Stránka 1 z 1

GoToAssist - prosím kontrolu

Napsal: 09 čer 2020 09:43
od roula
Zdravím, známá povolila připojení přes GoToAssist nějakému šmejdovi.
Prosím o kontrolu.
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020
Ran by Uživatel (administrator) on USER-PCP (Gigabyte Technology Co., Ltd. GA-78LMT-S2P) (09-06-2020 10:07:57)
Running from E:\VeronikaM
Loaded Profiles: Uživatel
Platform: Windows 10 Pro Version 1903 18362.836 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Uživatel\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12005.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Software602 a.s. -> Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(TeamViewer Germany GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-09-04] (Canon Inc. -> CANON INC.)
HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
HKLM\...\Windows x64\Print Processors\BJ Print Processor4: C:\Windows\System32\spool\prtprocs\x64\CNBPP4.DLL [84992 2015-12-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\Canon MP210 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD8S.DLL [27648 2007-03-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\OKHSPP3: C:\Windows\System32\spool\prtprocs\x64\OKHSPP3.DLL [62464 2013-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Oki Data Corporation)
HKLM\...\Print\Monitors\BJ Language Monitor4: C:\WINDOWS\system32\CNBLM4.DLL [267776 2015-12-19] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP210 series: C:\WINDOWS\system32\CNMLM8S.DLL [259584 2008-02-06] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\OKI HiperC Language Monitor7 x64: C:\WINDOWS\system32\OPDMN075.DLL [167936 2012-11-06] (Microsoft Windows Hardware Compatibility Publisher -> Oki Data Corporation)
HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [120200 2015-12-13] (pdfforge GmbH -> pdfforge GmbH)
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\WINDOWS\system32\602localmon.dll [36864 2015-07-14] (Windows (R) Win 7 DDK provider) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.97\Installer\chrmstp.exe [2020-06-05] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> C:\Program Files (x86)\Microsoft\Edge\Application\83.0.478.45\Installer\setup.exe [2020-06-07] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {035FFC22-19AC-4E0E-B82D-60562CCAE128} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1241013A-2C06-4B2F-BD55-750E60A8F3C6} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {12AE6583-3736-4856-AED4-0C3320EE1C0B} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {1631FFFE-9A90-4B98-B073-89EB0197027E} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [224160 2020-06-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {1AB4A5EE-FFC8-461B-989C-520B19969A1A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-13] (Google Inc -> Google Inc.)
Task: {1B5BA468-A0AC-4C3A-96A7-039DD63D5F29} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {2661A8CD-0ADE-417E-A4FD-73E6C0CB88A2} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {273F5082-FA2B-4F33-A466-88C01A9E5A8E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {2772E993-E2B5-401D-9960-B3ABEA351E67} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {2AA44B11-19DE-4CC2-8DF9-1B523CAE0976} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [224160 2020-06-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {49957704-5066-461C-A473-CE694C4186AD} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4A01C42C-47BD-4666-B958-0F96BDBB3E5A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {56012CD3-3815-4EA6-8BC8-DBB9F7BCFED1} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5D151CB3-6912-450C-A474-A3E400627F62} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {602B0445-06DC-4931-8E55-0BE7ED11FD13} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {672CDF70-1BD7-4896-9913-73AE5E79A6A5} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {67BE0086-C4DA-4BAE-B60E-10CF80AC9CC0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6B336128-CB56-4041-9EDE-0D7DB39EF530} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-13] (Google Inc -> Google Inc.)
Task: {71793F3F-BD68-48E0-A202-6F11075468B3} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {76BECFA8-48CC-479D-A7B3-875DBD721F7A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [971656 2020-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {89BDF688-1B39-4F8C-AABE-205311F0B0F2} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {8A82D5F1-4490-475A-8481-6F0C978350F6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {9B141644-7344-4489-A3B3-3CD267FF967F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {9F1F90C0-DF93-41A5-A117-8773360524B5} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {A07A19CA-03EA-46B5-B398-850DEB884212} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {A45CF970-8E65-436D-93DF-A0CC58A9F190} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A5E74D01-1624-4952-B3AB-2CB7B8E965DE} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B5D4D5CE-40A6-4AF3-A710-FB1374051B52} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BD106D39-E4F0-4B54-8A09-E2E20FC9A322} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {C88439C7-AFBC-4B0D-81CC-D0E556E70FEB} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C9F54AC8-CC88-483C-8710-EC6E020C7886} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {E229C6A9-3D98-4941-928D-FFCDC4B75B66} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {EDD608DA-7B51-4DD0-850C-6BD35C079B7F} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {EF5927D7-C1A2-41E0-AEFA-996261CA3D73} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [971656 2020-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {F0DCDF25-B8D9-4DDE-A33E-3D7A23AB8E01} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleaner Update.job => C:\Program Files\CCleaner\CCUpdate.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.100.0.100 10.10.10.10
Tcpip\..\Interfaces\{6e40b919-c2d1-4e3d-b877-6ce738ae95c0}: [DhcpNameServer] 10.100.0.100 10.10.10.10

Internet Explorer:
==================
HKU\S-1-5-21-1036842262-517912006-4171770057-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
SearchScopes: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2020-03-22] (Microsoft Corporation -> Microsoft Corporation)
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (Canon Inc. -> CANON INC.)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2020-03-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> No Name - {BA5DCD37-78BD-4392-9849-1177B90C833C} - No File
Toolbar: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (Canon Inc. -> CANON INC.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2017-07-18] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
DownloadDir: C:\Users\Uživatel\Downloads
Edge Session Restore: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> is enabled.
Edge DefaultProfile: Default
Edge Profile: C:\Users\Uživatel\AppData\Local\Microsoft\Edge\User Data\Default [2020-06-09]

FireFox:
========
FF DefaultProfile: g4yvcyfm.default
FF ProfilePath: C:\Users\Uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\g4yvcyfm.default [2020-06-09]
FF Homepage: Mozilla\Firefox\Profiles\g4yvcyfm.default -> hxxps://www.google.com/?trackid=sp-006
FF NewTab: Mozilla\Firefox\Profiles\g4yvcyfm.default -> about:newtab
FF SearchPlugin: C:\Users\Uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\g4yvcyfm.default\searchplugins\google-avast.xml [2015-12-19]
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) [File not signed]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-06-06] (Google Inc -> Google, Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-12-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll [2012-08-06] (Software602 a.s. -> Software602 a.s.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default [2020-06-09]
CHR Notifications: Default -> hxxps://www.hudy.cz; hxxps://www.ovbmail.cz; hxxps://www.papirnictvipavlik.cz
CHR HomePage: Default -> hxxps://www.seznam.cz/
CHR NewTab: Default -> Not-active:"chrome-extension://mallpejgeafdahhflmliiahjdpgbegpk/stubby.html"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Prezentace) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-13]
CHR Extension: (YouTube) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-13]
CHR Extension: (Adobe Acrobat) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-03-04]
CHR Extension: (Tabulky) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (FormApps Extension) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2017-06-16]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]
CHR Extension: (Gmail) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\Uživatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-27]
CHR HKU\S-1-5-21-1036842262-517912006-4171770057-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-1036842262-517912006-4171770057-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
CHR HKLM-x32\...\Chrome\Extension: [dkmjljdbbgogihjcapfhgkonfmccbffp]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s. -> Software602 a.s.)
R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [238080 2015-01-13] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3052120 2020-03-22] (Microsoft Corporation -> Microsoft Corporation)
S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [224160 2020-06-05] (Microsoft Corporation -> Microsoft Corporation)
S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [224160 2020-06-05] (Microsoft Corporation -> Microsoft Corporation)
S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\83.0.478.45\elevation_service.exe [1507208 2020-06-07] (Microsoft Corporation -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5930136 2020-04-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S2 PMBDeviceInfoProvider; "C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [11922944 2015-01-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [359936 2015-01-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2019-09-14] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-06-09 10:07 - 2020-06-09 10:08 - 000000000 ____D C:\FRST
2020-06-09 09:56 - 2020-06-09 09:59 - 000000000 ____D C:\AdwCleaner
2020-06-09 07:00 - 2020-06-09 09:59 - 000113818 _____ C:\WINDOWS\ntbtlog.txt
2020-06-09 07:00 - 2020-06-09 07:00 - 000002055 _____ C:\Users\Uživatel\Desktop\Avira PC Cleaner.lnk
2020-06-09 06:53 - 2020-06-09 06:53 - 000000300 ____H C:\WINDOWS\Tasks\CCleaner Update.job
2020-06-09 06:52 - 2020-06-09 06:52 - 000000714 _____ C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-06-09 06:52 - 2020-06-09 06:52 - 000000645 _____ C:\Users\Uživatel\Desktop\ESET Online Scanner.lnk
2020-06-09 06:52 - 2020-06-09 06:52 - 000000000 ____D C:\Users\Uživatel\AppData\Local\ESET
2020-06-09 06:51 - 2020-06-09 08:35 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2020-06-09 06:28 - 2020-06-09 06:40 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2020-06-08 17:50 - 2020-06-08 17:50 - 000000000 ____D C:\Users\Uživatel\AppData\Local\GoToAssist Remote Support Customer
2020-06-07 18:42 - 2020-06-07 18:42 - 000718870 _____ C:\Users\Uživatel\Desktop\Kontrola kotle.pdf
2020-06-07 06:38 - 2020-06-07 06:38 - 001775769 _____ C:\Users\Uživatel\Downloads\faktura_20200077.pdf
2020-06-06 09:23 - 2020-06-06 09:23 - 000086271 _____ C:\Users\Uživatel\Downloads\295206007_Kodydkova_Bara.pdf
2020-06-06 09:23 - 2020-06-06 09:23 - 000085983 _____ C:\Users\Uživatel\Downloads\295206008_Kodydkova_Eliska.pdf
2020-06-06 09:22 - 2020-06-06 09:22 - 000078105 _____ C:\Users\Uživatel\Downloads\295207013_Kodydkova_Bara.pdf
2020-06-06 09:08 - 2020-06-06 09:08 - 000098065 _____ C:\Users\Uživatel\Downloads\faktura_3220022075.pdf
2020-06-05 14:40 - 2020-06-07 06:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-06-05 14:40 - 2020-06-07 06:32 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-06-05 14:39 - 2020-06-06 09:04 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-06-05 14:39 - 2020-06-06 09:04 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-06-04 12:38 - 2020-05-21 12:37 - 000337560 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-06-01 20:33 - 2020-06-01 20:33 - 000092761 _____ C:\Users\Uživatel\Downloads\00000000018383901095_236644152_20200531_5_MCZS.pdf
2020-06-01 05:29 - 2020-06-01 05:29 - 001099521 _____ C:\Users\Uživatel\Downloads\zadost-o-poskytnuti-dotace (3).pdf
2020-06-01 05:29 - 2020-06-01 05:29 - 001099521 _____ C:\Users\Uživatel\Downloads\zadost-o-poskytnuti-dotace (2).pdf
2020-05-30 07:31 - 2020-05-30 07:31 - 000082960 _____ C:\Users\Uživatel\Downloads\Švihov_RD_vytápění_výkaz_výměr.xlsx
2020-05-26 08:46 - 2020-05-26 08:46 - 000011523 _____ C:\Users\Uživatel\Downloads\Gondeková (1).xlsx
2020-05-26 08:45 - 2020-05-26 08:45 - 000014436 _____ C:\Users\Uživatel\Downloads\Gondeková.xlsx
2020-05-24 20:42 - 2020-05-24 20:42 - 000015434 _____ C:\Users\Uživatel\Downloads\učivo_20.-_25.duben (1).odt
2020-05-24 20:42 - 2020-05-24 20:42 - 000015035 _____ C:\Users\Uživatel\Downloads\týden_14.-_17.4 (2).odt
2020-05-24 20:39 - 2020-05-24 20:39 - 000014023 _____ C:\Users\Uživatel\Downloads\Úkoly_27.4_-30.4..odt
2020-05-23 07:54 - 2020-05-23 07:54 - 000322315 _____ C:\Users\Uživatel\Downloads\Akční_ceník_NIBE_ČR_4.2020.xlsx
2020-05-23 07:53 - 2020-05-23 07:53 - 000019412 _____ C:\Users\Uživatel\Downloads\Akční_ceny_sestav_AMS10_-_ACVM270.xlsx
2020-05-23 07:52 - 2020-05-23 07:52 - 000020298 _____ C:\Users\Uživatel\Downloads\Akční_ceny_sestav_AMS10_-_OKC250_NTRHP.xlsx
2020-05-22 06:42 - 2020-05-22 06:42 - 000170656 _____ C:\Users\Uživatel\Downloads\Žádost_Kotlíkovka (1).zfo
2020-05-22 06:36 - 2020-05-22 06:36 - 000000164 _____ C:\Users\Uživatel\Downloads\priloha (20)
2020-05-22 06:36 - 2020-05-22 06:36 - 000000164 _____ C:\Users\Uživatel\Downloads\priloha (19)
2020-05-21 12:37 - 2020-05-21 12:37 - 000235488 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw016ecc7ffdb61fef.tmp
2020-05-21 12:37 - 2020-05-21 12:37 - 000175704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswda237cebde95350c.tmp
2020-05-19 20:40 - 2020-05-19 20:40 - 000010801 _____ C:\Users\Uživatel\Downloads\učivo_17._-_22.5..odt
2020-05-18 10:18 - 2020-05-18 10:18 - 000078935 _____ C:\Users\Uživatel\Downloads\REGISTRACE_SUBJEKTU (3).pdf
2020-05-18 10:11 - 2020-05-18 10:11 - 000078949 _____ C:\Users\Uživatel\Downloads\REGISTRACE_SUBJEKTU (2).pdf
2020-05-14 08:20 - 2020-05-14 08:20 - 000000000 ___HD C:\OneDriveTemp
2020-05-13 20:46 - 2020-05-13 20:46 - 025444864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 022638592 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 019851264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 018029056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 007822888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 007756800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 007267840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 007011840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 006291456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 005911040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 005098352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 004858368 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 004612608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 003822080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 003513856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-05-13 20:46 - 2020-05-13 20:46 - 002190648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 002073176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001719336 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001637376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001616912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001559040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001556200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001539072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 001525760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001497416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001417760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001386296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001344000 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001336320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001306112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001151824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001099600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001047568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 001034752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000959800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000944640 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000852992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000827192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000816952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000747832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000743224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000666424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000649016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000643584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000540200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000502784 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000494904 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpshell.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000396088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinit.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000345016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000301064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000299064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000273744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbroker.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000262848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000259384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000231224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000230416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpRelayTransport.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\tspubwmi.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi32.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-05-13 20:46 - 2020-05-13 20:46 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000181560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000172856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000139952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityRuntime.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwclientres.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbrokerAx.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000109056 _____ C:\WINDOWS\system32\RDVGHelper.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000105840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MixedRealityRuntime.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkspbrokerAx.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsign.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSSessionUX.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSa.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSa.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000037688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncAppvPublishingServer.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaProxy.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaProxy.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000022032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScriptRunner.exe
2020-05-13 20:46 - 2020-05-13 20:46 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\appvetwstreamingux.dll
2020-05-13 20:46 - 2020-05-13 20:46 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 025902080 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 014819328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 009929528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 009339392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 007902912 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 007257816 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 006710272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 006525936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 006435328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 006168576 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 006082808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 005945856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 005757872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 005340568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 005280192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 005111296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 004565456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 004012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 003974376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 003807232 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 003747328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 003655680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 003371416 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 002854400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002798592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 002774088 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002769000 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-05-13 20:45 - 2020-05-13 20:45 - 002736640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002576896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002465792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002354688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002259664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002157056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002087168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 002072576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001999968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001990576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001975808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001952872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001934824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001825280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001737216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001686016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001665720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001656904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001654952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001646552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001536512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001510912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001505592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001492480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001486336 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 001477112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpsharercom.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001461760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001428480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001406464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001397560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001373184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001370112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001357312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001336832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001306424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001288648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001282560 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001250816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpsharercom.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001245696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001214264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001213440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001195008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001184256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001178608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001158144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001150784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001132544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001085752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 001068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001011712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001007104 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000994304 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000979264 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000945192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000943640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000915192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000911872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000896000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000894016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000891544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000891392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000888352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000881664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000879064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000861696 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000859944 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000847872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000847168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000843576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000813568 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000807936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000801832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000796904 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000792808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000778552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000777840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000776792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000752584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000748544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000742200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000716800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000716312 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000710656 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000706544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000693672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000685368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000683848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000683288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000676072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000673296 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000672944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000655360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000650240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000628024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000622592 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000602224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000600064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000594472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000592944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000581544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000580608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000573952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000572200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000568136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000564480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000553664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000547992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000543824 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000539184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000524208 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000523264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000518456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000501200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-05-13 20:45 - 2020-05-13 20:45 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000467952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000466344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000460200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000453944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000451584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneOm.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000441856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000441584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000435712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000405424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000390968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000386320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000375520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneOm.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000333128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000325432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000311096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000310928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TaskApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposerFramework.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000268008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000266552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000260328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000246584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchangeHost.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000245336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-05-13 20:45 - 2020-05-13 20:45 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000221496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SwitcherDataModel.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000199992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000197432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUxClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000165176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000152416 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000142760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\socialapis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Compression.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Haptics.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000132712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Display.BrightnessOverride.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000124504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleAPIs.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoipRT.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\socialapis.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000107616 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000090936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.Preview.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000088280 _____ (Microsoft Corporation) C:\WINDOWS\system32\coloradapterclient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PeopleAPIs.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbussdapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRBroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbussdapi.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000068408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Printers.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coloradapterclient.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000058880 _____ C:\WINDOWS\system32\runexehelper.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000058696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys
2020-05-13 20:45 - 2020-05-13 20:45 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ffbroker.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000050560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-05-13 20:45 - 2020-05-13 20:45 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\npmproxy.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmsprep.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-05-13 20:45 - 2020-05-13 20:45 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-05-13 20:44 - 2020-05-13 20:44 - 017791488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 007297536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 006232568 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 004624880 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 004005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 003986944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 003581752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 003109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 002717184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 002504440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002256384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002150232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 002060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001943040 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001786880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001766400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001745208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001722880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001498624 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001413712 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001391104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001385176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001346048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001333248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001270784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 001098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001027816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 001007928 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000999616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000957056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000916768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000819696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000793088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000768000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000738304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000732160 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000637480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2020-05-13 20:44 - 2020-05-13 20:44 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000614400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRClient.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000410608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000399672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000339824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000318680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000273208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000250696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000238904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000231912 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Haptics.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Compression.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoipRT.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000147776 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TelephonyInteractiveUser.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.Preview.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRBroker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000069704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000060432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000059192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbGDCoInstaller.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveTask.exe
2020-05-13 20:44 - 2020-05-13 20:44 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-05-13 20:44 - 2020-05-13 20:44 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-05-13 20:44 - 2020-05-13 20:44 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-05-13 08:11 - 2020-05-13 08:11 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2020-05-13 08:11 - 2020-05-13 08:11 - 000002241 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk
2020-05-13 08:11 - 2020-05-13 08:11 - 000000000 ____D C:\Program Files\Google
2020-05-12 22:16 - 2020-05-12 22:16 - 002842230 _____ C:\Users\Uživatel\Downloads\canon-pixma-mp210-series-users-manual-240070.pdf
2020-05-12 22:10 - 2020-05-12 22:09 - 058380288 _____ C:\Users\Uživatel\Downloads\2.hfs
2020-05-12 22:10 - 2020-05-12 22:09 - 000032256 _____ C:\Users\Uživatel\Downloads\1.Apple_partition_map
2020-05-12 22:10 - 2020-05-12 22:09 - 000005120 _____ C:\Users\Uživatel\Downloads\3.free
2020-05-12 22:10 - 2020-05-12 22:09 - 000000512 _____ C:\Users\Uživatel\Downloads\0.ddm
2020-05-12 22:09 - 2020-05-12 22:09 - 044031618 _____ C:\Users\Uživatel\Downloads\mp210sosmosx110aen.dmg
2020-05-12 21:56 - 2020-05-12 21:56 - 000002418 _____ C:\Users\Public\Desktop\MP210 series On-screen Manual.lnk
2020-05-12 21:56 - 2020-05-12 21:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP210 series Manual
2020-05-12 21:55 - 2020-05-12 21:56 - 011167064 _____ C:\Users\Uživatel\Downloads\mp210sosmwin110en.exe
2020-05-12 08:45 - 2020-05-12 08:45 - 000233713 _____ C:\Users\Uživatel\Downloads\HK 200 S priprava elektro (9).pdf
2020-05-12 08:42 - 2020-05-12 08:42 - 008058345 _____ C:\Users\Uživatel\Downloads\ams 10_instalacni_331939-3.pdf
2020-05-12 08:42 - 2020-05-12 08:42 - 005402662 _____ C:\Users\Uživatel\Downloads\HK_200S_instalacni a uzivatelsky 14-02-2017_cze (2).pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-06-09 10:07 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-06-09 10:04 - 2019-08-17 09:03 - 001606106 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-06-09 10:04 - 2019-03-19 13:57 - 000682526 _____ C:\WINDOWS\system32\perfh005.dat
2020-06-09 10:04 - 2019-03-19 13:57 - 000137244 _____ C:\WINDOWS\system32\perfc005.dat
2020-06-09 10:04 - 2015-12-13 14:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-06-09 10:02 - 2019-03-27 13:36 - 000000000 ____D C:\Users\Uživatel\AppData\Local\AVAST Software
2020-06-09 10:02 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-06-09 09:59 - 2019-08-17 09:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-06-09 09:59 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-06-09 09:59 - 2016-02-09 11:58 - 000000000 ____D C:\Program Files (x86)\Sony
2020-06-09 09:11 - 2019-08-17 08:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-06-09 08:35 - 2019-08-17 08:55 - 000354024 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-06-09 06:54 - 2019-08-06 18:56 - 000000000 ___DC C:\WINDOWS\Panther
2020-06-09 06:54 - 2019-04-04 20:52 - 000000000 ____D C:\Users\Uživatel\AppData\Local\CrashDumps
2020-06-09 06:54 - 2015-12-29 15:09 - 000000000 ____D C:\Users\Uživatel\AppData\Local\PDFCreator
2020-06-09 06:53 - 2015-12-19 19:30 - 000000000 ____D C:\TEMP
2020-06-09 06:51 - 2015-12-19 19:23 - 000000000 ____D C:\WINDOWS\Corel
2020-06-09 06:40 - 2016-07-26 21:00 - 000000000 ____D C:\Data-KA10
2020-06-09 06:40 - 2015-12-13 14:56 - 000000000 ____D C:\ProgramData\Skype
2020-06-09 06:38 - 2015-12-13 15:01 - 000000000 ____D C:\ProgramData\AVAST Software
2020-06-09 06:26 - 2015-12-19 19:40 - 000000000 ____D C:\AdmWin
2020-06-08 19:05 - 2019-08-17 08:57 - 000000000 ____D C:\Users\Uživatel
2020-06-08 09:10 - 2019-08-17 09:06 - 000004202 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{2D143B6C-C497-48FE-9C5A-55E178613134}
2020-06-08 07:56 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-06-08 07:56 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-06-08 07:55 - 2015-12-07 19:31 - 000000000 ___RD C:\Users\Uživatel\OneDrive
2020-06-07 19:54 - 2019-11-01 14:30 - 000000000 ____D C:\Users\Uživatel\Desktop\eliska
2020-06-07 13:32 - 2019-08-07 17:09 - 000000000 ____D C:\Users\Uživatel\Desktop\Bara
2020-06-05 14:51 - 2016-03-04 10:33 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-06-05 14:51 - 2015-12-13 14:51 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-06-05 14:51 - 2015-12-13 14:51 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-06-05 14:47 - 2019-08-17 09:06 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-06-05 14:47 - 2019-08-17 09:06 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-06-05 14:47 - 2019-08-17 09:06 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-06-05 14:47 - 2019-08-17 09:06 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1036842262-517912006-4171770057-1000
2020-06-04 19:38 - 2017-12-11 09:52 - 000000000 ____D C:\Users\Uživatel\AppData\Local\Packages
2020-06-04 13:16 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-06-04 12:38 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-06-03 17:51 - 2015-12-13 14:00 - 000000000 ____D C:\Program Files\Microsoft Office 15
2020-06-02 08:37 - 2019-08-17 08:57 - 000002370 _____ C:\Users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-31 06:02 - 2017-06-16 08:50 - 000000000 ____D C:\Program Files\UNP
2020-05-28 16:38 - 2019-03-27 13:35 - 000319112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswc2d4452452cc78f6.tmp
2020-05-26 08:19 - 2015-12-19 17:59 - 000000000 ____D C:\Users\Uživatel\Desktop\Kotlíková dotace PK
2020-05-21 12:37 - 2020-04-07 20:47 - 000501472 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswca6e22ce8d9937ff.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000851592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2470255f64f624e3.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000460992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw1b57ea2bee26cc58.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000234560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw8a77d20af02b2e17.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000205880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswa7ce30253ea162b9.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000178760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw8a1360dcc3ec9200.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000109272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswabe664fe7aeaf002.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000084856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw87fd0947b1638959.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000060480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw520d19e6992abea8.tmp
2020-05-21 12:37 - 2019-03-27 13:35 - 000042784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswc74ef122ddb1cf75.tmp
2020-05-14 07:56 - 2017-10-18 22:28 - 000000000 ___RD C:\Users\Uživatel\3D Objects
2020-05-14 07:56 - 2015-09-10 07:44 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-05-13 23:18 - 2019-03-19 13:59 - 000000000 ___SD C:\WINDOWS\system32\AppV
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\TextInput
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-05-13 23:18 - 2019-03-19 06:52 - 000000000 ____D C:\PerfLogs
2020-05-13 20:52 - 2015-12-07 21:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-05-13 20:50 - 2015-12-07 21:55 - 120636720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-05-13 20:44 - 2019-08-17 08:59 - 002874880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-05-12 21:56 - 2015-12-19 18:13 - 000000000 ____D C:\Program Files (x86)\Canon
2020-05-12 08:12 - 2017-12-19 09:52 - 000000000 ____D C:\Users\Uživatel\AppData\Local\PlaceholderTileLogoFolder

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: GoToAssist - prosím kontrolu

Napsal: 09 čer 2020 09:44
od roula
Addition

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020
Ran by Uživatel (09-06-2020 10:10:49)
Running from E:\VeronikaM
Windows 10 Pro Version 1903 18362.836 (X64) (2019-08-17 07:06:31)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1036842262-517912006-4171770057-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1036842262-517912006-4171770057-503 - Limited - Disabled)
Guest (S-1-5-21-1036842262-517912006-4171770057-501 - Limited - Disabled)
Uživatel (S-1-5-21-1036842262-517912006-4171770057-1000 - Administrator - Enabled) => C:\Users\Uživatel
WDAGUtilityAccount (S-1-5-21-1036842262-517912006-4171770057-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)
AdmWin 2.94 (HKLM-x32\...\AdmWin_is1) (Version: - AdmWin)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20067 - Adobe Systems Incorporated)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.6.0.0 - Canon Inc.)
Canon MP Navigator EX 1.0 (HKLM-x32\...\MP Navigator EX 1.0) (Version: - )
Canon MP210 series (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP210_series) (Version: - )
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.2.0 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.2.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.2.1 - Canon Inc.)
Canon Utilities Solution Menu (HKLM-x32\...\CanonSolutionMenu) (Version: - )
eModel - MetLife (HKU\S-1-5-21-1036842262-517912006-4171770057-1000\...\d69422e246fffff6) (Version: 2.1.0.0 - MetLife)
FormApps Signing Extension (HKLM-x32\...\{ACA43D91-8B42-4D42-8C8B-A893BD6AA40D}) (Version: 2.8.2.28 - Software602 a.s.)
GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team)
Google Earth Pro (HKLM\...\{B6EAFE41-5723-40EB-869B-4AF44CA17B35}) (Version: 7.3.3.7699 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 83.0.4103.97 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.0.2.6 - PandoraTV)
MergeModule_x64 (HKLM\...\{12DCC5A7-0100-4433-B4FF-217A3C5DC83B}) (Version: 9.3.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{DD7721BB-CF1C-4DC9-AD87-8D5FB75413B7}) (Version: 9.3.00 - Sony Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 83.0.478.45 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.129.31 - )
Microsoft Office 2013 pro podnikatele - cs-cz (HKLM\...\HomeBusinessRetail - cs-cz) (Version: 15.0.5241.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1036842262-517912006-4171770057-1000\...\OneDriveSetup.exe) (Version: 20.064.0329.0008 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
NIBE DIM (HKU\S-1-5-21-1036842262-517912006-4171770057-1000\...\32d77fb9e2fa60e2) (Version: 1.25.0.6 - NIBE DIM)
Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5241.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.5241.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0405-0000-0000000FF1CE}) (Version: 15.0.5241.1000 - Microsoft Corporation) Hidden
OKI Network Extension (HKLM-x32\...\{38ADB9A6-798C-11D6-A855-00105A80791C}) (Version: 1.00.000 - Okidata)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.2.2 - pdfforge)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PMB_ModeEditor (HKLM-x32\...\{D5318740-B088-4B1A-B6A8-1F90A172CCD1}) (Version: 9.3.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{E7FDF11C-12BB-4D6F-9B6D-F8E488C776DC}) (Version: 10.1.00 - Sony Corporation) Hidden
Software602 Form Filler (HKLM-x32\...\{04703FE3-1A8B-4467-88E6-3D6A1A0FA65A}) (Version: 4.70 - Software602 a.s.)
TeamViewer 9 Host (HKLM-x32\...\TeamViewer 9 Host) (Version: 9.0.252029 - TeamViewer)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)

Packages:
=========
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-09-22] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2018-09-13] (Microsoft Corporation)
Facebook -> C:\Program Files\WindowsApps\Facebook.Facebook_186.2619.19263.0_x86__8xx8rvfyw5nnt [2019-09-14] (Facebook Inc)
Flat Tube -> C:\Program Files\WindowsApps\49278roseapp.FlatTube_19.6.22.0_x64__bk2dxc6chhett [2019-06-24] (roseapp) [MS Ad]
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_520.3.60.0_x64__8xx8rvfyw5nnt [2020-05-21] (Facebook Inc)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.5012.0_x64__8wekyb3d8bbwe [2020-05-04] (Microsoft Studios) [MS Ad]
Microsoft Zprávy -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.39.21501.0_x64__8wekyb3d8bbwe [2020-06-01] (Microsoft Corporation)
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2015-12-07] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2011-04-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2011-04-19] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Uživatel\AppData\Local\Microsoft\Edge\User Data\Default\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\Uživatel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\Uživatel\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2011-04-19 01:35 - 2011-04-19 01:35 - 000088064 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-10-17 20:16 - 2015-07-14 12:27 - 000036864 _____ (Windows (R) Win 7 DDK provider) [File not signed] C:\WINDOWS\System32\602localmon.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2017-03-17 10:40 - 000000842 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1036842262-517912006-4171770057-1000\Control Panel\Desktop\\Wallpaper ->
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{15F3E029-65DF-41AD-A657-DB2E6416718C}] => (Allow) C:\Program Files (x86)\Common Files\soft602\langserv.exe (Software602 a.s. -> ) [File not signed]
FirewallRules: [{92408D6D-3C98-4125-98B1-B2C6BAD41525}] => (Allow) C:\Program Files (x86)\Common Files\soft602\langserv.exe (Software602 a.s. -> ) [File not signed]
FirewallRules: [{D4B51A0C-B2C7-4E3D-A561-20D49C627F53}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{86B95898-CA43-41A4-A29D-5F9BCA4E7F8B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{95075EDA-EE6F-4843-B9B0-541EA836F80B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{BC2F85DE-77E8-440F-9309-91D2EA0B6CEF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{3DF90D2F-6630-4ED3-84DD-9FDFC610600A}C:\ingapps\nn_ekalkulacka_ovb_cz\jre1.8.0_111\bin\javaw.exe] => (Allow) C:\ingapps\nn_ekalkulacka_ovb_cz\jre1.8.0_111\bin\javaw.exe
FirewallRules: [UDP Query User{7028A0FA-A3A7-4F09-88C7-B4D939A8DAC2}C:\ingapps\nn_ekalkulacka_ovb_cz\jre1.8.0_111\bin\javaw.exe] => (Allow) C:\ingapps\nn_ekalkulacka_ovb_cz\jre1.8.0_111\bin\javaw.exe
FirewallRules: [{6126A635-F607-40D8-B41B-424729E33C27}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{3EA9D2BB-3D77-4870-B723-BE95CE626339}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{7502D0BD-D773-44EB-87C8-55ECA3610670}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{15BF6D91-98E9-48FA-B8CE-60A13E0BC788}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{0125D710-186B-4D4C-854B-BCBDAFE6118A}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{043689B3-B2DD-4420-B766-7992F3A792E5}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{1F0C1A2E-8A49-4A10-A974-4B35326C63FC}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{14141171-9216-439E-B128-83B7C3A0C841}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer GmbH)
FirewallRules: [{445F0192-0727-4E28-9345-DAA9D564B58D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{06E38BAB-B46A-47E0-91C3-87F8E0247E39}] => (Allow) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:111.19 GB) (Free:61.57 GB) (55%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (06/09/2020 10:09:22 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4060,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (06/09/2020 10:02:07 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastSvc.exe, identifikátor PID: 3040, identifikátor PID ProfSvc: 1356.

Error: (06/09/2020 06:47:49 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10464,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (06/09/2020 06:37:23 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3600,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (06/09/2020 06:27:10 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11172,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (06/08/2020 09:29:11 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6764,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (06/08/2020 09:18:58 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3296,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (06/08/2020 09:00:37 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2204,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (06/09/2020 09:59:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba PMBDeviceInfoProvider neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (06/09/2020 09:59:18 AM) (Source: DCOM) (EventID: 10010) (User: USER-PCP)
Description: Server {9AA46009-3CE0-458A-A354-715610A075E6} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/09/2020 09:59:16 AM) (Source: DCOM) (EventID: 10005) (User: USER-PCP)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Není k dispozici za účelem spuštění serveru:
{E48EDA45-43C6-48E0-9323-A7B2067D9CD5}

Error: (06/09/2020 09:59:16 AM) (Source: DCOM) (EventID: 10005) (User: USER-PCP)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Není k dispozici za účelem spuštění serveru:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (06/09/2020 09:59:16 AM) (Source: DCOM) (EventID: 10005) (User: USER-PCP)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Není k dispozici za účelem spuštění serveru:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (06/09/2020 09:59:16 AM) (Source: DCOM) (EventID: 10005) (User: USER-PCP)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Není k dispozici za účelem spuštění serveru:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (06/09/2020 09:59:16 AM) (Source: DCOM) (EventID: 10005) (User: USER-PCP)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Není k dispozici za účelem spuštění serveru:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (06/09/2020 09:59:16 AM) (Source: DCOM) (EventID: 10005) (User: USER-PCP)
Description: Služba DCOM zjistila chybu 1084 při pokusu o spuštění služby WSearch s argumenty Není k dispozici za účelem spuštění serveru:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}


Windows Defender:
===================================
Date: 2020-06-09 10:05:10.737
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.291.400.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2020-06-09 10:05:10.737
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.291.400.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2020-06-09 10:05:10.737
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.291.400.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2020-06-09 10:05:10.729
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.291.400.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2020-06-09 10:05:10.728
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.291.400.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15800.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

CodeIntegrity:
===================================

Date: 2020-06-09 10:02:58.435
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-06-09 10:02:57.979
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-06-09 10:00:58.784
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-09 10:00:58.750
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-09 10:00:58.715
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-09 10:00:58.680
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-09 10:00:58.645
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-09 10:00:58.608
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Award Software International, Inc. F2 03/20/2012
Motherboard: Gigabyte Technology Co., Ltd. GA-78LMT-S2P
Processor: AMD FX(tm)-4300 Quad-Core Processor
Percentage of memory in use: 32%
Total physical RAM: 7661.53 MB
Available physical RAM: 5168.43 MB
Total Virtual: 15341.53 MB
Available Virtual: 13058.95 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.19 GB) (Free:61.57 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:776.36 GB) NTFS
Drive e: (VX2POEM_CS) (Removable) (Total:14.88 GB) (Free:9.93 GB) NTFS

\\?\Volume{1dab4af9-9c14-11e5-8aca-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.05 GB) NTFS
\\?\Volume{46049616-0000-0000-0000-c0d21b000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 46049616)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=508 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 80D9666F)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 14.9 GB) (Disk ID: A49E8346)
No partition Table on disk 2.

==================== End of Addition.txt =======================

Re: GoToAssist - prosím kontrolu

Napsal: 09 čer 2020 13:31
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 05:41
od roula
Zdavím a děkuji předem!

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 05:42
od roula
# -------------------------------
# Malwarebytes AdwCleaner 8.0.5.0
# -------------------------------
# Build: 05-25-2020
# Database: 2020-05-19.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 06-10-2020
# Duration: 00:00:20
# OS: Windows 10 Pro
# Scanned: 31863
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.


AdwCleaner[S00].txt - [7987 octets] - [09/06/2020 09:58:03]
AdwCleaner[C00].txt - [7195 octets] - [09/06/2020 09:59:15]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 09:26
od Rudy
Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
FirewallRules: [{86B95898-CA43-41A4-A29D-5F9BCA4E7F8B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{95075EDA-EE6F-4843-B9B0-541EA836F80B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{BC2F85DE-77E8-440F-9309-91D2EA0B6CEF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {1AB4A5EE-FFC8-461B-989C-520B19969A1A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-13] (Google Inc -> Google Inc.)
Task: {6B336128-CB56-4041-9EDE-0D7DB39EF530} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-13] (Google Inc -> Google Inc.)
HKU\S-1-5-21-1036842262-517912006-4171770057-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
Toolbar: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> No Name - {BA5DCD37-78BD-4392-9849-1177B90C833C} - No File
FF Homepage: Mozilla\Firefox\Profiles\g4yvcyfm.default -> hxxps://www.google.com/?trackid=sp-006
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Drivers\asw016ecc7ffdb61fef.tmp
C:\WINDOWS\system32\Drivers\aswda237cebde95350c.tmp
C:\WINDOWS\system32\Drivers\aswca6e22ce8d9937ff.tmp
C:\WINDOWS\system32\Drivers\asw2470255f64f624e3.tmp
C:\WINDOWS\system32\Drivers\asw1b57ea2bee26cc58.tmp
C:\WINDOWS\system32\Drivers\asw8a77d20af02b2e17.tmp
C:\WINDOWS\system32\Drivers\aswa7ce30253ea162b9.tmp
C:\WINDOWS\system32\Drivers\asw8a1360dcc3ec9200.tmp
C:\WINDOWS\system32\Drivers\aswabe664fe7aeaf002.tmp
C:\WINDOWS\system32\Drivers\asw87fd0947b1638959.tmp
C:\WINDOWS\system32\Drivers\asw520d19e6992abea8.tmp
C:\WINDOWS\system32\Drivers\aswc74ef122ddb1cf75.tmp

EmptyTemp:
End
Uložte do E:\VeronikaM jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 10:51
od roula
Fix result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020
Ran by Uživatel (10-06-2020 11:49:25) Run:1
Running from E:\VeronikaM
Loaded Profiles: Uživatel
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses
ShellIconOverlayIdentifiers [00asw] - {472083B0-C522-11CF-8763-00608CC02F24} = - No File
ShellIconOverlayIdentifiers [00avast] - {472083B0-C522-11CF-8763-00608CC02F24} = - No File
HKLMsoftwaremicrosoftWindowsCurrentVersionTelephonyProviders = ProviderFileName2 - ndptsp.tsp (No File)
FirewallRules [{86B95898-CA43-41A4-A29D-5F9BCA4E7F8B}] = (Allow) CProgram Files (x86)Mozilla Firefoxfirefox.exe = No File
FirewallRules [{95075EDA-EE6F-4843-B9B0-541EA836F80B}] = (Allow) CProgram Files (x86)Mozilla Firefoxfirefox.exe = No File
FirewallRules [{BC2F85DE-77E8-440F-9309-91D2EA0B6CEF}] = (Allow) CProgram Files (x86)Mozilla Firefoxfirefox.exe = No File
HKLMSoftware...AuthenticationCredential Providers [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -
FF HKLMSOFTWAREPoliciesMozillaFirefox Restriction ==== ATTENTION
CHR HKLMSOFTWAREPoliciesGoogle Restriction ==== ATTENTION
Task {1AB4A5EE-FFC8-461B-989C-520B19969A1A} - System32TasksGoogleUpdateTaskMachineCore = CProgram Files (x86)GoogleUpdateGoogleUpdate.exe [144200 2015-12-13] (Google Inc - Google Inc.)
Task {6B336128-CB56-4041-9EDE-0D7DB39EF530} - MicrosoftWindowsUNPRunCampaignManager - No File ==== ATTENTION
Task {6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D} - System32TasksGoogleUpdateTaskMachineUA = CProgram Files (x86)GoogleUpdateGoogleUpdate.exe [144200 2015-12-13] (Google Inc - Google Inc.)
HKUS-1-5-21-1036842262-517912006-4171770057-1000SoftwareMicrosoftInternet ExplorerMain,Search Page = hxxpswww.google.comsearchtrackid=sp-006&q={searchTerms}
SearchScopes HKLM-x32 - DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxpswww.google.comsearchtrackid=sp-006&q={searchTerms}
SearchScopes HKLM-x32 - {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxpswww.google.comsearchtrackid=sp-006&q={searchTerms}
BHO No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar HKUS-1-5-21-1036842262-517912006-4171770057-1000 - No Name - {BA5DCD37-78BD-4392-9849-1177B90C833C} - No File
FF Homepage MozillaFirefoxProfilesg4yvcyfm.default - hxxpswww.google.comtrackid=sp-006
CWINDOWSsystem32TasksGoogleUpdateTaskMachineUA
CWINDOWSsystem32TasksGoogleUpdateTaskMachineCore
CWINDOWSsystem32Driversasw016ecc7ffdb61fef.tmp
CWINDOWSsystem32Driversaswda237cebde95350c.tmp
CWINDOWSsystem32Driversaswca6e22ce8d9937ff.tmp
CWINDOWSsystem32Driversasw2470255f64f624e3.tmp
CWINDOWSsystem32Driversasw1b57ea2bee26cc58.tmp
CWINDOWSsystem32Driversasw8a77d20af02b2e17.tmp
CWINDOWSsystem32Driversaswa7ce30253ea162b9.tmp
CWINDOWSsystem32Driversasw8a1360dcc3ec9200.tmp
CWINDOWSsystem32Driversaswabe664fe7aeaf002.tmp
CWINDOWSsystem32Driversasw87fd0947b1638959.tmp
CWINDOWSsystem32Driversasw520d19e6992abea8.tmp
CWINDOWSsystem32Driversaswc74ef122ddb1cf75.tmp

EmptyTemp
End
*****************

CloseProcesses => Error: No automatic fix found for this entry.
ShellIconOverlayIdentifiers [00asw] - {472083B0-C522-11CF-8763-00608CC02F24} = - No File => Error: No automatic fix found for this entry.
ShellIconOverlayIdentifiers [00avast] - {472083B0-C522-11CF-8763-00608CC02F24} = - No File => Error: No automatic fix found for this entry.
HKLMsoftwaremicrosoftWindowsCurrentVersionTelephonyProviders = ProviderFileName2 - ndptsp.tsp (No File) => Error: No automatic fix found for this entry.
FirewallRules [{86B95898-CA43-41A4-A29D-5F9BCA4E7F8B}] = (Allow) CProgram Files (x86)Mozilla Firefoxfirefox.exe = No File => Error: No automatic fix found for this entry.
FirewallRules [{95075EDA-EE6F-4843-B9B0-541EA836F80B}] = (Allow) CProgram Files (x86)Mozilla Firefoxfirefox.exe = No File => Error: No automatic fix found for this entry.
FirewallRules [{BC2F85DE-77E8-440F-9309-91D2EA0B6CEF}] = (Allow) CProgram Files (x86)Mozilla Firefoxfirefox.exe = No File => Error: No automatic fix found for this entry.
HKLMSoftware...AuthenticationCredential Providers [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] - => Error: No automatic fix found for this entry.
CHR HKLMSOFTWAREPoliciesGoogle Restriction ==== ATTENTION => Error: No automatic fix found for this entry.
Task {1AB4A5EE-FFC8-461B-989C-520B19969A1A} - System32TasksGoogleUpdateTaskMachineCore = CProgram Files (x86)GoogleUpdateGoogleUpdate.exe [144200 2015-12-13] (Google Inc - Google Inc.) => Error: No automatic fix found for this entry.
Task {6B336128-CB56-4041-9EDE-0D7DB39EF530} - MicrosoftWindowsUNPRunCampaignManager - No File ==== ATTENTION => Error: No automatic fix found for this entry.
Task {6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D} - System32TasksGoogleUpdateTaskMachineUA = CProgram Files (x86)GoogleUpdateGoogleUpdate.exe [144200 2015-12-13] (Google Inc - Google Inc.) => Error: No automatic fix found for this entry.
HKUS-1-5-21-1036842262-517912006-4171770057-1000SoftwareMicrosoftInternet ExplorerMain,Search Page = hxxpswww.google.comsearchtrackid=sp-006&q={searchTerms} => Error: No automatic fix found for this entry.
SearchScopes HKLM-x32 - DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxpswww.google.comsearchtrackid=sp-006&q={searchTerms} => Error: No automatic fix found for this entry.
SearchScopes HKLM-x32 - {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxpswww.google.comsearchtrackid=sp-006&q={searchTerms} => Error: No automatic fix found for this entry.
BHO No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File => Error: No automatic fix found for this entry.
Toolbar HKUS-1-5-21-1036842262-517912006-4171770057-1000 - No Name - {BA5DCD37-78BD-4392-9849-1177B90C833C} - No File => Error: No automatic fix found for this entry.
FF Homepage MozillaFirefoxProfilesg4yvcyfm.default - hxxpswww.google.comtrackid=sp-006 => Error: No automatic fix found for this entry.
CWINDOWSsystem32TasksGoogleUpdateTaskMachineUA => Error: No automatic fix found for this entry.
CWINDOWSsystem32TasksGoogleUpdateTaskMachineCore => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw016ecc7ffdb61fef.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversaswda237cebde95350c.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversaswca6e22ce8d9937ff.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw2470255f64f624e3.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw1b57ea2bee26cc58.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw8a77d20af02b2e17.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversaswa7ce30253ea162b9.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw8a1360dcc3ec9200.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversaswabe664fe7aeaf002.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw87fd0947b1638959.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversasw520d19e6992abea8.tmp => Error: No automatic fix found for this entry.
CWINDOWSsystem32Driversaswc74ef122ddb1cf75.tmp => Error: No automatic fix found for this entry.
EmptyTemp => Error: No automatic fix found for this entry.

==== End of Fixlog 11:49:28 ====

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 12:48
od Rudy
Spusťte, prosím, ještě jednou, ale s vypnutým antivirem. Děkuji.

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 13:19
od roula
pardon....
Fix result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020
Ran by Uživatel (10-06-2020 14:13:54) Run:2
Running from E:\VeronikaM
Loaded Profiles: Uživatel
Boot Mode: Safe Mode (with Networking)
==============================================

fixlist content:
*****************
Start

CloseProcesses:
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
FirewallRules: [{86B95898-CA43-41A4-A29D-5F9BCA4E7F8B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{95075EDA-EE6F-4843-B9B0-541EA836F80B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{BC2F85DE-77E8-440F-9309-91D2EA0B6CEF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe => No File
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {1AB4A5EE-FFC8-461B-989C-520B19969A1A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-13] (Google Inc -> Google Inc.)
Task: {6B336128-CB56-4041-9EDE-0D7DB39EF530} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-12-13] (Google Inc -> Google Inc.)
HKU\S-1-5-21-1036842262-517912006-4171770057-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
Toolbar: HKU\S-1-5-21-1036842262-517912006-4171770057-1000 -> No Name - {BA5DCD37-78BD-4392-9849-1177B90C833C} - No File
FF Homepage: Mozilla\Firefox\Profiles\g4yvcyfm.default -> hxxps://www.google.com/?trackid=sp-006
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Drivers\asw016ecc7ffdb61fef.tmp
C:\WINDOWS\system32\Drivers\aswda237cebde95350c.tmp
C:\WINDOWS\system32\Drivers\aswca6e22ce8d9937ff.tmp
C:\WINDOWS\system32\Drivers\asw2470255f64f624e3.tmp
C:\WINDOWS\system32\Drivers\asw1b57ea2bee26cc58.tmp
C:\WINDOWS\system32\Drivers\asw8a77d20af02b2e17.tmp
C:\WINDOWS\system32\Drivers\aswa7ce30253ea162b9.tmp
C:\WINDOWS\system32\Drivers\asw8a1360dcc3ec9200.tmp
C:\WINDOWS\system32\Drivers\aswabe664fe7aeaf002.tmp
C:\WINDOWS\system32\Drivers\asw87fd0947b1638959.tmp
C:\WINDOWS\system32\Drivers\asw520d19e6992abea8.tmp
C:\WINDOWS\system32\Drivers\aswc74ef122ddb1cf75.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => removed successfully
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File) => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{86B95898-CA43-41A4-A29D-5F9BCA4E7F8B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{95075EDA-EE6F-4843-B9B0-541EA836F80B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC2F85DE-77E8-440F-9309-91D2EA0B6CEF}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{503739d0-4c5e-4cfd-b3ba-d881334f0df2}" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1AB4A5EE-FFC8-461B-989C-520B19969A1A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1AB4A5EE-FFC8-461B-989C-520B19969A1A}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B336128-CB56-4041-9EDE-0D7DB39EF530}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B336128-CB56-4041-9EDE-0D7DB39EF530}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B99DE83-6D86-48F4-AC2E-A4AFBE25AF3D}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
HKU\S-1-5-21-1036842262-517912006-4171770057-1000\Software\Microsoft\Internet Explorer\Main\\"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} => removed successfully
"HKU\S-1-5-21-1036842262-517912006-4171770057-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BA5DCD37-78BD-4392-9849-1177B90C833C}" => removed successfully
"Firefox homepage" => removed successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
"C:\WINDOWS\system32\Drivers\asw016ecc7ffdb61fef.tmp" => not found
"C:\WINDOWS\system32\Drivers\aswda237cebde95350c.tmp" => not found
"C:\WINDOWS\system32\Drivers\aswca6e22ce8d9937ff.tmp" => not found
"C:\WINDOWS\system32\Drivers\asw2470255f64f624e3.tmp" => not found
"C:\WINDOWS\system32\Drivers\asw1b57ea2bee26cc58.tmp" => not found
"C:\WINDOWS\system32\Drivers\asw8a77d20af02b2e17.tmp" => not found
"C:\WINDOWS\system32\Drivers\aswa7ce30253ea162b9.tmp" => not found
"C:\WINDOWS\system32\Drivers\asw8a1360dcc3ec9200.tmp" => not found
"C:\WINDOWS\system32\Drivers\aswabe664fe7aeaf002.tmp" => not found
"C:\WINDOWS\system32\Drivers\asw87fd0947b1638959.tmp" => not found
"C:\WINDOWS\system32\Drivers\asw520d19e6992abea8.tmp" => not found
"C:\WINDOWS\system32\Drivers\aswc74ef122ddb1cf75.tmp" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 10248192 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 14874334 B
Java, Flash, Steam htmlcache => 492 B
Windows/system/drivers => 121327327 B
Edge => 113677 B
Chrome => 6087331 B
Firefox => 12906584 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 6144 B
Users => 6144 B
ProgramData => 6144 B
Public => 6144 B
systemprofile => 6144 B
systemprofile32 => 6144 B
LocalService => 15028 B
NetworkService => 54852 B
Uživatel => 23233223 B

RecycleBin => 10479639 B
EmptyTemp: => 190.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End 1 Fixlog 14:14:23 ====

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 13:59
od Rudy
Teď bylo mazáno. Nastala nějaká změna?

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 14:03
od roula
Já to nejsem schopen poznat z běhu PC.
Zatím je odpojen od internetu.
Šlo o to, jestli tam nebyl nainstalován podvodný program, když se tam cizí člověk připojil přes ten GoToAssist.
Připojím jej tedy do internetu a budu doufat, že je "čistý"
Moc díky!

Re: GoToAssist - prosím kontrolu

Napsal: 10 čer 2020 18:06
od Rudy
Zkuste, jinak to nezjistíme.