-05-17 08:06 - 001140992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-06-12 02:47 - 2019-05-17 08:06 - 000983424 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-06-12 02:47 - 2019-05-17 08:06 - 000151888 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-06-12 02:47 - 2019-05-17 08:00 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2019-06-12 02:47 - 2019-05-17 07:37 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-06-12 02:47 - 2019-05-17 07:37 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DuCsps.dll
2019-06-12 02:47 - 2019-05-17 07:36 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-06-12 02:47 - 2019-05-17 07:36 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-06-12 02:47 - 2019-05-17 07:36 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-06-12 02:47 - 2019-05-17 07:36 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-06-12 02:47 - 2019-05-17 07:36 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-06-12 02:47 - 2019-05-17 07:35 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2019-06-12 02:47 - 2019-05-17 07:34 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2019-06-12 02:47 - 2019-05-17 07:34 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-06-12 02:47 - 2019-05-17 07:34 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 002912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 002370560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 001214464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 000787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-06-12 02:47 - 2019-05-17 07:33 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2019-06-12 02:47 - 2019-05-17 07:32 - 000815104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-06-12 02:47 - 2019-05-17 07:31 - 001215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-06-12 02:47 - 2019-05-17 07:31 - 001027584 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2019-06-12 02:47 - 2019-05-17 07:31 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-06-12 02:47 - 2019-05-17 07:30 - 000507392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-06-12 02:47 - 2019-05-17 07:30 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2019-06-10 16:41 - 2019-06-11 06:26 - 3179810904 _____ C:\Users\ASUS\Downloads\Star Wars 8. Poslední z Jediů. (2017) Hbo Hd cz.avi
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-07-04 02:37 - 2018-10-29 14:03 - 001601516 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-07-04 02:37 - 2018-04-12 17:50 - 000680616 _____ C:\WINDOWS\system32\perfh005.dat
2019-07-04 02:37 - 2018-04-12 17:50 - 000136548 _____ C:\WINDOWS\system32\perfc005.dat
2019-07-04 02:37 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
2019-07-04 02:31 - 2018-04-11 23:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-07-04 02:30 - 2018-10-29 14:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-07-04 02:30 - 2018-08-15 10:20 - 000000000 __RDL C:\Users\ASUS\OneDrive
2019-07-04 02:29 - 2018-08-15 10:18 - 000000000 __SHD C:\Users\ASUS\IntelGraphicsProfiles
2019-07-04 02:29 - 2018-08-15 10:16 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-07-04 02:29 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-07-04 02:25 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-07-04 02:24 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-07-03 18:01 - 2018-08-15 09:17 - 000000000 ___HD C:\Users\ASUS\MicrosoftEdgeBackups
2019-07-03 03:15 - 2018-08-17 17:50 - 000000000 ____D C:\Hory - složky
2019-07-02 04:08 - 2018-10-29 13:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-07-01 03:23 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2019-07-01 03:23 - 2017-09-29 15:46 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-07-01 02:10 - 2019-05-06 07:59 - 000000000 ____D C:\Users\ASUS\Downloads\nože
2019-06-29 22:28 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-06-29 22:03 - 2018-08-15 10:55 - 000000000 ___DC C:\Users\ASUS\AppData\Local\Google
2019-06-29 22:03 - 2018-08-15 10:55 - 000000000 ____D C:\Program Files (x86)\Google
2019-06-29 19:56 - 2019-04-05 11:37 - 000015800 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2019-06-29 18:06 - 2018-08-15 13:03 - 000000000 ____D C:\Users\ASUS\Downloads\Programy
2019-06-29 09:00 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-06-29 08:10 - 2018-08-15 10:18 - 000000000 ___DC C:\Users\ASUS\AppData\Local\VirtualStore
2019-06-29 07:47 - 2019-03-18 12:34 - 000000000 ___DC C:\Users\ASUS\AppData\Local\D3DSCache
2019-06-29 06:56 - 2018-04-12 01:33 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2019-06-29 06:56 - 2018-04-12 01:33 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2019-06-29 06:56 - 2018-04-12 01:33 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2019-06-29 06:56 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2019-06-29 02:56 - 2019-04-18 06:34 - 000010152 ____C C:\Users\ASUS\Desktop\rozpočet USA.xlsx
2019-06-25 06:57 - 2018-08-19 20:47 - 000000000 ____D C:\Program Files\rempl
2019-06-20 07:09 - 2018-08-15 12:58 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-06-16 07:13 - 2018-10-29 14:07 - 000003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1499004246-3945328631-3288649750-1002
2019-06-16 07:13 - 2018-10-29 13:55 - 000002362 ____C C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-12 04:32 - 2018-10-29 13:52 - 000281152 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-06-12 04:32 - 2018-08-15 10:18 - 000000000 ___RD C:\Users\ASUS\3D Objects
2019-06-12 04:32 - 2018-02-12 11:01 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-06-12 02:46 - 2018-02-12 12:03 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-06-12 02:35 - 2018-02-12 12:03 - 135349160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-06-07 01:35 - 2018-08-15 10:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
==================== Files in the root of some directories ================
2018-08-15 10:55 - 2018-08-15 10:55 - 007649280 _____ () C:\Program Files (x86)\GUTDE77.tmp
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================
mám úplně stejný problém který měl kolega qip v tomto vlákně: https://forum.viry.cz/viewtopic.php?f=13&t=155896
Bohužel vlákno je již zamčeno a tak vznáším dotaz zde do nového. I mě se nezačala spouštět po spuštění stránka http://zipansion.com/S7Rk která byla následně hned přesměrována na gloyah.net neboli ad.fly
Problém jsem vyřešil stejně jako kolega, smazáním update.bat z "po spuštění".
Nicméně bych se rád zeptal zda je možnost nějak zjistit, jestli ještě něco z případného malware mohlo zůstat v pc, respektive zda jsem vymazáním nevyřešil jen otravný problém spouštění ale v pc stále něco mám.
Přikládám screenshot se smazaným souborem plus FRST:
Díky
----------------------
FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 3-07-2019
Ran by ASUS (administrator) on DESKTOP-LBQBPRS (ASUSTeK COMPUTER INC. T100HAN) (04-07-2019 02:36:13)
Running from E:\
Loaded Profiles: ASUS (Available Profiles: ASUS)
Platform: Windows 10 Home Version 1803 17134.829 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Safe Mode (minimal)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [118368 2015-11-03] (Intel Corporation -> Intel Corporation)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [177928 2019-04-05] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [279240 2016-12-09] (Canon Inc. -> CANON INC.)
HKLM\...\Providers\Internet Print Provider: inetpp.dll [174080 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Providers\LanMan Print Services: win32spl.dll [836608 2018-09-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> themeui.dll [2018-09-20] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89820200-ECBD-11cf-8B85-00AA005B4340}] -> shell32.dll [2019-06-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\Installer\chrmstp.exe [2019-06-29] (Google LLC -> Google LLC)
HKLM\Software\...\Winlogon\GPExtensions: [{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}] -> wlgpclnt.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{16be69fa-4209-4250-88cb-716cf41954e0}] -> auditcse.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{25537BA6-77A8-11D2-9B6C-0000F8080861}] -> fdeploy.dll [2018-08-09] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{426031c0-0b47-4852-b0ca-ac3d37bfcb39}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4d968b55-cac2-4ff5-983f-0a54603781a3}] -> WorkFoldersGPExt.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{7909AD9E-09EE-4247-BAB9-7029D5F0A278}] -> dmenrollengine.dll [2019-04-19] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] -> scecli.dll [2018-10-21] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}] -> dot3gpclnt.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{BA649533-0AAC-4E04-B9BC-4DBAE0325B12}] -> pwlauncher.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{C34B2751-1CF4-44F5-9262-C3FC39666591}] -> pwlauncher.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{f3ccc681-b74c-4060-9f26-cd84525dca2a}] -> auditcse.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{FB2CA36D-0B40-4307-821B-A13B252DE56C}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}] -> gptext.dll [2018-04-12] (Microsoft Windows -> Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Restriction ? <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {02D9C07A-721E-4F6B-9E24-FE23950748A8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {49917ADA-DF9C-4908-8EE5-FDA1571C09FB} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {958DE905-90F6-420A-ACDF-5122C448E2EA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-29] (Google Inc -> Google LLC)
Task: {9C97CB38-2416-494D-B470-47E879BC30C3} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122008 2015-09-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {B18A352E-E7CB-47A6-A238-7C4CDB4CEDEB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-06-29] (Google Inc -> Google LLC)
Task: {CB7576FC-46D5-4830-89D9-DE1C82925B77} - System32\Tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask => BthUdTask.exe [40448 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
Task: {E6A5480D-EF02-42A3-A7B5-A3E17B024DD2} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18416 2015-10-22] (ASUSTeK Computer Inc. -> AsusTek)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.128.1
Tcpip\..\Interfaces\{20c809e5-553c-4053-acaf-c0d565555b0d}: [DhcpNameServer] 192.168.128.1
Tcpip\..\Interfaces\{4d0a3e54-25ff-48f8-b8a0-ec02cf2abded}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{df6356f4-fb94-4c2f-8402-7c397674b2c8}: [DhcpNameServer] 192.168.135.1 8.8.8.8
Internet Explorer:
==================
FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-29] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-06-29] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default [2019-07-04]
CHR Extension: (Prezentace) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-06-29]
CHR Extension: (Dokumenty) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-06-29]
CHR Extension: (Disk Google) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-06-29]
CHR Extension: (Seznam doplněk - Email) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2019-06-29]
CHR Extension: (YouTube) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-06-29]
CHR Extension: (Tabulky) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-06-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-06-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-06-29]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2019-06-29]
CHR Extension: (Gmail) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-06-29]
CHR Extension: (Chrome Media Router) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-29]
CHR Profile: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile [2019-06-29]
CHR HKU\S-1-5-21-1499004246-3945328631-3288649750-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1499004246-3945328631-3288649750-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AsHidService; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsHidSrv.exe [126648 2016-06-16] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [122976 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 DptfParticipantWirelessService; C:\WINDOWS\System32\DptfParticipantWirelessService.exe [327264 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [126560 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [130144 2015-11-03] (Intel Corporation -> Intel Corporation)
S2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2359312 2019-04-05] (ESET, spol. s r.o. -> ESET)
S3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2359312 2019-04-05] (ESET, spol. s r.o. -> ESET)
S2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [371640 2015-12-02] (Intel Corporation - pGFX -> Intel Corporation)
S2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [397472 2018-03-15] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AsusSGDrv; C:\WINDOWS\System32\drivers\AsusSGDrv.sys [140280 2015-10-22] (ASUSTeK Computer Inc. -> ASUS Corporation)
S1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
S3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [367104 2018-04-12] (Microsoft Windows -> Broadcom Corp)
R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [178984 2015-12-09] (Broadcom Corporation -> Broadcom Corporation.)
S3 camera; C:\WINDOWS\system32\DRIVERS\iacamera64.sys [937856 2015-11-11] (WDKTestCert viedifw,130729819466811601 -> Intel(R) Corporation)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [66656 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [49248 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [51808 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [65136 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [114784 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfDevWireless; C:\WINDOWS\System32\drivers\DptfDevWireless.sys [67168 2015-11-03] (Intel Corporation -> Intel Corporation)
S3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [247920 2015-11-03] (Intel Corporation -> Intel Corporation)
S1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [145600 2019-04-05] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-29] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
S1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [188240 2019-04-05] (ESET, spol. s r.o. -> ESET)
S1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [110000 2019-04-05] (ESET, spol. s r.o. -> ESET)
R3 HidEventFilter; C:\WINDOWS\System32\drivers\HidEventFilter.sys [54816 2016-10-28] (Intel(R) Software -> Intel Corporation)
R3 HID_PCI; C:\WINDOWS\System32\drivers\HID_PCI.sys [47928 2015-08-23] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel)
S3 HPMoA407; C:\WINDOWS\System32\drivers\HPMoA407.sys [25088 2011-10-31] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
S3 HPubA407; C:\WINDOWS\System32\Drivers\HPubA407.sys [18944 2012-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
R3 iaisp; C:\WINDOWS\System32\drivers\iaisp64.sys [28432 2015-11-11] (WDKTestCert viedifw,130729819466811601 -> Intel(R) Corporation)
R3 iaspie; C:\WINDOWS\System32\drivers\iaspie.sys [71680 2015-11-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
R3 iauarte; C:\WINDOWS\System32\drivers\iauarte.sys [112632 2015-11-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
S3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [5928888 2015-12-02] (Intel Corporation - pGFX -> Intel Corporation)
S3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [678656 2015-07-24] (Realtek Semiconductor Corp -> )
R3 ISH; C:\WINDOWS\System32\drivers\ISH.sys [135984 2015-08-31] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel)
R3 ISH_BusDriver; C:\WINDOWS\System32\drivers\ISH_BusDriver.sys [68408 2015-08-31] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [199768 2019-07-04] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-07-04] (Malwarebytes Corporation -> Malwarebytes)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [41464 2015-11-20] (Intel(R) CherryTrail Windows -> Intel(R) Corporation)
R3 ov5670; C:\WINDOWS\System32\drivers\ov5670.sys [113312 2018-02-05] (WDKTestCert pingchun,130736352804591975 -> Intel Corporation)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [109568 2015-10-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
S3 rtii2sac64; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [334592 2015-07-31] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [28272 2019-07-02] (Adlice -> )
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [148280 2015-06-26] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 unicam; C:\WINDOWS\System32\drivers\hm2051.sys [129240 2018-02-05] (WDKTestCert huizhou1,130735866078346983 -> Intel(R) Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-06-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [337632 2019-06-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-07-04 02:35 - 2019-07-04 02:36 - 000000000 ____D C:\FRST
2019-07-04 02:32 - 2019-07-04 02:32 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-07-04 02:29 - 2019-07-04 02:29 - 000002560 _____ C:\WINDOWS\system32\Drivers\201974_2295672_CheckPoint_Dump.txt
2019-07-04 02:29 - 2019-07-04 02:29 - 000000256 _____ C:\WINDOWS\system32\Drivers\201974_2295672_SHIM_Dump.txt
2019-07-04 02:26 - 2019-07-04 02:37 - 000434018 _____ C:\WINDOWS\ntbtlog.txt
2019-07-04 02:26 - 2019-07-04 02:26 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2019-07-04 02:14 - 2019-07-04 02:14 - 000002560 _____ C:\WINDOWS\system32\Drivers\201974_21439673_CheckPoint_Dump.txt
2019-07-04 02:14 - 2019-07-04 02:14 - 000000256 _____ C:\WINDOWS\system32\Drivers\201974_21439673_SHIM_Dump.txt
2019-07-04 02:12 - 2019-07-04 02:12 - 000002560 _____ C:\WINDOWS\system32\Drivers\201974_2121756_CheckPoint_Dump.txt
2019-07-04 02:12 - 2019-07-04 02:12 - 000000256 _____ C:\WINDOWS\system32\Drivers\201974_2121756_SHIM_Dump.txt
2019-07-03 18:46 - 2019-07-03 18:46 - 000002560 _____ C:\WINDOWS\system32\Drivers\201973_184616685_CheckPoint_Dump.txt
2019-07-03 18:46 - 2019-07-03 18:46 - 000000256 _____ C:\WINDOWS\system32\Drivers\201973_184616685_SHIM_Dump.txt
2019-07-03 18:28 - 2019-07-03 18:28 - 000002560 _____ C:\WINDOWS\system32\Drivers\201973_182858873_CheckPoint_Dump.txt
2019-07-03 18:28 - 2019-07-03 18:28 - 000000256 _____ C:\WINDOWS\system32\Drivers\201973_182858873_SHIM_Dump.txt
2019-07-02 23:27 - 2019-07-02 23:27 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_23273753_CheckPoint_Dump.txt
2019-07-02 23:27 - 2019-07-02 23:27 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_23273753_SHIM_Dump.txt
2019-07-02 23:22 - 2019-07-02 23:22 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_232259699_CheckPoint_Dump.txt
2019-07-02 23:22 - 2019-07-02 23:22 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_232259699_SHIM_Dump.txt
2019-07-02 23:16 - 2019-07-02 23:16 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_231628684_CheckPoint_Dump.txt
2019-07-02 23:16 - 2019-07-02 23:16 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_231628684_SHIM_Dump.txt
2019-07-02 04:12 - 2019-07-02 04:12 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_41225839_CheckPoint_Dump.txt
2019-07-02 04:12 - 2019-07-02 04:12 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_41225839_SHIM_Dump.txt
2019-07-02 03:43 - 2019-07-02 03:43 - 000028272 _____ C:\WINDOWS\system32\Drivers\truesight.sys
2019-07-02 00:59 - 2019-07-02 00:59 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_05927762_CheckPoint_Dump.txt
2019-07-02 00:59 - 2019-07-02 00:59 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_05927762_SHIM_Dump.txt
2019-07-02 00:30 - 2019-07-02 00:30 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_03032783_CheckPoint_Dump.txt
2019-07-02 00:30 - 2019-07-02 00:30 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_03032783_SHIM_Dump.txt
2019-07-02 00:27 - 2019-07-02 00:27 - 000002560 _____ C:\WINDOWS\system32\Drivers\201972_0274769_CheckPoint_Dump.txt
2019-07-02 00:27 - 2019-07-02 00:27 - 000000256 _____ C:\WINDOWS\system32\Drivers\201972_0274769_SHIM_Dump.txt
2019-07-01 05:55 - 2019-07-01 05:55 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_5559863_CheckPoint_Dump.txt
2019-07-01 05:55 - 2019-07-01 05:55 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_5559863_SHIM_Dump.txt
2019-07-01 05:46 - 2019-07-01 05:46 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_54619813_CheckPoint_Dump.txt
2019-07-01 05:46 - 2019-07-01 05:46 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_54619813_SHIM_Dump.txt
2019-07-01 05:35 - 2019-07-01 05:35 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_53525760_CheckPoint_Dump.txt
2019-07-01 05:35 - 2019-07-01 05:35 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_53525760_SHIM_Dump.txt
2019-07-01 05:20 - 2019-07-01 05:20 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_52032791_CheckPoint_Dump.txt
2019-07-01 05:20 - 2019-07-01 05:20 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_52032791_SHIM_Dump.txt
2019-07-01 04:03 - 2019-07-01 05:08 - 598736896 _____ C:\Users\ASUS\Downloads\eset_sysrescue_live_enu.iso
2019-07-01 03:55 - 2019-07-01 03:55 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_35534683_CheckPoint_Dump.txt
2019-07-01 03:55 - 2019-07-01 03:55 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_35534683_SHIM_Dump.txt
2019-07-01 03:51 - 2019-07-01 03:51 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_35136615_CheckPoint_Dump.txt
2019-07-01 03:51 - 2019-07-01 03:51 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_35136615_SHIM_Dump.txt
2019-07-01 03:49 - 2019-07-01 03:49 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_34948696_CheckPoint_Dump.txt
2019-07-01 03:49 - 2019-07-01 03:49 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_34948696_SHIM_Dump.txt
2019-07-01 03:41 - 2019-07-01 03:41 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_34113843_CheckPoint_Dump.txt
2019-07-01 03:41 - 2019-07-01 03:41 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_34113843_SHIM_Dump.txt
2019-07-01 03:34 - 2019-07-01 03:34 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_33442609_CheckPoint_Dump.txt
2019-07-01 03:34 - 2019-07-01 03:34 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_33442609_SHIM_Dump.txt
2019-07-01 03:32 - 2019-07-01 03:32 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_33233697_CheckPoint_Dump.txt
2019-07-01 03:32 - 2019-07-01 03:32 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_33233697_SHIM_Dump.txt
2019-07-01 03:31 - 2019-07-01 03:31 - 000002560 _____ C:\WINDOWS\system32\Drivers\201971_3315787_CheckPoint_Dump.txt
2019-07-01 03:31 - 2019-07-01 03:31 - 000000256 _____ C:\WINDOWS\system32\Drivers\201971_3315787_SHIM_Dump.txt
2019-07-01 03:25 - 2019-07-01 03:25 - 000000000 ____D C:\Users\ASUS\Downloads\rufus_files
2019-07-01 03:23 - 2019-07-02 00:39 - 000000270 __RSH C:\ProgramData\ntuser.pol
2019-07-01 03:23 - 2019-07-01 03:23 - 001052728 _____ (Akeo Consulting) C:\Users\ASUS\Downloads\rufus-3.5.exe
2019-07-01 02:36 - 2019-07-01 02:36 - 003189892 _____ C:\Users\ASUS\Desktop\ESET-SysRescue-Live-userguide-enu.pdf
2019-06-29 22:33 - 2019-06-29 22:33 - 000000027 ____C C:\Users\ASUS\Desktop\zipnasion.txt
2019-06-29 22:28 - 2019-07-04 02:32 - 000199768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-06-29 22:28 - 2019-06-29 22:28 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-06-29 22:28 - 2019-06-29 22:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-06-29 22:28 - 2019-06-29 22:28 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-06-29 22:28 - 2019-06-29 22:28 - 000000000 ____D C:\Program Files\Malwarebytes
2019-06-29 22:28 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-06-29 22:28 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-06-29 22:16 - 2019-06-29 22:16 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_221625682_CheckPoint_Dump.txt
2019-06-29 22:16 - 2019-06-29 22:16 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_221625682_SHIM_Dump.txt
2019-06-29 22:12 - 2019-06-29 22:12 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_221247811_CheckPoint_Dump.txt
2019-06-29 22:12 - 2019-06-29 22:12 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_221247811_SHIM_Dump.txt
2019-06-29 22:03 - 2019-06-29 22:03 - 000002377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-06-29 22:03 - 2019-06-29 22:03 - 000002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-06-29 22:02 - 2019-06-29 22:02 - 000003472 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-06-29 22:02 - 2019-06-29 22:02 - 000003348 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-06-29 21:39 - 2019-06-29 21:39 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_21392730_CheckPoint_Dump.txt
2019-06-29 21:39 - 2019-06-29 21:39 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_21392730_SHIM_Dump.txt
2019-06-29 21:23 - 2019-06-29 21:23 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_212341629_CheckPoint_Dump.txt
2019-06-29 21:23 - 2019-06-29 21:23 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_212341629_SHIM_Dump.txt
2019-06-29 21:16 - 2019-06-29 21:16 - 000000000 ___DC C:\Users\ASUS\AppData\Local\ESET
2019-06-29 21:15 - 2019-06-29 21:15 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_211514924_CheckPoint_Dump.txt
2019-06-29 21:15 - 2019-06-29 21:15 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_211514924_SHIM_Dump.txt
2019-06-29 19:53 - 2019-06-29 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2019-06-29 19:53 - 2019-06-29 19:53 - 000000000 ____D C:\ProgramData\ESET
2019-06-29 19:53 - 2019-06-29 19:53 - 000000000 ____D C:\Program Files\ESET
2019-06-29 19:43 - 2019-06-29 19:43 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_194350474_CheckPoint_Dump.txt
2019-06-29 19:43 - 2019-06-29 19:43 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_194350474_SHIM_Dump.txt
2019-06-29 19:40 - 2019-06-29 19:40 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_19406471_CheckPoint_Dump.txt
2019-06-29 19:40 - 2019-06-29 19:40 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_19406471_SHIM_Dump.txt
2019-06-29 17:55 - 2019-06-29 17:55 - 000000000 ___DC C:\Users\ASUS\Documents\TotalAV
2019-06-29 17:55 - 2019-06-29 17:55 - 000000000 ____D C:\ProgramData\SecuritySuite
2019-06-29 17:42 - 2019-06-29 17:42 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_174231496_CheckPoint_Dump.txt
2019-06-29 17:42 - 2019-06-29 17:42 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_174231496_SHIM_Dump.txt
2019-06-29 17:36 - 2019-06-29 17:36 - 000000085 _____ C:\WINDOWS\wininit.ini
2019-06-29 17:22 - 2019-06-29 17:22 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_17220306_CheckPoint_Dump.txt
2019-06-29 17:22 - 2019-06-29 17:22 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_17220306_SHIM_Dump.txt
2019-06-29 17:20 - 2019-06-29 17:20 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_172058398_CheckPoint_Dump.txt
2019-06-29 17:20 - 2019-06-29 17:20 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_172058398_SHIM_Dump.txt
2019-06-29 09:06 - 2019-06-29 17:42 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2019-06-29 09:06 - 2019-06-29 17:36 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
2019-06-29 09:06 - 2019-06-29 09:06 - 000000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2019-06-29 09:00 - 2019-02-13 07:47 - 001909560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-06-29 08:59 - 2019-06-29 08:59 - 000000000 ___DC C:\Users\ASUS\AppData\Local\mbamtray
2019-06-29 08:59 - 2019-06-29 08:59 - 000000000 ___DC C:\Users\ASUS\AppData\Local\mbam
2019-06-29 08:50 - 2019-06-29 08:50 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_85016632_CheckPoint_Dump.txt
2019-06-29 08:50 - 2019-06-29 08:50 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_85016635_SHIM_Dump.txt
2019-06-29 08:45 - 2019-06-29 08:45 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_84551399_CheckPoint_Dump.txt
2019-06-29 08:45 - 2019-06-29 08:45 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_84551399_SHIM_Dump.txt
2019-06-29 08:10 - 2019-06-29 08:10 - 000001991 _____ C:\Users\Public\Desktop\DOSBox 0.74.lnk
2019-06-29 08:10 - 2019-06-29 08:10 - 000000000 ___DC C:\Users\ASUS\AppData\Local\DOSBox
2019-06-29 08:10 - 2019-06-29 08:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74
2019-06-29 08:10 - 2019-06-29 08:10 - 000000000 ____D C:\Program Files (x86)\DOSBox-0.74
2019-06-29 07:44 - 2019-06-29 07:44 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019629_7447534_CheckPoint_Dump.txt
2019-06-29 07:44 - 2019-06-29 07:44 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019629_7447537_SHIM_Dump.txt
2019-06-29 06:50 - 2019-06-29 06:50 - 000000000 ___DC C:\Users\ASUS\AppData\Roaming\Ubisoft
2019-06-29 06:48 - 2019-06-29 06:48 - 000000000 ___DC C:\Users\ASUS\AppData\Roaming\WinRAR
2019-06-29 06:47 - 2019-06-29 06:47 - 000000000 ___DC C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-29 06:47 - 2019-06-29 06:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-06-29 06:47 - 2019-06-29 06:47 - 000000000 ____D C:\Program Files\WinRAR
2019-06-29 03:40 - 2019-06-29 03:40 - 000057923 _____ C:\Users\ASUS\Downloads\Vyplatni_listek_3207233_201903.PDF
2019-06-29 03:40 - 2019-06-29 03:40 - 000056860 _____ C:\Users\ASUS\Downloads\Vyplatni_listek_3207233_201904.PDF
2019-06-29 03:40 - 2019-06-29 03:40 - 000056221 _____ C:\Users\ASUS\Downloads\Vyplatni_listek_3207233_201905.PDF
2019-06-28 18:49 - 2019-07-04 01:56 - 000000314 ____C C:\Users\ASUS\Desktop\Seznam nože.txt
2019-06-28 18:22 - 2019-06-28 18:22 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019628_18224854_CheckPoint_Dump.txt
2019-06-28 18:22 - 2019-06-28 18:22 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019628_18224854_SHIM_Dump.txt
2019-06-20 13:22 - 2019-06-20 13:22 - 000000000 ____D C:\Program Files\UNP
2019-06-20 07:22 - 2019-06-20 09:39 - 2156438438 _____ C:\Users\ASUS\Downloads\The Sims 1 - The Complete Collection.rar
2019-06-12 04:31 - 2019-06-12 04:31 - 000002560 _____ C:\WINDOWS\system32\Drivers\2019612_43150237_CheckPoint_Dump.txt
2019-06-12 04:31 - 2019-06-12 04:31 - 000000256 _____ C:\WINDOWS\system32\Drivers\2019612_43150237_SHIM_Dump.txt
2019-06-12 02:49 - 2019-06-07 08:07 - 000707384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-06-12 02:49 - 2019-06-07 07:57 - 007519896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-06-12 02:49 - 2019-06-07 07:57 - 001209696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-06-12 02:49 - 2019-06-07 07:57 - 000594024 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-06-12 02:49 - 2019-06-07 07:46 - 006569344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-06-12 02:49 - 2019-06-07 07:46 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-06-12 02:49 - 2019-06-07 07:21 - 001778688 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-06-12 02:49 - 2019-06-07 07:19 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-06-12 02:49 - 2019-06-07 07:18 - 000686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-06-12 02:49 - 2019-06-07 07:16 - 001102336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-06-12 02:49 - 2019-06-07 07:16 - 000900096 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-06-12 02:49 - 2019-05-17 14:21 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-06-12 02:49 - 2019-05-17 13:55 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-06-12 02:49 - 2019-05-17 08:44 - 000829960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2019-06-12 02:49 - 2019-05-17 08:44 - 000550520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 004789944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 001380096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 001130568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-06-12 02:49 - 2019-05-17 08:42 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2019-06-12 02:49 - 2019-05-17 08:30 - 013878784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-06-12 02:49 - 2019-05-17 08:21 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2019-06-12 02:49 - 2019-05-17 08:19 - 004515840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-06-12 02:49 - 2019-05-17 08:08 - 000491200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-06-12 02:49 - 2019-05-17 08:07 - 001288712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-06-12 02:49 - 2019-05-17 08:07 - 000930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2019-06-12 02:49 - 2019-05-17 08:07 - 000260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-06-12 02:49 - 2019-05-17 08:06 - 001784696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-06-12 02:49 - 2019-05-17 07:34 - 000671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-06-12 02:49 - 2019-05-17 07:34 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2019-06-12 02:49 - 2019-05-17 07:31 - 004937216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-06-12 02:49 - 2019-05-17 07:31 - 003293184 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-06-12 02:48 - 2019-06-07 13:04 - 021388752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-06-12 02:48 - 2019-06-07 12:45 - 012756480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-06-12 02:48 - 2019-06-07 12:42 - 003613696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-06-12 02:48 - 2019-06-07 12:07 - 011942400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 007436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 001934808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 000413720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-06-12 02:48 - 2019-06-07 07:57 - 000383504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-06-12 02:48 - 2019-06-07 07:57 - 000170296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-06-12 02:48 - 2019-06-07 07:56 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-06-12 02:48 - 2019-06-07 07:46 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-06-12 02:48 - 2019-06-07 07:46 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-06-12 02:48 - 2019-06-07 07:38 - 025857536 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-06-12 02:48 - 2019-06-07 07:37 - 022019584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-06-12 02:48 - 2019-06-07 07:31 - 019372544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-06-12 02:48 - 2019-06-07 07:27 - 022718976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-06-12 02:48 - 2019-06-07 07:24 - 005784064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-06-12 02:48 - 2019-06-07 07:21 - 007588864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-06-12 02:48 - 2019-06-07 07:20 - 002610688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-06-12 02:48 - 2019-06-07 07:20 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2019-06-12 02:48 - 2019-06-07 07:19 - 003212288 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-06-12 02:48 - 2019-06-07 07:19 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-06-12 02:48 - 2019-06-07 07:17 - 001920000 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-06-12 02:48 - 2019-06-07 07:17 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-06-12 02:48 - 2019-05-17 14:44 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-06-12 02:48 - 2019-05-17 14:40 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-06-12 02:48 - 2019-05-17 14:27 - 006586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-06-12 02:48 - 2019-05-17 14:26 - 004393984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-06-12 02:48 - 2019-05-17 14:25 - 004718080 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-06-12 02:48 - 2019-05-17 14:25 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-06-12 02:48 - 2019-05-17 14:24 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2019-06-12 02:48 - 2019-05-17 14:22 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2019-06-12 02:48 - 2019-05-17 14:22 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-06-12 02:48 - 2019-05-17 14:21 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-06-12 02:48 - 2019-05-17 14:21 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2019-06-12 02:48 - 2019-05-17 14:21 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2019-06-12 02:48 - 2019-05-17 14:20 - 002084864 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-06-12 02:48 - 2019-05-17 14:19 - 000757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2019-06-12 02:48 - 2019-05-17 14:07 - 002206424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-06-12 02:48 - 2019-05-17 14:00 - 005658112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-06-12 02:48 - 2019-05-17 13:58 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-06-12 02:48 - 2019-05-17 13:56 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2019-06-12 02:48 - 2019-05-17 13:55 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2019-06-12 02:48 - 2019-05-17 13:55 - 000470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2019-06-12 02:48 - 2019-05-17 13:54 - 002016768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-06-12 02:48 - 2019-05-17 13:54 - 000908288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2019-06-12 02:48 - 2019-05-17 09:07 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2019-06-12 02:48 - 2019-05-17 08:42 - 005625160 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-06-12 02:48 - 2019-05-17 08:42 - 001980256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-06-12 02:48 - 2019-05-17 08:42 - 001620264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-06-12 02:48 - 2019-05-17 08:22 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 001630720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2019-06-12 02:48 - 2019-05-17 08:19 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-06-12 02:48 - 2019-05-17 08:18 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-06-12 02:48 - 2019-05-17 08:08 - 000723432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-06-12 02:48 - 2019-05-17 08:07 - 004404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-06-12 02:48 - 2019-05-17 08:07 - 002571640 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-06-12 02:48 - 2019-05-17 08:07 - 000275768 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-06-12 02:48 - 2019-05-17 08:06 - 001943136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-06-12 02:48 - 2019-05-17 08:06 - 001098056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-06-12 02:48 - 2019-05-17 08:04 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-06-12 02:48 - 2019-05-17 07:44 - 016597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-06-12 02:48 - 2019-05-17 07:38 - 004709376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-06-12 02:48 - 2019-05-17 07:37 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-06-12 02:48 - 2019-05-17 07:36 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-06-12 02:48 - 2019-05-17 07:36 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-06-12 02:48 - 2019-05-17 07:35 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-06-12 02:48 - 2019-05-17 07:35 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-06-12 02:48 - 2019-05-17 07:34 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-06-12 02:48 - 2019-05-17 07:34 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-06-12 02:48 - 2019-05-17 07:34 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2019-06-12 02:48 - 2019-05-17 07:33 - 003091456 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-06-12 02:48 - 2019-05-17 07:33 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-06-12 02:48 - 2019-05-17 07:32 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 003376640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001805312 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 001211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-06-12 02:48 - 2019-05-17 07:31 - 000620032 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-06-12 02:48 - 2019-05-17 07:30 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-06-12 02:47 - 2019-06-07 13:04 - 001633136 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-06-12 02:47 - 2019-06-07 12:48 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-06-12 02:47 - 2019-06-07 12:47 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-06-12 02:47 - 2019-06-07 12:41 - 004055552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-06-12 02:47 - 2019-06-07 12:40 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-06-12 02:47 - 2019-06-07 12:40 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-06-12 02:47 - 2019-06-07 12:23 - 001453920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-06-12 02:47 - 2019-06-07 12:19 - 020383832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-06-12 02:47 - 2019-06-07 12:10 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-06-12 02:47 - 2019-06-07 12:04 - 004056064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-06-12 02:47 - 2019-06-07 12:04 - 002881536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-06-12 02:47 - 2019-06-07 12:04 - 001471488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-06-12 02:47 - 2019-06-07 08:01 - 001035040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 001220112 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 001027384 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-06-12 02:47 - 2019-06-07 07:58 - 000422416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-06-12 02:47 - 2019-06-07 07:58 - 000135176 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-06-12 02:47 - 2019-06-07 07:58 - 000076304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 002811192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 002719032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000792888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000709728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000494304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-06-12 02:47 - 2019-06-07 07:57 - 000435000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-06-12 02:47 - 2019-06-07 07:57 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-06-12 02:47 - 2019-06-07 07:57 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-06-12 02:47 - 2019-06-07 07:57 - 000137448 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2019-06-12 02:47 - 2019-06-07 07:56 - 000713272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2019-06-12 02:47 - 2019-06-07 07:47 - 000380432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-06-12 02:47 - 2019-06-07 07:47 - 000097272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2019-06-12 02:47 - 2019-06-07 07:46 - 000581048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2019-06-12 02:47 - 2019-06-07 07:46 - 000357072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-06-12 02:47 - 2019-06-07 07:46 - 000128792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-06-12 02:47 - 2019-06-07 07:24 - 003400704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-06-12 02:47 - 2019-06-07 07:24 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2019-06-12 02:47 - 2019-06-07 07:23 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-06-12 02:47 - 2019-06-07 07:23 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-06-12 02:47 - 2019-06-07 07:23 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 003710976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-06-12 02:47 - 2019-06-07 07:22 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 004866048 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-06-12 02:47 - 2019-06-07 07:21 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-06-12 02:47 - 2019-06-07 07:20 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-06-12 02:47 - 2019-06-07 07:20 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-06-12 02:47 - 2019-06-07 07:19 - 002175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-06-12 02:47 - 2019-06-07 07:19 - 001560576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-06-12 02:47 - 2019-06-07 07:19 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-06-12 02:47 - 2019-06-07 07:18 - 002166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-06-12 02:47 - 2019-06-07 07:18 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-06-12 02:47 - 2019-06-07 07:17 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-06-12 02:47 - 2019-06-07 07:16 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-06-12 02:47 - 2019-06-07 07:16 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-06-12 02:47 - 2019-06-07 06:00 - 000001308 _____ C:\WINDOWS\system32\tcbres.wim
2019-06-12 02:47 - 2019-05-19 00:12 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-06-12 02:47 - 2019-05-19 00:12 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-06-12 02:47 - 2019-05-19 00:12 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-06-12 02:47 - 2019-05-19 00:12 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-06-12 02:47 - 2019-05-17 14:40 - 000280888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-06-12 02:47 - 2019-05-17 14:25 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
2019-06-12 02:47 - 2019-05-17 14:23 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-06-12 02:47 - 2019-05-17 14:21 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3gpui.dll
2019-06-12 02:47 - 2019-05-17 13:56 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3gpui.dll
2019-06-12 02:47 - 2019-05-17 11:33 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2019-06-12 02:47 - 2019-05-17 10:52 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-06-12 02:47 - 2019-05-17 08:43 - 000297688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2019-06-12 02:47 - 2019-05-17 08:42 - 002256560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-06-12 02:47 - 2019-05-17 08:42 - 001989552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-06-12 02:47 - 2019-05-17 08:42 - 000125504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-06-12 02:47 - 2019-05-17 08:26 - 002969600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-06-12 02:47 - 2019-05-17 08:23 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-06-12 02:47 - 2019-05-17 08:23 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-06-12 02:47 - 2019-05-17 08:23 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-06-12 02:47 - 2019-05-17 08:22 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-06-12 02:47 - 2019-05-17 08:21 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-06-12 02:47 - 2019-05-17 08:21 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe
2019-06-12 02:47 - 2019-05-17 08:20 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-06-12 02:47 - 2019-05-17 08:20 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2019-06-12 02:47 - 2019-05-17 08:19 - 001073664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-06-12 02:47 - 2019-05-17 08:18 - 002796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-06-12 02:47 - 2019-05-17 08:18 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-06-12 02:47 - 2019-05-17 08:08 - 001063224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-06-12 02:47 - 2019-05-17 08:08 - 000401328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2019-06-12 02:47 - 2019-05-17 08:07 - 002768960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-06-12 02:47 - 2019-05-17 08:07 - 002467320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-06-12 02:47 - 2019-05-17 08:07 - 001459120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-06-12 02:47 - 2019-05-17 08:07 - 001260272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-06-12 02:47 - 2019-05-17 08:06 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2019-06-12 02:47 - 2019-05-17 08:06 - 001140992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-06-12 02:47 - 2019-05-17 08:06 - 000983424 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-06-12 02:47 - 2019-05-17 08:06 - 000151888 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-06-12 02:47 - 2019-05-17 08:00 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2019-06-12 02:47 - 2019-05-17 07:37 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-06-12 02:47 - 2019-05-17 07:37 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DuCsps.dll
2019-06-12 02:47 - 2019-05-17 07:36 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-06-12 02:47 - 2019-05-17 07:36 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-06-12 02:47 - 2019-05-17 07:36 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-06-12 02:47 - 2019-05-17 07:36 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-06-12 02:47 - 2019-05-17 07:36 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-06-12 02:47 - 2019-05-17 07:35 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2019-06-12 02:47 - 2019-05-17 07:34 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2019-06-12 02:47 - 2019-05-17 07:34 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-06-12 02:47 - 2019-05-17 07:34 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 002912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 002370560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 001214464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-06-12 02:47 - 2019-05-17 07:33 - 000787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-06-12 02:47 - 2019-05-17 07:33 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2019-06-12 02:47 - 2019-05-17 07:32 - 000815104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-06-12 02:47 - 2019-05-17 07:31 - 001215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-06-12 02:47 - 2019-05-17 07:31 - 001027584 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2019-06-12 02:47 - 2019-05-17 07:31 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-06-12 02:47 - 2019-05-17 07:30 - 000507392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-06-12 02:47 - 2019-05-17 07:30 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2019-06-10 16:41 - 2019-06-11 06:26 - 3179810904 _____ C:\Users\ASUS\Downloads\Star Wars 8. Poslední z Jediů. (2017) Hbo Hd cz.avi
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-07-04 02:37 - 2018-10-29 14:03 - 001601516 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-07-04 02:37 - 2018-04-12 17:50 - 000680616 _____ C:\WINDOWS\system32\perfh005.dat
2019-07-04 02:37 - 2018-04-12 17:50 - 000136548 _____ C:\WINDOWS\system32\perfc005.dat
2019-07-04 02:37 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
2019-07-04 02:31 - 2018-04-11 23:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-07-04 02:30 - 2018-10-29 14:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-07-04 02:30 - 2018-08-15 10:20 - 000000000 __RDL C:\Users\ASUS\OneDrive
2019-07-04 02:29 - 2018-08-15 10:18 - 000000000 __SHD C:\Users\ASUS\IntelGraphicsProfiles
2019-07-04 02:29 - 2018-08-15 10:16 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-07-04 02:29 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-07-04 02:25 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-07-04 02:24 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-07-03 18:01 - 2018-08-15 09:17 - 000000000 ___HD C:\Users\ASUS\MicrosoftEdgeBackups
2019-07-03 03:15 - 2018-08-17 17:50 - 000000000 ____D C:\Hory - složky
2019-07-02 04:08 - 2018-10-29 13:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-07-01 03:23 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2019-07-01 03:23 - 2017-09-29 15:46 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2019-07-01 02:10 - 2019-05-06 07:59 - 000000000 ____D C:\Users\ASUS\Downloads\nože
2019-06-29 22:28 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-06-29 22:03 - 2018-08-15 10:55 - 000000000 ___DC C:\Users\ASUS\AppData\Local\Google
2019-06-29 22:03 - 2018-08-15 10:55 - 000000000 ____D C:\Program Files (x86)\Google
2019-06-29 19:56 - 2019-04-05 11:37 - 000015800 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2019-06-29 18:06 - 2018-08-15 13:03 - 000000000 ____D C:\Users\ASUS\Downloads\Programy
2019-06-29 09:00 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-06-29 08:10 - 2018-08-15 10:18 - 000000000 ___DC C:\Users\ASUS\AppData\Local\VirtualStore
2019-06-29 07:47 - 2019-03-18 12:34 - 000000000 ___DC C:\Users\ASUS\AppData\Local\D3DSCache
2019-06-29 06:56 - 2018-04-12 01:33 - 000466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2019-06-29 06:56 - 2018-04-12 01:33 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2019-06-29 06:56 - 2018-04-12 01:33 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2019-06-29 06:56 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2019-06-29 06:56 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2019-06-29 02:56 - 2019-04-18 06:34 - 000010152 ____C C:\Users\ASUS\Desktop\rozpočet USA.xlsx
2019-06-25 06:57 - 2018-08-19 20:47 - 000000000 ____D C:\Program Files\rempl
2019-06-20 07:09 - 2018-08-15 12:58 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-06-16 07:13 - 2018-10-29 14:07 - 000003378 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1499004246-3945328631-3288649750-1002
2019-06-16 07:13 - 2018-10-29 13:55 - 000002362 ____C C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-12 04:32 - 2018-10-29 13:52 - 000281152 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-06-12 04:32 - 2018-08-15 10:18 - 000000000 ___RD C:\Users\ASUS\3D Objects
2019-06-12 04:32 - 2018-02-12 11:01 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning
2019-06-12 03:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-06-12 02:46 - 2018-02-12 12:03 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-06-12 02:35 - 2018-02-12 12:03 - 135349160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-06-07 01:35 - 2018-08-15 10:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
==================== Files in the root of some directories ================
2018-08-15 10:55 - 2018-08-15 10:55 - 007649280 _____ () C:\Program Files (x86)\GUTDE77.tmp
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ============================