Zapnutie prehliadača po spustení pc
Napsal: 17 zář 2019 18:50
Dobrý deň. Chcel by som Vás poprosiť o kontrolu logu. Po zapnutí pc sa mi automaticky zapne opera a otvorí nové okno so stránkou kde núka niečo na stiahnutie. Ďakujem Vám.
Log musím rozdeliť do dvoch správ, nevôjde sa sem.
Logfile of random's system information tool 1.10 (written by random/random)
Run by mifoI at 2019-09-17 19:43:02
Microsoft Windows 10 Home
System drive C: has 139 GB (57%) free of 243 GB
Total RAM: 16288 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:43:19, on 17. 9. 2019
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.17763.0592)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
D:\Hry\Lol\LeagueClient.exe
D:\Hry\Lol\LeagueClientUx.exe
D:\Hry\Lol\LeagueClientUxRender.exe
D:\Hry\Lol\LeagueClientUxRender.exe
C:\Program Files\trend micro\mifoI.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer17win10.msn.com/?pc=ACTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch.lavasoft.com/?pr=v ... 54__190317
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll
O4 - HKLM\..\Run: [FxSound Enhancer] C:\Program Files (x86)\DFX\dfx.exe -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Java 32bit.bat
O8 - Extra context menu item: &Enviar para o OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: &Anotaçoes Vinculadas do OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Anotaçoes Vinculadas do OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.webcompanion.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Intel® SGX AESM (AESMService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_1781f8bae8fdf5c0\aesm_service.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall Service (avast! Firewall) - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem13.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Intel Corporation - C:\WINDOWS\IAStorAfsService\iaStorAfsService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @oem20.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe
O23 - Service: Intel(R) TPM Provisioning Service - Intel(R) Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Killer Network Service - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Predator Service (PSSvc) - Acer Incorporated - C:\Program Files\Acer\PredatorSense Service\PSSvc.exe
O23 - Service: Quick Access Local Service (QALSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporated - C:\Program Files\Acer\Acer Quick Access\QASvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Thunderbolt(TM) Service (ThunderboltService) - Intel Corporation - C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Experience Improvement Program (UEIPSvc) - acer - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: Waves Audio Services (WavesSysSvc) - Waves Audio Ltd. - C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSysSvc64.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
--
End of file - 12614 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
"fontdrvhost.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\AUDIODG.EXE 0x468
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\system32\WLANExt.exe 2726778318128
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\system32\ibtsiva
"C:\WINDOWS\System32\RtkAudUService64.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSysSvc64.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
"C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
dashost.exe {c3918a08-99c7-4607-b91624867f88b5a7}
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\Program Files\AVAST Software\Avast\aswEngSrv.exe" /pipename="EC0873A5-5FCC-7A32-FD55-C7D9EC06D30E" /binpath="C:\Program Files\AVAST Software\Avast"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19082.1006.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --disable-features=AsyncWheelEvents,SurfaceSynchronization --no-sandbox --log-file="C:\Users\mifoI\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAAAAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --log-file="C:\Users\mifoI\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --service-request-channel-token=52505C57C11D04518449C54C5C97C5CA --mojo-platform-channel-handle=1764 /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19072.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --disable-features=AsyncWheelEvents,SurfaceSynchronization --service-pipe-token=48AEF5879CB084D14E8FF63F081F8887 --lang=en-US --log-file="C:\Users\mifoI\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=48AEF5879CB084D14E8FF63F081F8887 --renderer-client-id=3 --mojo-platform-channel-handle=2020 /prefetch:1
"C:\Windows\System32\SecurityHealthSystray.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\RtkAudUService64.exe" -background
"C:\Windows\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSvc64.exe" -Jack
AvastUI.exe /nogui
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11909.1001.7.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.19072.14111.0_x64__8wekyb3d8bbwe\Music.UI.exe" -ServerName:Microsoft.ZuneMusic.AppX48dcrcgzqqdshm3kf61t0cm5e9pyd6h6.mca
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_1781f8bae8fdf5c0\aesm_service.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
"C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Program Files\Killer Networking\Killer Control Center\KillerControlCenter.exe" -minimized
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" "-lang=cs_CZ" "-cachedir=C:\Users\mifoI\AppData\Local\Steam\htmlcache" "-steampid=13452" "-buildid=1568566542" "-steamid=0" "-steamuniverse=Dev" "-clientui=C:\Program Files (x86)\Steam\clientui" --enable-blink-features=ResizeObserver,Worklet,AudioWorklet --enable-media-stream --enable-smooth-scrolling --num-raster-threads=4 --enable-direct-write "--log-file=C:\Program Files (x86)\Steam\logs\cef_log.txt"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Program Files (x86)\Steam\dumps" "--metrics-dir=C:\Users\mifoI\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win64 --annotation=product=cefwebhelper --annotation=version=1568566542 --initial-client-data=0x2c4,0x2c8,0x2cc,0x2c0,0x2d0,0x7ffb715bf760,0x7ffb715bf770,0x7ffb715bf780
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=gpu-process --field-trial-handle=1340,17224370070923997330,15258235204943688626,131072 --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --lang=sk-SK --buildid=1568566542 --steamid=0 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=7012280345705785396 --mojo-platform-channel-handle=1396 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=renderer --field-trial-handle=1340,17224370070923997330,15258235204943688626,131072 --service-pipe-token=17440184487831251467 --enable-blink-features=ResizeObserver,Worklet,AudioWorklet --lang=sk --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --buildid=1568566542 --steamid=0 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=17440184487831251467 --renderer-client-id=4 --mojo-platform-channel-handle=2112 /prefetch:1
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=renderer --field-trial-handle=1340,17224370070923997330,15258235204943688626,131072 --service-pipe-token=11363860252466549512 --enable-blink-features=ResizeObserver,Worklet,AudioWorklet --lang=sk --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --buildid=1568566542 --steamid=0 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=11363860252466549512 --renderer-client-id=5 --mojo-platform-channel-handle=2456 /prefetch:1
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"D:\Hry\Lol\LeagueClient.exe"
D:/Hry/Lol/LeagueClientUx.exe "--remoting-auth-token=Dt1nrU5H8jqvK46h9YfM2w" "--respawn-command=LeagueClient.exe" "--respawn-display-name=League of Legends" "--app-port=1991" "--install-directory=D:\Hry\Lol" "--app-name=LeagueClient" "--ux-name=LeagueClientUx" "--ux-helper-name=LeagueClientUxHelper" "--log-dir=LeagueClient Logs" "--bugsplat-name=league_client_riotgames_com" "--bugsplat-platform-id=EUN1" "--app-log-file-path=D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-13_10800_LeagueClient.log" "--app-pid=10800" "--no-proxy-server"
LeagueClientUxRender.exe --type=gpu-process --channel="15328.0.369032621\461256165" --no-sandbox --lang=en-US --log-file="D:\Hry\Lol\debug.log" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,25,54,64 --gpu-vendor-id=0x10de --gpu-device-id=0x1be1 --gpu-driver-vendor=NVIDIA --gpu-driver-version=25.21.14.1935 --lang=en-US --log-file="D:\Hry\Lol\debug.log" /prefetch:2 --app-name=LeagueClient --ux-name=LeagueClientUx --ux-helper-name=LeagueClientUxHelper --log-dir="LeagueClient Logs" --bugsplat-name=league_client_riotgames_com --app-port=1991 --bugsplat-platform-id=EUN1 --app-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-13_10800_LeagueClient.log" --primary-ux-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-14_15328_LeagueClientUx.log"
LeagueClientUxRender.exe --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --log-file="D:\Hry\Lol\debug.log" --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="15328.1.617783350\247023444" /prefetch:1 --app-name=LeagueClient --ux-name=LeagueClientUx --ux-helper-name=LeagueClientUxHelper --log-dir="LeagueClient Logs" --bugsplat-name=league_client_riotgames_com --app-port=1991 --bugsplat-platform-id=EUN1 --app-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-13_10800_LeagueClient.log" --primary-ux-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-14_15328_LeagueClientUx.log"
"C:\Windows\System32\GameBarPresenceWriter.exe" -ServerName:Windows.Gaming.GameBar.Internal.PresenceWriterServer
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s XblAuthManager
"C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.32.20003.0_x64__8wekyb3d8bbwe\GameBar.exe" -ServerName:App.AppXbdkk0yrkwpcgeaem8zk81k8py1eaahny.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService -s BcastDVRUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.32.20003.0_x64__8wekyb3d8bbwe\GameBarFT.exe" /InvokerPRAID: App
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --ran-launcher --started-from-shortcut
C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera_crashreporter.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\mifoI\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\mifoI\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win64 --annotation=prod=OperaDesktop --annotation=ver=63.0.3368.88 --initial-client-data=0x314,0x318,0x31c,0x310,0x320,0x7ffb38c250d8,0x7ffb38c250e8,0x7ffb38c250f8
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=gpu-process --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --gpu-preferences=IAAAAAAAAADgAAAgAAAAAAAAYAAAAAAACAAAAAAAAAAoAAAABAAAACAAAAAAAAAAKAAAAAAAAAAwAAAAAAAAADgAAAAAAAAAEAAAAAAAAAAAAAAABQAAABAAAAAAAAAAAAAAAAYAAAAQAAAAAAAAAAEAAAAFAAAAEAAAAAAAAAABAAAABgAAAA== --service-request-channel-token=10952646169623674190 --mojo-platform-channel-handle=1940 --ignored=" --type=renderer " /prefetch:2
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12942167864466852762 --renderer-client-id=9 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3064 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=16352397697600867579 --renderer-client-id=3 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2992 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10999903839821528110 --renderer-client-id=12 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4576 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5389395385881101640 --renderer-client-id=13 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4820 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=14922372443869895025 --renderer-client-id=14 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4612 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=17921168457726020141 --renderer-client-id=15 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4868 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4363660273099416433 --renderer-client-id=16 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4976 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=2698598090611845681 --renderer-client-id=17 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4688 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4179691000690641985 --renderer-client-id=18 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5028 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=14336163309440125437 --renderer-client-id=19 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3356 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12522871142897774421 --renderer-client-id=20 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4604 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=2247399660793291289 --renderer-client-id=21 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2136 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10422825674242804883 --renderer-client-id=22 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5224 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5161709155148729808 --renderer-client-id=23 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5252 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=1286202944140757033 --renderer-client-id=24 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5276 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=13243714319719071075 --renderer-client-id=25 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2140 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=337830959860573460 --renderer-client-id=26 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5300 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12408686498634295965 --renderer-client-id=27 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5400 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=61718623262470148 --renderer-client-id=28 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5240 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=15316193652336651057 --renderer-client-id=29 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5288 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4219128517967332957 --renderer-client-id=30 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5524 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5297882430120969586 --renderer-client-id=31 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5428 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=16583315075997734365 --renderer-client-id=32 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5580 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10501879330689210723 --renderer-client-id=33 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5676 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=11582778321910316157 --renderer-client-id=34 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5688 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=7681336826519271721 --renderer-client-id=35 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5800 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=16389578015494333646 --renderer-client-id=36 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5572 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4917263268551574944 --renderer-client-id=38 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6316 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=499864311245100607 --renderer-client-id=40 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=7640 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=991969027432883372 --renderer-client-id=4 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=8700 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=8864918199960158199 --renderer-client-id=6 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=9892 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10254873077980346933 --renderer-client-id=7 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6320 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=2177196908495376924 --renderer-client-id=10 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=11140 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4811793900206019507 --renderer-client-id=41 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13064 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=3631296702206223476 --renderer-client-id=42 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13024 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4361963278463733579 --renderer-client-id=43 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13812 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=7733712750112178050 --renderer-client-id=46 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13508 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=8232681817187748643 --renderer-client-id=48 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=14252 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=8936847654493154097 --renderer-client-id=50 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=15700 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=15176401353476146866 --renderer-client-id=51 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=14068 /prefetch:1
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=6913981474202254861 --renderer-client-id=54 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13672 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=17005304665777573132 --renderer-client-id=55 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=14472 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=9516366742041313259 --renderer-client-id=56 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3752 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10065902709938233601 --renderer-client-id=58 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3768 /prefetch:1
"D:\Sťahovanie\scoped_dir12284_883695578\RSITx64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-05-25 480120]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2018-07-18 1744672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-25 194424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2018-09-15 83968]
"RtkAudUService"=C:\WINDOWS\System32\RtkAudUService64.exe [2018-02-28 652736]
"WavesSvc"=C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSvc64.exe [2018-01-26 1220320]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2018-01-30 79360]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2019-07-16 269192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2018-10-23 19467544]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"FxSound Enhancer"=C:\Program Files (x86)\DFX\dfx.exe [2017-06-30 1665528]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2019-04-01 645456]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Java 32bit.bat
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2019-09-17 19:43:02 ----D---- C:\rsit
2019-09-17 19:43:02 ----D---- C:\Program Files\trend micro
2019-09-13 10:09:00 ----D---- C:\Users\mifoI\AppData\Roaming\java
2019-09-13 10:08:50 ----D---- C:\ProgramData\Caphyon
2019-09-13 10:08:43 ----D---- C:\Users\mifoI\AppData\Roaming\.minecraft
2019-09-13 10:08:27 ----D---- C:\Users\mifoI\AppData\Roaming\Mojang
2019-09-11 01:52:49 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2019-09-11 01:52:49 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2019-09-11 01:52:49 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2019-09-11 01:52:49 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2019-09-11 01:52:48 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2019-09-11 01:52:48 ----A---- C:\WINDOWS\system32\mfcore.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\msxbde40.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\msrd2x40.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\tsmf.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\mstscax.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\CPFilters.dll
2019-09-11 01:52:42 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2019-09-11 01:52:42 ----A---- C:\WINDOWS\system32\mshtml.dll
2019-09-11 01:52:42 ----A---- C:\WINDOWS\system32\edgehtml.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\StorSvc.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\jscript9.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\Chakra.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\ClipUp.exe
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\bcastdvruserservice.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\winlogon.exe
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\urlmon.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\NcaSvc.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\gdi32full.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2019-09-11 01:52:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\winresume.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\winload.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\pcasvc.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\msctf.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\invagent.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\generaltel.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\devinv.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\appraiser.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\aitstatic.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\aeinv.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\acmigration.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\xpsservices.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\vbscript.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\sppsvc.exe
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\sppobjs.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\sppcext.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\shell32.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\hal.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\AppResolver.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\win32kfull.sys
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\win32kbase.sys
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\Unistore.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\FntCache.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\DWrite.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\dssvc.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\drivers\UcmUcsiCx.sys
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\daxexec.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\wow64.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\drivers\ws2ifsl.sys
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-09-11 01:52:33 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\usocore.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\updatecsp.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\mf.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\AudioSes.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\AudioEng.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\audiodg.exe
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\aepic.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\WinTypes.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\windows.storage.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\profext.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\hvix64.exe
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\hvax64.exe
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\dcntel.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\combase.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-11 01:52:31 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2019-08-28 22:11:49 ----A---- C:\WINDOWS\SYSWOW64\vcruntime140_clr0400.dll
2019-08-28 22:11:49 ----A---- C:\WINDOWS\system32\vcruntime140_clr0400.dll
2019-08-28 22:11:47 ----A---- C:\WINDOWS\SYSWOW64\msvcp140_clr0400.dll
2019-08-28 22:11:47 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2019-08-28 22:11:47 ----A---- C:\WINDOWS\system32\msvcp140_clr0400.dll
2019-08-28 22:11:46 ----A---- C:\WINDOWS\system32\msvcr100_clr0400.dll
2019-08-28 22:11:45 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2019-08-28 22:11:43 ----A---- C:\WINDOWS\SYSWOW64\msvcr100_clr0400.dll
2019-08-28 22:11:41 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase_clr0400.dll
2019-08-28 22:11:41 ----A---- C:\WINDOWS\system32\ucrtbase_clr0400.dll
2019-08-27 22:03:07 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-08-27 19:55:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2019-08-27 19:55:32 ----D---- C:\ProgramData\Microsoft OneDrive
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Templates
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Start Menu
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Documents
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Desktop
2019-08-27 19:50:53 ----ASH---- C:\hiberfil.sys
2019-08-27 19:50:02 ----D---- C:\ProgramData\USOShared
2019-08-27 19:50:02 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2019-08-27 19:49:54 ----SD---- C:\Users\mifoI\AppData\Roaming\Microsoft
2019-08-27 19:49:19 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2019-08-27 19:48:01 ----D---- C:\WINDOWS\Prefetch
2019-08-27 19:47:43 ----D---- C:\WINDOWS\system32\SleepStudy
2019-08-27 19:47:42 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2019-08-27 19:28:27 ----AS---- C:\WINDOWS\bootstat.dat
2019-08-27 19:28:06 ----D---- C:\WINDOWS\system32\Microsoft
2019-08-27 19:28:06 ----D---- C:\WINDOWS\ServiceProfiles
2019-08-27 19:26:03 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2019-08-27 19:26:03 ----A---- C:\WINDOWS\system32\wmp.dll
2019-08-27 19:26:03 ----A---- C:\WINDOWS\system32\fcon.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmpshell.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmpeffects.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\system32\wmpshell.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2019-08-27 19:26:01 ----A---- C:\WINDOWS\system32\SyncController.dll
2019-08-27 19:26:01 ----A---- C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-08-27 19:26:01 ----A---- C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\mfh264enc.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\mfh264enc.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2019-08-27 19:25:57 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\msvproc.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfsvr.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfps.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfplat.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fvewiz.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fveui.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fvecpl.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fveapibase.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fveapi.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\bdesvc.dll
2019-08-27 19:25:54 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2019-08-27 19:25:54 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2019-08-27 19:25:54 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2019-08-27 19:25:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MixedRealityCapture.dll
2019-08-27 19:25:50 ----A---- C:\WINDOWS\system32\MixedReality.Broker.dll
2019-08-27 19:25:50 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2019-08-27 19:25:50 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2019-08-27 19:25:49 ----RA---- C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2019-08-27 19:25:49 ----RA---- C:\WINDOWS\system32\MixedRealityCapture.Broker.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2019-08-27 19:25:47 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.Internal.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\p2pnetsh.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\P2PGraph.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\P2P.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\perfts.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\nshhttp.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\mspbde40.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\itss.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\fsutil.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\esentutl.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\dxdiag.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\curl.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\ComputerDefaults.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\CastingShellExt.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\wwansvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\wscinterop.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\Windows.Mirage.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\sysmain.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SharedRealitySvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SecurityCenterBroker.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\p2psvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\P2PGraph.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\P2P.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\lpasvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\Groupinghc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\EduPrintProv.exe
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\drivers\MbbCx.sys
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\termsrv.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\srms.dat
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\SIHClient.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\reseteng.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\RDSPnf.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\rdpclip.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\PktMon.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\perfts.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\offreg.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\nlahc.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\nettrace.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\mstsc.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\FSClient.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\FrameServer.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\AcLayers.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\AcGenral.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\wsp_health.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\werconcpl.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\systemreset.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\ResetEngOnline.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\nshwfp.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\nltest.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msisip.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msiexec.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msi.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msfeeds.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\itss.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2019-08-27 19:25:38 ----A---- C:\WINDOWS\regedit.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\HelpPane.exe
2019-08-27 19:25:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2019-08-27 19:25:36 ----A---- C:\WINDOWS\system32\ieproxy.dll
2019-08-27 19:25:36 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2019-08-27 19:25:36 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\werui.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\nshhttp.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\jscript.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\esentutl.exe
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\dxdiag.exe
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\dataclen.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\ComputerDefaults.exe
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\storagewmi.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\spaceman.exe
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\spacebridge.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\resutils.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\ResourceMapper.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\objsel.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\mispace.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\fsutil.exe
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\dusmsvc.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\drivers\cdfs.sys
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\discan.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\defragsvc.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\clusapi.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\CastingShellExt.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\scrrun.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowService.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\OpenWith.exe
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\SecureBioSysprep.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\RDXService.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\DataUsageHandlers.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\BioIso.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\shunimpl.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\setupcln.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\rasppp.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\prnntfy.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\perfproc.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\mcbuilder.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\imm32.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\cscdll.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\cscapi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\xmllite.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\wincredui.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\t2embed.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\RpcPing.exe
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\ntlanman.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\nslookup.exe
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\fdBth.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\credui.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\cmd.exe
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\rmclient.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\drvsetup.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2019-08-27 19:25:25 ----RA---- C:\WINDOWS\SYSWOW64\icuuc.dll
2019-08-27 19:25:25 ----RA---- C:\WINDOWS\SYSWOW64\icuin.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Diagnostics.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Vpn.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\ttdwriter.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\ttdrecordcpu.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\InputHost.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\coml2.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\cmintegrator.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
Log musím rozdeliť do dvoch správ, nevôjde sa sem.
Logfile of random's system information tool 1.10 (written by random/random)
Run by mifoI at 2019-09-17 19:43:02
Microsoft Windows 10 Home
System drive C: has 139 GB (57%) free of 243 GB
Total RAM: 16288 MB (58% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:43:19, on 17. 9. 2019
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.17763.0592)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
D:\Hry\Lol\LeagueClient.exe
D:\Hry\Lol\LeagueClientUx.exe
D:\Hry\Lol\LeagueClientUxRender.exe
D:\Hry\Lol\LeagueClientUxRender.exe
C:\Program Files\trend micro\mifoI.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer17win10.msn.com/?pc=ACTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://securedsearch.lavasoft.com/?pr=v ... 54__190317
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll
O4 - HKLM\..\Run: [FxSound Enhancer] C:\Program Files (x86)\DFX\dfx.exe -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: Java 32bit.bat
O8 - Extra context menu item: &Enviar para o OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: &Anotaçoes Vinculadas do OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Anotaçoes Vinculadas do OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.webcompanion.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Intel® SGX AESM (AESMService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_1781f8bae8fdf5c0\aesm_service.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall Service (avast! Firewall) - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem13.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Intel Corporation - C:\WINDOWS\IAStorAfsService\iaStorAfsService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @oem20.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe
O23 - Service: Intel(R) TPM Provisioning Service - Intel(R) Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Killer Network Service - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Predator Service (PSSvc) - Acer Incorporated - C:\Program Files\Acer\PredatorSense Service\PSSvc.exe
O23 - Service: Quick Access Local Service (QALSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporated - C:\Program Files\Acer\Acer Quick Access\QASvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Thunderbolt(TM) Service (ThunderboltService) - Intel Corporation - C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Experience Improvement Program (UEIPSvc) - acer - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: Waves Audio Services (WavesSysSvc) - Waves Audio Ltd. - C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSysSvc64.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
--
End of file - 12614 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
"fontdrvhost.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\AUDIODG.EXE 0x468
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\system32\WLANExt.exe 2726778318128
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\system32\ibtsiva
"C:\WINDOWS\System32\RtkAudUService64.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSysSvc64.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
"C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
dashost.exe {c3918a08-99c7-4607-b91624867f88b5a7}
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\wbem\wmiprvse.exe
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
"ctfmon.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\Program Files\AVAST Software\Avast\aswEngSrv.exe" /pipename="EC0873A5-5FCC-7A32-FD55-C7D9EC06D30E" /binpath="C:\Program Files\AVAST Software\Avast"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19082.1006.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --disable-features=AsyncWheelEvents,SurfaceSynchronization --no-sandbox --log-file="C:\Users\mifoI\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAKAAAAEAAAAAAAAAAAAAAACwAAABAAAAAAAAAAAQAAAAoAAAAQAAAAAAAAAAEAAAALAAAA --log-file="C:\Users\mifoI\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --service-request-channel-token=52505C57C11D04518449C54C5C97C5CA --mojo-platform-channel-handle=1764 /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19072.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --disable-features=AsyncWheelEvents,SurfaceSynchronization --service-pipe-token=48AEF5879CB084D14E8FF63F081F8887 --lang=en-US --log-file="C:\Users\mifoI\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=48AEF5879CB084D14E8FF63F081F8887 --renderer-client-id=3 --mojo-platform-channel-handle=2020 /prefetch:1
"C:\Windows\System32\SecurityHealthSystray.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\RtkAudUService64.exe" -background
"C:\Windows\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSvc64.exe" -Jack
AvastUI.exe /nogui
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11909.1001.7.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.19072.14111.0_x64__8wekyb3d8bbwe\Music.UI.exe" -ServerName:Microsoft.ZuneMusic.AppX48dcrcgzqqdshm3kf61t0cm5e9pyd6h6.mca
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_1781f8bae8fdf5c0\aesm_service.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
"C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Program Files\Killer Networking\Killer Control Center\KillerControlCenter.exe" -minimized
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" "-lang=cs_CZ" "-cachedir=C:\Users\mifoI\AppData\Local\Steam\htmlcache" "-steampid=13452" "-buildid=1568566542" "-steamid=0" "-steamuniverse=Dev" "-clientui=C:\Program Files (x86)\Steam\clientui" --enable-blink-features=ResizeObserver,Worklet,AudioWorklet --enable-media-stream --enable-smooth-scrolling --num-raster-threads=4 --enable-direct-write "--log-file=C:\Program Files (x86)\Steam\logs\cef_log.txt"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Program Files (x86)\Steam\dumps" "--metrics-dir=C:\Users\mifoI\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win64 --annotation=product=cefwebhelper --annotation=version=1568566542 --initial-client-data=0x2c4,0x2c8,0x2cc,0x2c0,0x2d0,0x7ffb715bf760,0x7ffb715bf770,0x7ffb715bf780
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=gpu-process --field-trial-handle=1340,17224370070923997330,15258235204943688626,131072 --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --lang=sk-SK --buildid=1568566542 --steamid=0 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=7012280345705785396 --mojo-platform-channel-handle=1396 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=renderer --field-trial-handle=1340,17224370070923997330,15258235204943688626,131072 --service-pipe-token=17440184487831251467 --enable-blink-features=ResizeObserver,Worklet,AudioWorklet --lang=sk --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --buildid=1568566542 --steamid=0 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=17440184487831251467 --renderer-client-id=4 --mojo-platform-channel-handle=2112 /prefetch:1
"C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe" --type=renderer --field-trial-handle=1340,17224370070923997330,15258235204943688626,131072 --service-pipe-token=11363860252466549512 --enable-blink-features=ResizeObserver,Worklet,AudioWorklet --lang=sk --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --buildid=1568566542 --steamid=0 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=11363860252466549512 --renderer-client-id=5 --mojo-platform-channel-handle=2456 /prefetch:1
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"D:\Hry\Lol\LeagueClient.exe"
D:/Hry/Lol/LeagueClientUx.exe "--remoting-auth-token=Dt1nrU5H8jqvK46h9YfM2w" "--respawn-command=LeagueClient.exe" "--respawn-display-name=League of Legends" "--app-port=1991" "--install-directory=D:\Hry\Lol" "--app-name=LeagueClient" "--ux-name=LeagueClientUx" "--ux-helper-name=LeagueClientUxHelper" "--log-dir=LeagueClient Logs" "--bugsplat-name=league_client_riotgames_com" "--bugsplat-platform-id=EUN1" "--app-log-file-path=D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-13_10800_LeagueClient.log" "--app-pid=10800" "--no-proxy-server"
LeagueClientUxRender.exe --type=gpu-process --channel="15328.0.369032621\461256165" --no-sandbox --lang=en-US --log-file="D:\Hry\Lol\debug.log" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,25,54,64 --gpu-vendor-id=0x10de --gpu-device-id=0x1be1 --gpu-driver-vendor=NVIDIA --gpu-driver-version=25.21.14.1935 --lang=en-US --log-file="D:\Hry\Lol\debug.log" /prefetch:2 --app-name=LeagueClient --ux-name=LeagueClientUx --ux-helper-name=LeagueClientUxHelper --log-dir="LeagueClient Logs" --bugsplat-name=league_client_riotgames_com --app-port=1991 --bugsplat-platform-id=EUN1 --app-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-13_10800_LeagueClient.log" --primary-ux-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-14_15328_LeagueClientUx.log"
LeagueClientUxRender.exe --type=renderer --no-sandbox --disable-databases --lang=en-US --lang=en-US --log-file="D:\Hry\Lol\debug.log" --disable-spell-checking --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="15328.1.617783350\247023444" /prefetch:1 --app-name=LeagueClient --ux-name=LeagueClientUx --ux-helper-name=LeagueClientUxHelper --log-dir="LeagueClient Logs" --bugsplat-name=league_client_riotgames_com --app-port=1991 --bugsplat-platform-id=EUN1 --app-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-13_10800_LeagueClient.log" --primary-ux-log-file-path="D:/Hry/Lol/Logs/LeagueClient Logs/2019-09-17T19-39-14_15328_LeagueClientUx.log"
"C:\Windows\System32\GameBarPresenceWriter.exe" -ServerName:Windows.Gaming.GameBar.Internal.PresenceWriterServer
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s XblAuthManager
"C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.32.20003.0_x64__8wekyb3d8bbwe\GameBar.exe" -ServerName:App.AppXbdkk0yrkwpcgeaem8zk81k8py1eaahny.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\system32\svchost.exe -k BcastDVRUserService -s BcastDVRUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.32.20003.0_x64__8wekyb3d8bbwe\GameBarFT.exe" /InvokerPRAID: App
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --ran-launcher --started-from-shortcut
C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera_crashreporter.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\mifoI\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\mifoI\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win64 --annotation=prod=OperaDesktop --annotation=ver=63.0.3368.88 --initial-client-data=0x314,0x318,0x31c,0x310,0x320,0x7ffb38c250d8,0x7ffb38c250e8,0x7ffb38c250f8
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=gpu-process --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --gpu-preferences=IAAAAAAAAADgAAAgAAAAAAAAYAAAAAAACAAAAAAAAAAoAAAABAAAACAAAAAAAAAAKAAAAAAAAAAwAAAAAAAAADgAAAAAAAAAEAAAAAAAAAAAAAAABQAAABAAAAAAAAAAAAAAAAYAAAAQAAAAAAAAAAEAAAAFAAAAEAAAAAAAAAABAAAABgAAAA== --service-request-channel-token=10952646169623674190 --mojo-platform-channel-handle=1940 --ignored=" --type=renderer " /prefetch:2
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12942167864466852762 --renderer-client-id=9 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3064 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=16352397697600867579 --renderer-client-id=3 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2992 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10999903839821528110 --renderer-client-id=12 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4576 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5389395385881101640 --renderer-client-id=13 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4820 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=14922372443869895025 --renderer-client-id=14 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4612 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=17921168457726020141 --renderer-client-id=15 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4868 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4363660273099416433 --renderer-client-id=16 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4976 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=2698598090611845681 --renderer-client-id=17 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4688 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4179691000690641985 --renderer-client-id=18 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5028 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=14336163309440125437 --renderer-client-id=19 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3356 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12522871142897774421 --renderer-client-id=20 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4604 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=2247399660793291289 --renderer-client-id=21 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2136 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10422825674242804883 --renderer-client-id=22 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5224 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5161709155148729808 --renderer-client-id=23 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5252 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=1286202944140757033 --renderer-client-id=24 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5276 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=13243714319719071075 --renderer-client-id=25 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2140 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=337830959860573460 --renderer-client-id=26 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5300 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=12408686498634295965 --renderer-client-id=27 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5400 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=61718623262470148 --renderer-client-id=28 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5240 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=15316193652336651057 --renderer-client-id=29 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5288 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4219128517967332957 --renderer-client-id=30 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5524 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=5297882430120969586 --renderer-client-id=31 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5428 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=16583315075997734365 --renderer-client-id=32 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5580 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10501879330689210723 --renderer-client-id=33 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5676 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=11582778321910316157 --renderer-client-id=34 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5688 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=7681336826519271721 --renderer-client-id=35 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5800 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=16389578015494333646 --renderer-client-id=36 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5572 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4917263268551574944 --renderer-client-id=38 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6316 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=499864311245100607 --renderer-client-id=40 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=7640 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=991969027432883372 --renderer-client-id=4 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=8700 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=8864918199960158199 --renderer-client-id=6 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=9892 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10254873077980346933 --renderer-client-id=7 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6320 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --extension-process --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=2177196908495376924 --renderer-client-id=10 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=11140 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4811793900206019507 --renderer-client-id=41 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13064 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=3631296702206223476 --renderer-client-id=42 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13024 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=4361963278463733579 --renderer-client-id=43 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13812 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=7733712750112178050 --renderer-client-id=46 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13508 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=8232681817187748643 --renderer-client-id=48 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=14252 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=8936847654493154097 --renderer-client-id=50 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=15700 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=15176401353476146866 --renderer-client-id=51 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=14068 /prefetch:1
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=6913981474202254861 --renderer-client-id=54 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=13672 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=17005304665777573132 --renderer-client-id=55 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=14472 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=9516366742041313259 --renderer-client-id=56 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3752 /prefetch:1
"C:\Users\mifoI\AppData\Local\Programs\Opera\63.0.3368.88\opera.exe" --type=renderer --field-trial-handle=1928,13513236793531047680,1059173881257797867,131072 --lang=sk --enable-auto-reload --with-feature:installer-experiment-test=off --with-feature:installer-use-minimal-package=off --ab_tests=DNA-70598-test:DNA-70598 --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=10065902709938233601 --renderer-client-id=58 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3768 /prefetch:1
"D:\Sťahovanie\scoped_dir12284_883695578\RSITx64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-05-25 480120]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2018-07-18 1744672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-25 194424]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2018-09-15 83968]
"RtkAudUService"=C:\WINDOWS\System32\RtkAudUService64.exe [2018-02-28 652736]
"WavesSvc"=C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo.inf_amd64_1fb2e6862d041cad\WavesSvc64.exe [2018-01-26 1220320]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2018-01-30 79360]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2019-07-16 269192]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2018-10-23 19467544]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"FxSound Enhancer"=C:\Program Files (x86)\DFX\dfx.exe [2017-06-30 1665528]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2019-04-01 645456]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Java 32bit.bat
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2019-09-17 19:43:02 ----D---- C:\rsit
2019-09-17 19:43:02 ----D---- C:\Program Files\trend micro
2019-09-13 10:09:00 ----D---- C:\Users\mifoI\AppData\Roaming\java
2019-09-13 10:08:50 ----D---- C:\ProgramData\Caphyon
2019-09-13 10:08:43 ----D---- C:\Users\mifoI\AppData\Roaming\.minecraft
2019-09-13 10:08:27 ----D---- C:\Users\mifoI\AppData\Roaming\Mojang
2019-09-11 01:52:49 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2019-09-11 01:52:49 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2019-09-11 01:52:49 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2019-09-11 01:52:49 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2019-09-11 01:52:48 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2019-09-11 01:52:48 ----A---- C:\WINDOWS\system32\mfcore.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2019-09-11 01:52:45 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\msxbde40.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\msrd2x40.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2019-09-11 01:52:44 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\tsmf.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\mstscax.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2019-09-11 01:52:43 ----A---- C:\WINDOWS\system32\CPFilters.dll
2019-09-11 01:52:42 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2019-09-11 01:52:42 ----A---- C:\WINDOWS\system32\mshtml.dll
2019-09-11 01:52:42 ----A---- C:\WINDOWS\system32\edgehtml.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\StorSvc.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\jscript9.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\Chakra.dll
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\ClipUp.exe
2019-09-11 01:52:41 ----A---- C:\WINDOWS\system32\bcastdvruserservice.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2019-09-11 01:52:40 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2019-09-11 01:52:39 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\winlogon.exe
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\urlmon.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\NcaSvc.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\gdi32full.dll
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2019-09-11 01:52:38 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2019-09-11 01:52:37 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\winresume.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\winload.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\pcasvc.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\ntdll.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\msctf.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\invagent.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\generaltel.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\devinv.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\appraiser.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\aitstatic.exe
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\aeinv.dll
2019-09-11 01:52:37 ----A---- C:\WINDOWS\system32\acmigration.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\SYSWOW64\pidgenx.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\xpsservices.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\vbscript.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\sppsvc.exe
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\sppobjs.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\sppcext.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\shell32.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\hal.dll
2019-09-11 01:52:36 ----A---- C:\WINDOWS\system32\AppResolver.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\win32kfull.sys
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\win32kbase.sys
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\Unistore.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\FntCache.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\DWrite.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\dssvc.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\drivers\UcmUcsiCx.sys
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\daxexec.dll
2019-09-11 01:52:35 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\wow64.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\drivers\ws2ifsl.sys
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2019-09-11 01:52:34 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-09-11 01:52:33 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\usocore.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\updatecsp.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\mf.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\AudioSes.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\AudioEng.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\audiodg.exe
2019-09-11 01:52:33 ----A---- C:\WINDOWS\system32\aepic.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\WinTypes.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\windows.storage.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\profext.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\hvix64.exe
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\hvax64.exe
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\dcntel.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\combase.dll
2019-09-11 01:52:32 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-09-11 01:52:31 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2019-08-28 22:11:49 ----A---- C:\WINDOWS\SYSWOW64\vcruntime140_clr0400.dll
2019-08-28 22:11:49 ----A---- C:\WINDOWS\system32\vcruntime140_clr0400.dll
2019-08-28 22:11:47 ----A---- C:\WINDOWS\SYSWOW64\msvcp140_clr0400.dll
2019-08-28 22:11:47 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2019-08-28 22:11:47 ----A---- C:\WINDOWS\system32\msvcp140_clr0400.dll
2019-08-28 22:11:46 ----A---- C:\WINDOWS\system32\msvcr100_clr0400.dll
2019-08-28 22:11:45 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2019-08-28 22:11:43 ----A---- C:\WINDOWS\SYSWOW64\msvcr100_clr0400.dll
2019-08-28 22:11:41 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase_clr0400.dll
2019-08-28 22:11:41 ----A---- C:\WINDOWS\system32\ucrtbase_clr0400.dll
2019-08-27 22:03:07 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-08-27 19:55:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2019-08-27 19:55:32 ----D---- C:\ProgramData\Microsoft OneDrive
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Templates
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Start Menu
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Documents
2019-08-27 19:53:41 ----SHD---- C:\ProgramData\Desktop
2019-08-27 19:50:53 ----ASH---- C:\hiberfil.sys
2019-08-27 19:50:02 ----D---- C:\ProgramData\USOShared
2019-08-27 19:50:02 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2019-08-27 19:49:54 ----SD---- C:\Users\mifoI\AppData\Roaming\Microsoft
2019-08-27 19:49:19 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2019-08-27 19:48:01 ----D---- C:\WINDOWS\Prefetch
2019-08-27 19:47:43 ----D---- C:\WINDOWS\system32\SleepStudy
2019-08-27 19:47:42 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2019-08-27 19:28:27 ----AS---- C:\WINDOWS\bootstat.dat
2019-08-27 19:28:06 ----D---- C:\WINDOWS\system32\Microsoft
2019-08-27 19:28:06 ----D---- C:\WINDOWS\ServiceProfiles
2019-08-27 19:26:03 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2019-08-27 19:26:03 ----A---- C:\WINDOWS\system32\wmp.dll
2019-08-27 19:26:03 ----A---- C:\WINDOWS\system32\fcon.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmpshell.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmpeffects.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\system32\wmpshell.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\system32\wmpeffects.dll
2019-08-27 19:26:02 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2019-08-27 19:26:01 ----A---- C:\WINDOWS\system32\SyncController.dll
2019-08-27 19:26:01 ----A---- C:\WINDOWS\system32\EASPolicyManagerBrokerHost.exe
2019-08-27 19:26:01 ----A---- C:\WINDOWS\system32\ActiveSyncCsp.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\mfh264enc.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\mfh264enc.dll
2019-08-27 19:25:59 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2019-08-27 19:25:57 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2019-08-27 19:25:57 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\msvproc.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfsvr.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfps.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfplat.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-08-27 19:25:56 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fvewiz.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fveui.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fvecpl.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fveapibase.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\fveapi.dll
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2019-08-27 19:25:55 ----A---- C:\WINDOWS\system32\bdesvc.dll
2019-08-27 19:25:54 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2019-08-27 19:25:54 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2019-08-27 19:25:54 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2019-08-27 19:25:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MixedRealityCapture.dll
2019-08-27 19:25:50 ----A---- C:\WINDOWS\system32\MixedReality.Broker.dll
2019-08-27 19:25:50 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2019-08-27 19:25:50 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2019-08-27 19:25:49 ----RA---- C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2019-08-27 19:25:49 ----RA---- C:\WINDOWS\system32\MixedRealityCapture.Broker.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2019-08-27 19:25:49 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2019-08-27 19:25:47 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.Internal.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\p2pnetsh.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\P2PGraph.dll
2019-08-27 19:25:46 ----A---- C:\WINDOWS\SYSWOW64\P2P.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\perfts.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2019-08-27 19:25:45 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\nshhttp.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\mspbde40.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\itss.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\fsutil.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\esentutl.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\dxdiag.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\curl.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\ComputerDefaults.exe
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2019-08-27 19:25:43 ----A---- C:\WINDOWS\SYSWOW64\CastingShellExt.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\wwansvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\wscinterop.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\Windows.Mirage.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\sysmain.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SharedRealitySvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\SecurityCenterBroker.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\p2psvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\P2PGraph.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\P2P.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\lpasvc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\Groupinghc.dll
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\EduPrintProv.exe
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\drivers\MbbCx.sys
2019-08-27 19:25:42 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\termsrv.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\srms.dat
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\SIHClient.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\reseteng.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\RDSPnf.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\rdpclip.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\PktMon.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\perfts.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\offreg.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\nlahc.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\nettrace.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\mstsc.exe
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\FSClient.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\FrameServer.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\AcLayers.dll
2019-08-27 19:25:39 ----A---- C:\WINDOWS\system32\AcGenral.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\wsp_health.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\werconcpl.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\systemreset.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\ResetEngOnline.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\nshwfp.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\nltest.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msisip.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msiexec.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msi.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\msfeeds.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\itss.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2019-08-27 19:25:38 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2019-08-27 19:25:38 ----A---- C:\WINDOWS\regedit.exe
2019-08-27 19:25:38 ----A---- C:\WINDOWS\HelpPane.exe
2019-08-27 19:25:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2019-08-27 19:25:36 ----A---- C:\WINDOWS\system32\ieproxy.dll
2019-08-27 19:25:36 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2019-08-27 19:25:36 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\werui.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\nshhttp.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\jscript.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\esentutl.exe
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\dxdiag.exe
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\dataclen.dll
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\ComputerDefaults.exe
2019-08-27 19:25:35 ----A---- C:\WINDOWS\system32\CompMgmtLauncher.exe
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\storagewmi.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\spaceman.exe
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\spacebridge.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\resutils.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\ResourceMapper.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\objsel.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\mispace.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\fsutil.exe
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\dusmsvc.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\drivers\cdfs.sys
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\discan.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\defragsvc.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\clusapi.dll
2019-08-27 19:25:34 ----A---- C:\WINDOWS\system32\CastingShellExt.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\scrrun.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowService.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\OpenWith.exe
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\SecureBioSysprep.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\RDXService.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\DataUsageHandlers.dll
2019-08-27 19:25:31 ----A---- C:\WINDOWS\system32\BioIso.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\shunimpl.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\setupcln.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\rasppp.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\prnntfy.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\perfproc.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\mcbuilder.exe
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\imm32.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\cscdll.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\cscapi.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2019-08-27 19:25:30 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\xmllite.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\wincredui.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\t2embed.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\RpcPing.exe
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\ntlanman.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\nslookup.exe
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\fdBth.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\credui.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\cmd.exe
2019-08-27 19:25:29 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\rmclient.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\drvsetup.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2019-08-27 19:25:28 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2019-08-27 19:25:25 ----RA---- C:\WINDOWS\SYSWOW64\icuuc.dll
2019-08-27 19:25:25 ----RA---- C:\WINDOWS\SYSWOW64\icuin.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Diagnostics.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Vpn.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\ttdwriter.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\ttdrecordcpu.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\InputHost.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\coml2.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\cmintegrator.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2019-08-27 19:25:25 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.PlatformDiagnosticsAndUsageDataSettings.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2019-08-27 19:25:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll