Stránka 1 z 1

Prosím o kontrolu

Napsal: 15 srp 2019 17:00
od redneBjebuh
Logfile of random's system information tool 1.10 (written by random/random)
Run by Bender at 2019-08-15 17:51:47
Microsoft Windows 10 Pro
System drive C: has 10 GB (8%) free of 121 GB
Total RAM: 8189 MB (59% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:51:51, on 15. 8. 2019
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.18362.0001)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\IObit\Driver Booster\6.5.0\Pub\PubMonitor.exe
C:\Program Files\trend micro\Bender.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkID= ... 646B82BC7B
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_c3afe - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: IObit Uninstaller Service (IObitUnSvr) - IObit - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: Origin Client Service - Electronic Arts - D:\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - D:\Origin\OriginWebHelperService.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 14 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9177 bytes

======Listing Processes======










winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
"fontdrvhost.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s CscService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS

C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection

C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\SysWOW64\PnkBstrA.exe
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
"C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe"
"D:\Origin\OriginWebHelperService.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s FDResPub
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
dashost.exe {e74c7ca6-609d-42f4-923362fdbad429d2}
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\AVAST Software\Avast\aswEngSrv.exe" /pipename="4EB3EB63-4F3E-1241-B063-8E492892D612" /binpath="C:\Program Files\AVAST Software\Avast"
"C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportInjService_x64.exe" -services -injection-server


C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportInjService_x64.exe" -services -injection-server
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -d "C:\Program Files\NVIDIA Corporation\NvStreamSrv\SsauPlugins" -f "C:\ProgramData\NVIDIA Corporation\nvstreamsvc\NvcSSAU.log" -l 4 -r -c
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe"

C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup -s WbioSrvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\Program Files (x86)\IObit\Driver Booster\6.5.0\Pub\PubMonitor.exe" /DB
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc

C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc

C:\Windows\System32\smartscreen.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
AvastUI.exe /nogui
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k DevicesFlow -s DevicesFlowUserSvc
C:\WINDOWS\system32\svchost.exe -k DevicesFlow -s DevicePickerUserSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
taskhostw.exe
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="8508.0.2079088171\1396298181" -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 8508 "\\.\pipe\gecko-crash-server-pipe.8508" 1960 gpu
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="8508.6.1147245755\1136611720" -childID 1 -isForBrowser -prefsHandle 2840 -prefMapHandle 2836 -prefsLen 1 -prefMapSize 190685 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 8508 "\\.\pipe\gecko-crash-server-pipe.8508" 1308 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="8508.13.1015241629\256485796" -childID 2 -isForBrowser -prefsHandle 3068 -prefMapHandle 3040 -prefsLen 1 -prefMapSize 190685 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 8508 "\\.\pipe\gecko-crash-server-pipe.8508" 3076 tab
C:\Windows\System32\CompPkgSrv.exe -Embedding
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="8508.20.1251345224\790385075" -childID 3 -isForBrowser -prefsHandle 4980 -prefMapHandle 4984 -prefsLen 6086 -prefMapSize 190685 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 8508 "\\.\pipe\gecko-crash-server-pipe.8508" 4992 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="8508.27.1087618991\327514873" -childID 4 -isForBrowser -prefsHandle 5944 -prefMapHandle 5948 -prefsLen 6901 -prefMapSize 190685 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 8508 "\\.\pipe\gecko-crash-server-pipe.8508" 5916 tab
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\AUDIODG.EXE 0x628
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="8508.34.1228943688\2048261289" -childID 5 -isForBrowser -prefsHandle 7480 -prefMapHandle 7432 -prefsLen 8625 -prefMapSize 190685 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 8508 "\\.\pipe\gecko-crash-server-pipe.8508" 7692 tab
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 776 780 788 8192 784
"C:\Users\Bender\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK

=========Mozilla firefox=========

ProfilePath - C:\Users\Bender\AppData\Roaming\Mozilla\Firefox\Profiles\lfl3eh4r.default-1565623632073

"{b84eec0c-f44b-420f-b2ee-db2a585be7fc}"=C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 32.0.0.238 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_238.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@haitao.com/npHaitaoPlugin]
"Description"=
"Path"=C:\Users\Bender\AppData\Local\htyh\application\htwebHelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.201.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.201.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 32.0.0.238 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_238.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-01-25 2478864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-06-19 480120]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-06-19 194424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-03-19 84992]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2019-03-12 18391088]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2019-07-26 269192]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Xvid"=C:\Program Files (x86)\Xvid\CheckUpdate.exe [2011-01-17 8192]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2019-07-11 23153344]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2018-12-16 601424]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinQuic]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.FPS1"=frapsv64.dll
"vidc.XVID"=xvidvfw.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2019-08-15 17:51:47 ----D---- C:\rsit
2019-08-15 17:51:47 ----D---- C:\Program Files\trend micro
2019-08-15 17:40:10 ----D---- C:\ProgramData\Microsoft OneDrive
2019-08-14 20:05:39 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2019-08-14 20:05:38 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2019-08-14 20:05:38 ----A---- C:\WINDOWS\system32\SyncController.dll
2019-08-14 20:05:38 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2019-08-14 20:05:37 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2019-08-14 20:05:37 ----A---- C:\WINDOWS\system32\mf.dll
2019-08-14 20:05:37 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2019-08-14 20:05:37 ----A---- C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\p2pnetsh.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\P2PGraph.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\P2P.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\msrd2x40.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2019-08-14 20:05:36 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2019-08-14 20:05:35 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2019-08-14 20:05:35 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2019-08-14 20:05:34 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2019-08-14 20:05:34 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\system32\p2psvc.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\system32\P2PGraph.dll
2019-08-14 20:05:33 ----A---- C:\WINDOWS\system32\P2P.dll
2019-08-14 20:05:30 ----A---- C:\WINDOWS\system32\tsgqec.dll
2019-08-14 20:05:30 ----A---- C:\WINDOWS\system32\Groupinghc.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\rdpnano.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\offreg.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\mstscax.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2019-08-14 20:05:29 ----A---- C:\WINDOWS\system32\Chakra.dll
2019-08-14 20:05:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2019-08-14 20:05:27 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2019-08-14 20:05:27 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2019-08-14 20:05:26 ----A---- C:\WINDOWS\system32\jscript.dll
2019-08-14 20:05:26 ----A---- C:\WINDOWS\system32\edgehtml.dll
2019-08-14 20:05:26 ----A---- C:\WINDOWS\system32\computestorage.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\tcbloader.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\skci.dll
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\hvix64.exe
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\hvax64.exe
2019-08-14 20:05:24 ----A---- C:\WINDOWS\system32\BioIso.exe
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\xmllite.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\t2embed.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2019-08-14 20:05:23 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Diagnostics.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2019-08-14 20:05:22 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\SYSWOW64\ComposableShellProxyStub.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\system32\vbscript.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\system32\nlasvc.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\system32\nlaapi.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\system32\ncsi.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2019-08-14 20:05:21 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2019-08-14 20:05:16 ----A---- C:\WINDOWS\system32\t2embed.dll
2019-08-14 20:05:16 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2019-08-14 20:05:16 ----A---- C:\WINDOWS\system32\gdi32full.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\xmllite.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\lpk.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\fontsub.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\dciman32.dll
2019-08-14 20:05:15 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\wldp.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\rpcss.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\oleaut32.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\msctf.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\lsasrv.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\kdnet.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\drivers\http.sys
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\CoreShell.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-08-14 20:05:14 ----A---- C:\WINDOWS\system32\ci.dll
2019-08-14 20:05:13 ----A---- C:\WINDOWS\system32\sppsvc.exe
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\winresume.exe
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\winload.exe
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\wc_storage.dll
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\shell32.dll
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\dwmcore.dll
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2019-08-14 20:05:12 ----A---- C:\WINDOWS\system32\daxexec.dll
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\windows.storage.dll
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\win32u.dll
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\win32kfull.sys
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\win32k.sys
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\rdpbase.dll
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\psmsrv.dll
2019-08-14 20:05:11 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\win32kbase.sys
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\msxml6r.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\msxml6.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\cdd.dll
2019-08-14 20:05:10 ----A---- C:\WINDOWS\system32\appsruprov.dll
2019-08-14 20:05:09 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-08-14 20:05:09 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\wpx.dll
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\StartTileData.dll
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2019-08-14 20:05:08 ----A---- C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-08-14 20:05:07 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2019-08-14 20:05:07 ----A---- C:\WINDOWS\system32\drivers\mssecflt.sys
2019-08-14 20:05:07 ----A---- C:\WINDOWS\system32\bcdedit.exe
2019-08-14 20:05:05 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2019-08-14 20:05:05 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2019-08-14 20:05:05 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2019-08-14 20:05:05 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2019-08-14 20:05:05 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2019-08-14 18:18:48 ----D---- C:\Windows.old
2019-08-14 17:49:16 ----AS---- C:\WINDOWS\bootstat.dat
2019-08-14 17:48:33 ----D---- C:\WINDOWS\system32\Microsoft
2019-08-14 17:48:33 ----D---- C:\WINDOWS\ServiceProfiles
2019-08-14 17:44:25 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\RDXService.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\fvewiz.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\fveui.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\fveapibase.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\fveapi.dll
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\BdeUISrv.exe
2019-08-14 17:44:25 ----A---- C:\WINDOWS\system32\bdesvc.dll
2019-08-14 17:44:24 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2019-08-14 17:44:24 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2019-08-14 17:44:24 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2019-08-14 17:44:24 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2019-08-14 17:44:24 ----A---- C:\WINDOWS\system32\cdp.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2019-08-14 17:44:23 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2019-08-14 17:44:22 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2019-08-14 17:44:22 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2019-08-14 17:44:22 ----A---- C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2019-08-14 17:44:22 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2019-08-14 17:44:22 ----A---- C:\WINDOWS\system32\DHolographicDisplay.dll
2019-08-14 17:44:20 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2019-08-14 17:44:20 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2019-08-14 17:44:20 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2019-08-14 17:44:20 ----A---- C:\WINDOWS\system32\msvproc.dll
2019-08-14 17:44:20 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2019-08-14 17:44:20 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Uev.Office2010CustomActions.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Uev.AppAgent.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\SYSWOW64\cscobj.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\SYSWOW64\AppVEntSubsystems32.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfsvr.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfps.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\MFPlay.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfplat.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfcore.dll
2019-08-14 17:44:19 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\TransportDSA.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\srmlib.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\rdpshell.exe
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\drivers\AppvVfs.sys
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\drivers\AppvVemgr.sys
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\drivers\AppVStrm.sys
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\cscobj.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\AppVReporting.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\AppVNice.exe
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\appvetwstreamingux.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\appvetwclientres.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\AppVDllSurrogate.exe
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\AppVClient.exe
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-08-14 17:44:18 ----A---- C:\WINDOWS\system32\AgentService.exe
2019-08-14 17:44:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.Internal.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\SYSWOW64\provplatformdesktop.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\SYSWOW64\AcSpecfc.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\ScriptRunner.exe
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVStreamMap.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVStreamingUX.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVShNotify.exe
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVScripting.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVPublishing.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVPolicy.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVOrchestration.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVManifest.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVIntegration.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-08-14 17:44:17 ----A---- C:\WINDOWS\system32\AppVCatalog.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\opengl32.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\glu32.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2019-08-14 17:44:16 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\mspbde40.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2019-08-14 17:44:15 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2019-08-14 17:44:14 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\dxdiagn.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\dxdiag.exe
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\curl.exe
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\ComputerDefaults.exe
2019-08-14 17:44:12 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\Windows.Mirage.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\sysmain.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\Spectrum.exe
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\SharedRealitySvc.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\RdpRelayTransport.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\rdbui.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\ProximityUxHost.exe
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\provplatformdesktop.dll
2019-08-14 17:44:12 ----A---- C:\WINDOWS\system32\inetpp.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\wsp_health.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\termsrv.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\rdpencom.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\rdpcore.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\rdpclip.exe
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\nltest.exe
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\FsIso.exe
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\FSClient.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\FrameServer.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\CPFilters.dll
2019-08-14 17:44:11 ----A---- C:\WINDOWS\system32\AcGenral.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\systemreset.exe
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\srms.dat
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\ResetEngOnline.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\reseteng.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\opengl32.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\msimsg.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\msi.dll
2019-08-14 17:44:10 ----A---- C:\WINDOWS\system32\glu32.dll
2019-08-14 17:44:09 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2019-08-14 17:44:09 ----A---- C:\WINDOWS\system32\jscript9.dll
2019-08-14 17:44:09 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2019-08-14 17:44:09 ----A---- C:\WINDOWS\system32\ieframe.dll
2019-08-14 17:44:08 ----A---- C:\WINDOWS\system32\ieproxy.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\werui.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\werconcpl.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\StorSvc.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\dxdiag.exe
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\DispBroker.Desktop.dll
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\curl.exe
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\ComputerDefaults.exe
2019-08-14 17:44:05 ----A---- C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-08-14 17:44:05 ----A---- C:\WINDOWS\HelpPane.exe
2019-08-14 17:44:04 ----A---- C:\WINDOWS\system32\WinHvPlatform.dll
2019-08-14 17:44:04 ----A---- C:\WINDOWS\system32\computecore.dll
2019-08-14 17:44:04 ----A---- C:\WINDOWS\system32\ClipUp.exe
2019-08-14 17:44:04 ----A---- C:\WINDOWS\system32\CBDHSvc.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\OpenWith.exe
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\wwanconn.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\securekernel.exe
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\resutils.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\ResourceMapper.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\ResBParser.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\hvloader.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2019-08-14 17:44:02 ----A---- C:\WINDOWS\system32\clusapi.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\msxml3r.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\mcbuilder.exe
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\KBDJPN.DLL
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2019-08-14 17:44:01 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\efsext.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2019-08-14 17:44:00 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\winnlsres.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\msvcp_win.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\cryptdll.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2019-08-14 17:43:59 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\ulib.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\tzautoupdate.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\mmgaserver.exe
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\mmgaproxystub.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\mmgaclient.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\ifsutil.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\drvsetup.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2019-08-14 17:43:58 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Vpn.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\rmclient.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\icu.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\cmintegrator.dll
2019-08-14 17:43:57 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\webauthn.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\ttdwriter.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\ttdrecordcpu.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\rdpsharercom.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\GraphicsCapture.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2019-08-14 17:43:56 ----A---- C:\WINDOWS\SYSWOW64\coloradapterclient.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2019-08-14 17:43:55 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\mapistub.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\mapi32.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\GameChatTranscription.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\fixmapi.exe
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\dsreg.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\ApiSetHost.AppExecutionAlias.dll
2019-08-14 17:43:54 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_9.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\winsta.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\taskcomp.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\SpatialAudioLicenseSrv.exe
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\regapi.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\oleprn.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\InputSwitch.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\FlightSettings.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\dot3msm.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\dot3api.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\ContentDeliveryManager.Utilities.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2019-08-14 17:43:53 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2019-08-14 17:43:53 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\vpnike.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\VideoHandlers.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\umpoext.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\rastls.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\rastapi.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\rasmans.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\rascustom.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\rasapi32.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\pku2u.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\mprddm.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\efswrt.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\comctl32.dll
2019-08-14 17:43:52 ----A---- C:\WINDOWS\system32\APMon.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\pnidui.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\npmproxy.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\netprofm.dll
2019-08-14 17:43:51 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\msxml3r.dll
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\msxml3.dll
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\mspaint.exe
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\mcbuilder.exe
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\LockController.dll
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\JpnServiceDS.dll
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\drivers\luafv.sys
2019-08-14 17:43:50 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\wininet.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\urlmon.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\profsvcext.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\msIso.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\jsproxy.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\iertutil.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\efsext.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\edgeIso.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\BitLockerCsp.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\system32\actxprxy.dll
2019-08-14 17:43:49 ----A---- C:\WINDOWS\fonts\StaticCache.dat
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\policymanager.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\LogonController.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\d3d9.dll
2019-08-14 17:43:48 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2019-08-14 17:43:45 ----A---- C:\WINDOWS\system32\SecurityHealthService.exe
2019-08-14 17:43:45 ----A---- C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2019-08-14 17:43:45 ----A---- C:\WINDOWS\system32\SecurityHealthHost.exe
2019-08-14 17:43:45 ----A---- C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\wuuhext.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\wow64win.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\wow64.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\wkssvc.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\winlogon.exe
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\services.exe
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\sechost.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\netlogon.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\msimg32.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\mf3216.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\KernelBase.dll
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\mup.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2019-08-14 17:43:44 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\winnlsres.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\winhttp.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\wersvc.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\wermgr.exe
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\WerFault.exe
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\weretw.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\wer.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\userenv.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\tzres.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\schannel.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\pacjsworker.exe
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\ntdll.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\msv1_0.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\hal.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\Faultrep.dll
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\drivers\npfs.sys
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\drivers\msfs.sys
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2019-08-14 17:43:43 ----A---- C:\WINDOWS\system32\diagtrack.dll
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\WinTypes.dll
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\samsrv.dll
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\samlib.dll
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\offlinesam.dll
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\dcntel.dll
2019-08-14 17:43:42 ----A---- C:\WINDOWS\system32\cryptdll.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\WSReset.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\winsta.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\winquic.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\wincorlib.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\wdigest.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\UpgradeResultsUI.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\twinui.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\taskcomp.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\sxssrv.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\sppwinob.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\sppcommdlg.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\schtasks.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\schedsvc.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\regapi.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\phoneactivate.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\msvcp_win.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\LicensingUI.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\changepk.exe
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\drivers\winquic.sys
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\dnsapi.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\combase.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\bcrypt.dll
2019-08-14 17:43:41 ----A---- C:\WINDOWS\system32\aepic.dll
2019-08-14 17:43:40 ----A---- C:\WINDOWS\system32\sppobjs.dll
2019-08-14 17:43:40 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2019-08-14 17:43:40 ----A---- C:\WINDOWS\system32\sppcext.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\uDWM.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\OpenWith.exe
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\ole32.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\dwmredir.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\dwmapi.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\dwm.exe
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\dcomp.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\browserexport.exe
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\browserbroker.dll
2019-08-14 17:43:39 ----A---- C:\WINDOWS\system32\browser_broker.exe
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\srpapi.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\SRH.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\pcasvc.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\pcalua.exe
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\pcaevts.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\pcadm.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\invagent.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\generaltel.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\drivers\applockerfltr.sys
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\devinv.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\appraiser.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\AppLockerCSP.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\appidtel.exe
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\aitstatic.exe
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\aeinv.dll
2019-08-14 17:43:38 ----A---- C:\WINDOWS\system32\acmigration.dll
2019-08-14 17:43:36 ----A---- C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2019-08-14 17:43:36 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-08-14 17:43:36 ----A---- C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2019-08-14 17:43:35 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2019-08-14 17:43:35 ----A---- C:\WINDOWS\system32\NotificationController.dll
2019-08-14 17:43:35 ----A---- C:\WINDOWS\system32\ConstraintIndex.Search.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\usosvc.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\usocoreworker.exe
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\usocoreps.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\UsoClient.exe
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\MusNotification.exe
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\drvsetup.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2019-08-14 17:43:34 ----A---- C:\WINDOWS\system32\AppResolver.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\wci.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\ulib.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\mmgaproxystub.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\mmgaclient.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\ifsutil.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\drivers\bindflt.sys
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-08-14 17:43:33 ----A---- C:\WINDOWS\system32\bindflt.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\wpncore.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\user32.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\rmclient.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\rdpserverbase.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-08-14 17:43:32 ----A---- C:\WINDOWS\system32\mmgaserver.exe
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\wpnprv.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\wpnapps.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\wintrust.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\propsys.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\profext.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\kerberos.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\icu.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\cmintegrator.dll
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\BFE.DLL
2019-08-14 17:43:31 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\webauthn.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\ttdwriter.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\ttdrecordcpu.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\rdpsharercom.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\InstallService.dll
2019-08-14 17:43:30 ----A---- C:\WINDOWS\system32\esent.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\tsf3gip.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\tquery.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\mssvp.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\mssrch.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\mssprxy.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\mssph.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\ISM.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\InputService.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2019-08-14 17:43:29 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\mssitlb.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\msscntrs.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\mscms.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\icm32.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\GraphicsCapture.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\FntCache.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\dxgiadaptercache.exe
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\dxgi.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\DWrite.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2019-08-14 17:43:28 ----A---- C:\WINDOWS\system32\coloradapterclient.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\wuuhosdeployment.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\wups2.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\wuaueng.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\wuauclt.exe
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\wuapi.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2019-08-14 17:43:23 ----A---- C:\WINDOWS\system32\cryptngc.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\directml.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\D3D12.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-08-14 17:43:22 ----A---- C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\tbauth.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\qmgr.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\GameChatTranscription.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\dssvc.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\cloudAP.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2019-08-14 17:43:21 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2019-08-14 17:43:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2019-08-14 17:43:20 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-08-14 17:43:20 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2019-08-14 17:43:20 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-08-14 17:43:20 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\vdsutil.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\vdsldr.exe
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\vdsbas.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\vds_ps.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\vds.exe
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\mapistub.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\mapi32.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\kernel32.dll
2019-08-14 17:43:19 ----A---- C:\WINDOWS\system32\fixmapi.exe
2019-08-14 17:43:18 ----A---- C:\WINDOWS\system32\Windows.UI.Storage.dll
2019-08-14 17:43:18 ----A---- C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-08-14 17:43:18 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wlansvc.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wlansec.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wlanhlp.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wlanapi.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\wfdprov.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\dsreg.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\dot3svc.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\dot3msm.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\system32\dot3api.dll
2019-08-14 17:43:17 ----A---- C:\WINDOWS\explorer.exe
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\WpcTok.exe
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\WpcRefreshTask.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\WpcMon.exe
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\Wpc.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\wmicmiplugin.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\Windows.Internal.Signals.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\spoolsv.exe
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\oleprn.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\localspl.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\drivers\winnat.sys
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2019-08-14 17:43:16 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-08-14 17:43:16 ----A---- C:\WINDOWS\splwow64.exe
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\XAudio2_9.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\wwansvc.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\Windows.Management.Service.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\tssrvlic.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\lstelemetry.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\LSCSHostPolicy.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\fcon.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\drivers\MbbCx.sys
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\drivers\KNetPwrDepBroker.sys
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\BTAGService.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\autopilotdiag.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\autopilot.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\audiosrv.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\AudioSes.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\AudioEng.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\audiodg.exe
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\agentactivationruntime.dll
2019-08-14 17:43:15 ----A---- C:\WINDOWS\system32\AarSvc.dll
2019-08-14 17:43:14 ----A---- C:\WINDOWS\system32\tellib.dll
2019-08-14 17:43:11 ----A---- C:\WINDOWS\system32\vmbuspipe.dll
2019-08-14 17:43:11 ----A---- C:\WINDOWS\system32\drivers\vmbus.sys
2019-08-14 17:43:11 ----A---- C:\WINDOWS\system32\drivers\Vid.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\processr.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\msisadrv.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\isapnp.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\intelppm.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\hidspi.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\amdppm.sys
2019-08-14 17:43:10 ----A---- C:\WINDOWS\system32\drivers\amdk8.sys
2019-08-14 17:43:09 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2019-08-14 17:43:09 ----A---- C:\WINDOWS\system32\drivers\usbaudio2.sys
2019-08-14 17:43:09 ----A---- C:\WINDOWS\system32\drivers\monitor.sys
2019-08-14 17:43:09 ----A---- C:\WINDOWS\system32\drivers\devauthe.sys
2019-08-14 17:39:39 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2019-08-14 17:39:38 ----D---- C:\Program Files\Reference Assemblies
2019-08-14 17:39:38 ----D---- C:\Program Files\MSBuild
2019-08-14 17:39:38 ----D---- C:\Program Files (x86)\Reference Assemblies
2019-08-14 17:39:38 ----D---- C:\Program Files (x86)\MSBuild
2019-08-14 17:39:29 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2019-08-14 17:39:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2019-08-14 17:39:29 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-08-14 17:39:29 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2019-08-14 17:39:29 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-08-14 17:39:29 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-08-14 17:39:09 ----A---- C:\WINDOWS\SYSWOW64\XPSSHHDR.dll
2019-08-14 17:39:09 ----A---- C:\WINDOWS\SYSWOW64\XpsFilt.dll
2019-08-14 17:39:09 ----A---- C:\WINDOWS\system32\XPSSHHDR.dll
2019-08-14 17:39:09 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2019-08-14 17:39:09 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2019-08-14 17:31:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2019-08-14 17:30:50 ----SHD---- C:\Recovery
2019-08-14 17:24:03 ----SD---- C:\Users\Bender\AppData\Roaming\Microsoft
2019-08-14 17:22:42 ----D---- C:\ProgramData\USOShared
2019-08-14 17:22:40 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2019-08-14 17:19:32 ----D---- C:\WINDOWS\system32\SleepStudy
2019-08-14 17:19:32 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2019-08-14 17:19:29 ----D---- C:\WINDOWS\Prefetch
2019-08-12 17:27:07 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2019-08-12 17:26:52 ----D---- C:\Program Files\Mozilla Firefox
2019-08-09 20:59:53 ----DC---- C:\WINDOWS\Panther
2019-07-26 23:08:05 ----D---- C:\Games
2019-07-26 22:47:58 ----A---- C:\WINDOWS\system32\aswBoot.exe
2019-07-26 22:47:52 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2019-07-26 22:47:51 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys

======List of files/folders modified in the last 1 month======

2019-08-15 17:51:47 ----RD---- C:\Program Files
2019-08-15 17:49:53 ----D---- C:\WINDOWS\Temp
2019-08-15 17:46:05 ----D---- C:\WINDOWS\INF
2019-08-15 17:40:35 ----D---- C:\WINDOWS\AppReadiness
2019-08-15 17:40:10 ----HD---- C:\ProgramData
2019-08-15 17:39:58 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2019-08-15 17:39:00 ----D---- C:\WINDOWS\system32\sru
2019-08-15 14:49:07 ----RD---- C:\WINDOWS\Microsoft.NET
2019-08-15 14:49:01 ----RD---- C:\WINDOWS\assembly
2019-08-15 14:43:00 ----D---- C:\WINDOWS\system32\config
2019-08-15 14:41:27 ----D---- C:\WINDOWS\System32
2019-08-15 14:41:00 ----D---- C:\WINDOWS\Logs
2019-08-15 14:40:59 ----D---- C:\WINDOWS\CbsTemp
2019-08-15 14:40:29 ----AD---- C:\Program Files\rempl
2019-08-15 14:40:28 ----D---- C:\WINDOWS\appcompat
2019-08-15 14:40:27 ----D---- C:\ProgramData\NVIDIA
2019-08-15 14:39:33 ----D---- C:\WINDOWS\WinSxS
2019-08-15 14:34:49 ----D---- C:\WINDOWS\system32\catroot2
2019-08-15 14:34:44 ----D---- C:\WINDOWS\SysWOW64
2019-08-15 14:34:38 ----D---- C:\WINDOWS\system32\DriverStore
2019-08-15 14:34:31 ----AD---- C:\Program Files (x86)\TeamViewer
2019-08-15 14:33:39 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2019-08-15 14:33:39 ----D---- C:\WINDOWS\SystemResources
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\wbem
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\ru-RU
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\ro-RO
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\pt-PT
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\pl-PL
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\oobe
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\nl-NL
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\en-US
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\el-GR
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\drivers
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\cs-CZ
2019-08-15 14:33:39 ----D---- C:\WINDOWS\system32\Boot
2019-08-15 14:33:39 ----D---- C:\WINDOWS\bcastdvr
2019-08-15 14:33:39 ----D---- C:\Program Files\Windows Defender Advanced Threat Protection
2019-08-14 20:08:36 ----D---- C:\WINDOWS\system32\MRT
2019-08-14 20:08:33 ----AC---- C:\WINDOWS\system32\MRT.exe
2019-08-14 20:08:16 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2019-08-14 20:08:01 ----D---- C:\WINDOWS\servicing
2019-08-14 19:36:20 ----D---- C:\WINDOWS\system32\drivers\wd
2019-08-14 19:36:16 ----D---- C:\Program Files\Windows Defender
2019-08-14 18:24:30 ----HD---- C:\Program Files\WindowsApps
2019-08-14 18:24:28 ----D---- C:\ProgramData\Packages
2019-08-14 18:18:56 ----RSD---- C:\WINDOWS\Fonts
2019-08-14 18:18:56 ----D---- C:\WINDOWS\twain_32
2019-08-14 18:18:56 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2019-08-14 18:18:56 ----D---- C:\WINDOWS\SYSWOW64\migration
2019-08-14 18:18:56 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2019-08-14 18:18:56 ----D---- C:\WINDOWS\SYSWOW64\Futuremark
2019-08-14 18:18:56 ----D---- C:\WINDOWS\SYSWOW64\en-US
2019-08-14 18:18:56 ----D---- C:\WINDOWS\SYSWOW64\drivers
2019-08-14 18:18:56 ----D---- C:\WINDOWS\system32\WinBioDatabase
2019-08-14 18:18:56 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2019-08-14 18:18:56 ----D---- C:\WINDOWS\system32\drivers\etc
2019-08-14 18:18:55 ----HDC---- C:\WINDOWS\Installer
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\zh-HK
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\spool
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\NDF
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\Macromed
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\InputMethod
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\DAX3
2019-08-14 18:18:55 ----D---- C:\WINDOWS\system32\DAX2
2019-08-14 18:18:55 ----D---- C:\WINDOWS\LiveKernelReports
2019-08-14 18:18:55 ----D---- C:\WINDOWS\InputMethod
2019-08-14 18:18:54 ----SHD---- C:\Program Files\Windows Sidebar
2019-08-14 18:18:54 ----RD---- C:\Program Files (x86)
2019-08-14 18:18:54 ----D---- C:\WINDOWS\system32\MsDtc
2019-08-14 18:18:54 ----D---- C:\WINDOWS\Help
2019-08-14 18:18:54 ----D---- C:\Program Files\Common Files\microsoft shared
2019-08-14 18:18:54 ----D---- C:\Program Files\Common Files
2019-08-14 18:18:54 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2019-08-14 18:18:54 ----D---- C:\Program Files (x86)\Common Files
2019-08-14 18:18:54 ----AD---- C:\Program Files\UNP
2019-08-14 18:18:46 ----D---- C:\WINDOWS\Setup
2019-08-14 18:18:35 ----D---- C:\WINDOWS\InfusedApps
2019-08-14 18:00:01 ----D---- C:\WINDOWS\system32\LogFiles
2019-08-14 17:50:08 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2019-08-14 17:50:08 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2019-08-14 17:50:08 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2019-08-14 17:50:07 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2019-08-14 17:50:06 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2019-08-14 17:50:05 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2019-08-14 17:50:04 ----D---- C:\WINDOWS\system32\zh-TW
2019-08-14 17:50:04 ----D---- C:\WINDOWS\system32\zh-CN
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\uk-UA
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\tr-TR
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\th-TH
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\sv-SE
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\sl-SI
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\sk-SK
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\pt-BR
2019-08-14 17:50:03 ----D---- C:\WINDOWS\system32\nb-NO
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\lv-LV
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\lt-LT
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\ko-KR
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\ja-jp
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\it-IT
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\hu-HU
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\hr-HR
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\he-IL
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\fr-FR
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\fi-FI
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\et-EE
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\es-ES
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\en-GB
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\drivers\NVIDIA Corporation
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\de-DE
2019-08-14 17:50:02 ----D---- C:\WINDOWS\system32\da-DK
2019-08-14 17:49:50 ----D---- C:\WINDOWS\system32\bg-BG
2019-08-14 17:49:50 ----D---- C:\WINDOWS\system32\ar-SA
2019-08-14 17:49:49 ----D---- C:\WINDOWS\Resources
2019-08-14 17:49:44 ----D---- C:\Program Files\Windows Mail
2019-08-14 17:49:44 ----D---- C:\Program Files\Realtek
2019-08-14 17:49:44 ----D---- C:\Program Files (x86)\Windows Mail
2019-08-14 17:47:27 ----D---- C:\WINDOWS\TextInput
2019-08-14 17:47:26 ----SD---- C:\WINDOWS\system32\DiagSvcs
2019-08-14 17:47:26 ----SD---- C:\WINDOWS\system32\AppV
2019-08-14 17:47:26 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2019-08-14 17:47:26 ----D---- C:\WINDOWS\system32\PerceptionSimulation
2019-08-14 17:47:26 ----D---- C:\WINDOWS\system32\migwiz
2019-08-14 17:47:26 ----D---- C:\WINDOWS\system32\migration
2019-08-14 17:47:26 ----D---- C:\WINDOWS\system32\appraiser
2019-08-14 17:47:26 ----D---- C:\WINDOWS\ShellExperiences
2019-08-14 17:47:26 ----D---- C:\WINDOWS\ShellComponents
2019-08-14 17:47:26 ----D---- C:\WINDOWS\PolicyDefinitions
2019-08-14 17:47:26 ----D---- C:\WINDOWS\apppatch
2019-08-14 17:47:26 ----D---- C:\Program Files\Internet Explorer
2019-08-14 17:47:26 ----D---- C:\Program Files (x86)\Internet Explorer
2019-08-14 17:47:19 ----D---- C:\WINDOWS\system32\drivers\UMDF
2019-08-14 17:42:06 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2019-08-14 17:39:50 ----D---- C:\WINDOWS\system32\drivers\en-US
2019-08-14 17:39:39 ----D---- C:\WINDOWS\SYSWOW64\MUI
2019-08-14 17:39:39 ----D---- C:\WINDOWS\system32\MUI
2019-08-14 17:39:10 ----D---- C:\WINDOWS\SYSWOW64\fr-CA
2019-08-14 17:39:10 ----D---- C:\WINDOWS\SYSWOW64\es-MX
2019-08-14 17:39:10 ----D---- C:\WINDOWS\system32\fr-CA
2019-08-14 17:39:10 ----D---- C:\WINDOWS\system32\es-MX
2019-08-14 17:32:44 ----D---- C:\WINDOWS\system32\WDI
2019-08-14 17:30:59 ----D---- C:\ProgramData\USOPrivate
2019-08-14 17:30:58 ----D---- C:\WINDOWS\SoftwareDistribution
2019-08-14 17:30:49 ----D---- C:\Program Files\Windows NT
2019-08-14 17:30:47 ----D---- C:\WINDOWS\Tasks
2019-08-14 17:30:47 ----D---- C:\WINDOWS\system32\Tasks
2019-08-14 17:30:36 ----D---- C:\WINDOWS\Registration
2019-08-14 17:30:25 ----D---- C:\Windows
2019-08-14 17:30:15 ----SD---- C:\ProgramData\Microsoft
2019-08-14 17:26:59 ----D---- C:\WINDOWS\SYSWOW64\wbem
2019-08-14 17:24:03 ----RD---- C:\Users
2019-08-14 17:22:21 ----RD---- C:\WINDOWS\PrintDialog
2019-08-14 17:21:08 ----D---- C:\Program Files\NVIDIA Corporation
2019-08-14 17:20:55 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2019-08-14 17:20:40 ----D---- C:\WINDOWS\ServiceState
2019-08-14 17:20:25 ----D---- C:\WINDOWS\system32\Recovery
2019-08-14 17:19:32 ----D---- C:\WINDOWS\debug
2019-08-14 16:32:27 ----D---- C:\ProgramData\AVAST Software
2019-08-12 17:28:19 ----D---- C:\Program Files (x86)\Google
2019-08-12 16:54:59 ----D---- C:\ProgramData\ProductData
2019-08-11 10:21:57 ----D---- C:\Users\Bender\AppData\Roaming\ObviousIdea
2019-07-17 20:24:35 ----D---- C:\ProgramData\NVIDIA Corporation

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdide64;amdide64; C:\WINDOWS\System32\drivers\amdide64.sys [2016-05-29 13848]
R0 aswArDisk;aswArDisk; C:\WINDOWS\system32\drivers\aswArDisk.sys [2019-07-26 37320]
R0 aswbidsh;aswbidsh; C:\WINDOWS\system32\drivers\aswbidsh.sys [2019-07-26 206056]
R0 aswbuniv;aswbuniv; C:\WINDOWS\system32\drivers\aswbuniv.sys [2019-07-26 61688]
R0 aswElam;aswElam; C:\WINDOWS\system32\drivers\aswElam.sys [2019-01-08 15488]
R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2019-07-26 88160]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2019-08-07 387688]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2019-03-19 56632]
R0 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2019-08-14 283152]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2019-03-19 40960]
R1 aswArPot;aswArPot; C:\WINDOWS\system32\drivers\aswArPot.sys [2019-07-26 209256]
R1 aswbidsdriver;aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdriver.sys [2019-07-26 263224]
R1 aswHdsKe;aswHdsKe; C:\WINDOWS\system32\drivers\aswHdsKe.sys [2019-07-26 279336]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2019-07-26 42504]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2019-07-26 112520]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2019-07-31 1030784]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2019-07-26 477288]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-03-19 70456]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-03-19 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-03-19 8704]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2016-05-29 26528]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2019-07-31 168896]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2019-07-26 225816]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2019-08-14 456192]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2019-03-19 53760]
R3 dtlitescsibus;@oem27.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-06-01 30264]
R3 dtliteusbbus;@oem13.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-06-01 47672]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2019-03-12 6410288]
R3 IUFileFilter;IUFileFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [2017-06-06 39904]
R3 IURegProcessFilter;IURegProcessFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegProcessFilter.sys [2018-01-10 40328]
R3 NVHDA;@oem19.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2019-06-19 237208]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_3dc330354607d300\nvlddmkm.sys [2019-06-19 21836032]
R3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2018-10-25 30336]
R3 nvvad_WaveExtensible;@oem28.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2018-10-01 70024]
R3 nvvhci;@oem4.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2018-11-29 74576]
R3 rt640x64;@oem12.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2018-07-07 1024392]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-03-19 42808]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-03-19 319528]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-03-19 885048]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-03-19 148520]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-03-19 124448]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-03-19 128528]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-03-19 75280]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-03-19 94736]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-03-19 58896]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-03-19 68624]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-03-19 41784]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2019-03-19 151352]
S1 RapportAegle64;RapportAegle64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportAegle64.sys [2019-04-15 503000]
S1 RapportCerberus_1930415;RapportCerberus_1930415; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1930415.sys [2019-04-08 1659544]
S1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2019-04-15 727000]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-03-19 20992]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2019-03-19 337920]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2019-03-19 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2019-03-19 37888]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2019-08-14 18432]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2019-08-14 137528]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2019-08-14 174392]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2019-08-14 153912]
S3 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2019-08-14 117048]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-03-19 232448]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2019-08-14 114688]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2019-03-19 97280]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2019-08-14 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2019-08-14 1428992]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2019-08-14 98304]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-03-19 43008]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-03-19 64312]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2016-05-29 25640]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_dbcdd1a51a139f61\genericusbfn.sys [2019-03-19 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-03-19 53560]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2019-08-14 62976]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2019-08-14 84488]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-03-19 28672]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-03-19 1866768]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-03-19 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-03-19 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-03-19 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-03-19 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-03-19 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-03-19 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-03-19 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-03-19 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-03-19 180736]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-03-19 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-03-19 566800]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2019-03-19 46592]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel Power Limit Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-03-19 28672]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-03-19 54584]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-03-19 535864]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-03-19 62264]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2019-08-14 358912]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-03-19 64512]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-03-19 1150480]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-03-19 153616]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-03-19 63488]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2019-03-19 187904]
S3 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-03-19 158520]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2019-03-19 96056]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2019-03-19 127800]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-03-19 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-03-19 25600]
S3 RapportHades64;RapportHades64; C:\WINDOWS\System32\Drivers\RapportHades64.sys [2019-04-15 463408]
S3 RapportKE64;RapportKE64; C:\WINDOWS\System32\Drivers\RapportKE64.sys [2019-04-15 610648]
S3 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2019-04-15 766616]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2019-03-19 987152]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-03-19 211456]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-03-19 113152]
S3 ScreamBAudioSvc;ScreamingBee Audio; C:\WINDOWS\system32\drivers\ScreamingBAudio64.sys [2016-05-16 57096]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2019-03-19 33592]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-03-19 32568]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2019-07-26 414976]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 CDPUserSvc_c3afe;Uživatelská služba platformy připojených zařízení_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R2 IObitUnSvr;IObit Uninstaller Service; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [2018-01-25 206096]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-11-16 786800]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2019-05-22 782136]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2018-11-16 649072]
R2 OneSyncSvc_c3afe;Hostitel synchronizace_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 Origin Web Helper Service;Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [2019-04-22 3175216]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2017-05-14 75136]
R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2019-04-15 5274560]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2019-07-26 6797008]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 cbdhsvc_c3afe;Uživatelská služba schránky_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 DevicePickerUserSvc_c3afe;DevicePicker_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 DevicesFlowUserSvc_c3afe;Tok zařízení_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-11-16 786800]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AarSvc_c3afe;Agent Activation Runtime_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2019-08-14 335416]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AssignedAccessManagerSvc;@%SystemRoot%\system32\assignedaccessmanagersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AvastWscReporter;AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [2019-07-26 57504]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BcastDVRUserService_c3afe;Uživatelská služba pro GameDVR a vysílání her_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2018-07-08 6893704]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BluetoothUserService_c3afe;Služba pro podporu uživatelů Bluetooth_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 CaptureService_c3afe;CaptureService_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 ConsentUxUserSvc_c3afe;ConsentUX_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2019-03-19 380120]
S3 CredentialEnrollmentManagerUserSvc_c3afe;CredentialEnrollmentManagerUserSvc_c3afe; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2019-03-19 380120]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DeviceAssociationBrokerSvc_c3afe;DeviceAssociationBroker_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2019-08-14 97792]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-05-30 1467072]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2018-09-28 784512]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2019-08-14 43704]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 MessagingService_c3afe;Služba zasílání zpráv_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2019-07-17 238624]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 Origin Client Service;Origin Client Service; D:\Origin\OriginClientService.exe [2019-04-22 2303792]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2019-03-19 103424]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PimIndexMaintenanceSvc_c3afe;Data kontaktů_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PrintWorkflowUserSvc_c3afe;PrintWorkflow_c3afe; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2019-08-14 828216]

-----------------EOF-----------------

Re: Prosím o kontrolu

Napsal: 15 srp 2019 17:10
od Conder
Ahoj :)

:arrow: Odporucam nepouzivat a odinstalovat vsetky programy od IObit (napr. Driver Booster, Advanced SystemCare, Uninstaller, atd.) - su to cinske smejdy, ktore mozu poskodit system.

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj

Re: Prosím o kontrolu

Napsal: 15 srp 2019 17:14
od redneBjebuh
Ok, odinstalováno. Log pošlu jen ještě jedna věc. Router mi vypisuje tyhle logi nevíte zdali je to ok ? předem děkuji. 1970-01-07 18:48:40 0 other dhcpd: assign 192.168.1.39 to 48:2c:a0:fb:8f:a5
1970-01-07 18:48:46 1 other dhcpd: assign 192.168.1.39 to 48:2c:a0:fb:8f:a5
1970-01-01 00:00:07 2 system WAN port link up
1970-01-01 00:00:07 3 system WLAN port link up
1970-01-01 00:00:07 4 system Generic driver is up and running
1970-01-01 00:00:07 5 system DNS task is UP
1970-01-01 00:00:07 6 system LAN port link up
1970-01-01 00:00:08 7 other dhcpd: assign 192.168.1.47 to d8:cb:8a:c4:ab:15
1970-01-01 00:00:08 8 other dhcpd: assign 192.168.1.33 to 50:e5:49:ca:f6:87
1970-01-01 00:00:08 9 other dhcpd: assign 192.168.1.42 to c8:63:f1:ef:46:3c
1970-01-01 00:00:40 10 other dhcpd: assign 192.168.1.35 to 48:2c:a0:fb:8f:a5
1970-01-01 00:02:57 11 other dhcpd: assign 192.168.1.38 to 48:2c:a0:ab:16:df
1970-01-01 00:08:33 12 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:08:50 13 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:16:07 14 system DoS: UdpEchoChargen Attack source=185.94.111.1 destination=10.6.210.222
1970-01-01 00:29:23 15 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:33:10 16 system DoS: UdpEchoChargen Attack source=185.244.25.133 destination=10.6.210.222
1970-01-01 00:36:04 17 other dhcpd: assign 192.168.1.39 to dc:41:5f:d9:73:05
1970-01-01 00:38:48 18 other dhcpd: assign 192.168.1.39 to dc:41:5f:d9:73:05
1970-01-01 00:40:34 19 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:41:08 20 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:42:45 21 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:42:49 22 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:43:46 23 other dhcpd: assign 192.168.1.39 to dc:41:5f:d9:73:05
1970-01-01 00:45:50 24 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:49:42 25 other dhcpd: assign 192.168.1.39 to dc:41:5f:d9:73:05
1970-01-01 00:49:46 26 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:55:03 27 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 00:55:51 28 other dhcpd: assign 192.168.1.36 to 20:16:d8:e2:df:9c
1970-01-01 01:00:11 29 other dhcpd: assign 192.168.1.42 to c8:63:f1:ef:46:3c

Re: Prosím o kontrolu

Napsal: 15 srp 2019 17:19
od redneBjebuh
# -------------------------------
# Malwarebytes AdwCleaner 7.4.0.0
# -------------------------------
# Build: 07-23-2019
# Database: 2019-08-13.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-15-2019
# Duration: 00:00:01
# OS: Windows 10 Pro
# Cleaned: 18
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files (x86)\IOBIT\Driver Booster
Deleted C:\Program Files (x86)\Vondos
Deleted C:\ProgramData\IOBIT\Driver Booster
Deleted C:\ProgramData\IObit\Advanced SystemCare
Deleted C:\Users\Bender\AppData\Roaming\IOBIT\Driver Booster
Deleted C:\Users\Bender\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\Bender\AppData\Roaming\Tencent

***** [ Files ] *****

Deleted C:\Users\Public\Desktop\Driver Booster 6.lnk

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted C:\Windows\System32\Tasks\DRIVER BOOSTER SCHEDULER
Deleted C:\Windows\System32\Tasks\DRIVER BOOSTER SKIPUAC (BENDER)

***** [ Registry ] *****

Deleted HKCU\Software\Seznam.cz
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{843F097C-F93C-4AC4-B144-9FC028A32C83}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{843F097C-F93C-4AC4-B144-9FC028A32C83}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EDA3D040-1F0B-4B69-90DA-932ADEC675EB}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DRIVER BOOSTER SKIPUAC (BENDER)
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler
Deleted HKLM\Software\Wow6432Node\IObit\Driver Booster
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Driver Booster_is1

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1859 octets] - [16/05/2018 17:37:00]
AdwCleaner[C00].txt - [1836 octets] - [16/05/2018 17:38:07]
AdwCleaner[S01].txt - [1241 octets] - [16/05/2018 17:39:43]
AdwCleaner[S02].txt - [1241 octets] - [16/05/2018 20:13:41]
AdwCleaner[C02].txt - [1366 octets] - [16/05/2018 20:14:46]
AdwCleaner[S03].txt - [3270 octets] - [15/08/2019 18:16:35]
AdwCleaner[S04].txt - [3331 octets] - [15/08/2019 18:18:47]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C04].txt ##########

Re: Prosím o kontrolu

Napsal: 15 srp 2019 20:11
od Conder
:arrow: Tie logy z routeru vyzeraju OK, je to v podstate iba log o prideleni (lokalnych) IP adries pripojenym zariadeniam.

:arrow: Poprosim o obidva logy z FRST (FRST.txt a Addition.txt) podla tohto navodu: https://forum.viry.cz/viewtopic.php?f=13&t=154679

Re: Prosím o kontrolu

Napsal: 16 srp 2019 13:49
od redneBjebuh
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-08-2019
Ran by Bender (16-08-2019 14:49:37)
Running from C:\Users\Bender\Desktop
Windows 10 Pro Version 1903 18362.295 (X64) (2019-08-14 15:30:56)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1516928578-2532743376-384880014-500 - Administrator - Disabled)
Bender (S-1-5-21-1516928578-2532743376-384880014-1001 - Administrator - Enabled) => C:\Users\Bender
DefaultAccount (S-1-5-21-1516928578-2532743376-384880014-503 - Limited - Disabled)
Guest (S-1-5-21-1516928578-2532743376-384880014-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1516928578-2532743376-384880014-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

A3Launcher version 0.1.6.2 (HKLM-x32\...\{1E29A86E-9AE2-4CD8-74C8-6B170ED3C4D2}_is1) (Version: 0.1.6.2 - Maca134)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.238 - Adobe)
Aktualizace NVIDIA 34.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 34.0.0.0 - NVIDIA Corporation) Hidden
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM-x32\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
aTube Catcher verze 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.6.2383 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.60 - Piriform)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.22 - NVIDIA Corporation) Hidden
Epic Games Launcher (HKLM-x32\...\{0E63B233-DC24-442C-BD38-0B91D90FEC5B}) (Version: 1.1.167.0 - Epic Games, Inc.)
EPSON XP-205 207 Series Printer Uninstall (HKLM\...\EPSON XP-205 207 Series) (Version: - SEIKO EPSON Corporation)
Fallout 4 - Čeština (HKLM-x32\...\{8995E8E7-1793-402E-87B7-F1E106783F84}) (Version: 0.9.8 - prekladyher.eu)
Fallout 4 (HKLM-x32\...\Fallout 4_is1) (Version: - )
Far Cry 4 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.4.0 - Ubisoft)
Flvto Youtube Downloader (HKLM-x32\...\Flvto Youtube Downloader) (Version: 1.3.6 - Flvto.biz)
Fraps (HKLM-x32\...\Fraps) (Version: - )
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.41.5303 - GOM & Company)
Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java 8 Update 172 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180172F0}) (Version: 8.0.1720.11 - Oracle Corporation)
Java 8 Update 181 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Java 8 Update 201 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180201F0}) (Version: 8.0.2010.9 - Oracle Corporation)
Light Image Resizer 4.7.7.0 (HKLM-x32\...\{EBE030DD-D404-4D92-85E9-8C3624820808}_is1) (Version: 4.7.7.0 - ObviousIdea)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mozilla Firefox 68.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 68.0.2 (x64 cs)) (Version: 68.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0.1 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.12 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.16.0.122 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.16.0.122 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation)
Ochrana koncového bodu Trusteer (HKLM-x32\...\Rapport_msi) (Version: 3.5.1930.429 - Trusteer)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 10.5.38.25027 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 430.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 430.86 - NVIDIA Corporation) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Rapport (HKLM-x32\...\{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}) (Version: 3.5.1930.429 - Trusteer) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8555 - Realtek Semiconductor Corp.)
Return to Castle Wolfenstein verze 1.42c (HKLM-x32\...\{1317FCAA-04FD-4DBB-ADFD-F1E3ACE6F44C}_is1) (Version: 1.42c - )
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.4.0 - Rockstar Games)
SmartDefender (HKLM-x32\...\{3A19E44E-8948-4B6E-BC8E-87CDA335DFC6}) (Version: 1.0.0.0 - Vondos Media GmbH)
SSD Fresh (HKLM-x32\...\SSD Fresh_is1) (Version: 2015 - Abelssoft)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.2.8352 - TeamViewer)
The Witcher 3 Wild Hunt Blood and Wine (HKLM-x32\...\The Witcher 3 Wild Hunt Blood and Wine_is1) (Version: - )
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 19.1 - Ubisoft)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1707.2.0_x86__8wekyb3d8bbwe [2017-07-19] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-05-23] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2015-06-02 15:51 - 2015-06-02 15:51 - 000545792 _____ () [File not signed] C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll
2019-01-11 18:02 - 2018-08-01 22:17 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Origin\LIBEAY32.dll
2019-01-11 18:02 - 2018-08-01 22:18 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Origin\ssleay32.dll
2019-01-11 18:02 - 2018-08-01 22:17 - 001611264 _____ (The Qt Company Ltd) [File not signed] D:\Origin\platforms\qwindows.dll
2019-01-11 18:02 - 2018-08-01 22:18 - 005487104 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Core.dll
2019-01-11 18:02 - 2018-08-01 22:18 - 005841920 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Gui.dll
2019-01-11 18:02 - 2018-08-01 22:18 - 001177600 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Network.dll
2019-01-11 18:02 - 2018-08-01 22:18 - 005089792 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Widgets.dll
2019-01-11 18:02 - 2018-08-01 22:18 - 000184832 _____ (The Qt Company Ltd) [File not signed] D:\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [466]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\localhost -> localhost

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-10-14 17:25 - 2019-01-04 20:18 - 000000841 _____ C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKCU\Environment\\Path -> ;%USERPROFILE%\AppData\Local\Microsoft\WindowsApps
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Bender\AppData\Local\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\StartupApproved\Run: => "Uninstall 17.3.6917.0607"
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\StartupApproved\Run: => "Uninstall 17.3.6917.0607\amd64"
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{74FF249F-8683-40F8-BB7F-227EE981317F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{897EB6AD-B2D8-4328-8746-E5BD086AE729}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{242E9412-A791-4197-806B-D44AD689A180}] => (Allow) D:\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{20A39E7E-5E88-4F49-AB83-06E226225C56}] => (Allow) D:\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{2B006235-5CED-474D-923F-C21A9DCDF782}] => (Allow) D:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{8D654E8D-B83E-4422-B374-EA744CFFD9B1}] => (Allow) D:\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [UDP Query User{1B4E6CC8-14EB-465C-A973-8E103F34CC71}D:\games\diablo iii\x64\diablo iii64.exe] => (Allow) D:\games\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{66752983-7A38-4477-A2C7-2A38A6DD0BE9}D:\games\diablo iii\x64\diablo iii64.exe] => (Allow) D:\games\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{866B6BC2-B329-454E-9A84-FBF3CE6CF7AD}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\AutoUpdate.exe No File
FirewallRules: [{BC1C1058-7F7F-4D63-88C3-15CE7FEAB2C4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\AutoUpdate.exe No File
FirewallRules: [{F73296FF-B6AA-4515-BF78-B4553B88D179}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DBDownloader.exe No File
FirewallRules: [{2E4B5345-4942-4FAB-B113-004B65091FA4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DBDownloader.exe No File
FirewallRules: [{0E87285B-9DBF-4587-9F6C-A7BE53C8E094}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe No File
FirewallRules: [{45145729-3DCA-432F-A00D-D0A6A97F629A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe No File
FirewallRules: [{EE2A2ABB-EA6E-442A-8BE8-D8919F30DA6E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{0BBDD49F-82C7-4275-9049-5B03729C2187}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{2439C673-2359-4BFE-9048-D8417C4456E6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{0A0328A7-652A-4794-A85A-CC9F807F56D8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [UDP Query User{FE9423E0-E6F8-4417-A4DF-AA315E5D0357}D:\games\for\subnautica\subnautica.exe] => (Allow) D:\games\for\subnautica\subnautica.exe () [File not signed]
FirewallRules: [TCP Query User{9FF206DA-D745-451C-8916-D0D3F16B362B}D:\games\for\subnautica\subnautica.exe] => (Allow) D:\games\for\subnautica\subnautica.exe () [File not signed]
FirewallRules: [{038D748A-A5F7-48D8-B467-DD4040C99D43}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{F161470A-C6C5-4733-8768-6358ECE2DF33}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{2723FAC7-46D2-4473-AD40-A94422813547}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{0AA66888-DC18-45A2-BA58-7E423F1DF5D9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{D2BC8E87-642B-47FE-BB17-63BB9904085B}C:\hry\far cry 4\bin\farcry4.exe] => (Allow) C:\hry\far cry 4\bin\farcry4.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{4BD0C4DB-1135-4EE7-B0F5-BD743D4BBCCD}C:\hry\far cry 4\bin\farcry4.exe] => (Allow) C:\hry\far cry 4\bin\farcry4.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{478C1452-625C-460C-BFEE-891F8E403CBA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0880F7FB-E461-4500-B8B3-B567575A3D0E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{643A2931-6CDC-4DFD-B35C-92692688EEA4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{89CDC11C-E0F9-4C57-9406-87F4D1DFC19E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{AE7C113E-7FED-43FA-A4C8-2306515B0AEE}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{4B87510F-0B5B-4C02-A029-4F05E61A1416}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{54C73D77-79C6-420E-B628-25DE45FE1DF3}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{EB22C18F-BF58-4CA5-9436-E090617B6064}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{9E723366-E726-492C-AB9B-73DF19975F6D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{78B3BC61-0769-4341-8081-7095287EDBB2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{AA5B2D93-8686-4476-BD27-6B1798393DF2}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{33EF6988-E674-4F32-83DC-88A079F14093}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{13106448-6E98-43FB-8A55-03ED88019B65}] => (Allow) C:\WINDOWS\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{8D2F6EA2-D2E2-4C0F-B021-A123E86B47A9}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{06292264-098E-4D7B-B2C4-8BA118AAC9B4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{4BC6F340-4ADF-4617-BEBF-040E4A68E8E1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{7A409E0A-1E91-4874-9A75-B0AE29CA8C59}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [UDP Query User{F29F9D5A-26A0-40D9-8152-24E1A63F7601}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{BFFEFC84-5CC0-468A-A2CF-DC22F0716B49}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{61994760-8C79-4179-8901-E7347AB3F6D3}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{A2B4AEB4-6F50-4378-8B7C-B5BE876DF14A}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{AAE38085-57E0-4690-BE96-CB17424567E6}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{42B8DA41-6101-4916-9AD9-16A9F32F27BC}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{B19990AA-9635-42A7-9182-58B9FEB650E8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe No File
FirewallRules: [{56E69D23-3CBF-4F9C-B1F5-1CAD7B64ACF3}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe No File
FirewallRules: [{E7663570-99B8-4A08-91BD-80C3B3246115}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{409F8A3F-BB6F-4732-A658-4EED1A3CFF6F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{DDBEBDF1-6455-47E6-9DBC-72325631FA47}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C0B98CDF-9188-47EF-A8F1-A7ADAFA2AF80}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:118.4 GB) (Free:20.24 GB) (17%)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/15/2019 02:34:48 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastSvc.exe, identifikátor PID: 2280, identifikátor PID ProfSvc: 1404.

Error: (08/14/2019 05:31:56 PM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Při aktualizaci stavu Windows Defender na SECURITY_PRODUCT_STATE_ON došlo k chybě.

Error: (08/14/2019 05:27:05 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: )
Description: Pokus získat stav uzlu clusteru se nezdařil. Vrácený kód chyby: 0x8007085A

Error: (08/14/2019 05:27:02 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: )
Description: Pokus získat stav uzlu clusteru se nezdařil. Vrácený kód chyby: 0x8007085A

Error: (08/14/2019 05:27:02 PM) (Source: MSDTC 2) (EventID: 4104) (User: )
Description: Pokus získat stav uzlu clusteru se nezdařil. Vrácený kód chyby: 0x8007085A

Error: (08/14/2019 05:27:02 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: )
Description: Pokus získat stav uzlu clusteru se nezdařil. Vrácený kód chyby: 0x8007085A

Error: (08/14/2019 05:20:51 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 256) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba: -2147418113 (0x8000ffff) : Katastrofální selhání
.

Error: (08/14/2019 05:20:50 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 256) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba: -2147418113 (0x8000ffff) : Katastrofální selhání
.


System errors:
=============
Error: (08/15/2019 07:08:01 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {F3B4E234-7A68-4E43-B813-E4BA55A065F6} se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/15/2019 06:59:24 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {F3B4E234-7A68-4E43-B813-E4BA55A065F6} se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/15/2019 06:19:16 PM) (Source: DCOM) (EventID: 10010) (User: MACHINAMANIFIKA)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/15/2019 06:19:16 PM) (Source: DCOM) (EventID: 10010) (User: MACHINAMANIFIKA)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/15/2019 06:19:15 PM) (Source: DCOM) (EventID: 10010) (User: MACHINAMANIFIKA)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (08/15/2019 06:19:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Origin Web Helper Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/15/2019 06:19:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba NVIDIA NetworkService Container byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/15/2019 06:19:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Rapport Management Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 500 milisekund: Restartovat službu.


CodeIntegrity:
===================================

Date: 2019-08-16 14:45:04.414
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-16 14:45:04.410
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-16 14:45:04.404
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-16 14:45:04.400
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-16 14:45:04.389
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-15 18:59:25.876
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-15 18:59:25.871
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-08-15 18:59:25.810
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

==================== Memory info ===========================

BIOS: Award Software International, Inc. F4 10/13/2011
Motherboard: Gigabyte Technology Co., Ltd. GA-970A-UD3
Processor: AMD Phenom(tm) II X4 965 Processor
Percentage of memory in use: 35%
Total physical RAM: 8189.24 MB
Available physical RAM: 5273.56 MB
Total Virtual: 10109.24 MB
Available Virtual: 7086.39 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:118.4 GB) (Free:20.24 GB) NTFS
Drive d: () (Fixed) (Total:465.76 GB) (Free:217.53 GB) NTFS

\\?\Volume{99474600-2572-11e6-824f-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.34 GB) (Free:0.07 GB) NTFS
\\?\Volume{d08e5fa2-0000-0000-0000-a0af1d000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 119.2 GB) (Disk ID: D08E5FA2)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=509 MB) - (Type=27)

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 350A3509)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Re: Prosím o kontrolu

Napsal: 16 srp 2019 13:50
od redneBjebuh
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-08-2019
Ran by Bender (administrator) on MACHINAMANIFIKA (Gigabyte Technology Co., Ltd. GA-970A-UD3) (16-08-2019 14:48:11)
Running from C:\Users\Bender\Desktop
Loaded Profiles: Bender (Available Profiles: Bender)
Platform: Windows 10 Pro Version 1903 18362.295 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe
(Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
(IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
(IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportInjService_x64.exe
(IBM -> IBM Corp.) C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportInjService_x64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391088 2019-03-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [269192 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\Run: [Xvid] => C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] () [File not signed]
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [23153344 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\WINDOWS\system32\frapsv64.dll [105984 2015-09-05] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [vidc.XVID] => C:\WINDOWS\system32\xvidvfw.dll [255488 2011-05-30] () [File not signed]
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2015-09-05] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [vidc.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [240640 2011-05-30] () [File not signed]
HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com)
HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1A50DF85-0044-4CC4-B967-E016F47F27BB} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [855408 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1CCB0EC2-24CF-49C1-A092-9A5195BCDA4C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_238_Plugin.exe [1457208 2019-08-14] (Adobe Inc. -> Adobe)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {3F4DCFBA-5A35-43EF-9451-F4AED5207DEC} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3940232 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
Task: {465D11BE-6485-4DC3-A106-8F864C858152} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [562544 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {58B57074-C14C-4249-910C-25C6E66A2B40} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-08-14] (Adobe Inc. -> Adobe)
Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [32256 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {5EC9886C-6116-49F2-B1A9-830054AE6094} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [855408 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {66220572-36D6-4FC1-8817-D456D87C22F6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2049928 2019-08-09] (AVAST Software s.r.o. -> AVAST Software)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {7629318C-D588-43B4-A550-44F700CA9CF7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16835256 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {7641C45F-52B7-4D38-86F7-1E4C18629B35} - System32\Tasks\Microsoft\Windows\WS\WSSync => C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe <==== ATTENTION
Task: {82B3369A-47EC-4C43-AECC-D280EDAC5423} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [1003888 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {8C8BE557-DFFF-4B59-80F2-4BD0640771ED} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-07-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {93FB8C42-6BB4-40AB-9B64-3F643E46F0C8} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {95E17897-741D-4175-923A-FC23B82981C2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [786800 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A8F3D2EB-2935-46CF-B580-B33C8885FED6} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [786800 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B2771B87-E959-4E0C-AC03-741A5C18A142} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {F0528A06-4965-413E-A40F-DE68A4577012} - System32\Tasks\Microsoft\Windows\WS\WSLicenses => C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\WmiPrvSE.exe
Task: {F7DDFD35-54C9-4763-A667-1F450817647C} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FC86D6E5-C9BF-442A-BFF1-A928A3C16549} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3560304 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FE8C5816-DFDE-4E4B-AF47-7EE6D322F537} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FF9D88FB-9088-4580-B74E-CA411BCB2266} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{52fcfbf4-fec5-4b81-971d-df23f8ba593b}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131447556187635604&GUID=6546327C-DA7C-4125-A3AF-28646B82BC7B
SearchScopes: HKU\S-1-5-21-1516928578-2532743376-384880014-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => No File
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-06-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-06-19] (Oracle America, Inc. -> Oracle Corporation)

FireFox:
========
FF DefaultProfile: lfl3eh4r.default-1565623632073
FF ProfilePath: C:\Users\Bender\AppData\Roaming\Mozilla\Firefox\Profiles\lfl3eh4r.default-1565623632073 [2019-08-16]
FF Session Restore: Mozilla\Firefox\Profiles\lfl3eh4r.default-1565623632073 -> is enabled.
FF Extension: (IBM Security Rapport) - C:\Users\Bender\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\rapportext@trusteer.com (1).xpi [2018-05-14] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (IBM Security Rapport) - C:\Users\Bender\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\rapportext@trusteer.com.xpi [2019-01-12] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (Avast Passwords) - C:\Users\Bender\AppData\Roaming\Mozilla\Firefox\Profiles\lfl3eh4r.default-1565623632073\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2019-08-12] [UpdateUrl:hxxps://pamcdn.avast.com/pamcdn/extensions/firefox/update.json]
FF HKLM\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => not found
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_238.dll [2019-08-14] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_238.dll [2019-08-14] (Adobe Inc. -> )
FF Plugin-x32: @haitao.com/npHaitaoPlugin -> C:\Users\Bender\AppData\Local\htyh\application\htwebHelper.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-06-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-06-19] (Oracle America, Inc. -> Oracle Corporation)

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-1516928578-2532743376-384880014-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjllphbppobebmjpjcijfbakobcheof] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6797008 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [414976 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6893704 2018-07-08] (BattlEye Innovations e.K. -> )
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-05-30] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2018-09-28] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [786800 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
R3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [786800 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Origin Client Service; D:\Origin\OriginClientService.exe [2303792 2019-04-22] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3175216 2019-04-22] (Electronic Arts, Inc. -> Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2017-05-14] (Even Balance, Inc. -> )
R2 RapportMgmtService; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [5274560 2019-04-15] (IBM -> IBM Corp.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5775208 2019-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11795800 2019-04-15] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\NisSrv.exe [2552416 2019-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1907.4-0\MsMpEng.exe [108832 2019-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdide64; C:\WINDOWS\System32\drivers\amdide64.sys [13848 2016-05-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices Inc.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37320 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [209256 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [263224 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [206056 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [61688 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15488 2019-01-08] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [279336 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42504 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [168896 2019-07-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [112520 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88160 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1030784 2019-07-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [477288 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [225816 2019-07-26] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [387688 2019-08-07] (AVAST Software s.r.o. -> AVAST Software)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-06-01] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-06-01] (Disc Soft Ltd -> Disc Soft Ltd)
S3 gdrv; C:\Windows\gdrv.sys [25640 2016-05-29] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2016-05-29] (Martin Malik - REALiX -> REALiX(tm))
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_3dc330354607d300\nvlddmkm.sys [21836032 2019-06-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2018-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [74576 2018-11-29] (NVIDIA Corporation -> NVIDIA Corporation)
S1 RapportAegle64; C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportAegle64.sys [503000 2019-04-15] (IBM -> IBM Corp.)
S1 RapportCerberus_1930415; C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1930415.sys [1659544 2019-04-08] (IBM -> IBM Corp.)
S1 RapportEI64; C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [727000 2019-04-15] (IBM -> IBM Corp.)
S3 RapportHades64; C:\WINDOWS\System32\Drivers\RapportHades64.sys [463408 2019-04-15] (IBM -> IBM Corp.)
S3 RapportKE64; C:\WINDOWS\System32\Drivers\RapportKE64.sys [610648 2019-04-15] (IBM -> IBM Corp.)
S3 RapportPG64; C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [766616 2019-04-15] (IBM -> IBM Corp.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1024392 2018-07-07] (Realtek Semiconductor Corp. -> Realtek )
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-08-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [344288 2019-08-14] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54496 2019-08-14] (Microsoft Windows -> Microsoft Corporation)
S3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2015-05-25] (Splitmedialabs Limited -> SplitmediaLabs Limited)
S4 IUFileFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-16 14:48 - 2019-08-16 14:48 - 000023099 _____ C:\Users\Bender\Desktop\FRST.txt
2019-08-16 14:47 - 2019-08-16 14:47 - 001612800 _____ (Farbar) C:\Users\Bender\Desktop\FRST64.exe
2019-08-15 18:18 - 2019-08-15 18:18 - 007623880 _____ (Malwarebytes) C:\Users\Bender\Downloads\adwcleaner_7.4(1).exe
2019-08-15 18:14 - 2019-08-15 18:14 - 007623880 _____ (Malwarebytes) C:\Users\Bender\Downloads\adwcleaner_7.4.exe
2019-08-15 17:51 - 2019-08-15 17:51 - 001222144 _____ C:\Users\Bender\Downloads\RSITx64.exe
2019-08-15 17:51 - 2019-08-15 17:51 - 000000000 ____D C:\rsit
2019-08-15 17:51 - 2019-08-15 17:51 - 000000000 ____D C:\Program Files\trend micro
2019-08-15 17:40 - 2019-08-15 17:40 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2019-08-14 20:05 - 2019-08-14 20:05 - 025901056 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 022625280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 018017792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 017785856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 009926672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 008012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 007890256 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 007753728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 007277568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 007251808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 007008768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 006518184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 006226864 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 006071432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 005941760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 005916160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 005753944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 004562904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 003724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 003698176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 003590672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 003550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 002990096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 002798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-08-14 20:05 - 2019-08-14 20:05 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-08-14 20:05 - 2019-08-14 20:05 - 002724352 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 002449432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 002094592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001954960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-08-14 20:05 - 2019-08-14 20:05 - 001717776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001715000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001647280 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001535288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001509936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 001505808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001458176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 001413328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001391416 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-08-14 20:05 - 2019-08-14 20:05 - 001337872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001301008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 001262016 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001259008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001213240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 001146880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001072144 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 001056704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 001037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000947200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000889664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000876560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000830976 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000829776 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 000821904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 000817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000796088 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000782120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 000752792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000672944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000633344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000524216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000481592 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2019-08-14 20:05 - 2019-08-14 20:05 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-08-14 20:05 - 2019-08-14 20:05 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000441360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000437760 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000428544 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000386320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2PGraph.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000316432 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000300176 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000283152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000210448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000210400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000202256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2pnetsh.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\p2pnetsh.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000170920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000135480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000127280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000123920 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-08-14 20:05 - 2019-08-14 20:05 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000093104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys
2019-08-14 20:05 - 2019-08-14 20:05 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Groupinghc.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-08-14 20:05 - 2019-08-14 20:05 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-08-14 20:05 - 2019-08-14 20:05 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-08-14 18:18 - 2019-08-14 17:30 - 000000000 ____D C:\Windows.old
2019-08-14 17:49 - 2019-08-14 18:18 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2019-08-14 17:49 - 2019-08-14 17:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2019-08-14 17:48 - 2019-08-14 17:49 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-08-14 17:48 - 2019-08-14 17:48 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-08-14 17:44 - 2019-08-14 17:44 - 019811328 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 007802224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 007174656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 006218752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 005500416 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 005083352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 005014016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004863488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004537344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004481024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004306432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 003837440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 003635200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 003243080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002956984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002398720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002358584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002314440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002258640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002235936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002216448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002190648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002175288 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002147840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ModernAppAgent.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002132520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 002072152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001866064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001788944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001690624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001652536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001611576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001611416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001555688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001510952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001505080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001501496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001493392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001383736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001301504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001297720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001283384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-08-14 17:44 - 2019-08-14 17:44 - 001282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001273344 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001273176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 001244728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 001185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AgentService.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 001181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CommonBridge.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001126400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplySettingsTemplateCatalog.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 001124864 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001106288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 001043768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001039872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001007104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000957240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000828216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000816440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000813568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000800568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000774664 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000769336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000762880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.PrinterCustomActions.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000744248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 000743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000741176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000737552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000700928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000682744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000666280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 000666128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000649016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000537608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-08-14 17:44 - 2019-08-14 17:44 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000460288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000441584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.CscUnpinTool.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000421376 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\system32\curl.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-08-14 17:44 - 2019-08-14 17:44 - 000420360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000394040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\provplatformdesktop.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000386048 _____ (curl, hxxps://curl.haxx.se/) C:\WINDOWS\SysWOW64\curl.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000366184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscobj.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AnalogShell.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.ConfigWrapper.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000267528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000261016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000257848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provplatformdesktop.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000231224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000228664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-08-14 17:44 - 2019-08-14 17:44 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscobj.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-08-14 17:44 - 2019-08-14 17:44 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000181560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVemgr.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000172856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpdr.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000153912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppvVfs.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000145936 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000137528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppVStrm.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000129088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000098592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmlib.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-08-14 17:44 - 2019-08-14 17:44 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000058825 _____ C:\WINDOWS\system32\srms.dat
2019-08-14 17:44 - 2019-08-14 17:44 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000037688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000021816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-08-14 17:44 - 2019-08-14 17:44 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2019-08-14 17:44 - 2019-08-14 17:44 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2019-08-14 17:44 - 2019-08-14 17:44 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3r.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 014814208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 007832896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 006403072 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 006059520 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 005087744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 004552376 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 004470784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 004034048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 004008960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003947520 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003915536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003750912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003735264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003654656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003372744 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003327256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003141120 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003104768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 003084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002876416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002871824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002771752 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002764040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002698552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 002697728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002656768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002586608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002550792 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002490712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002448384 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002321408 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002306048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002282496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002249216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002178048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaclient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002120488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002113536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 002032640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001999648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001979392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001912576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001893888 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001884200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConstraintIndex.Search.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001840968 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001830416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001815040 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001784832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001781248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001761792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001724928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001687552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001661544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001654520 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001651848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001635328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001633864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001616824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001608704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001562640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaserver.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 001531992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001515008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaclient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001480704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001437184 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 001423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001413904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001408000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001395600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001366528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001364480 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001356800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001345024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001332736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001304888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001249920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 001244672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001178608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001154960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 001101312 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001084728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001079296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001068856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaserver.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001042944 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2019-08-14 17:43 - 2019-08-14 17:43 - 001040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001020768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001007160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001007120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000977688 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000940736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000928776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000913168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000910848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000910272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000892488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000888056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000879792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2019-08-14 17:43 - 2019-08-14 17:43 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000864768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000862720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000818656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000811160 _____ C:\WINDOWS\SysWOW64\locale.nls
2019-08-14 17:43 - 2019-08-14 17:43 - 000811160 _____ C:\WINDOWS\system32\locale.nls
2019-08-14 17:43 - 2019-08-14 17:43 - 000810512 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000804880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000800048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000777528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000773680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000731448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000728576 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000706760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000680760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000679368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000674816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000667272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000652288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000642208 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000639608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000637968 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000634880 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000628616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000613392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000606112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000602224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_9.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000588256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000586760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_9.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000544576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2019-08-14 17:43 - 2019-08-14 17:43 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000531976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2019-08-14 17:43 - 2019-08-14 17:43 - 000531464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000515448 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000511008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000478800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2019-08-14 17:43 - 2019-08-14 17:43 - 000466624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000464696 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\webauthn.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000462352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000451896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000450400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000440256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000437776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000435000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000425264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000420152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000416008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2019-08-14 17:43 - 2019-08-14 17:43 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000401416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000390456 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000381240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000379192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webauthn.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000375512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000358944 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000343104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000339520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000336960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000336928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000334728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2019-08-14 17:43 - 2019-08-14 17:43 - 000310072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000296976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000284536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000283472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000283144 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000279624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000278528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000268216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbaudio2.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ManagePhone.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000248088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000225320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssrvlic.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000220680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000214032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000208400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000205112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winquic.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000201232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000199688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000199184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000199176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000194176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winquic.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000187920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll

Re: Prosím o kontrolu

Napsal: 16 srp 2019 13:51
od redneBjebuh
84320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000182072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000180536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000180240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000162384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000157752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaproxystub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000149512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ulib.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000146920 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000146744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000144376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000142136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000139472 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000135000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000132912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000129848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mup.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameChatTranscription.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvsetup.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000120352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000116184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleprn.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds_ps.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000106536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvsetup.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapistub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mapi32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameChatTranscription.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000088560 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000088488 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000087048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzautoupdate.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000071720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000066360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000065064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000063504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaproxystub.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\LSCSHostPolicy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000056008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000055608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000047200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\devauthe.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000046632 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msfs.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000037888 _____ C:\WINDOWS\system32\usocoreps.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lstelemetry.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000023352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\isapnp.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000020728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnlsres.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnlsres.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000019256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2019-08-14 17:43 - 2019-08-14 17:43 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fixmapi.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-08-14 17:43 - 2019-08-14 17:43 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-08-14 17:43 - 2019-08-14 17:43 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3r.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 004470272 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2019-08-14 17:39 - 2019-08-14 17:39 - 001166488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000778912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000124568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000103072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll
2019-08-14 17:39 - 2019-08-14 17:39 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2019-08-14 17:39 - 2019-08-14 17:39 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2019-08-14 17:39 - 2019-08-14 17:39 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2019-08-14 17:39 - 2019-08-14 17:39 - 000035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2019-08-14 17:39 - 2019-08-14 17:39 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2019-08-14 17:39 - 2019-08-14 17:39 - 000000000 ____D C:\Program Files\Reference Assemblies
2019-08-14 17:39 - 2019-08-14 17:39 - 000000000 ____D C:\Program Files\MSBuild
2019-08-14 17:39 - 2019-08-14 17:39 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2019-08-14 17:39 - 2019-08-14 17:39 - 000000000 ____D C:\Program Files (x86)\MSBuild
2019-08-14 17:31 - 2019-08-15 18:26 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-08-14 17:30 - 2019-08-15 18:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-08-14 17:30 - 2019-08-14 17:30 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2019-08-14 17:30 - 2019-08-14 17:30 - 000007623 _____ C:\WINDOWS\diagerr.xml
2019-08-14 17:30 - 2019-08-14 17:30 - 000003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-08-14 17:30 - 2019-08-14 17:30 - 000003530 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2019-08-14 17:30 - 2019-08-14 17:30 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000003248 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2019-08-14 17:30 - 2019-08-14 17:30 - 000003196 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000003152 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000003016 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-08-14 17:30 - 2019-08-14 17:30 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-08-14 17:30 - 2019-08-14 17:30 - 000002218 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2019-08-14 17:30 - 2019-08-14 17:30 - 000000020 ___SH C:\Users\Bender\ntuser.ini
2019-08-14 17:30 - 2019-08-14 17:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2019-08-14 17:30 - 2019-08-14 17:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2019-08-14 17:30 - 2019-08-14 17:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-1516928578-2532743376-384880014-1001
2019-08-14 17:30 - 2019-08-14 17:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avira
2019-08-14 17:30 - 2019-08-14 17:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software
2019-08-14 17:24 - 2019-08-15 14:34 - 000000000 ____D C:\Users\Bender
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Šablony
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Soubory cookie
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Poslední
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Okolní tiskárny
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Okolní síť
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Nabídka Start
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Dokumenty
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Documents\Obrázky
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Documents\Hudba
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Documents\Filmy
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\Data aplikací
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2019-08-14 17:24 - 2019-08-14 17:24 - 000000000 _SHDL C:\Users\Bender\AppData\Local\Data aplikací
2019-08-14 17:24 - 2019-03-19 06:46 - 000001105 _____ C:\Users\Bender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-08-14 17:22 - 2019-08-14 17:43 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2019-08-14 17:22 - 2019-08-14 17:22 - 000000000 ____D C:\ProgramData\USOShared
2019-08-14 17:19 - 2019-08-15 19:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-08-14 17:19 - 2019-08-15 14:34 - 000267656 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-08-12 17:27 - 2019-08-15 18:20 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2019-08-12 17:27 - 2019-08-15 18:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-08-12 17:27 - 2019-08-12 17:27 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk
2019-08-12 17:26 - 2019-08-15 18:20 - 000000000 ____D C:\Program Files\Mozilla Firefox
2019-08-12 17:26 - 2019-08-12 17:26 - 000285552 _____ (Mozilla) C:\Users\Bender\Downloads\Firefox Installer.exe
2019-08-09 20:59 - 2019-08-14 17:31 - 000000000 ___DC C:\WINDOWS\Panther
2019-08-08 09:14 - 2019-08-08 09:14 - 000000260 _____ C:\Users\Bender\Desktop\Alan Wake.url
2019-08-08 09:14 - 2019-08-08 09:14 - 000000000 ____D C:\Users\Bender\Documents\Remedy
2019-08-05 09:22 - 2019-08-05 09:22 - 000042220 _____ C:\Users\Bender\Documents\cc_20190805_092251.reg
2019-07-26 23:10 - 2019-08-14 18:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Return to Castle Wolfenstein
2019-07-26 23:10 - 2019-07-26 23:10 - 000001801 _____ C:\Users\Public\Desktop\Return to Castle Wolfenstein.lnk
2019-07-26 23:08 - 2019-07-26 23:08 - 000000000 ____D C:\Games
2019-07-26 22:47 - 2019-07-31 15:51 - 000168896 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2019-07-26 22:47 - 2019-07-26 22:47 - 000363400 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2019-07-26 22:47 - 2019-07-26 22:47 - 000225816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-08-16 14:48 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-08-16 14:48 - 2018-04-11 11:19 - 000000000 ____D C:\FRST
2019-08-16 14:47 - 2018-07-22 20:42 - 000000000 ____D C:\Users\Bender\AppData\Local\AVAST Software
2019-08-16 14:47 - 2017-04-24 22:55 - 000000000 ____D C:\ProgramData\NVIDIA
2019-08-16 14:47 - 2016-11-18 18:14 - 000000000 ____D C:\Users\Bender\AppData\LocalLow\Mozilla
2019-08-15 18:57 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-08-15 18:35 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-08-15 18:26 - 2019-03-19 13:57 - 000716780 _____ C:\WINDOWS\system32\perfh005.dat
2019-08-15 18:26 - 2019-03-19 13:57 - 000144860 _____ C:\WINDOWS\system32\perfc005.dat
2019-08-15 18:19 - 2019-03-19 06:37 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2019-08-15 18:19 - 2017-03-28 14:59 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\Users\Bender\AppData\Roaming\IObit
2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\ProgramData\IObit
2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\Program Files (x86)\IObit
2019-08-15 17:40 - 2018-01-24 10:23 - 000000000 ____D C:\Users\Bender\AppData\Local\Packages
2019-08-15 14:40 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\appcompat
2019-08-15 14:40 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-08-15 14:40 - 2018-01-13 11:02 - 000000000 ____D C:\Program Files\rempl
2019-08-15 14:34 - 2016-10-03 20:17 - 000000000 ___RD C:\Users\Bender\3D Objects
2019-08-15 14:34 - 2016-02-13 15:14 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-08-15 14:33 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2019-08-15 14:33 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-08-15 14:33 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-08-15 14:33 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-08-14 20:08 - 2019-03-19 06:56 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2019-08-14 20:08 - 2019-03-19 06:56 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2019-08-14 20:08 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing
2019-08-14 20:08 - 2016-05-29 11:41 - 134272480 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-08-14 20:08 - 2016-05-29 11:41 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-08-14 19:36 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows Defender
2019-08-14 19:36 - 2018-05-21 10:33 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-08-14 18:24 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-08-14 18:24 - 2018-07-11 06:39 - 000000000 ____D C:\ProgramData\Packages
2019-08-14 18:18 - 2019-07-14 21:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2019-08-14 18:18 - 2019-03-19 06:56 - 000000000 ____D C:\WINDOWS\Setup
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 __SHD C:\Program Files\Windows Sidebar
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 __RHD C:\Users\Public\Libraries
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\spool
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\InputMethod
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Help
2019-08-14 18:18 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-08-14 18:18 - 2019-03-19 06:49 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2019-08-14 18:18 - 2019-03-09 18:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 6
2019-08-14 18:18 - 2018-11-03 21:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2019-08-14 18:18 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2019-08-14 18:18 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2019-08-14 18:18 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\InfusedApps
2019-08-14 18:18 - 2017-12-30 12:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid
2019-08-14 18:18 - 2017-10-05 17:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-08-14 18:18 - 2017-10-05 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2019-08-14 18:18 - 2017-07-25 15:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ochrana koncového bodu Trusteer
2019-08-14 18:18 - 2017-07-07 12:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4
2019-08-14 18:18 - 2017-07-06 10:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-08-14 18:18 - 2017-05-10 14:29 - 000000000 ____D C:\WINDOWS\SysWOW64\Futuremark
2019-08-14 18:18 - 2017-04-24 22:55 - 000000000 ____D C:\WINDOWS\system32\DAX3
2019-08-14 18:18 - 2017-04-24 22:55 - 000000000 ____D C:\WINDOWS\system32\DAX2
2019-08-14 18:18 - 2017-04-24 22:55 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-08-14 18:18 - 2017-04-15 08:17 - 000000000 ____D C:\Program Files\UNP
2019-08-14 18:18 - 2017-01-29 15:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2019-08-14 18:18 - 2016-11-06 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2019-08-14 18:18 - 2016-11-01 16:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2019-08-14 18:18 - 2016-10-02 18:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2019-08-14 18:18 - 2016-07-08 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A3Launcher
2019-08-14 18:18 - 2016-06-04 21:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 3 Wild Hunt Blood and Wine
2019-08-14 18:18 - 2016-05-31 09:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2019-08-14 18:18 - 2016-05-30 09:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2019-08-14 18:18 - 2016-05-29 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-14 18:18 - 2016-05-29 10:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SSD Fresh
2019-08-14 18:18 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2019-08-14 18:18 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2019-08-14 17:50 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\et-EE
2019-08-14 17:50 - 2018-07-07 22:41 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2019-08-14 17:49 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Resources
2019-08-14 17:49 - 2017-04-24 22:55 - 000000000 ____D C:\Program Files\Realtek
2019-08-14 17:49 - 2017-02-23 17:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2019-08-14 17:49 - 2016-12-26 12:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea
2019-08-14 17:49 - 2016-08-23 19:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2019-08-14 17:49 - 2016-07-29 20:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-08-14 17:47 - 2019-03-19 13:59 - 000000000 ___SD C:\WINDOWS\system32\AppV
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\TextInput
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-08-14 17:47 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-08-14 17:42 - 2016-05-29 10:24 - 000741432 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-08-14 17:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2019-08-14 17:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2019-08-14 17:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\MUI
2019-08-14 17:39 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\es-MX
2019-08-14 17:31 - 2019-03-19 06:37 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2019-08-14 17:31 - 2016-10-02 14:47 - 000000000 ____D C:\Users\Bender\AppData\Local\ConnectedDevicesPlatform
2019-08-14 17:30 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Registration
2019-08-14 17:30 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\USOPrivate
2019-08-14 17:30 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows NT
2019-08-14 17:27 - 2016-05-29 11:05 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2019-08-14 17:24 - 2019-06-16 09:09 - 000000000 ____D C:\Users\Bender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader
2019-08-14 17:24 - 2017-07-06 10:03 - 000000000 ____D C:\Users\Bender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-08-14 17:24 - 2017-05-15 14:25 - 000000000 ____D C:\Users\Bender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2019-08-14 17:24 - 2016-05-31 08:59 - 000000000 ____D C:\Users\Bender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2019-08-14 17:22 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-08-14 17:21 - 2017-04-24 22:55 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-08-14 17:20 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ServiceState
2019-08-14 17:20 - 2017-04-24 22:55 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-08-14 16:32 - 2017-07-28 19:45 - 000000000 ____D C:\ProgramData\AVAST Software
2019-08-12 17:28 - 2019-03-20 12:38 - 000000000 ____D C:\Program Files (x86)\Google
2019-08-12 17:27 - 2019-03-20 12:39 - 000000000 ____D C:\Users\Bender\AppData\Local\Google
2019-08-12 17:27 - 2018-05-18 20:57 - 000000000 ____D C:\Users\Bender\Desktop\Původní data aplikace Firefox
2019-08-12 16:54 - 2018-05-17 18:51 - 000000000 ____D C:\ProgramData\ProductData
2019-08-11 10:21 - 2016-12-26 12:05 - 000000000 ____D C:\Users\Bender\AppData\Roaming\ObviousIdea
2019-08-08 09:44 - 2016-06-03 15:29 - 000000000 ____D C:\Users\Bender\AppData\Local\CrashDumps
2019-08-07 09:07 - 2019-03-19 15:30 - 000387688 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2019-08-05 09:25 - 2016-10-02 18:59 - 000000865 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-08-05 09:15 - 2016-05-31 09:23 - 000000000 ___RD C:\Users\Bender\Desktop\Hry
2019-08-02 22:15 - 2016-06-06 16:23 - 000000000 ____D C:\Users\Bender\Documents\My Games
2019-07-31 15:51 - 2019-03-19 15:30 - 001030784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2019-07-28 19:33 - 2019-05-07 09:06 - 000000000 ____D C:\Users\Bender\Documents\Assassin's Creed Unity
2019-07-27 18:01 - 2018-07-01 20:58 - 000000000 ____D C:\Users\Bender\AppData\Local\D3DSCache
2019-07-26 23:09 - 2016-05-31 08:59 - 000000000 ____D C:\Users\Bender\AppData\Local\Ubisoft Game Launcher
2019-07-26 22:47 - 2019-03-19 15:30 - 000477288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000279336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000263224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000209256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000206056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000112520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000088160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000061688 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000042504 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2019-07-26 22:47 - 2019-03-19 15:30 - 000037320 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2019-07-17 22:58 - 2018-11-03 21:58 - 000000000 ____D C:\Users\Bender\AppData\Local\Battle.net
2019-07-17 20:24 - 2017-04-24 22:55 - 000000000 ____D C:\ProgramData\NVIDIA Corporation

==================== Files in the root of some directories ================

2019-06-16 09:10 - 2019-06-17 08:58 - 000004534 _____ () C:\Users\Bender\AppData\Roaming\downloads.json
2017-05-14 22:57 - 2017-05-14 22:57 - 000140800 _____ () C:\Users\Bender\AppData\Local\installer.dat
2017-09-30 19:42 - 2017-09-30 21:07 - 000007598 _____ () C:\Users\Bender\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Re: Prosím o kontrolu

Napsal: 16 srp 2019 19:35
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    File: C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe
    ExportKey: HKLM\Software\Wow6432Node\IObit
    
    Task: {7641C45F-52B7-4D38-86F7-1E4C18629B35} - System32\Tasks\Microsoft\Windows\WS\WSSync => C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe <==== ATTENTION
    BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => No File
    FF HKLM\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => not found
    FF HKLM-x32\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => not found
    FF Plugin-x32: @haitao.com/npHaitaoPlugin -> C:\Users\Bender\AppData\Local\htyh\application\htwebHelper.dll [No File]
    CHR HKU\S-1-5-21-1516928578-2532743376-384880014-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjllphbppobebmjpjcijfbakobcheof] - hxxps://clients2.google.com/service/update2/crx
    S4 IUFileFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [X]
    2019-08-15 17:51 - 2019-08-15 17:51 - 001222144 _____ C:\Users\Bender\Downloads\RSITx64.exe
    2019-08-15 17:51 - 2019-08-15 17:51 - 000000000 ____D C:\rsit
    2019-08-15 17:51 - 2019-08-15 17:51 - 000000000 ____D C:\Program Files\trend micro
    2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\Users\Bender\AppData\Roaming\IObit
    2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\ProgramData\IObit
    2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\Program Files (x86)\IObit
    
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
    ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
    ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
    FirewallRules: [{866B6BC2-B329-454E-9A84-FBF3CE6CF7AD}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\AutoUpdate.exe No File
    FirewallRules: [{BC1C1058-7F7F-4D63-88C3-15CE7FEAB2C4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\AutoUpdate.exe No File
    FirewallRules: [{F73296FF-B6AA-4515-BF78-B4553B88D179}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DBDownloader.exe No File
    FirewallRules: [{2E4B5345-4942-4FAB-B113-004B65091FA4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DBDownloader.exe No File
    FirewallRules: [{0E87285B-9DBF-4587-9F6C-A7BE53C8E094}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe No File
    FirewallRules: [{45145729-3DCA-432F-A00D-D0A6A97F629A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe No File
    FirewallRules: [{B19990AA-9635-42A7-9182-58B9FEB650E8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe No File
    FirewallRules: [{56E69D23-3CBF-4F9C-B1F5-1CAD7B64ACF3}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe No File
    
    C:\Program Files\IObit
    C:\Program Files (x86)\IObit
    C:\Program Files\Common Files\IObit
    C:\ProgramData\IObit
    C:\ProgramData\ProductData
    C:\Users\Bender\AppData\Local\IObit
    C:\Users\Bender\AppData\LocalLow\IObit
    C:\Users\Bender\AppData\Roaming\IObit
    C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*
    C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*
    C:\Users\Default\AppData\Local\IObit
    C:\Users\Default\AppData\LocalLow\IObit
    C:\Users\Default\AppData\Roaming\IObit
    C:\Users\Public\Desktop\*Driver Booster*
    C:\Users\Public\Desktop\*Advanced SystemCare*
    C:\Windows\IObit
    C:\Windows\Tasks\ImCleanDisabled
    C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
    DeleteKey: HKLM\Software\Wow6432Node\IObit
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Prosím o kontrolu

Napsal: 17 srp 2019 04:35
od redneBjebuh
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-08-2019
Ran by Bender (17-08-2019 05:31:42) Run:1
Running from C:\Users\Bender\Desktop
Loaded Profiles: Bender (Available Profiles: Bender)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
File: C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe
ExportKey: HKLM\Software\Wow6432Node\IObit

Task: {7641C45F-52B7-4D38-86F7-1E4C18629B35} - System32\Tasks\Microsoft\Windows\WS\WSSync => C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe <==== ATTENTION
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => No File
FF HKLM\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [{b84eec0c-f44b-420f-b2ee-db2a585be7fc}] - C:\Program Files (x86)\vondos\smartdefender\FF\smart_defender-1.0.0-an+fx.xpi => not found
FF Plugin-x32: @haitao.com/npHaitaoPlugin -> C:\Users\Bender\AppData\Local\htyh\application\htwebHelper.dll [No File]
CHR HKU\S-1-5-21-1516928578-2532743376-384880014-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bbjllphbppobebmjpjcijfbakobcheof] - hxxps://clients2.google.com/service/update2/crx
S4 IUFileFilter; \??\C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [X]
2019-08-15 17:51 - 2019-08-15 17:51 - 001222144 _____ C:\Users\Bender\Downloads\RSITx64.exe
2019-08-15 17:51 - 2019-08-15 17:51 - 000000000 ____D C:\rsit
2019-08-15 17:51 - 2019-08-15 17:51 - 000000000 ____D C:\Program Files\trend micro
2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\Users\Bender\AppData\Roaming\IObit
2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\ProgramData\IObit
2019-08-15 18:19 - 2016-05-29 10:43 - 000000000 ____D C:\Program Files (x86)\IObit

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll -> No File
FirewallRules: [{866B6BC2-B329-454E-9A84-FBF3CE6CF7AD}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\AutoUpdate.exe No File
FirewallRules: [{BC1C1058-7F7F-4D63-88C3-15CE7FEAB2C4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\AutoUpdate.exe No File
FirewallRules: [{F73296FF-B6AA-4515-BF78-B4553B88D179}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DBDownloader.exe No File
FirewallRules: [{2E4B5345-4942-4FAB-B113-004B65091FA4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DBDownloader.exe No File
FirewallRules: [{0E87285B-9DBF-4587-9F6C-A7BE53C8E094}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe No File
FirewallRules: [{45145729-3DCA-432F-A00D-D0A6A97F629A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.5.0\DriverBooster.exe No File
FirewallRules: [{B19990AA-9635-42A7-9182-58B9FEB650E8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe No File
FirewallRules: [{56E69D23-3CBF-4F9C-B1F5-1CAD7B64ACF3}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe No File

C:\Program Files\IObit
C:\Program Files (x86)\IObit
C:\Program Files\Common Files\IObit
C:\ProgramData\IObit
C:\ProgramData\ProductData
C:\Users\Bender\AppData\Local\IObit
C:\Users\Bender\AppData\LocalLow\IObit
C:\Users\Bender\AppData\Roaming\IObit
C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*
C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*
C:\Users\Default\AppData\Local\IObit
C:\Users\Default\AppData\LocalLow\IObit
C:\Users\Default\AppData\Roaming\IObit
C:\Users\Public\Desktop\*Driver Booster*
C:\Users\Public\Desktop\*Advanced SystemCare*
C:\Windows\IObit
C:\Windows\Tasks\ImCleanDisabled
C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
DeleteKey: HKLM\Software\Wow6432Node\IObit

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Error: (0) Failed to create a restore point.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 739
Average :
Sum : 172190384
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========


========================= File: C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe ========================

"C:\WINDOWS\ServiceProfiles\LocalService\AppData\Local\Microsoft\WSLicense\dllhost.exe" => not found
====== End of File: ======

================== ExportKey: ===================

[HKLM\Software\Wow6432Node\IObit]
[HKLM\Software\Wow6432Node\IObit\Driver Booster Beta]
"Upgrade"="Yes"
[HKLM\Software\Wow6432Node\IObit\LiveUpdate]
"config"="C:\ProgramData\IObit\IObitLiveUpdate\update.ept"
[HKLM\Software\Wow6432Node\IObit\Uninstaller]
"RttData"="F1B42BFBA73B15B73845E0E2414F5B4D5DC3E9745C5305EB"
"Status"="1"
"SID1"="{48638251-702B-4697-BFD8-363D48132BA7}"
"SID2"="{6FAAD20F-1AC9-4A40-9B6B-B96E12857C85}"
"UninstallerFreeWeb"="C:\Program Files (x86)\IObit\IObit Uninstaller\"
"Version"="7.4.0.8"
"UninstallDate"="2019/08/15 18:13:49"

=== End of ExportKey ===
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{7641C45F-52B7-4D38-86F7-1E4C18629B35} => removed successfully
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7641C45F-52B7-4D38-86F7-1E4C18629B35} => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\WS\WSSync => moved successfully
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WS\WSSync => removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} => removed successfully
HKLM\Software\Classes\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814} => removed successfully
"HKLM\Software\Mozilla\Firefox\Extensions\\{b84eec0c-f44b-420f-b2ee-db2a585be7fc}" => removed successfully
"HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{b84eec0c-f44b-420f-b2ee-db2a585be7fc}" => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@haitao.com/npHaitaoPlugin => removed successfully
HKU\S-1-5-21-1516928578-2532743376-384880014-1001\SOFTWARE\Google\Chrome\Extensions\bbjllphbppobebmjpjcijfbakobcheof => removed successfully
HKLM\System\CurrentControlSet\Services\IUFileFilter => removed successfully
IUFileFilter => service removed successfully
C:\Users\Bender\Downloads\RSITx64.exe => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
C:\Users\Bender\AppData\Roaming\IObit => moved successfully
C:\ProgramData\IObit => moved successfully
C:\Program Files (x86)\IObit => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\CLSID\{C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\CLSID\{B19ED566-D419-470b-B111-3C89040BC027} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\CLSID\{B19ED566-D419-470b-B111-3C89040BC027} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\IObitUnstaler => removed successfully
HKLM\Software\Classes\CLSID\{B19ED566-D419-470b-B111-3C89040BC027} => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{866B6BC2-B329-454E-9A84-FBF3CE6CF7AD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC1C1058-7F7F-4D63-88C3-15CE7FEAB2C4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F73296FF-B6AA-4515-BF78-B4553B88D179}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E4B5345-4942-4FAB-B113-004B65091FA4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0E87285B-9DBF-4587-9F6C-A7BE53C8E094}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{45145729-3DCA-432F-A00D-D0A6A97F629A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B19990AA-9635-42A7-9182-58B9FEB650E8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56E69D23-3CBF-4F9C-B1F5-1CAD7B64ACF3}" => removed successfully
"C:\Program Files\IObit" => not found
"C:\Program Files (x86)\IObit" => not found
"C:\Program Files\Common Files\IObit" => not found
"C:\ProgramData\IObit" => not found
C:\ProgramData\ProductData => moved successfully
"C:\Users\Bender\AppData\Local\IObit" => not found
C:\Users\Bender\AppData\LocalLow\IObit => moved successfully
"C:\Users\Bender\AppData\Roaming\IObit" => not found

=========== "C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*" ==========

not found

========= End -> "C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*" ========


=========== "C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*" ==========

not found

========= End -> "C:\Users\Bender\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*" ========

"C:\Users\Default\AppData\Local\IObit" => not found
"C:\Users\Default\AppData\LocalLow\IObit" => not found
"C:\Users\Default\AppData\Roaming\IObit" => not found

=========== "C:\Users\Public\Desktop\*Driver Booster*" ==========

not found

========= End -> "C:\Users\Public\Desktop\*Driver Booster*" ========


=========== "C:\Users\Public\Desktop\*Advanced SystemCare*" ==========

not found

========= End -> "C:\Users\Public\Desktop\*Advanced SystemCare*" ========

C:\Windows\IObit => moved successfully
C:\Windows\Tasks\ImCleanDisabled => moved successfully
"C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}" => not found
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5" => not found
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare" => not found
HKLM\Software\Wow6432Node\IObit => removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11622266 B
Java, Flash, Steam htmlcache => 70482379 B
Windows/system/drivers => 17894015 B
Edge => 1268168 B
Chrome => 0 B
Firefox => 218479902 B
Opera => 140860 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 17822 B
LocalService => 0 B
NetworkService => 4020 B
NetworkService => 0 B
Bender => 22910758 B

RecycleBin => 196212 B
EmptyTemp: => 337.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 05:33:25 ====

Re: Prosím o kontrolu

Napsal: 17 srp 2019 16:08
od Conder
:arrow: Ako to vyzera s PC? Su nejake problemy?

Re: Prosím o kontrolu

Napsal: 17 srp 2019 21:22
od redneBjebuh
Absolutně v pořádku děkuji mockrát.

Re: Prosím o kontrolu

Napsal: 18 srp 2019 02:11
od Conder
:arrow: Tak este upraceme po pouzitych nastrojoch:

Re: Prosím o kontrolu

Napsal: 21 srp 2019 08:14
od redneBjebuh
Děkuji mockrát.

Re: Prosím o kontrolu

Napsal: 21 srp 2019 18:04
od Conder
Nie je zaco, rad som pomohol :)