Zpomalený PC,vytížení procesoru a disků
Napsal: 05 dub 2020 14:30
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-04-2020
Ran by Lenka (administrator) on BEDROOM (LENOVO 10DR000SMC) (05-04-2020 15:20:08)
Running from C:\Users\Lenka\Desktop
Loaded Profiles: Lenka (Available Profiles: Lenka)
Platform: Windows 10 Pro Version 1909 18363.720 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(LENOVO -> Lenovo Group Limited) C:\Program Files (x86)\Lenovo\PowerMgr\SCHTASK.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\LenovoVantageService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\PowerMgr\PWMDBSVC.exe
(LITE-ON TECHNOLOGY CORP. -> ) C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Sks8821.exe
(LITE-ON TECHNOLOGY CORP. -> LITE-ON TECHNOLOGY CORP.) C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Skd8821.exe
(LITE-ON TECHNOLOGY CORP. -> LITEON) C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\skdh8821.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Skd8821] => C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Skd8821.exe [2209056 2015-12-30] (LITE-ON TECHNOLOGY CORP. -> LITE-ON TECHNOLOGY CORP.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [108216 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [Power Manager Startup Utility] => C:\Program Files (x86)\Lenovo\PowerMgr\DPMHost.exe [25632 2016-01-14] (LENOVO -> )
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6287872 2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [3029480 2018-05-09] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2017-05-09]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [File not signed]
Startup: C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\subst_mrp.lnk [2017-02-23]
ShortcutTarget: subst_mrp.lnk -> C:\Windows\System32\subst.exe (Microsoft Windows -> Microsoft Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {040FDA77-DB0E-406E-81CA-A9819979D947} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {09B36698-8E9D-4396-9A26-BE43286EA4AB} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {1D97E1C9-B6AC-4723-B8E6-72DAABA31990} - System32\Tasks\RtHDVBg_LENOVO_MICPKEY => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880 2015-04-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {22B46317-525B-4EEC-93E8-0899148C3760} - System32\Tasks\PMTask => C:\Program Files (x86)\Lenovo\PowerMgr\PwmIdTsv.exe [305184 2016-01-14] (LENOVO -> Lenovo Group Limited)
Task: {25E19283-31F3-4C7F-822B-9B38E738260A} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-03-11] (Adobe Inc. -> Adobe)
Task: {3123B4D5-4847-4190-9DF2-79E948CC3013} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952 2015-05-20] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {362C4925-92D0-4896-B371-7F5883BE0384} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
Task: {36C704F4-2CAD-4291-A10F-A5BBCEA41AC1} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [54424 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {3EFC1CC5-43F8-4EE3-8E0D-A20A76522C7A} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1321280 2017-02-14] (Lenovo -> Lenovo)
Task: {419FD30F-7319-480C-8E85-26FF71407534} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {44316A65-2382-447C-A8FA-B0ED70A37A51} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10175808 2017-02-14] (Lenovo -> Lenovo)
Task: {4C0307B3-1753-49AC-9207-16EE736CA435} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => "%windir%\system32\WindowsPowerShell\v1.0\PowerShell.exe" "powershell -executionpolicy bypass -file %ProgramData%\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\data\Maintenance.ps1"
Task: {5DB2B912-EE50-4A8B-BBD1-528F8AA36B15} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe [264000 2017-02-14] (Lenovo -> )
Task: {6B4D0000-3553-4738-BD3E-DCB41B1D119F} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {6C31FF28-8A65-4FB5-AE08-12CCB505C48E} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {6E1799A8-6E8A-497B-9771-8D86EF017185} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {86299671-5472-4A33-8799-91E6207C8D89} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe [1458232 2020-03-11] (Adobe Inc. -> Adobe)
Task: {96EEE2F9-8998-4731-9965-D90D39857C38} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-02-11] (Lenovo -> )
Task: {BCA89C5A-3EBC-4B3B-8171-ED18F47BB793} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-02-11] (Lenovo -> )
Task: {C098FE20-80F1-4519-AE4C-76C287CC39A0} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3325032 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
Task: {C4017EFB-CD7A-4C52-9FD0-27D2E5661051} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\cbc3baf0-3e87-49f7-b05b-35c5c06eae93 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {CDCD8773-5CF0-4DCA-915C-66BF13C086CC} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1639b22b-2f3b-43d5-8ccb-247269aa84ea => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {D0CC3771-A805-4623-9A8B-80B806EB6A9F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DDA27365-D559-4384-9DAA-F258171737CB} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b492b8a1-3991-458a-b7a1-e185091becea => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {EC98DFAF-205C-4159-9563-C429272B54D7} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {EE6B87AF-22EC-450C-A325-EFDDA3D52BA9} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
Task: {F68811E3-5E20-42A7-96E7-65E92A766A3C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\10a88ef5-f8af-421f-a49b-868532f748c0 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {FEC9BEE3-E7B9-4206-8492-28BB24E47E76} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10175808 2017-02-14] (Lenovo -> Lenovo)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 217.195.165.131 217.195.160.10 8.8.8.8 192.168.21.3
Tcpip\..\Interfaces\{03ff05e7-0e27-4ee5-8cb9-2e813cab384f}: [DhcpNameServer] 217.195.165.131 217.195.160.10 8.8.8.8 192.168.21.3
Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-3879416617-1956560695-208975824-1000 -> {101A5455-76CE-4FD4-8BCF-DF6A28A727C0} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_27368
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-03-31] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-03-31] (McAfee, LLC -> McAfee, LLC)
FireFox:
========
FF DefaultProfile: zb544fgv.default-1492419140527-1561965889573
FF ProfilePath: C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573 [2020-04-05]
FF Homepage: Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573 -> hxxps://www.google.cz/
FF Session Restore: Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573 -> is enabled.
FF Extension: (Facebook Container) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573\Extensions\@contain-facebook.xpi [2020-03-06]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573\Extensions\firefox@ghostery.com.xpi [2020-01-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_344.dll [2020-03-11] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_344.dll [2020-03-11] (Adobe Inc. -> )
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-3879416617-1956560695-208975824-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-3879416617-1956560695-208975824-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5504928 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [345384 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [355872 2019-12-12] (Intel(R) pGFX -> Intel Corporation)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\LenovoVantageService.exe [18200 2019-07-25] (Lenovo -> Lenovo Group Ltd.)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273216 2017-02-14] (Lenovo -> Lenovo)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913640 2020-03-31] (McAfee, LLC -> McAfee, LLC)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [498152 2018-05-09] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R3 Power Manager DBC Service; C:\Program Files (x86)\Lenovo\PowerMgr\PWMDBSVC.EXE [60448 2016-01-14] (LENOVO -> Lenovo)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5929920 2020-03-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ShareItSvc; C:\Program Files (x86)\SHAREit\SHAREit\Shareit.Service.exe [31176 2016-01-20] (LENOVO -> SHAREit Technologies Co.Ltd)
R2 Sks8821; C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Sks8821.exe [142624 2015-12-30] (LITE-ON TECHNOLOGY CORP. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11293936 2018-04-03] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37856 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [206120 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [234776 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [178968 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [60696 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2020-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42984 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175920 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109480 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 AswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [85056 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851808 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [459608 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [235696 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [317280 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2020-02-21] (Microsoft Corporation) [File not signed]
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-23] (Realtek Semiconductor Corp -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [411712 2015-05-19] (Microsoft Windows Hardware Compatibility Publisher -> Realsil Semiconductor Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-05 15:20 - 2020-04-05 15:23 - 000023010 _____ C:\Users\Lenka\Desktop\FRST.txt
2020-04-05 15:18 - 2020-04-05 15:22 - 000000000 ____D C:\FRST
2020-04-05 15:18 - 2020-04-05 15:18 - 002281472 _____ (Farbar) C:\Users\Lenka\Desktop\FRST64.exe
2020-04-05 14:43 - 2020-04-05 14:43 - 000042200 _____ C:\Users\Lenka\Documents\cc_20200405_144330.reg
2020-04-02 23:39 - 2020-04-02 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-04-01 18:20 - 2020-04-01 18:20 - 000337048 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-04-01 18:20 - 2020-04-01 18:20 - 000235696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-04-01 18:20 - 2020-04-01 18:20 - 000175920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2020-03-30 12:20 - 2020-03-30 12:20 - 000016844 _____ C:\WINDOWS\system32\results.xml
2020-03-30 10:42 - 2019-12-12 15:06 - 039512728 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 038561968 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 034518328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 029092744 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 019852680 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 015336424 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 013358712 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 011739528 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 008725896 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 005674888 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 005254024 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004921736 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004360072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004223248 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004195152 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 003963272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 002363744 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001834032 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001792264 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001789640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001581960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001376256 _____ C:\WINDOWS\system32\iglhxa64.cpa
2020-03-30 10:42 - 2019-12-12 15:06 - 001169800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001006112 _____ C:\WINDOWS\system32\igfxSDK.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000950304 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000946720 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000830871 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2020-03-30 10:42 - 2019-12-12 15:06 - 000696416 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000449056 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000431136 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000429960 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000407432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000380808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000379784 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000378400 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000309640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000300984 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000285976 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000264584 _____ C:\WINDOWS\system32\igfxCPL.cpl
2020-03-30 10:42 - 2019-12-12 15:06 - 000257416 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000246152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000231200 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000226184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v5107.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000218656 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000216456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000214560 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000214048 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000212168 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000194760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000184200 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000173528 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000172504 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000171632 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000164744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000157728 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000150072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000150072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000102792 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000095328 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000094600 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000092040 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000091232 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000086408 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000076168 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000045840 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000044194 _____ C:\WINDOWS\system32\iglhxc64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000043760 _____ C:\WINDOWS\system32\iglhxg64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043732 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043214 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043143 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000042513 _____ C:\WINDOWS\system32\iglhxo64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000020360 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000020360 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000018824 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000018824 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000013704 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000013704 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000004858 _____ C:\WINDOWS\system32\iglhxs64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000001125 _____ C:\WINDOWS\system32\iglhxa64.vp
2020-03-25 22:45 - 2020-03-25 22:53 - 000000000 ____D C:\Users\Lenka\Documents\FormatFactory
2020-03-25 22:45 - 2020-03-25 22:45 - 000000000 ____D C:\Users\Lenka\AppData\Local\FTMod
2020-03-25 22:44 - 2020-03-25 22:44 - 000000000 ____D C:\ProgramData\McAfee
2020-03-25 22:44 - 2020-03-25 22:44 - 000000000 ____D C:\Program Files\McAfee
2020-03-25 22:43 - 2020-03-25 22:43 - 000000948 _____ C:\Users\Lenka\Desktop\Format Factory.lnk
2020-03-25 22:43 - 2020-03-25 22:43 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2020-03-25 22:41 - 2020-03-25 22:43 - 000000000 ____D C:\Program Files\FormatFactory
2020-03-25 22:34 - 2020-03-25 22:34 - 000002197 _____ C:\Users\Lenka\Desktop\Speed Video Converter.lnk
2020-03-25 22:34 - 2020-03-25 22:34 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Speed Video Converter
2020-03-25 22:34 - 2020-03-25 22:34 - 000000000 ____D C:\speed_converter
2020-03-25 22:34 - 2020-03-25 22:34 - 000000000 ____D C:\Program Files (x86)\Speed Video Converter
2020-03-25 22:25 - 2020-03-25 22:39 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WonderFox Soft
2020-03-25 22:25 - 2020-03-25 22:25 - 000000000 ____D C:\Users\Lenka\Documents\WonderFox Soft
2020-03-25 22:24 - 2020-03-25 22:39 - 000000000 ____D C:\Program Files (x86)\WonderFox Soft
2020-03-14 10:27 - 2020-03-14 10:27 - 000000000 ____D C:\WINDOWS\Lenovo
2020-03-13 21:58 - 2020-03-13 21:58 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 006520776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 004563416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 001398584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-03-13 21:58 - 2020-03-13 21:58 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-12 02:53 - 2020-03-12 02:53 - 011607552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 002315680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 001555904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 001417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 018027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 007755776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 007259648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 005911040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004855808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004580352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004129648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003819520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003488768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003243296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002956688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-03-12 02:52 - 2020-03-12 02:52 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-03-12 02:52 - 2020-03-12 02:52 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002259872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002180408 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002072664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001867816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001770552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001490640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-03-12 02:52 - 2020-03-12 02:52 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001273856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001218632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001190912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001108040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001088000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2020-03-12 02:52 - 2020-03-12 02:52 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddpchunk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CscMig.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2020-03-12 02:52 - 2020-03-12 02:52 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-03-12 02:52 - 2020-03-12 02:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-03-12 02:51 - 2020-03-12 02:51 - 006084344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 005112832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 003971808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 002773568 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002021888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001985104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001665416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001484600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001264128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001054376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001007672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000776488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000769552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000734720 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000668296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000627216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000478792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-03-12 02:51 - 2020-03-12 02:51 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000213984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000165504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 006436352 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 003799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 003552768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 003371720 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 002768440 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 002698040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 002087376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001999952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001972536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-12 02:50 - 2020-03-12 02:50 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 001396152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-12 02:50 - 2020-03-12 02:50 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001260480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000983896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000929144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000877232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000796904 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000636848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-03-12 02:50 - 2020-03-12 02:50 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000320312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000221200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000098104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000089616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 007905784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 004622280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 004471296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 004048896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003977216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003728896 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003587896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003143168 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002715648 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 002522112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002474496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002453504 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001823232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001762304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001657120 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001481216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000945384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000908504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000833616 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000642216 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-12 02:49 - 2020-03-12 02:49 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000522384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000254776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000180232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000128312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000066336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000029712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
2020-03-12 02:48 - 2020-03-12 02:48 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000531768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-03-12 02:48 - 2020-03-12 02:48 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000250896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000224056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000222520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000183608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-03-12 02:48 - 2020-03-12 02:48 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000056632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-03-12 02:48 - 2020-03-12 02:48 - 000030008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-03-12 02:48 - 2020-03-12 02:48 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000016912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-03-12 02:07 - 2020-02-11 06:48 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-03-12 02:07 - 2020-02-11 06:37 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-03-06 01:03 - 2020-03-17 11:27 - 000000000 _____ C:\WINDOWS\system32\last.dump
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-05 15:23 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-05 15:18 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-04-05 15:15 - 2020-02-21 21:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-04-05 15:15 - 2017-04-19 10:18 - 000000000 ____D C:\Users\Lenka\AppData\LocalLow\Mozilla
2020-04-05 14:59 - 2016-08-05 01:44 - 000000000 ____D C:\ProgramData\AVAST Software
2020-04-05 14:54 - 2015-03-29 18:11 - 000000000 __SHD C:\Users\Lenka\IntelGraphicsProfiles
2020-04-05 14:53 - 2017-08-27 14:11 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2020-04-05 14:52 - 2020-02-21 21:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-04-05 14:52 - 2017-05-07 18:10 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-05 14:52 - 2017-03-14 22:35 - 000000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2020-04-05 14:52 - 2017-03-14 22:35 - 000000918 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2020-04-05 14:51 - 2019-03-19 06:37 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2020-04-05 14:51 - 2016-08-06 11:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-04-05 14:46 - 2019-05-12 14:07 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Seznam.cz
2020-04-05 14:41 - 2020-02-12 17:08 - 000000000 ___DC C:\WINDOWS\Panther
2020-04-05 14:41 - 2018-09-12 00:20 - 000000000 ____D C:\Users\Lenka\AppData\Local\CrashDumps
2020-04-05 14:41 - 2016-08-05 01:49 - 000000000 ____D C:\Program Files (x86)\Google
2020-04-05 14:39 - 2020-02-21 21:37 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-04-05 14:39 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-04-05 14:27 - 2016-08-05 01:51 - 000000000 ____D C:\Users\Lenka\AppData\Local\Google
2020-04-05 14:14 - 2017-07-25 18:07 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\vlc
2020-04-04 12:27 - 2017-04-18 12:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-04-04 12:27 - 2016-08-05 01:44 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-04-03 16:13 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-03 16:13 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-04-02 23:43 - 2017-03-14 22:35 - 000000000 ____D C:\Program Files (x86)\Dropbox
2020-04-02 17:29 - 2020-02-21 21:37 - 000003816 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-04-02 17:29 - 2020-02-21 21:37 - 000003530 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2020-04-02 17:29 - 2020-02-21 21:37 - 000003436 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2020-04-02 17:29 - 2020-02-21 21:37 - 000003212 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2020-04-02 17:29 - 2020-02-21 21:37 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3879416617-1956560695-208975824-1000
2020-04-02 17:29 - 2020-02-21 21:37 - 000002336 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_LENOVO_MICPKEY
2020-04-02 17:29 - 2020-02-21 21:37 - 000002280 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2020-04-02 17:29 - 2020-02-21 21:37 - 000002236 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-04-02 17:29 - 2020-02-21 21:37 - 000002072 _____ C:\WINDOWS\system32\Tasks\PMTask
2020-04-02 17:29 - 2020-02-21 21:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2020-04-02 10:51 - 2017-06-02 09:52 - 000092920 _____ C:\Users\Lenka\AppData\Local\GDIPFONTCACHEV1.DAT
2020-04-01 18:21 - 2020-02-21 21:37 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-04-01 18:20 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-04-01 18:20 - 2019-02-26 01:54 - 000042984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-04-01 18:20 - 2019-02-26 01:54 - 000037856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2020-04-01 18:20 - 2017-11-18 00:16 - 000206120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000459608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000317280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000109480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000085056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-04-01 18:19 - 2019-02-26 01:54 - 000234776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-04-01 18:19 - 2019-02-26 01:54 - 000178968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-04-01 18:19 - 2019-02-26 01:54 - 000060696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-04-01 18:19 - 2016-08-05 01:47 - 000851808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-04-01 08:47 - 2020-02-21 21:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2020-03-30 12:23 - 2020-02-21 21:29 - 001606106 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-03-30 12:23 - 2019-03-19 13:57 - 000682526 _____ C:\WINDOWS\system32\perfh005.dat
2020-03-30 12:23 - 2019-03-19 13:57 - 000137244 _____ C:\WINDOWS\system32\perfc005.dat
2020-03-30 11:06 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-03-30 10:47 - 2017-08-27 14:11 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2020-03-30 10:42 - 2020-02-26 16:13 - 000000000 ____D C:\WINDOWS\TempInst
2020-03-30 10:42 - 2015-03-26 18:13 - 000000000 ____D C:\Intel
2020-03-25 21:11 - 2018-02-24 18:34 - 000000000 ____D C:\Users\Lenka\AppData\Local\JDownloader v2.0
2020-03-22 22:32 - 2020-02-21 21:18 - 000002398 _____ C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-22 22:32 - 2017-08-27 14:51 - 000000000 ___RD C:\Users\Lenka\OneDrive
2020-03-22 02:02 - 2020-02-21 21:18 - 000000000 ____D C:\Users\Lenka
2020-03-21 12:00 - 2016-08-06 11:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2020-03-17 10:28 - 2016-08-06 11:55 - 000001278 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2020-03-14 10:28 - 2016-06-05 11:52 - 000000000 ____D C:\Program Files\Lenovo
2020-03-14 02:04 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-03-14 02:04 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-03-13 10:05 - 2016-06-05 11:42 - 000000000 ____D C:\Program Files (x86)\Lenovo
2020-03-12 12:52 - 2016-08-05 01:47 - 000002123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2020-03-12 12:52 - 2016-08-05 01:47 - 000002111 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2020-03-12 12:52 - 2016-08-05 01:47 - 000002111 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2020-03-12 12:15 - 2018-01-29 01:39 - 000000000 ___RD C:\Users\Lenka\3D Objects
2020-03-12 12:15 - 2016-11-21 06:46 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-12 12:11 - 2020-02-21 21:12 - 000446160 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-03-12 03:22 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\setup
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-03-12 03:22 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing
2020-03-12 00:52 - 2016-05-28 10:28 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-03-12 00:45 - 2016-05-28 10:28 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-03-11 19:14 - 2019-11-14 02:14 - 009503800 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2020-03-11 19:14 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-03-11 19:14 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-03-08 12:46 - 2017-05-09 09:52 - 000000000 ____D C:\ProgramData\Adobe
2020-03-08 12:46 - 2016-05-25 22:20 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Adobe
==================== Files in the root of some directories ========
2019-11-16 14:39 - 2019-11-16 14:39 - 000007605 _____ () C:\Users\Lenka\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-04-2020
Ran by Lenka (05-04-2020 15:24:53)
Running from C:\Users\Lenka\Desktop
Windows 10 Pro Version 1909 18363.720 (X64) (2020-02-21 19:38:28)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3879416617-1956560695-208975824-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3879416617-1956560695-208975824-503 - Limited - Disabled)
Guest (S-1-5-21-3879416617-1956560695-208975824-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-3879416617-1956560695-208975824-1002 - Limited - Enabled)
Lenka (S-1-5-21-3879416617-1956560695-208975824-1000 - Administrator - Enabled) => C:\Users\Lenka
WDAGUtilityAccount (S-1-5-21-3879416617-1956560695-208975824-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.344 - Adobe)
Adobe Photoshop CS (HKLM-x32\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.20) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.20 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 20.2.2401 - Avast Software)
calibre (HKLM-x32\...\{5E07DBE4-E35F-4FF5-9944-0CA6D0A2704C}) (Version: 3.9.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
CleanUp! (HKLM-x32\...\CleanUp!) (Version: - )
Dropbox (HKLM-x32\...\Dropbox) (Version: 94.4.384 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
FormatFactory 5.1.0.0 (HKLM-x32\...\FormatFactory) (Version: 5.1.0.0 - Free Time)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
HandBrake 1.0.7 (HKLM-x32\...\HandBrake) (Version: 1.0.7 - )
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.5107 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.022.00 - Lenovo)
Lenovo Slim USB Keyboard (HKLM\...\{494D80C4-3557-4D73-A153-65FE4B3ECDC3}) (Version: 1.19 - Lenovo)
Lenovo Solution Center (HKLM\...\{7BB9AAFD-3350-49C8-92D1-833AAFF9E74E}) (Version: 3.4.003.013 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0093 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 2.0.7.0 - Lenovo Group Ltd.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.87 - McAfee, LLC.)
MergeModule_x64 (HKLM\...\{12DCC5A7-0100-4433-B4FF-217A3C5DC83B}) (Version: 9.3.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{42251A8D-C4AE-4D3B-8A50-948CB98A0969}) (Version: 10.5.00 - Sony Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 74.0.1 (x64 cs) (HKLM\...\Mozilla Firefox 74.0.1 (x64 cs)) (Version: 74.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 74.0.1.7398 - Mozilla)
Mozilla Thunderbird 68.6.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 68.6.0 (x86 cs)) (Version: 68.6.0 - Mozilla)
MRP Aktualizační manažer (HKLM-x32\...\MRP NetAgent CZ_is1) (Version: 2.3.33 - MRP)
MRP Podpora registračních pokladen (HKLM-x32\...\Fiskal) (Version: - )
MRP Účto (HKLM-x32\...\MRP Ucto CZ_is1) (Version: 8.30.1007 - MRP)
MRP Základ vizuálního systému (HKLM-x32\...\MRP Zaklad) (Version: - )
PlayMemories Home (HKLM-x32\...\{D3981248-DBE7-4050-B666-A7FE5AFFC62C}) (Version: 5.5.01.05091 - Sony Corporation)
PMB_ModeEditor (HKLM-x32\...\{E95982CA-945F-41F2-B156-A603897AB242}) (Version: 10.3.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{7D3A0097-9E0E-4073-801C-295BBDAEAED8}) (Version: 10.5.01 - Sony Corporation) Hidden
Power Manager (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}_is1) (Version: 4.00.0009 - Lenovo Group Limited)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.31213 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7525 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 3.2.0.543 - Lenovo)
Sony USB Driver (HKLM-x32\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: - )
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.3629 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.0a - Ghisler Software GmbH)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2003.10.0_x64__k1h2ywk1493x8 [2020-03-25] (LENOVO INC.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3879416617-1956560695-208975824-1000_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => F:\Dropbox [2017-03-14 23:03]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files\FormatFactory\ShellEx_108.dll [2020-03-19] (Free Time) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files\FormatFactory\ShellEx_108.dll [2020-03-19] (Free Time) [File not signed]
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2019-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2020-03-14 10:35 - 2019-05-28 15:06 - 001021440 _____ () [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000061440 _____ (LITE-ON Corp.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\skhooks.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000054784 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\SKHidKbd.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000076288 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\skosd.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000138752 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\SKUtil.DLL
2020-03-14 10:37 - 2019-10-27 06:36 - 001261568 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer trusted/restricted ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 09:24 - 2019-01-04 10:37 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lenka\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 217.195.165.131 - 217.195.160.10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "GrooveMonitor"
HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher"
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{FFF5C679-7113-4225-8AB2-523D18F154B3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{294A4FEE-BEF0-4653-9164-DCE5DABEB948}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{DE561FC1-1AB5-4B26-84FC-116889F451BE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{5B40D397-0DD6-4C44-B966-25F85161699C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{99D6DEDC-78A2-4AE2-A8C5-6F48251916C3}] => (Allow) C:\Program Files (x86)\SHAREit\SHAREit\SHAREit.exe (LENOVO -> SHAREit Technologies Co.Ltd)
FirewallRules: [{23AE8401-3890-42F1-B68E-504DDC1D8F78}] => (Allow) C:\Program Files (x86)\SHAREit\SHAREit\SHAREit.exe (LENOVO -> SHAREit Technologies Co.Ltd)
FirewallRules: [{BBD218AE-578C-44E0-BCC7-36F0306BFD08}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{62DA1366-7CA4-40E0-9CE3-B5E3E238590B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{93EA769D-8772-4F0F-BEA2-8B3726F784BC}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{D1208D11-43CC-4E66-83FC-0206CC045C34}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{8F3F6835-1329-4BE9-B9B7-877F5CA0EF47}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{FDAEA9AE-A9D8-4F16-B885-686073DA6185}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:78.13 GB) (Free:16.01 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (04/05/2020 03:22:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6044,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
Error: (04/05/2020 03:14:43 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8680,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
Error: (04/05/2020 03:06:31 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5496,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
Error: (04/05/2020 02:38:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 74.0.1.7398 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 233c
Čas spuštění: 01d60b46aa0eb6ca
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
ID hlášení: d1d810f7-b7a9-4572-bb79-da630f8c682d
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (04/05/2020 02:19:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LSC.exe verze 3.4.3.13 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 27c
Čas spuštění: 01d60b41282febd9
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe
ID hlášení: 22757126-b57d-46b8-9006-d1e7941d5b10
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (04/05/2020 02:17:56 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 24256; požadovaná velikost: 31752.
Error: (04/05/2020 02:16:46 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 74.0.1.7398 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 748
Čas spuštění: 01d60b40f5471bef
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
ID hlášení: a124b763-eaf5-4d6a-bbf9-98e999fcb85d
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (04/04/2020 11:33:01 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4712,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
System errors:
=============
Error: (04/05/2020 02:58:02 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Správce stažených map přestala během spouštění reagovat.
Error: (04/05/2020 02:52:10 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [IKEv2] failed to initialize. Požadavek není podporován.
Error: (04/05/2020 02:52:10 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [rasgreeng.dll] failed to initialize. Uvedený modul nebyl nalezen.
Error: (04/05/2020 02:52:07 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba shpamsvc byla ukončena s následující chybou:
Katastrofální selhání
Error: (04/01/2020 07:30:38 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Správce stažených map přestala během spouštění reagovat.
Error: (04/01/2020 07:26:04 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [IKEv2] failed to initialize. Požadavek není podporován.
Error: (04/01/2020 07:26:04 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [rasgreeng.dll] failed to initialize. Uvedený modul nebyl nalezen.
Error: (04/01/2020 07:26:01 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba shpamsvc byla ukončena s následující chybou:
Katastrofální selhání
CodeIntegrity:
===================================
Date: 2020-04-05 14:56:43.262
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.229
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.192
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.158
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.123
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.086
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.052
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.018
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: LENOVO FCKT46AUS 12/16/2013
Motherboard: LENOVO
Processor: Intel(R) Pentium(R) CPU G3220 @ 3.00GHz
Percentage of memory in use: 85%
Total physical RAM: 4009.41 MB
Available physical RAM: 583.98 MB
Total Virtual: 7849.41 MB
Available Virtual: 4110.94 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:78.13 GB) (Free:16.01 GB) NTFS
Drive d: () (Fixed) (Total:74.54 GB) (Free:25.45 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive f: (Nový svazek) (Fixed) (Total:145.42 GB) (Free:18.34 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 3F23B61A)
Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=78.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=145.4 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================
Ran by Lenka (administrator) on BEDROOM (LENOVO 10DR000SMC) (05-04-2020 15:20:08)
Running from C:\Users\Lenka\Desktop
Loaded Profiles: Lenka (Available Profiles: Lenka)
Platform: Windows 10 Pro Version 1909 18363.720 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\94.4.384\QtWebEngineProcess.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(LENOVO -> Lenovo Group Limited) C:\Program Files (x86)\Lenovo\PowerMgr\SCHTASK.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\LenovoVantageService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\PowerMgr\PWMDBSVC.exe
(LITE-ON TECHNOLOGY CORP. -> ) C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Sks8821.exe
(LITE-ON TECHNOLOGY CORP. -> LITE-ON TECHNOLOGY CORP.) C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Skd8821.exe
(LITE-ON TECHNOLOGY CORP. -> LITEON) C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\skdh8821.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Skd8821] => C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Skd8821.exe [2209056 2015-12-30] (LITE-ON TECHNOLOGY CORP. -> LITE-ON TECHNOLOGY CORP.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [108216 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [Power Manager Startup Utility] => C:\Program Files (x86)\Lenovo\PowerMgr\DPMHost.exe [25632 2016-01-14] (LENOVO -> )
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6287872 2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [3029480 2018-05-09] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2017-05-09]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [File not signed]
Startup: C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\subst_mrp.lnk [2017-02-23]
ShortcutTarget: subst_mrp.lnk -> C:\Windows\System32\subst.exe (Microsoft Windows -> Microsoft Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {040FDA77-DB0E-406E-81CA-A9819979D947} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {09B36698-8E9D-4396-9A26-BE43286EA4AB} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {1D97E1C9-B6AC-4723-B8E6-72DAABA31990} - System32\Tasks\RtHDVBg_LENOVO_MICPKEY => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880 2015-04-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {22B46317-525B-4EEC-93E8-0899148C3760} - System32\Tasks\PMTask => C:\Program Files (x86)\Lenovo\PowerMgr\PwmIdTsv.exe [305184 2016-01-14] (LENOVO -> Lenovo Group Limited)
Task: {25E19283-31F3-4C7F-822B-9B38E738260A} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-03-11] (Adobe Inc. -> Adobe)
Task: {3123B4D5-4847-4190-9DF2-79E948CC3013} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952 2015-05-20] (Realtek Semiconductor Corp -> Realtek Semiconductor)
Task: {362C4925-92D0-4896-B371-7F5883BE0384} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
Task: {36C704F4-2CAD-4291-A10F-A5BBCEA41AC1} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [54424 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {3EFC1CC5-43F8-4EE3-8E0D-A20A76522C7A} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1321280 2017-02-14] (Lenovo -> Lenovo)
Task: {419FD30F-7319-480C-8E85-26FF71407534} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {44316A65-2382-447C-A8FA-B0ED70A37A51} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10175808 2017-02-14] (Lenovo -> Lenovo)
Task: {4C0307B3-1753-49AC-9207-16EE736CA435} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => "%windir%\system32\WindowsPowerShell\v1.0\PowerShell.exe" "powershell -executionpolicy bypass -file %ProgramData%\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\data\Maintenance.ps1"
Task: {5DB2B912-EE50-4A8B-BBD1-528F8AA36B15} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe [264000 2017-02-14] (Lenovo -> )
Task: {6B4D0000-3553-4738-BD3E-DCB41B1D119F} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {6C31FF28-8A65-4FB5-AE08-12CCB505C48E} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {6E1799A8-6E8A-497B-9771-8D86EF017185} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {86299671-5472-4A33-8799-91E6207C8D89} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe [1458232 2020-03-11] (Adobe Inc. -> Adobe)
Task: {96EEE2F9-8998-4731-9965-D90D39857C38} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-02-11] (Lenovo -> )
Task: {BCA89C5A-3EBC-4B3B-8171-ED18F47BB793} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-02-11] (Lenovo -> )
Task: {C098FE20-80F1-4519-AE4C-76C287CC39A0} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3325032 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
Task: {C4017EFB-CD7A-4C52-9FD0-27D2E5661051} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\cbc3baf0-3e87-49f7-b05b-35c5c06eae93 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {CDCD8773-5CF0-4DCA-915C-66BF13C086CC} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1639b22b-2f3b-43d5-8ccb-247269aa84ea => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {D0CC3771-A805-4623-9A8B-80B806EB6A9F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DDA27365-D559-4384-9DAA-F258171737CB} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b492b8a1-3991-458a-b7a1-e185091becea => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {EC98DFAF-205C-4159-9563-C429272B54D7} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)
Task: {EE6B87AF-22EC-450C-A325-EFDDA3D52BA9} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
Task: {F68811E3-5E20-42A7-96E7-65E92A766A3C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\10a88ef5-f8af-421f-a49b-868532f748c0 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
Task: {FEC9BEE3-E7B9-4206-8492-28BB24E47E76} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10175808 2017-02-14] (Lenovo -> Lenovo)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 217.195.165.131 217.195.160.10 8.8.8.8 192.168.21.3
Tcpip\..\Interfaces\{03ff05e7-0e27-4ee5-8cb9-2e813cab384f}: [DhcpNameServer] 217.195.165.131 217.195.160.10 8.8.8.8 192.168.21.3
Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-3879416617-1956560695-208975824-1000 -> {101A5455-76CE-4FD4-8BCF-DF6A28A727C0} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_27368
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-03-31] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-03-31] (McAfee, LLC -> McAfee, LLC)
FireFox:
========
FF DefaultProfile: zb544fgv.default-1492419140527-1561965889573
FF ProfilePath: C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573 [2020-04-05]
FF Homepage: Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573 -> hxxps://www.google.cz/
FF Session Restore: Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573 -> is enabled.
FF Extension: (Facebook Container) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573\Extensions\@contain-facebook.xpi [2020-03-06]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\Lenka\AppData\Roaming\Mozilla\Firefox\Profiles\zb544fgv.default-1492419140527-1561965889573\Extensions\firefox@ghostery.com.xpi [2020-01-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_344.dll [2020-03-11] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_344.dll [2020-03-11] (Adobe Inc. -> )
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-3879416617-1956560695-208975824-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-3879416617-1956560695-208975824-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5504928 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [345384 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-03-14] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [355872 2019-12-12] (Intel(R) pGFX -> Intel Corporation)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [80536 2020-02-11] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\LenovoVantageService.exe [18200 2019-07-25] (Lenovo -> Lenovo Group Ltd.)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273216 2017-02-14] (Lenovo -> Lenovo)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913640 2020-03-31] (McAfee, LLC -> McAfee, LLC)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [498152 2018-05-09] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R3 Power Manager DBC Service; C:\Program Files (x86)\Lenovo\PowerMgr\PWMDBSVC.EXE [60448 2016-01-14] (LENOVO -> Lenovo)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5929920 2020-03-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ShareItSvc; C:\Program Files (x86)\SHAREit\SHAREit\Shareit.Service.exe [31176 2016-01-20] (LENOVO -> SHAREit Technologies Co.Ltd)
R2 Sks8821; C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\Sks8821.exe [142624 2015-12-30] (LITE-ON TECHNOLOGY CORP. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11293936 2018-04-03] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-21] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37856 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [206120 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [234776 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [178968 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [60696 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2020-02-26] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42984 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175920 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109480 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 AswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [85056 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851808 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [459608 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [235696 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [317280 2020-04-01] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2020-02-21] (Microsoft Corporation) [File not signed]
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-23] (Realtek Semiconductor Corp -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [411712 2015-05-19] (Microsoft Windows Hardware Compatibility Publisher -> Realsil Semiconductor Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-21] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-05 15:20 - 2020-04-05 15:23 - 000023010 _____ C:\Users\Lenka\Desktop\FRST.txt
2020-04-05 15:18 - 2020-04-05 15:22 - 000000000 ____D C:\FRST
2020-04-05 15:18 - 2020-04-05 15:18 - 002281472 _____ (Farbar) C:\Users\Lenka\Desktop\FRST64.exe
2020-04-05 14:43 - 2020-04-05 14:43 - 000042200 _____ C:\Users\Lenka\Documents\cc_20200405_144330.reg
2020-04-02 23:39 - 2020-04-02 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2020-04-01 18:20 - 2020-04-01 18:20 - 000337048 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-04-01 18:20 - 2020-04-01 18:20 - 000235696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-04-01 18:20 - 2020-04-01 18:20 - 000175920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2020-04-01 14:20 - 2020-04-01 14:20 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2020-03-30 12:20 - 2020-03-30 12:20 - 000016844 _____ C:\WINDOWS\system32\results.xml
2020-03-30 10:42 - 2019-12-12 15:06 - 039512728 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 038561968 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 034518328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 029092744 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 019852680 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 015336424 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 013358712 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 011739528 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 008725896 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 005674888 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 005254024 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004921736 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004360072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004223248 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 004195152 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 003963272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 002363744 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001834032 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001792264 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001789640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001581960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001376256 _____ C:\WINDOWS\system32\iglhxa64.cpa
2020-03-30 10:42 - 2019-12-12 15:06 - 001169800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 001006112 _____ C:\WINDOWS\system32\igfxSDK.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000950304 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000946720 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000830871 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2020-03-30 10:42 - 2019-12-12 15:06 - 000696416 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000449056 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000431136 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000429960 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000407432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000380808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000379784 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000378400 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000309640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000300984 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000285976 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000264584 _____ C:\WINDOWS\system32\igfxCPL.cpl
2020-03-30 10:42 - 2019-12-12 15:06 - 000257416 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000246152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000231200 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000226184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v5107.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000218656 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000216456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000214560 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000214048 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000212168 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000194760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000184200 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000173528 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000172504 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000171632 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000164744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000157728 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2020-03-30 10:42 - 2019-12-12 15:06 - 000150072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000150072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000102792 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000095328 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000094600 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000092040 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000091232 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000086408 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000076168 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000045840 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000044194 _____ C:\WINDOWS\system32\iglhxc64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000043760 _____ C:\WINDOWS\system32\iglhxg64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043732 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043214 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000043143 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000042513 _____ C:\WINDOWS\system32\iglhxo64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000020360 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000020360 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000018824 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000018824 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000013704 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000013704 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2020-03-30 10:42 - 2019-12-12 15:06 - 000004858 _____ C:\WINDOWS\system32\iglhxs64.vp
2020-03-30 10:42 - 2019-12-12 15:06 - 000001125 _____ C:\WINDOWS\system32\iglhxa64.vp
2020-03-25 22:45 - 2020-03-25 22:53 - 000000000 ____D C:\Users\Lenka\Documents\FormatFactory
2020-03-25 22:45 - 2020-03-25 22:45 - 000000000 ____D C:\Users\Lenka\AppData\Local\FTMod
2020-03-25 22:44 - 2020-03-25 22:44 - 000000000 ____D C:\ProgramData\McAfee
2020-03-25 22:44 - 2020-03-25 22:44 - 000000000 ____D C:\Program Files\McAfee
2020-03-25 22:43 - 2020-03-25 22:43 - 000000948 _____ C:\Users\Lenka\Desktop\Format Factory.lnk
2020-03-25 22:43 - 2020-03-25 22:43 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2020-03-25 22:41 - 2020-03-25 22:43 - 000000000 ____D C:\Program Files\FormatFactory
2020-03-25 22:34 - 2020-03-25 22:34 - 000002197 _____ C:\Users\Lenka\Desktop\Speed Video Converter.lnk
2020-03-25 22:34 - 2020-03-25 22:34 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Speed Video Converter
2020-03-25 22:34 - 2020-03-25 22:34 - 000000000 ____D C:\speed_converter
2020-03-25 22:34 - 2020-03-25 22:34 - 000000000 ____D C:\Program Files (x86)\Speed Video Converter
2020-03-25 22:25 - 2020-03-25 22:39 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WonderFox Soft
2020-03-25 22:25 - 2020-03-25 22:25 - 000000000 ____D C:\Users\Lenka\Documents\WonderFox Soft
2020-03-25 22:24 - 2020-03-25 22:39 - 000000000 ____D C:\Program Files (x86)\WonderFox Soft
2020-03-14 10:27 - 2020-03-14 10:27 - 000000000 ____D C:\WINDOWS\Lenovo
2020-03-13 21:58 - 2020-03-13 21:58 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 006520776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 004563416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 001398584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-03-13 21:58 - 2020-03-13 21:58 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-03-13 21:58 - 2020-03-13 21:58 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-03-13 21:58 - 2020-03-13 21:58 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-03-12 02:53 - 2020-03-12 02:53 - 011607552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 002315680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 001555904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 001417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-03-12 02:53 - 2020-03-12 02:53 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 018027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 007755776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 007259648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 005911040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004855808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004580352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004348408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 004129648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003819520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003488768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 003243296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002956688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-03-12 02:52 - 2020-03-12 02:52 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-03-12 02:52 - 2020-03-12 02:52 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002259872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002180408 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002072664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001867816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001770552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001684992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001490640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001283600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-03-12 02:52 - 2020-03-12 02:52 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001273856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001218632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001190912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001108040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001088000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001080832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001031680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2020-03-12 02:52 - 2020-03-12 02:52 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddpchunk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000145208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CscMig.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2020-03-12 02:52 - 2020-03-12 02:52 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-03-12 02:52 - 2020-03-12 02:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-03-12 02:52 - 2020-03-12 02:52 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msauserext.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-03-12 02:52 - 2020-03-12 02:52 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-03-12 02:51 - 2020-03-12 02:51 - 006084344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 005112832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 003971808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 002875904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 002773568 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002740736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 002021888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001985104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001665416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001484600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001264128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001054376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 001007672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000935040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000776488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000769552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000734720 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000668296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000627216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000478792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2020-03-12 02:51 - 2020-03-12 02:51 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000213984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000165504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000136328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000133944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000102760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000042336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-03-12 02:51 - 2020-03-12 02:51 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe
2020-03-12 02:51 - 2020-03-12 02:51 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-03-12 02:51 - 2020-03-12 02:51 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 006436352 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 003799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 003552768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 003371720 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 002768440 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 002698040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 002087376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001999952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001972536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-03-12 02:50 - 2020-03-12 02:50 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001513040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 001396152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-03-12 02:50 - 2020-03-12 02:50 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001260480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\refsutil.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000983896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000929144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000877232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000796904 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000636848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000605896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-03-12 02:50 - 2020-03-12 02:50 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000353960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000320312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000221200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000120048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000098104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2020-03-12 02:50 - 2020-03-12 02:50 - 000089616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-03-12 02:50 - 2020-03-12 02:50 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-03-12 02:50 - 2020-03-12 02:50 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 007905784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 004622280 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 004471296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 004048896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003977216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003728896 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003587896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003260928 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 003143168 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002715648 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 002522112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002474496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002453504 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001823232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001762304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001657120 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001481216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 001180160 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001071184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000945384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000908504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000833616 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000642216 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2020-03-12 02:49 - 2020-03-12 02:49 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000522384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Acx01000.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000254776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000180232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000128312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Taskbar.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000066336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAProfileNotificationHandler.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000029712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2020-03-12 02:49 - 2020-03-12 02:49 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wci.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2020-03-12 02:49 - 2020-03-12 02:49 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2020-03-12 02:49 - 2020-03-12 02:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUserRes.dll
2020-03-12 02:48 - 2020-03-12 02:48 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000531768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-03-12 02:48 - 2020-03-12 02:48 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000250896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000224056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000222520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000183608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000174392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000141840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-03-12 02:48 - 2020-03-12 02:48 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000056632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-03-12 02:48 - 2020-03-12 02:48 - 000030008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-03-12 02:48 - 2020-03-12 02:48 - 000019984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-03-12 02:48 - 2020-03-12 02:48 - 000016912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-03-12 02:07 - 2020-02-11 06:48 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-03-12 02:07 - 2020-02-11 06:37 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-03-06 01:03 - 2020-03-17 11:27 - 000000000 _____ C:\WINDOWS\system32\last.dump
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-05 15:23 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-05 15:18 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-04-05 15:15 - 2020-02-21 21:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-04-05 15:15 - 2017-04-19 10:18 - 000000000 ____D C:\Users\Lenka\AppData\LocalLow\Mozilla
2020-04-05 14:59 - 2016-08-05 01:44 - 000000000 ____D C:\ProgramData\AVAST Software
2020-04-05 14:54 - 2015-03-29 18:11 - 000000000 __SHD C:\Users\Lenka\IntelGraphicsProfiles
2020-04-05 14:53 - 2017-08-27 14:11 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2020-04-05 14:52 - 2020-02-21 21:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-04-05 14:52 - 2017-05-07 18:10 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-05 14:52 - 2017-03-14 22:35 - 000000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2020-04-05 14:52 - 2017-03-14 22:35 - 000000918 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2020-04-05 14:51 - 2019-03-19 06:37 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2020-04-05 14:51 - 2016-08-06 11:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-04-05 14:46 - 2019-05-12 14:07 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Seznam.cz
2020-04-05 14:41 - 2020-02-12 17:08 - 000000000 ___DC C:\WINDOWS\Panther
2020-04-05 14:41 - 2018-09-12 00:20 - 000000000 ____D C:\Users\Lenka\AppData\Local\CrashDumps
2020-04-05 14:41 - 2016-08-05 01:49 - 000000000 ____D C:\Program Files (x86)\Google
2020-04-05 14:39 - 2020-02-21 21:37 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-04-05 14:39 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-04-05 14:27 - 2016-08-05 01:51 - 000000000 ____D C:\Users\Lenka\AppData\Local\Google
2020-04-05 14:14 - 2017-07-25 18:07 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\vlc
2020-04-04 12:27 - 2017-04-18 12:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-04-04 12:27 - 2016-08-05 01:44 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-04-03 16:13 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-03 16:13 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-04-02 23:43 - 2017-03-14 22:35 - 000000000 ____D C:\Program Files (x86)\Dropbox
2020-04-02 17:29 - 2020-02-21 21:37 - 000003816 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-04-02 17:29 - 2020-02-21 21:37 - 000003530 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2020-04-02 17:29 - 2020-02-21 21:37 - 000003436 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2020-04-02 17:29 - 2020-02-21 21:37 - 000003212 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2020-04-02 17:29 - 2020-02-21 21:37 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3879416617-1956560695-208975824-1000
2020-04-02 17:29 - 2020-02-21 21:37 - 000002336 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_LENOVO_MICPKEY
2020-04-02 17:29 - 2020-02-21 21:37 - 000002280 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2020-04-02 17:29 - 2020-02-21 21:37 - 000002236 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-04-02 17:29 - 2020-02-21 21:37 - 000002072 _____ C:\WINDOWS\system32\Tasks\PMTask
2020-04-02 17:29 - 2020-02-21 21:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2020-04-02 10:51 - 2017-06-02 09:52 - 000092920 _____ C:\Users\Lenka\AppData\Local\GDIPFONTCACHEV1.DAT
2020-04-01 18:21 - 2020-02-21 21:37 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-04-01 18:20 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-04-01 18:20 - 2019-02-26 01:54 - 000042984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-04-01 18:20 - 2019-02-26 01:54 - 000037856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2020-04-01 18:20 - 2017-11-18 00:16 - 000206120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000459608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000317280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000109480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-04-01 18:20 - 2016-08-05 01:47 - 000085056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-04-01 18:19 - 2019-02-26 01:54 - 000234776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-04-01 18:19 - 2019-02-26 01:54 - 000178968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-04-01 18:19 - 2019-02-26 01:54 - 000060696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-04-01 18:19 - 2016-08-05 01:47 - 000851808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-04-01 08:47 - 2020-02-21 21:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2020-03-30 12:23 - 2020-02-21 21:29 - 001606106 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-03-30 12:23 - 2019-03-19 13:57 - 000682526 _____ C:\WINDOWS\system32\perfh005.dat
2020-03-30 12:23 - 2019-03-19 13:57 - 000137244 _____ C:\WINDOWS\system32\perfc005.dat
2020-03-30 11:06 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-03-30 10:47 - 2017-08-27 14:11 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2020-03-30 10:42 - 2020-02-26 16:13 - 000000000 ____D C:\WINDOWS\TempInst
2020-03-30 10:42 - 2015-03-26 18:13 - 000000000 ____D C:\Intel
2020-03-25 21:11 - 2018-02-24 18:34 - 000000000 ____D C:\Users\Lenka\AppData\Local\JDownloader v2.0
2020-03-22 22:32 - 2020-02-21 21:18 - 000002398 _____ C:\Users\Lenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-22 22:32 - 2017-08-27 14:51 - 000000000 ___RD C:\Users\Lenka\OneDrive
2020-03-22 02:02 - 2020-02-21 21:18 - 000000000 ____D C:\Users\Lenka
2020-03-21 12:00 - 2016-08-06 11:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2020-03-17 10:28 - 2016-08-06 11:55 - 000001278 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2020-03-14 10:28 - 2016-06-05 11:52 - 000000000 ____D C:\Program Files\Lenovo
2020-03-14 02:04 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-03-14 02:04 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-03-13 10:05 - 2016-06-05 11:42 - 000000000 ____D C:\Program Files (x86)\Lenovo
2020-03-12 12:52 - 2016-08-05 01:47 - 000002123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2020-03-12 12:52 - 2016-08-05 01:47 - 000002111 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2020-03-12 12:52 - 2016-08-05 01:47 - 000002111 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2020-03-12 12:15 - 2018-01-29 01:39 - 000000000 ___RD C:\Users\Lenka\3D Objects
2020-03-12 12:15 - 2016-11-21 06:46 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-03-12 12:11 - 2020-02-21 21:12 - 000446160 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-03-12 03:22 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\setup
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-03-12 03:22 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-03-12 03:22 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing
2020-03-12 00:52 - 2016-05-28 10:28 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-03-12 00:45 - 2016-05-28 10:28 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-03-11 19:14 - 2019-11-14 02:14 - 009503800 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2020-03-11 19:14 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-03-11 19:14 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-03-08 12:46 - 2017-05-09 09:52 - 000000000 ____D C:\ProgramData\Adobe
2020-03-08 12:46 - 2016-05-25 22:20 - 000000000 ____D C:\Users\Lenka\AppData\Roaming\Adobe
==================== Files in the root of some directories ========
2019-11-16 14:39 - 2019-11-16 14:39 - 000007605 _____ () C:\Users\Lenka\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-04-2020
Ran by Lenka (05-04-2020 15:24:53)
Running from C:\Users\Lenka\Desktop
Windows 10 Pro Version 1909 18363.720 (X64) (2020-02-21 19:38:28)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3879416617-1956560695-208975824-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3879416617-1956560695-208975824-503 - Limited - Disabled)
Guest (S-1-5-21-3879416617-1956560695-208975824-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-3879416617-1956560695-208975824-1002 - Limited - Enabled)
Lenka (S-1-5-21-3879416617-1956560695-208975824-1000 - Administrator - Enabled) => C:\Users\Lenka
WDAGUtilityAccount (S-1-5-21-3879416617-1956560695-208975824-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.344 - Adobe)
Adobe Photoshop CS (HKLM-x32\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.20) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.20 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 20.2.2401 - Avast Software)
calibre (HKLM-x32\...\{5E07DBE4-E35F-4FF5-9944-0CA6D0A2704C}) (Version: 3.9.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.65 - Piriform)
CleanUp! (HKLM-x32\...\CleanUp!) (Version: - )
Dropbox (HKLM-x32\...\Dropbox) (Version: 94.4.384 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
FormatFactory 5.1.0.0 (HKLM-x32\...\FormatFactory) (Version: 5.1.0.0 - Free Time)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
HandBrake 1.0.7 (HKLM-x32\...\HandBrake) (Version: 1.0.7 - )
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.5107 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.022.00 - Lenovo)
Lenovo Slim USB Keyboard (HKLM\...\{494D80C4-3557-4D73-A153-65FE4B3ECDC3}) (Version: 1.19 - Lenovo)
Lenovo Solution Center (HKLM\...\{7BB9AAFD-3350-49C8-92D1-833AAFF9E74E}) (Version: 3.4.003.013 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0093 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 2.0.7.0 - Lenovo Group Ltd.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.87 - McAfee, LLC.)
MergeModule_x64 (HKLM\...\{12DCC5A7-0100-4433-B4FF-217A3C5DC83B}) (Version: 9.3.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{42251A8D-C4AE-4D3B-8A50-948CB98A0969}) (Version: 10.5.00 - Sony Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 74.0.1 (x64 cs) (HKLM\...\Mozilla Firefox 74.0.1 (x64 cs)) (Version: 74.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 74.0.1.7398 - Mozilla)
Mozilla Thunderbird 68.6.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 68.6.0 (x86 cs)) (Version: 68.6.0 - Mozilla)
MRP Aktualizační manažer (HKLM-x32\...\MRP NetAgent CZ_is1) (Version: 2.3.33 - MRP)
MRP Podpora registračních pokladen (HKLM-x32\...\Fiskal) (Version: - )
MRP Účto (HKLM-x32\...\MRP Ucto CZ_is1) (Version: 8.30.1007 - MRP)
MRP Základ vizuálního systému (HKLM-x32\...\MRP Zaklad) (Version: - )
PlayMemories Home (HKLM-x32\...\{D3981248-DBE7-4050-B666-A7FE5AFFC62C}) (Version: 5.5.01.05091 - Sony Corporation)
PMB_ModeEditor (HKLM-x32\...\{E95982CA-945F-41F2-B156-A603897AB242}) (Version: 10.3.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{7D3A0097-9E0E-4073-801C-295BBDAEAED8}) (Version: 10.5.01 - Sony Corporation) Hidden
Power Manager (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}_is1) (Version: 4.00.0009 - Lenovo Group Limited)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.31213 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7525 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 3.2.0.543 - Lenovo)
Sony USB Driver (HKLM-x32\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: - )
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.3629 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.0a - Ghisler Software GmbH)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2003.10.0_x64__k1h2ywk1493x8 [2020-03-25] (LENOVO INC.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3879416617-1956560695-208975824-1000_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => F:\Dropbox [2017-03-14 23:03]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files\FormatFactory\ShellEx_108.dll [2020-03-19] (Free Time) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [FormatFactoryShell] -> {A3888923-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files\FormatFactory\ShellEx_108.dll [2020-03-19] (Free Time) [File not signed]
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.37.0.dll [2020-04-01] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2019-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-04-01] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2020-03-14 10:35 - 2019-05-28 15:06 - 001021440 _____ () [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000061440 _____ (LITE-ON Corp.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\skhooks.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000054784 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\SKHidKbd.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000076288 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\skosd.dll
2015-12-08 18:06 - 2015-12-08 18:06 - 000138752 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files\Lenovo\Lenovo Slim USB Keyboard\SKUtil.DLL
2020-03-14 10:37 - 2019-10-27 06:36 - 001261568 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer trusted/restricted ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 09:24 - 2019-01-04 10:37 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lenka\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 217.195.165.131 - 217.195.160.10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "GrooveMonitor"
HKLM\...\StartupApproved\Run32: => "PMBVolumeWatcher"
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3879416617-1956560695-208975824-1000\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{FFF5C679-7113-4225-8AB2-523D18F154B3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{294A4FEE-BEF0-4653-9164-DCE5DABEB948}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{DE561FC1-1AB5-4B26-84FC-116889F451BE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{5B40D397-0DD6-4C44-B966-25F85161699C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{99D6DEDC-78A2-4AE2-A8C5-6F48251916C3}] => (Allow) C:\Program Files (x86)\SHAREit\SHAREit\SHAREit.exe (LENOVO -> SHAREit Technologies Co.Ltd)
FirewallRules: [{23AE8401-3890-42F1-B68E-504DDC1D8F78}] => (Allow) C:\Program Files (x86)\SHAREit\SHAREit\SHAREit.exe (LENOVO -> SHAREit Technologies Co.Ltd)
FirewallRules: [{BBD218AE-578C-44E0-BCC7-36F0306BFD08}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{62DA1366-7CA4-40E0-9CE3-B5E3E238590B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{93EA769D-8772-4F0F-BEA2-8B3726F784BC}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{D1208D11-43CC-4E66-83FC-0206CC045C34}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{8F3F6835-1329-4BE9-B9B7-877F5CA0EF47}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe (暇光软件科技(上海)有限公司 -> Free Time Co., Ltd.)
FirewallRules: [{FDAEA9AE-A9D8-4F16-B885-686073DA6185}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:78.13 GB) (Free:16.01 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (04/05/2020 03:22:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6044,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
Error: (04/05/2020 03:14:43 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8680,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
Error: (04/05/2020 03:06:31 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5496,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
Error: (04/05/2020 02:38:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 74.0.1.7398 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 233c
Čas spuštění: 01d60b46aa0eb6ca
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
ID hlášení: d1d810f7-b7a9-4572-bb79-da630f8c682d
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (04/05/2020 02:19:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LSC.exe verze 3.4.3.13 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 27c
Čas spuštění: 01d60b41282febd9
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe
ID hlášení: 22757126-b57d-46b8-9006-d1e7941d5b10
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (04/05/2020 02:17:56 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 24256; požadovaná velikost: 31752.
Error: (04/05/2020 02:16:46 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 74.0.1.7398 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 748
Čas spuštění: 01d60b40f5471bef
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
ID hlášení: a124b763-eaf5-4d6a-bbf9-98e999fcb85d
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (04/04/2020 11:33:01 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4712,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).
System errors:
=============
Error: (04/05/2020 02:58:02 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Správce stažených map přestala během spouštění reagovat.
Error: (04/05/2020 02:52:10 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [IKEv2] failed to initialize. Požadavek není podporován.
Error: (04/05/2020 02:52:10 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [rasgreeng.dll] failed to initialize. Uvedený modul nebyl nalezen.
Error: (04/05/2020 02:52:07 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba shpamsvc byla ukončena s následující chybou:
Katastrofální selhání
Error: (04/01/2020 07:30:38 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Správce stažených map přestala během spouštění reagovat.
Error: (04/01/2020 07:26:04 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [IKEv2] failed to initialize. Požadavek není podporován.
Error: (04/01/2020 07:26:04 PM) (Source: RemoteAccess) (EventID: 20063) (User: )
Description: Remote Access Connection Manager failed to start because the Protocol engine [rasgreeng.dll] failed to initialize. Uvedený modul nebyl nalezen.
Error: (04/01/2020 07:26:01 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba shpamsvc byla ukončena s následující chybou:
Katastrofální selhání
CodeIntegrity:
===================================
Date: 2020-04-05 14:56:43.262
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.229
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.192
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.158
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.123
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.086
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.052
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-05 14:56:43.018
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: LENOVO FCKT46AUS 12/16/2013
Motherboard: LENOVO
Processor: Intel(R) Pentium(R) CPU G3220 @ 3.00GHz
Percentage of memory in use: 85%
Total physical RAM: 4009.41 MB
Available physical RAM: 583.98 MB
Total Virtual: 7849.41 MB
Available Virtual: 4110.94 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:78.13 GB) (Free:16.01 GB) NTFS
Drive d: () (Fixed) (Total:74.54 GB) (Free:25.45 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive f: (Nový svazek) (Fixed) (Total:145.42 GB) (Free:18.34 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 3F23B61A)
Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=78.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=145.4 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================