Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Prosím o preventivku

#1 Příspěvek od kcobain »

Zdravím, po dlouhé době čistím PC (zatím jen Ccleaner a Antivir) a při téhle příležitosti prosím někoho o kontrolu logu, kdyby náhodou ;).. a prosím zda někdo ví jak smazat nějaké temp soubory, pročistit PC krom Ccleaneru. byl bych velmi vděčen za takoovu jarní kůru :)

Zde je log:




Logfile of random's system information tool 1.10 (written by random/random)
Run by User_753 at 2020-07-18 11:52:43
Microsoft Windows 10 Home
System drive C: has 152 GB (62%) free of 244 GB
Total RAM: 8142 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:52:44, on 18.07.2020
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\SpeedFan\speedfan.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files\trend micro\User_753.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Wargaming.net Game Center] "D:\HRY\Wargaming.net\GameCenter\wgc.exe" --background
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'NETWORK SERVICE')
O4 - Global Startup: Avast SecureLine VPN.lnk = C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{3ed265cf-d7f0-4239-a306-20ff36ac8934}: NameServer = 100.120.208.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{3ed265cf-d7f0-4239-a306-20ff36ac8934}: NameServer = 100.120.208.1
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\aswidsagent.exe
O23 - Service: Služba Avast Browser Update (avast) (avast) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall Service (avast! Firewall) - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: Služba Avast Browser Update (avastm) (avastm) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
O23 - Service: Avast Secure Browser Elevation Service (AvastSecureBrowserElevationService) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Application\83.1.4977.117\elevation_service.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_560e9 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Avast SecureLine VPN (SecureLine) - AVAST Software - C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8660 bytes

======Listing Processes======









C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-886738aa-9d28-4428-90b8-56717fe5b948 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-f0296403-edb4-4f26-96d8-dd01499d1af6 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-cf4a91aa-8125-4f85-93f4-4fd2c105fcd6 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-0427ca9f-8534-43fc-a79a-522293849dd3 -LifetimeId:5f199242-eac5-4b38-b6db-702998f913d1 -DeviceGroupId:WpdFsGroup -HostArg:0
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem

C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS

C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection

C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
"C:\Program Files\AVAST Software\Avast\aswEngSrv.exe" /pipename="3BADC2FD-73F6-554E-600B-323F5D8A5EDA" /binpath="C:\Program Files\AVAST Software\Avast"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding


sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Core Temp\Core Temp.exe"
"C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe"
"C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
"ctfmon.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
"C:\Program Files\Microsoft Mouse and Keyboard Center\MKCHelper.exe"
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
rundll32.exe "c:\program files\nvidia corporation\nvstreamsrv\rxdiag.dll" RxDiagSetRuntimeMessagePump
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\AvastBrowserCrashHandler.exe"
"C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\AvastBrowserCrashHandler64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-trial-handle=1968,12034079699444834857,9643258166402763841,131072 --disable-features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\User_753\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACAAwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\User_753\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-token=983695376207821061 --mojo-platform-channel-handle=1984 /prefetch:2
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\User_753\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-handle=1968,12034079699444834857,9643258166402763841,131072 --disable-features=VizDisplayCompositor --service-pipe-token=15562919717817387165 --lang=en-US --log-file="C:\Users\User_753\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=15562919717817387165 --renderer-client-id=3 --mojo-platform-channel-handle=2512 /prefetch:1
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca
"C:\Windows\System32\SecurityHealthSystray.exe"

"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
AvastUI.exe /nogui
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" --type=gpu-process --field-trial-handle=8492,11620435194430780460,8247111356663861439,131072 --no-sandbox --log-file="C:\Users\User_753\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium (20.5.2415)" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAMAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --use-gl=swiftshader-webgl --service-request-channel-token=6490299771234308860 --mojo-platform-channel-handle=8504 /prefetch:2
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup

C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc

C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s DsSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\WINDOWS\system32\AUDIODG.EXE 0x69c
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.0.1867309085\628178445" -parentBuildID 20200708170202 -prefsHandle 1876 -prefMapHandle 1868 -prefsLen 1 -prefMapSize 238766 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 1952 gpu
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.13.286240354\1323974216" -childID 2 -isForBrowser -prefsHandle 4668 -prefMapHandle 4664 -prefsLen 6558 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 4420 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.20.986377100\440837703" -childID 3 -isForBrowser -prefsHandle 5388 -prefMapHandle 5384 -prefsLen 7394 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 3776 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.34.1307299981\130957358" -childID 5 -isForBrowser -prefsHandle 5776 -prefMapHandle 6488 -prefsLen 7460 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 6392 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.48.123897317\1645475178" -parentBuildID 20200708170202 -prefsHandle 5704 -prefMapHandle 5212 -prefsLen 7617 -prefMapSize 238766 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 5700 rdd
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.73.827900065\592237186" -childID 10 -isForBrowser -prefsHandle 6708 -prefMapHandle 5948 -prefsLen 8059 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 10228 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.80.1141801585\1168177487" -childID 11 -isForBrowser -prefsHandle 10496 -prefMapHandle 5996 -prefsLen 8060 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 5380 tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.108.2062548569\2066397518" -childID 15 -isForBrowser -prefsHandle 6872 -prefMapHandle 9820 -prefsLen 8060 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 9520 tab
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="12200.136.1565109365\1923229620" -childID 19 -isForBrowser -prefsHandle 9132 -prefMapHandle 9540 -prefsLen 8060 -prefMapSize 238766 -parentBuildID 20200708170202 -appdir "C:\Program Files\Mozilla Firefox\browser" - 12200 "\\.\pipe\gecko-crash-server-pipe.12200" 10208 tab
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\rsit\info.txt
"C:\Users\User_753\Desktop\RSITx64.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 776 784 792 8192 788 764

=========Mozilla firefox=========

ProfilePath - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992

prefs.js - "browser.startup.homepage" - "www.centrum.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 32.0.0.387 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_387.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@update.avastbrowser.com/Avast Browser;version=3]
"Description"=Avast Browser
"Path"=C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\npAvastBrowserUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@update.avastbrowser.com/Avast Browser;version=9]
"Description"=Avast Browser
"Path"=C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\npAvastBrowserUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 32.0.0.387 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_387.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-07-15 7637208]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2020-07-02 109160]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Wargaming.net Game Center"=D:\HRY\Wargaming.net\GameCenter\wgc.exe [2020-07-06 2415992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_387_Plugin.exe [2020-06-13 1459256]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Avast SecureLine VPN.lnk - C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.RTV1"=rtvcvfw64.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"aux1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"aux2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv

======File associations======

.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2020-07-18 11:51:54 ----D---- C:\rsit
2020-07-18 11:51:54 ----D---- C:\Program Files\trend micro
2020-07-18 00:59:20 ----A---- C:\WINDOWS\system32\WdfCoInstaller01011.dll
2020-07-18 00:59:20 ----A---- C:\WINDOWS\system32\drivers\NvModuleTracker.sys
2020-07-16 06:15:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2020-07-16 06:15:14 ----A---- C:\WINDOWS\SYSWOW64\ConsoleLogon.dll
2020-07-16 06:15:14 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-07-16 06:15:14 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-07-16 06:15:14 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2020-07-16 06:15:14 ----A---- C:\WINDOWS\system32\WalletService.dll
2020-07-16 06:15:14 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2020-07-16 06:15:14 ----A---- C:\WINDOWS\system32\APHostService.dll
2020-07-16 06:15:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2020-07-16 06:15:09 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2020-07-16 06:15:09 ----A---- C:\WINDOWS\SYSWOW64\MSAudDecMFT.dll
2020-07-16 06:15:09 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2020-07-16 06:15:09 ----A---- C:\WINDOWS\SYSWOW64\HoloShellRuntime.dll
2020-07-16 06:15:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2020-07-16 06:15:08 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2020-07-16 06:15:08 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2020-07-16 06:15:08 ----A---- C:\WINDOWS\system32\MixedReality.Broker.dll
2020-07-16 06:15:08 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2020-07-16 06:15:08 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\mfcore.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\HoloShellRuntime.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2020-07-16 06:15:07 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\PrintWSDAHost.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2020-07-16 06:15:05 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2020-07-16 06:15:04 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2020-07-16 06:15:04 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2020-07-16 06:15:04 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2020-07-16 06:15:04 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2020-07-16 06:15:04 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\upnpcont.exe
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\udhisapi.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiverExt.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\fdWSD.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2020-07-16 06:15:03 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\tsmf.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\tsgqec.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\fhsettingsprovider.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\DiagSvc.dll
2020-07-16 06:15:03 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-07-16 06:15:02 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
2020-07-16 06:15:02 ----A---- C:\WINDOWS\system32\odbcconf.dll
2020-07-16 06:15:02 ----A---- C:\WINDOWS\system32\mstscax.dll
2020-07-16 06:15:02 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2020-07-16 06:15:02 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2020-07-16 06:15:02 ----A---- C:\WINDOWS\system32\ieframe.dll
2020-07-16 06:15:01 ----A---- C:\WINDOWS\system32\mshtml.dll
2020-07-16 06:15:01 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\werui.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\werconcpl.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\fdWSD.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\edgehtml.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\easwrt.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\dialserver.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\dialclient.dll
2020-07-16 06:15:00 ----A---- C:\WINDOWS\system32\CBDHSvc.dll
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\tcbloader.dll
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\sdengin2.dll
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\hvloader.dll
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\hvix64.exe
2020-07-16 06:14:59 ----A---- C:\WINDOWS\system32\hvax64.exe
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowService.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowProxy.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\Print.Workflow.Source.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\KBDJPN.DLL
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\kbd106n.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\kbd106.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\kbd101.DLL
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\system32\upnphost.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\system32\upnpcont.exe
2020-07-16 06:14:57 ----A---- C:\WINDOWS\system32\udhisapi.dll
2020-07-16 06:14:57 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\WerEnc.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\wdigest.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\sethc.exe
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\PickerPlatform.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\EaseOfAccessDialog.exe
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2020-07-16 06:14:56 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\wpnclient.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Diagnostics.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Payments.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Management.Workplace.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Devices.Sensors.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Enumeration.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\WindowManagementAPI.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\InputHost.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\DiagnosticInvoker.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\coreglobconfig.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\CapabilityAccessManagerClient.dll
2020-07-16 06:14:55 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Preview.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.Phone.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\useractivitybroker.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\ResourcePolicyClient.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2020-07-16 06:14:54 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2020-07-16 06:14:52 ----A---- C:\WINDOWS\SYSWOW64\windows.applicationmodel.datatransfer.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Launcher.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\SystemUWPLauncher.exe
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountWAMExtension.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\GameInput.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\CoreShellAPI.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\cdprt.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\AppExtension.dll
2020-07-16 06:14:51 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\SystemSettings.DataModel.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\LicensingWinRT.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\InputSwitch.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\ContentDeliveryManager.Utilities.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\agentactivationruntimewindows.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\agentactivationruntime.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\SYSWOW64\AarSvc.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\system32\shell32.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\system32\pku2u.dll
2020-07-16 06:14:50 ----A---- C:\WINDOWS\system32\efswrt.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\vbscript.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\UIMgrBroker.exe
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\UIManagerBrokerps.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\sppsvc.exe
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\sppcext.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\slcext.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\rasapi32.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\PrintWorkflowService.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\PrintWorkflowProxy.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Print.Workflow.Source.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\npmproxy.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\nlasvc.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\nlaapi.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\netprofm.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\ncsi.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\MdmDiagnostics.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LockHostingFramework.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LockController.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\LicensingWinRT.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\KBDJPN.DLL
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\kbd106n.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\kbd106.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\kbd101.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Geolocation.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\gdi32full.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Family.Client.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\Family.Authentication.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\edgeIso.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\AxInstUI.exe
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\AxInstSv.dll
2020-07-16 06:14:49 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\usermgr.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\msctf.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\LogonController.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\cryptcatsvc.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\credprovs.dll
2020-07-16 06:14:48 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\sechost.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\msimg32.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\mf3216.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\lpk.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\fontsub.dll
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2020-07-16 06:14:46 ----A---- C:\WINDOWS\system32\dciman32.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\wersvc.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\wermgr.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\WerFault.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\weretw.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\WerEnc.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\wer.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\wdigest.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\utcutil.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\uDWM.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\schannel.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\sethc.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\profsvc.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\oleaut32.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\NotificationController.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\Narrator.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\MtcModel.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\msv1_0.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\lsasrv.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\logoncli.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\keyiso.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\invagent.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\Faultrep.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\diagtrack.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\diagnosticdataquery.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\dcomp.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\CredDialogBroker.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\CaptureService.dll
2020-07-16 06:14:45 ----A---- C:\WINDOWS\system32\aepic.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\wuuhosdeployment.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\wow64win.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\PeopleBand.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-07-16 06:14:44 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\wpncore.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\wpnclient.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\wpnapps.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\win32u.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\win32kfull.sys
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\win32k.sys
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\usosvc.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\usocoreworker.exe
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\usoapi.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\user32.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\SHCore.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\psmsrv.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\PickerPlatform.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\kerberos.dll
2020-07-16 06:14:43 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\windows.storage.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\Windows.Payments.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\WindowManagementAPI.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\WindowManagement.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\WaaSMedicPS.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\ISM.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\InstallService.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\InputHost.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\coreglobconfig.dll
2020-07-16 06:14:42 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\win32kbase.sys
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\vaultcli.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\tsf3gip.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\SEMgrSvc.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\FntCache.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\DWrite.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\dosvc.dll
2020-07-16 06:14:39 ----A---- C:\WINDOWS\system32\BingMaps.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Graphics.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Energy.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\useractivitybroker.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\ResourcePolicyServer.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\msxml6r.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\msxml6.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\cdd.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\bisrv.dll
2020-07-16 06:14:38 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\GameInput.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\AppExtension.dll
2020-07-16 06:14:37 ----A---- C:\WINDOWS\system32\AppContracts.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\twinui.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\twinapi.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\SystemUWPLauncher.exe
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\StartTileData.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\ShareHost.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\CoreShellAPI.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\CoreShell.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\cdprt.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\system32\authui.dll
2020-07-16 06:14:36 ----A---- C:\WINDOWS\explorer.exe
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\Wpc.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\Windows.Management.Service.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\spoolsv.exe
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\netman.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\drivers\spacedump.sys
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\agentactivationruntime.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\system32\AarSvc.dll
2020-07-16 06:14:35 ----A---- C:\WINDOWS\splwow64.exe
2020-07-16 06:11:56 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2020-07-16 06:11:56 ----A---- C:\WINDOWS\system32\poqexec.exe
2020-07-10 12:06:05 ----A---- C:\WINDOWS\system32\drivers\aswVpnRdr.sys
2020-07-10 08:10:47 ----A---- C:\WINDOWS\system32\icarus_rvrt.exe
2020-07-09 23:02:47 ----D---- C:\Program Files\Mozilla Firefox
2020-07-02 21:16:48 ----A---- C:\WINDOWS\system32\aswBoot.exe
2020-07-02 21:16:42 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2020-07-02 21:16:42 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2020-06-24 19:19:23 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2020-06-24 19:19:22 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo-1-999-0-0-0.exe
2020-06-24 19:19:22 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2020-06-24 19:19:22 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1-999-0-0-0.dll
2020-06-24 19:19:22 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2020-06-24 19:19:22 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2020-06-24 19:19:22 ----A---- C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-06-24 19:19:22 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2020-06-24 19:19:22 ----A---- C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-06-24 19:19:22 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2020-06-24 19:19:22 ----A---- C:\WINDOWS\system32\OpenCL.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\nvofapi.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvofapi64.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvmcumd.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvdispgenco6445148.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvdispco6445148.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2020-06-24 19:19:20 ----A---- C:\WINDOWS\system32\nvcuda.dll
2020-06-23 06:18:45 ----D---- C:\Program Files\TAP-Windows
2020-06-20 11:17:40 ----D---- C:\Users\User_753\AppData\Roaming\tox

======List of files/folders modified in the last 1 month======

2020-07-18 11:52:08 ----D---- C:\WINDOWS\Prefetch
2020-07-18 11:51:54 ----RD---- C:\Program Files
2020-07-18 11:49:43 ----D---- C:\WINDOWS\Temp
2020-07-18 11:32:00 ----D---- C:\WINDOWS\system32\sru
2020-07-18 09:46:07 ----D---- C:\Wswin
2020-07-18 09:45:20 ----D---- C:\WINDOWS\system32\config
2020-07-18 09:43:18 ----D---- C:\WINDOWS\WinSxS
2020-07-18 09:41:00 ----RD---- C:\WINDOWS\Microsoft.NET
2020-07-18 09:40:58 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2020-07-18 08:44:40 ----D---- C:\ProgramData\AVAST Software
2020-07-18 08:36:29 ----D---- C:\WINDOWS\System32
2020-07-18 08:36:29 ----D---- C:\WINDOWS\INF
2020-07-18 08:36:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2020-07-18 08:31:40 ----D---- C:\ProgramData\NVIDIA
2020-07-18 08:29:47 ----D---- C:\Program Files (x86)\SpeedFan
2020-07-18 08:29:33 ----ASH---- C:\DumpStack.log.tmp
2020-07-18 01:00:15 ----D---- C:\WINDOWS\system32\catroot2
2020-07-18 00:59:36 ----D---- C:\ProgramData\NVIDIA Corporation
2020-07-18 00:59:33 ----D---- C:\WINDOWS\system32\Tasks
2020-07-18 00:59:30 ----D---- C:\WINDOWS\system32\drivers
2020-07-18 00:59:29 ----D---- C:\WINDOWS\system32\DriverStore
2020-07-18 00:59:26 ----D---- C:\Program Files\NVIDIA Corporation
2020-07-18 00:59:26 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2020-07-18 00:59:19 ----D---- C:\WINDOWS\SoftwareDistribution
2020-07-18 00:59:18 ----D---- C:\Windows
2020-07-18 00:57:39 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2020-07-17 20:24:40 ----D---- C:\WINDOWS\system32\SleepStudy
2020-07-16 15:21:16 ----D---- C:\WINDOWS\AppReadiness
2020-07-16 15:21:05 ----SHD---- C:\Boot
2020-07-16 07:10:22 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2020-07-16 07:10:22 ----D---- C:\WINDOWS\SysWOW64
2020-07-16 07:10:21 ----SD---- C:\WINDOWS\system32\DiagSvcs
2020-07-16 07:10:21 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2020-07-16 07:10:21 ----D---- C:\WINDOWS\SystemResources
2020-07-16 07:10:21 ----D---- C:\WINDOWS\system32\WinMetadata
2020-07-16 07:10:21 ----D---- C:\WINDOWS\system32\oobe
2020-07-16 07:10:21 ----D---- C:\WINDOWS\system32\en-US
2020-07-16 07:10:21 ----D---- C:\WINDOWS\system32\cs-CZ
2020-07-16 07:10:21 ----D---- C:\WINDOWS\system32\appraiser
2020-07-16 07:10:21 ----D---- C:\WINDOWS\ShellExperiences
2020-07-16 07:10:21 ----D---- C:\WINDOWS\bcastdvr
2020-07-16 07:10:21 ----D---- C:\WINDOWS\apppatch
2020-07-16 07:10:21 ----D---- C:\Program Files\Windows Mail
2020-07-16 07:10:21 ----D---- C:\Program Files\Common Files\System
2020-07-16 07:10:21 ----D---- C:\Program Files (x86)\Windows Mail
2020-07-16 06:18:18 ----RD---- C:\WINDOWS\assembly
2020-07-16 06:16:43 ----D---- C:\WINDOWS\CbsTemp
2020-07-16 06:16:42 ----D---- C:\WINDOWS\servicing
2020-07-16 06:16:30 ----HD---- C:\Program Files\WindowsApps
2020-07-16 06:11:39 ----SHD---- C:\System Volume Information
2020-07-15 18:44:45 ----D---- C:\WINDOWS\Logs
2020-07-14 18:37:09 ----D---- C:\WINDOWS\system32\WDI
2020-07-10 08:10:48 ----D---- C:\Program Files\Common Files\AVAST Software
2020-07-10 08:08:30 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2020-07-09 17:38:40 ----D---- C:\Program Files\AVAST Software
2020-07-07 09:44:10 ----SHD---- C:\WINDOWS\Installer
2020-07-02 21:16:48 ----HD---- C:\WINDOWS\ELAMBKUP
2020-07-02 19:30:19 ----RD---- C:\Program Files (x86)
2020-06-27 20:21:23 ----D---- C:\WINDOWS\system32\drivers\UMDF
2020-06-24 21:57:17 ----D---- C:\ProgramData\Zoner
2020-06-23 21:09:24 ----DC---- C:\WINDOWS\Panther
2020-06-23 16:20:44 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2020-06-23 16:20:40 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2020-06-23 16:20:40 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2020-06-23 06:22:04 ----HD---- C:\ProgramData
2020-06-23 06:22:04 ----D---- C:\ProgramData\Package Cache
2020-06-23 01:08:10 ----A---- C:\WINDOWS\system32\nvapi64.dll
2020-06-23 01:08:08 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2020-06-22 03:45:13 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2020-06-21 23:59:21 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2020-06-21 23:59:21 ----A---- C:\WINDOWS\system32\nvcpl.dll
2020-06-21 23:59:18 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2020-06-21 23:59:18 ----A---- C:\WINDOWS\system32\nvshext.dll
2020-06-21 23:59:17 ----A---- C:\WINDOWS\system32\nvmctray.dll
2020-06-21 23:59:17 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2020-06-21 23:59:17 ----A---- C:\WINDOWS\system32\nv3dappshext.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\WINDOWS\system32\drivers\aswbidsh.sys [2020-07-02 195648]
R0 aswbuniv;aswbuniv; C:\WINDOWS\system32\drivers\aswbuniv.sys [2020-07-02 60480]
R0 aswElam;aswElam; C:\WINDOWS\system32\drivers\aswElam.sys [2020-02-25 16304]
R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2020-07-02 84848]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2020-07-02 323272]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-05-28 672104]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2019-12-07 57360]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2019-12-07 41984]
R1 aswArPot;aswArPot; C:\WINDOWS\system32\drivers\aswArPot.sys [2020-07-02 205880]
R1 aswbidsdriver;aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdriver.sys [2020-07-02 235584]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2020-07-02 42768]
R1 aswNetHub;aswNetHub; C:\WINDOWS\system32\drivers\aswNetHub.sys [2020-07-02 514448]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2020-07-02 109272]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2020-07-02 851600]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2020-07-02 466232]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-12-07 78136]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2019-12-07 91136]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-12-07 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-12-07 8704]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2020-07-02 175192]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2020-07-02 216816]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2020-06-11 143160]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2020-07-16 491520]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2019-12-07 53248]
R3 ALSysIO;ALSysIO; \??\C:\Users\User_753\AppData\Local\Temp\ALSysIO64.sys [2020-07-18 47240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-07-15 4012632]
R3 KillerEth;@e2xw10x64.inf,%RIVET.Service.DispName%;NDIS Miniport Driver for Killer PCI-E Gigabit Ethernet Controller; C:\WINDOWS\System32\drivers\e2xw10x64.sys [2019-12-07 145920]
R3 MBfilt;MBfilt; C:\WINDOWS\system32\drivers\MBfilt64.sys [2009-11-18 32344]
R3 MEIx64;@oem5.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2019-12-07 322600]
R3 NVHDA;@oem10.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2020-06-22 222112]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2b99a29f071e5d25\nvlddmkm.sys [2020-06-23 24671120]
R3 NvModuleTracker;@oem20.inf,%ServiceName%;NvModuleTracker; C:\WINDOWS\System32\drivers\NvModuleTracker.sys [2020-03-04 50592]
R3 nvvad_WaveExtensible;@oem17.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2019-04-17 69840]
R3 nvvhci;@oem28.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2020-05-16 67456]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-12-07 43832]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-12-07 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-12-07 884752]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-12-07 172344]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-12-07 124216]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-12-07 135992]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-12-07 81720]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-12-07 105480]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-12-07 168464]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-12-07 58680]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-12-07 68408]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2019-12-07 138040]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-12-07 42296]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2019-12-07 158736]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-12-07 23040]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2019-12-07 415232]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2019-12-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2019-12-07 45568]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2019-12-07 18432]
S3 asmthub3;@oem35.inf,%asmthub3_ServiceDescription%;ASMedia USB3 Hub Service; C:\WINDOWS\System32\drivers\asmthub3.sys [2013-08-16 140032]
S3 asmtxhci;@oem33.inf,%asmtxhci_ServiceDescription%;ASMEDIA XHCI Service; C:\WINDOWS\System32\drivers\asmtxhci.sys [2013-08-16 424192]
S3 aswTap;@oem0.inf,%DeviceDescription%;avast! SecureLine TAP Adapter v3; C:\WINDOWS\System32\drivers\aswTap.sys [2018-09-05 53904]
S3 aswVpnRdr;Avast SecureLine VPN Driver; C:\WINDOWS\system32\drivers\aswVpnRdr.sys [2020-07-10 59312]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-12-07 279040]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2019-12-07 113664]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2019-12-07 106496]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2019-12-07 45568]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2019-12-07 1548288]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2019-12-07 110592]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-12-07 44032]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-12-07 66576]
S3 dc3d;@oem39.inf,%dc3d.SvcDesc%;MS Hardware Device Detection Driver; C:\WINDOWS\System32\drivers\dc3d.sys [2017-10-11 95016]
S3 dtlitescsibus;@oem9.inf,%DisplayName%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2020-05-09 42256]
S3 dtliteusbbus;@oem18.inf,%DisplayName%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2020-05-09 59360]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys [2019-12-07 23040]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-12-07 55824]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2019-12-07 66560]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2020-07-16 95032]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-12-07 30208]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-12-07 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-12-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-12-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-12-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-12-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-12-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-12-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-12-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-12-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-12-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-12-07 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-12-07 558904]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2019-12-07 47104]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-12-07 30720]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-12-07 59704]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-12-07 537608]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-12-07 64016]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2019-12-07 386048]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-12-07 65024]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-12-07 1131320]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-12-07 146232]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-12-07 72720]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2019-12-07 206336]
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2017-03-17 469568]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2019-12-07 104456]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-12-07 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-12-07 27136]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2019-12-07 990008]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-12-07 213504]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-12-07 115712]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2019-12-07 35128]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-12-07 35128]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2020-05-07 169032]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2020-07-02 356824]
R2 avast! Firewall;Avast Firewall Service; C:\Program Files\AVAST Software\Avast\afwServ.exe [2020-07-02 1065456]
R2 AvastWscReporter;AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [2020-07-02 58048]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
R2 CDPUserSvc_560e9;CDPUserSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2020-05-07 874472]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2020-06-22 873272]
R2 OneSyncSvc_560e9;OneSyncSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
R2 SecureLine;Avast SecureLine VPN; C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe [2020-07-14 7415168]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [2020-07-02 6514072]
R3 cbdhsvc_560e9;cbdhsvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
R3 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2020-06-11 975672]
S2 avast;Služba Avast Browser Update (avast); C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2020-07-02 193688]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S2 edgeupdate;Služba Microsoft Edge Update (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-06-07 224160]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 AarSvc_560e9;AarSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 avastm;Služba Avast Browser Update (avastm); C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2020-07-02 193688]
S3 AvastSecureBrowserElevationService;Avast Secure Browser Elevation Service; C:\Program Files (x86)\AVAST Software\Browser\Application\83.1.4977.117\elevation_service.exe [2020-07-03 1310024]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 BcastDVRUserService_560e9;BcastDVRUserService_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 BluetoothUserService_560e9;BluetoothUserService_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 CaptureService_560e9;CaptureService_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 ConsentUxUserSvc_560e9;ConsentUxUserSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2020-07-16 380632]
S3 CredentialEnrollmentManagerUserSvc_560e9;CredentialEnrollmentManagerUserSvc_560e9; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2020-07-16 380632]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DeviceAssociationBrokerSvc_560e9;DeviceAssociationBrokerSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DevicePickerUserSvc_560e9;DevicePickerUserSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DevicesFlowUserSvc_560e9;DevicesFlowUserSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2020-07-16 94208]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 edgeupdatem;Služba Microsoft Edge Update (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-06-07 224160]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2019-11-08 46184]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 MessagingService_560e9;MessagingService_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service; C:\Program Files (x86)\Microsoft\Edge\Application\83.0.478.64\elevation_service.exe [2020-07-11 1507208]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2020-07-09 244432]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2020-06-11 105984]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 PimIndexMaintenanceSvc_560e9;PimIndexMaintenanceSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 PrintWorkflowUserSvc_560e9;PrintWorkflowUserSvc_560e9; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2019-12-07 57368]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2019-12-07 1263104]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2019-12-07 57368]

-----------------EOF-----------------
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Spustit skenovani a pockaj na dokoncenie
  • V pripade nalezov nechaj vsetky nalezy oznacene a klikni na Karantena (ak nie su ziadne nalezy, tak na Spustit zakladni opravu)
  • V pripade, ze sa detekuje aj "predinstalovany software", tieto programy mozes, ale nemusis zmazat (toto nie su skodlive programy, ale iba zbytocnosti)
  • Potvrd vyzvu, pockaj na dokoncenie a potvrd restartovanie PC
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah skopiruj a vloz do dalsej odpovede
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#3 Příspěvek od kcobain »

zdravím,

vše provedeno, nic to nenašlo a zde je log:




# -------------------------------
# Malwarebytes AdwCleaner 8.0.6.0
# -------------------------------
# Build: 06-24-2020
# Database: 2020-07-20.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 07-20-2020
# Duration: 00:00:12
# OS: Windows 10 Home
# Scanned: 31837
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#4 Příspěvek od Conder »

:arrow: Poprosim o obidva logy z FRST (FRST.txt a Addition.txt) podla tohto navodu: https://forum.viry.cz/viewtopic.php?f=13&t=154679
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#5 Příspěvek od kcobain »

Kontrola provedena a níže vkládám logy:
***************************************************



==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{3ed265cf-d7f0-4239-a306-20ff36ac8934}: [NameServer] 100.120.128.1
Tcpip\..\Interfaces\{48fda326-985b-4567-acf1-5001486dd5ab}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{7d292253-024e-45d5-a545-757a31cd434b}: [DhcpNameServer] 8.8.8.8

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
======
Edge Profile: C:\Users\User_753\AppData\Local\Microsoft\Edge\User Data\Default [2020-07-20]

FireFox:
========
FF DefaultProfile: tgnymfxn.default
FF ProfilePath: C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\tgnymfxn.default [2020-02-25]
FF ProfilePath: C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992 [2020-07-21]
FF DownloadDir: D:\DOWNLOAD
FF Homepage: Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992 -> www.centrum.cz
FF Notifications: Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992 -> hxxps://www.lide.cz
FF Extension: (uBlock Origin) - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992\Extensions\uBlock0@raymondhill.net.xpi [2020-02-12]
FF Extension: (YouTube NonStop) - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992\Extensions\{0d7cafdd-501c-49ca-8ebb-e3341caaa55e}.xpi [2020-04-16]
FF Extension: (Feedbro) - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992\Extensions\{a9c2ad37-e940-4892-8dce-cd73c6cbbc0c}.xpi [2020-02-12]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_403.dll [2020-07-18] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_403.dll [2020-07-18] (Adobe Inc. -> )
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\npAvastBrowserUpdate3.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\npAvastBrowserUpdate3.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6514072 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [193688 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [356824 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1065456 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [193688 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\83.1.4977.117\elevation_service.exe [1310024 2020-07-03] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 SecureLine; C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe [7415168 2020-07-14] (Avast Software s.r.o. -> AVAST Software)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-01-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-01-19] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ALSysIO; C:\Users\User_753\AppData\Local\Temp\ALSysIO64.sys [47240 2020-07-21] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
S3 asmthub3; C:\WINDOWS\System32\drivers\asmthub3.sys [140032 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
S3 asmtxhci; C:\WINDOWS\System32\drivers\asmtxhci.sys [424192 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205880 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [235584 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [195648 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [60480 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16824 2020-07-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42768 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175192 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [514448 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109272 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84848 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851600 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [466232 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216816 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [323272 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [59312 2020-07-10] (Avast Software s.r.o. -> Avast Software)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-05-09] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-05-09] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [145920 2019-12-07] (Microsoft Windows -> Qualcomm Atheros, Inc.)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-01-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-01-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-01-19] (Microsoft Windows -> Microsoft Corporation)
S3 WinRing0_1_2_0; C:\Program Files (x86)\Transcend\SSD Scope\WinRing0x64.sys [14544 2019-07-22] (Noriyuki MIYAZAKI -> OpenLibSys.org)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [54168 2017-04-18] (Intel Corporation -> Intel Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-07-21 20:03 - 2020-07-21 20:03 - 000008460 _____ C:\Users\User_753\Desktop\FRST.txt
2020-07-21 20:02 - 2020-07-21 20:03 - 000000000 ____D C:\FRST
2020-07-21 20:02 - 2020-07-21 20:02 - 002293760 _____ (Farbar) C:\Users\User_753\Desktop\FRST64.exe
2020-07-20 23:24 - 2020-07-21 20:01 - 000002350 _____ C:\WINDOWS\system32\Tasks\AdwCleaner_onReboot
2020-07-20 23:23 - 2020-07-20 23:24 - 000000000 ____D C:\AdwCleaner
2020-07-20 20:47 - 2020-07-20 20:47 - 008420016 _____ (Malwarebytes) C:\Users\User_753\Desktop\adwcleaner_8.0.6.exe
2020-07-20 06:31 - 2020-07-20 06:31 - 000000027 _____ C:\Users\User_753\Desktop\Nový textový dokument (2).txt
2020-07-18 19:07 - 2020-07-20 17:18 - 000000813 _____ C:\Users\User_753\Desktop\Nový textový dokument.txt
2020-07-18 11:52 - 2020-07-18 11:51 - 001222144 _____ C:\Users\User_753\Desktop\RSITx64.exe
2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\rsit
2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\Program Files\trend micro
2020-07-18 00:59 - 2020-03-04 14:54 - 001804784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2020-07-18 00:59 - 2020-03-04 14:54 - 000050592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\NvModuleTracker.sys
2020-07-18 00:53 - 2020-07-18 00:53 - 000001116 _____ C:\Users\User_753\Desktop\SpeedFan.lnk
2020-07-16 06:15 - 2020-07-16 06:15 - 026271744 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 023433216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 019868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 018766336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 018068992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 007534160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 007070208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 006404608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 005821952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 004783328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 003547280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 002520048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001956016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001301592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001246720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001090560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001014872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000991744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-07-16 06:15 - 2020-07-16 06:15 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000453952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000413208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000343992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-07-16 06:15 - 2020-07-16 06:15 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-07-16 06:15 - 2020-07-16 06:15 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-07-16 06:15 - 2020-07-16 06:15 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-07-16 06:15 - 2020-07-16 06:15 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2020-07-16 06:14 - 2020-07-16 06:15 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 017540608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 014754816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 010922808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 008892600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 007992824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 007964416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 007593544 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006920192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006709248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006356008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006175232 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 005964496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 005766168 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 004734976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 004485216 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 003925856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 003906048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003860480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003812304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003810816 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 003779896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 003778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003752448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002963456 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 002918216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002744320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002585912 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002568192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002566144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002399744 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002338304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002311680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002305024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002286128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002245632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002177528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002131024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002077696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001952392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001876480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001784488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001762632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001712128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001668904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001641472 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001606656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001557824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001556480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001509736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001474048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001449280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001448448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001403904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001374720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001305600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001286560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001253888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001239552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001207296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001195520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001182008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001126472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001082168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001071224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001069056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001058816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001041408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001008184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000994248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000966872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000945664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000937464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000933176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000914200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000902976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000889384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000881112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000876544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000868352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000856328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000831016 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000824328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000801560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000704496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000696240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000678200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000676088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000673976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000644096 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000633856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000623960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000623392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000595512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000560400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000555744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000539960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000539256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000523720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000522040 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000506672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000487552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000482616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000475704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000443704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000409552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000395600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000313152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000253016 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000227640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000215896 _____ (Microsoft Corporation) C:\WINDOWS\system32\coreglobconfig.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000215864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000195128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000179000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000163208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coreglobconfig.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000113112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000086784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000076992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000071792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000020632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL
2020-07-16 06:14 - 2020-07-16 06:14 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2020-07-16 06:14 - 2020-07-16 06:14 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000009269 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-07-16 06:14 - 2020-07-16 06:14 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL
2020-07-16 06:14 - 2020-07-16 06:14 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-07-16 06:11 - 2020-06-30 05:04 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-07-16 06:11 - 2020-06-30 04:58 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-07-10 20:00 - 2020-07-15 06:02 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2020-07-10 12:06 - 2020-07-10 12:06 - 000002149 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SecureLine VPN.lnk
2020-07-10 12:06 - 2020-07-10 08:10 - 000059312 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys
2020-07-10 08:10 - 2020-07-09 10:16 - 000076184 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2020-07-09 23:02 - 2020-07-10 08:08 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-07-09 23:02 - 2020-07-09 23:02 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-07-09 17:38 - 2020-07-10 12:06 - 000002137 _____ C:\Users\Public\Desktop\Avast SecureLine VPN.lnk
2020-07-09 17:38 - 2020-07-10 12:06 - 000002137 _____ C:\ProgramData\Desktop\Avast SecureLine VPN.lnk
2020-07-09 17:38 - 2020-07-09 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2020-07-02 21:16 - 2020-07-02 21:16 - 000335976 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-07-02 21:16 - 2020-07-02 21:16 - 000216816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-07-02 21:16 - 2020-07-02 21:16 - 000175192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-06-24 19:19 - 2020-06-23 01:13 - 001780936 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-06-24 19:19 - 2020-06-23 01:13 - 001780936 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-06-24 19:19 - 2020-06-23 01:13 - 001371336 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-06-24 19:19 - 2020-06-23 01:13 - 001371336 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-06-24 19:19 - 2020-06-23 01:13 - 001086664 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-06-24 19:19 - 2020-06-23 01:13 - 001086664 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-06-24 19:19 - 2020-06-23 01:13 - 000946384 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-06-24 19:19 - 2020-06-23 01:13 - 000946384 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-06-24 19:19 - 2020-06-23 01:13 - 000455392 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-06-24 19:19 - 2020-06-23 01:13 - 000351112 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-06-24 19:19 - 2020-06-23 01:12 - 000674024 _____ C:\WINDOWS\system32\nvofapi64.dll
2020-06-24 19:19 - 2020-06-23 01:12 - 000543120 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 006652824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 005883288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 003902872 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 002368920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 002075360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 001722096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6445148.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 001568488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 001486736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 001482992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6445148.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 001146256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 000817552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 000812432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 000669416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 000656784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 000555920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2020-06-24 19:19 - 2020-06-22 03:45 - 000039824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2020-06-23 06:18 - 2020-06-23 06:18 - 000000000 ____D C:\Program Files\TAP-Windows

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-07-21 20:01 - 2020-06-11 21:00 - 000003776 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-07-21 20:01 - 2020-06-11 21:00 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-07-21 20:01 - 2020-06-11 21:00 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-07-21 20:01 - 2020-06-11 21:00 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000003286 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-07-21 20:01 - 2020-06-11 21:00 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-07-21 20:01 - 2020-06-11 21:00 - 000003166 _____ C:\WINDOWS\system32\Tasks\Zoner.Updater.S-1-5-21-3581442496-2330036367-2054281957-1002
2020-07-21 20:01 - 2020-06-11 21:00 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000003080 _____ C:\WINDOWS\system32\Tasks\klcp_update
2020-07-21 20:01 - 2020-06-11 21:00 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002896 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe
2020-07-21 20:01 - 2020-06-11 21:00 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:01 - 2020-06-11 21:00 - 000002444 _____ C:\WINDOWS\system32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2020-07-21 20:01 - 2020-06-11 21:00 - 000002392 _____ C:\WINDOWS\system32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2020-07-21 20:01 - 2020-06-11 21:00 - 000002388 _____ C:\WINDOWS\system32\Tasks\Microsoft_Hardware_Launch_itype_exe
2020-07-21 20:01 - 2020-06-11 21:00 - 000002374 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2020-07-21 20:01 - 2020-06-11 21:00 - 000002370 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2020-07-21 20:01 - 2020-06-11 21:00 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-07-21 20:01 - 2020-06-11 21:00 - 000002220 _____ C:\WINDOWS\system32\Tasks\Core Temp Autostart User_753
2020-07-21 20:01 - 2020-06-11 21:00 - 000002038 _____ C:\WINDOWS\system32\Tasks\Wetter
2020-07-21 20:01 - 2020-06-11 21:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2020-07-21 19:08 - 2020-06-11 20:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-07-21 19:02 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-07-21 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-07-21 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-07-21 18:32 - 2020-01-19 12:35 - 000000000 ____D C:\ProgramData\NVIDIA
2020-07-21 18:30 - 2020-06-11 20:59 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-07-21 18:30 - 2019-12-07 16:41 - 000716602 _____ C:\WINDOWS\system32\perfh005.dat
2020-07-21 18:30 - 2019-12-07 16:41 - 000144780 _____ C:\WINDOWS\system32\perfc005.dat
2020-07-21 18:30 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2020-07-21 18:25 - 2020-01-19 17:31 - 000016824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2020-07-21 18:25 - 2020-01-19 13:56 - 000000000 ____D C:\Users\User_753\AppData\LocalLow\Mozilla
2020-07-21 18:23 - 2020-06-11 21:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-07-21 18:23 - 2020-06-11 20:55 - 000008192 ___SH C:\DumpStack.log.tmp
2020-07-21 18:23 - 2020-01-19 19:14 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2020-07-21 07:01 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-07-20 15:37 - 2020-01-19 17:30 - 000000000 ____D C:\ProgramData\AVAST Software
2020-07-19 09:12 - 2020-06-07 07:53 - 000002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-07-19 09:12 - 2020-01-19 12:43 - 000000000 ____D C:\Users\User_753\AppData\Local\Packages
2020-07-19 01:07 - 2020-06-11 20:15 - 000000000 ____D C:\Users\User_753
2020-07-18 15:53 - 2020-01-19 21:09 - 000000000 ____D C:\Users\User_753\AppData\Local\Adobe
2020-07-18 15:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-07-18 15:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-07-18 09:58 - 2020-01-20 20:25 - 000000000 ____D C:\Users\User_753\AppData\Local\AVAST Software
2020-07-18 09:46 - 2020-01-22 23:46 - 000000000 ____D C:\Wswin
2020-07-18 00:59 - 2020-01-19 12:35 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-07-18 00:59 - 2020-01-19 12:35 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-07-18 00:59 - 2020-01-19 12:35 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-07-18 00:57 - 2020-01-19 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2020-07-18 00:57 - 2020-01-19 20:22 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2020-07-18 00:49 - 2020-01-23 00:38 - 000000000 ____D C:\Users\User_753\AppData\Local\CrashDumps
2020-07-16 15:20 - 2020-06-11 20:55 - 000355192 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2020-07-16 06:16 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2020-07-16 06:16 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-07-16 06:14 - 2015-09-22 09:51 - 000413710 __RSH C:\bootmgr
2020-07-14 19:36 - 2020-01-20 20:25 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2020-07-10 08:10 - 2020-01-19 17:31 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2020-07-10 08:08 - 2020-01-19 13:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-07-09 23:02 - 2020-01-19 13:56 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-07-09 17:38 - 2020-01-19 17:31 - 000000000 ____D C:\Program Files\AVAST Software
2020-07-09 13:28 - 2020-06-11 21:00 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-07-07 09:44 - 2020-01-19 21:11 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-07-02 21:16 - 2020-04-04 20:58 - 000514448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000851600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000466232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000323272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000235584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000205880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000195648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000109272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000084848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000060480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000042768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-07-02 21:16 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-07-02 19:30 - 2020-06-11 21:00 - 000003508 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineUA
2020-07-02 19:30 - 2020-06-11 21:00 - 000003384 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineCore
2020-06-25 20:43 - 2020-01-19 13:59 - 000000000 ____D C:\Users\User_753\AppData\Local\D3DSCache
2020-06-24 21:57 - 2020-01-24 22:59 - 000000000 ____D C:\ProgramData\Zoner
2020-06-24 19:48 - 2020-01-19 13:57 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-06-24 19:48 - 2020-01-19 13:57 - 000000863 _____ C:\ProgramData\Desktop\CCleaner.lnk
2020-06-23 21:09 - 2020-06-11 19:35 - 000000000 ___DC C:\WINDOWS\Panther
2020-06-23 16:20 - 2020-01-19 22:57 - 002754024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2020-06-23 16:20 - 2020-01-19 22:57 - 002122216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2020-06-23 16:20 - 2020-01-19 22:57 - 001295848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2020-06-23 06:22 - 2020-01-19 22:57 - 000000000 ____D C:\ProgramData\Package Cache
2020-06-23 01:08 - 2020-06-03 17:58 - 005383880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2020-06-23 01:08 - 2020-06-03 17:58 - 004705760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2020-06-22 03:45 - 2020-06-03 17:58 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2020-06-22 03:45 - 2020-06-03 17:58 - 000222112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2020-06-22 03:45 - 2020-06-03 17:58 - 000058532 _____ C:\WINDOWS\system32\nvinfo.pb
2020-06-21 23:59 - 2020-01-19 12:35 - 005490488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2020-06-21 23:59 - 2020-01-19 12:35 - 002634728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2020-06-21 23:59 - 2020-01-19 12:35 - 001759032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2020-06-21 23:59 - 2020-01-19 12:35 - 000991032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2020-06-21 23:59 - 2020-01-19 12:35 - 000195048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2020-06-21 23:59 - 2020-01-19 12:35 - 000122344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2020-06-21 23:59 - 2020-01-19 12:35 - 000083256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll

==================== Files in the root of some directories ========

2020-02-10 14:33 - 2020-02-10 14:33 - 001065984 _____ () C:\Users\User_753\AppData\Local\file__0.localstorage

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#6 Příspěvek od kcobain »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2020
Ran by User_753 (21-07-2020 20:04:11)
Running from C:\Users\User_753\Desktop
Windows 10 Home Version 2004 19041.388 (X64) (2020-06-11 19:00:20)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3581442496-2330036367-2054281957-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3581442496-2330036367-2054281957-503 - Limited - Disabled)
Guest (S-1-5-21-3581442496-2330036367-2054281957-501 - Limited - Disabled)
User_753 (S-1-5-21-3581442496-2330036367-2054281957-1002 - Administrator - Enabled) => C:\Users\User_753
WDAGUtilityAccount (S-1-5-21-3581442496-2330036367-2054281957-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.403 - Adobe)
Aktualizace NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
Anti-Vibrate Oscar Editor (HKLM-x32\...\InstallShield_{5600BE52-805C-4847-93F2-7921116ED0B3}) (Version: 12.08.0005 - A4TECH)
Avast Premium Security (HKLM-x32\...\Avast Antivirus) (Version: 20.5.2415 - Avast Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 83.1.4977.117 - Autoři prohlížeče Avast Secure Browser)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 5.6.4982.470 - Avast Software)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.7.915.0 - AVAST Software) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.68 - Piriform)
Core Temp 1.15.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.15.1 - ALCPU)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
Europa 1400 - The Guild Update 1.05 Beta 3 (HKLM-x32\...\Europa 1400 - The Guild Update 1.05 Beta 3) (Version: - )
Farming Simulator 19 Platinum Expansion (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\Farming Simulator 19 Platinum Expansion) (Version: - HOODLUM)
FastStone Image Viewer 7.5 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.5 - FastStone Soft)
Grand Theft Auto V verze 1.0.877.1 (HKLM-x32\...\{4189D927-4C39-41E5-A456-31F51EE67CE5}_is1) (Version: 1.0.877.1 - )
HP Officejet Pro 8100 Nápověda (HKLM-x32\...\{F7635BFA-96BB-426D-91ED-1DB0E09585A9}) (Version: 28.0.0 - Hewlett Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
K-Lite Mega Codec Pack 15.6.1 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.6.1 - KLCP)
Mafia (HKLM-x32\...\1595659240_is1) (Version: 1.3 - GOG.com)
Mafia Compatibility Database (HKLM\...\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb) (Version: - )
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.40 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - )
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 12.181.137.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox 78.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 78.0.2 (x64 cs)) (Version: 78.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.1 - Mozilla)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.4.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.4.14 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.34 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 451.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 451.48 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
OSCAR Editor (HKLM-x32\...\{5600BE52-805C-4847-93F2-7921116ED0B3}) (Version: 12.08.0005 - A4TECH) Hidden
Ovládací panel NVIDIA 451.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 451.48 - NVIDIA Corporation) Hidden
Rajče průvodce verze 1.59.54.269 (HKLM-x32\...\rajce.net_is1) (Version: - rajce.net)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
SSDlife Pro (HKLM-x32\...\{6F104B6D-535A-4D27-9A11-8525368AEB1F}) (Version: 2.5.82 - BinarySense Inc.)
TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.)
Transcend SSD Scope version 3.14 (HKLM-x32\...\{AD8E7B8B-EAD8-4B9F-882E-7970ABFACE34}_is1) (Version: 3.14 - Transcend Information, Inc.)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
Wargaming.net Game Center (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\Wargaming.net Game Center) (Version: 20.3.4.1077 - Wargaming.net)
Winamp (HKLM-x32\...\Winamp) (Version: 5.8 - Winamp SA)
WinRAR 5.90 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
WsWin V2.99.8 - 2020-06-09 (HKLM-x32\...\PC-Wetterstation_is1) (Version: 2.99.8.8 - Werner Krenn)
Základní software zařízení HP Officejet Pro 8100 (HKLM\...\{6F19CF85-371F-439C-A97B-35269F9A882B}) (Version: 28.0.1321.0 - Hewlett-Packard Co.)
Zoner Photo Studio X CS (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\ZPS X) (Version: 19.1909.2.204 - ZONER software)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-01-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-01-22] (Microsoft Corporation) [MS Ad]
Microsoft Edge -> C:\Program Files (x86)\Microsoft\Edge\Application [2020-07-19] (0)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7162.0_x64__8wekyb3d8bbwe [2020-07-21] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-06-21] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\WINDOWS\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\WINDOWS\system32\lagarith.dll [148992 2011-12-08] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\WINDOWS\system32\xvidvfw.dll [310784 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-08] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284160 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112128 2015-10-25] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2016-06-07 20:46 - 2016-06-07 20:46 - 000581390 _____ () [File not signed] C:\Program Files (x86)\FastStone Image Viewer\fsplugin05.dll
2018-06-28 18:19 - 2018-06-28 18:19 - 000376320 _____ () [File not signed] C:\Program Files (x86)\FastStone Image Viewer\fsplugin06.dll
2020-06-11 21:02 - 2020-07-21 18:23 - 000192512 _____ () [File not signed] C:\Users\User_753\AppData\Local\Temp\sfamcc00001.dll
2020-07-19 08:26 - 2020-07-21 18:23 - 000158720 _____ () [File not signed] C:\Users\User_753\AppData\Local\Temp\sfareca00001.dll
2003-03-18 23:23 - 2003-03-18 23:23 - 000024576 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\1029\mdmui.dll
2006-10-26 13:44 - 2006-10-26 13:44 - 000123904 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\csm.dll
2006-10-26 13:45 - 2006-10-26 13:45 - 000247296 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\msdbg2.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`29hfm [0]
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [128]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2020-01-19 12:13 - 2020-01-19 12:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "Avast SecureLine VPN.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\StartupApproved\Run: => "Wargaming.net Game Center"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{4230663C-D927-4CF3-87DC-E22A218B1C39}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6B6F4D00-7857-4113-BDF1-3FCBC9599ADB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5DB7B2B2-C8E5-4291-82F1-E055618B73E4}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8100\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{92D81135-1823-43D3-8EF9-53A959F3EC2B}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8100\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B42DC3EE-DA47-458A-BE9C-D3084192EA2F}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8100\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B80D7CDE-1CB3-4D92-927D-543E6FAE3BA0}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{4CDB99FC-839D-4CF7-BD22-F1C4B52B7888}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{44C70936-7896-4432-AD2E-47962A1D64D4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{850E2A28-C030-4CFA-95F2-87948052C209}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{41587D39-E114-4691-8E97-60370A943DBB}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{532BCA73-A4FC-4434-8509-B3714292EF8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{56250136-F8F5-4659-8856-B3967347D049}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CA2E4F31-1BE9-4A20-AE42-B11FA485A667}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{06C0C678-85D8-4ACE-970B-026F4769A3A1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)

==================== Restore Points =========================

01-07-2020 19:56:27 Naplánovaný kontrolní bod
09-07-2020 17:47:35 Naplánovaný kontrolní bod
16-07-2020 06:11:34 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

Name: avast! SecureLine TAP Adapter v3
Description: avast! SecureLine TAP Adapter v3
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-Windows Provider V9
Service: aswTap
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (07/18/2020 12:09:13 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)


System errors:
=============
Error: (07/20/2020 11:24:41 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3OR1S13)
Description: Server Microsoft.AAD.BrokerPlugin_1000.19041.1.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Machine Debug Manager byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (07/19/2020 02:53:59 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3OR1S13)
Description: Server {D18705BE-FC2F-44C8-AEFF-1CD49AEA8FC1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/19/2020 02:11:21 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3OR1S13)
Description: Server {D18705BE-FC2F-44C8-AEFF-1CD49AEA8FC1} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/19/2020 02:09:21 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3OR1S13)
Description: Server {D18705BE-FC2F-44C8-AEFF-1CD49AEA8FC1} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================

Date: 2020-07-21 19:28:37.8640000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.8040000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.7970000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.7230000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.7150000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.6180000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.6120000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-21 19:28:37.5610000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: American Megatrends Inc. V1.6 12/23/2014
Motherboard: MSI Z97M GAMING (MS-7919)
Processor: Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz
Percentage of memory in use: 55%
Total physical RAM: 8142.42 MB
Available physical RAM: 3601.43 MB
Total Virtual: 10062.42 MB
Available Virtual: 4129.64 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.92 GB) (Free:144.27 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:931.51 GB) (Free:513.95 GB) NTFS

\\?\Volume{46da0bfb-0000-0000-0000-307b3b000000}\ () (Fixed) (Total:0.55 GB) (Free:0.11 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 46DA0BFB)
Partition 1: (Active) - (Size=237.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=560 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 4D1629CF)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#7 Příspěvek od Conder »

Hlavny log FRST.txt nie je cely, chyba zaciatok (moze ist o chybu FRST alebo bol log zle skopirovany). Vytvor a posli FRST logy este raz.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#8 Příspěvek od kcobain »

A tak to sem si nevšiml. Dobře, dávám ještě jednou:


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19-07-2020
Ran by User_753 (administrator) on DESKTOP-3OR1S13 (MSI MS-7919) (22-07-2020 06:37:29)
Running from C:\Users\User_753\Desktop
Loaded Profiles: User_753
Platform: Windows 10 Home Version 2004 19041.388 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\AvastBrowserCrashHandler.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\AvastBrowserCrashHandler64.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <2>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\MKCHelper.exe
(Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <11>
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SOKNO S.R.L. -> Almico Software (almico.com)) C:\Program Files (x86)\SpeedFan\speedfan.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7637208 2014-07-15] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [109160 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\Run: [Wargaming.net Game Center] => D:\HRY\Wargaming.net\GameCenter\wgc.exe [2415992 2020-07-18] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\MountPoints2: {fa507e6e-3fa0-11ea-a6ad-d8cb8a536b99} - "I:\Setup.exe"
HKLM\...\Print\Monitors\HP 5B12 Status Monitor: C:\WINDOWS\system32\hpinksts5B12LM.dll [331664 2012-06-13] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet Pro 8100): C:\WINDOWS\system32\HPDiscoPM5B12.dll [741480 2012-11-01] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\Software\...\AppCompatFlags\Custom\Game.exe: [{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb] -> Mafia Compatibility Database
HKLM\Software\...\AppCompatFlags\Custom\Setup.exe: [{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb] -> Mafia Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb [2017-10-31]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\83.1.4977.117\Installer\chrmstp.exe [2020-07-14] (Avast Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2020-07-15]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
BootExecute: autocheck autochk * icarus_rvrt.exe
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {05DAD14A-D343-47FC-88D5-756685B34E96} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {12B99D5D-2F25-47C4-A256-B84D29933C90} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {22188126-8043-47B0-BA7F-85A4AEBBE3FC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1331792 2020-05-07] (Adobe Inc. -> Adobe Inc.)
Task: {25E5B93C-815A-4931-ADE5-62A44409B16C} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1180488 2020-07-14] (Avast Software s.r.o. -> AVAST Software)
Task: {30A62E34-C17D-48B6-82CF-6AD7EF8D1E0D} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {35FAE004-323E-4A01-A2D6-A7F1D6ECA369} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2646152 2019-11-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {365297F3-CD4F-4DF2-B319-78A5F2355F37} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_403_Plugin.exe [1475640 2020-07-18] (Adobe Inc. -> Adobe)
Task: {44C6343D-90BF-4489-81EA-C96E9F3F40AB} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [124112 2020-07-09] (Mozilla Corporation -> Mozilla Foundation)
Task: {454E3E2F-CC47-4B67-9A39-526E5FA700E4} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-05-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5189EB02-710A-4D7C-92E3-D734978B29C1} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5511901A-6CB5-4CDD-948F-20DF2506F283} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3339872 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
Task: {5DE63AB3-4B36-406E-B680-503083BEC0EB} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3292984 2020-06-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {6480D97A-6EC3-4A55-99ED-9F90CC43F9C4} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [193688 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
Task: {76E8C513-8702-4940-8C87-FD7A81E3B6F6} - System32\Tasks\SpeedFan\SpeedFan => C:\Program Files (x86)\SpeedFan\speedfan.exe [4841120 2015-02-20] (SOKNO S.R.L. -> Almico Software (almico.com))
Task: {7C71C398-C1A7-4EA2-B1BD-11B190F29E2F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8087510B-1496-41AD-8781-D12773B66FD1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8BC43D32-1B25-47F0-9E92-3BC775F9BC6C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647656 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {943EE81C-4772-4560-B2F6-A71E3ECCF297} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2177464 2019-11-15] (Microsoft Corporation -> Microsoft)
Task: {97D2C12B-EA36-4A5B-96CE-6160A3F1F80E} - System32\Tasks\Core Temp Autostart User_753 => C:\Program Files\Core Temp\Core Temp.exe [1011592 2019-08-30] (ALCPU -> ALCPU)
Task: {9E693456-1C78-4ECF-88BD-6E542AD5690C} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [32696 2019-11-15] (Microsoft Corporation -> Microsoft)
Task: {AB7A0C71-F2AD-427A-B7FD-05AEF8B02B45} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2124576 2020-07-03] (Avast Software s.r.o. -> AVAST Software)
Task: {B07B7785-9D4F-4FC0-A5C8-D4693A5AEB68} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-05-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B4BA62B4-1D8A-414E-A0AD-0A0881FE816A} - System32\Tasks\AdwCleaner_onReboot => C:\Users\User_753\Desktop\adwcleaner_8.0.6.exe [8420016 2020-07-20] (Malwarebytes Inc -> Malwarebytes)
Task: {B55EE515-E8EE-41CD-AEC5-F6B73A2C0919} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2043016 2019-11-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {BE392A93-E554-462A-80AE-17E996534296} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2043016 2019-11-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEEC3B46-DC33-4289-AEDA-CE05F0580C35} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1706496 2020-05-15] () [File not signed]
Task: {C0B5DEE1-DAC8-477C-90EC-A411F6A2A7ED} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2124576 2020-07-03] (Avast Software s.r.o. -> AVAST Software)
Task: {C95BE927-57B8-466F-8DBC-8CCB113C10B5} - System32\Tasks\Agent Activation Runtime\S-1-5-21-3581442496-2330036367-2054281957-1002 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-06-11] (Microsoft Windows -> )
Task: {CB5873A5-4C07-4160-826A-3E418831D588} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2646152 2019-11-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {D1DEC87B-6A7A-4522-9C4F-F653D6715471} - System32\Tasks\Zoner.Updater.S-1-5-21-3581442496-2330036367-2054281957-1002 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2692864 2020-06-19] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {D6C1FCE8-7EF8-439A-9656-F45953AB447B} - System32\Tasks\Wetter => C:\Wswin\Wswin32.exe [2357760 2020-06-09] (Werner Krenn) [File not signed]
Task: {DDAE846E-3C7B-40EC-8FD8-8D7AA4A2FF13} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DE7263B0-A228-4F84-AA02-0314F74ED4A1} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [193688 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
Task: {EC5B9F74-5730-46FD-A4CC-C83B51911D4D} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [5098136 2020-07-14] (Avast Software s.r.o. -> Avast Software)
Task: {F6327467-B863-4B95-BC37-3F14D3458BE2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [24910520 2020-07-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {FEB3E522-D6EB-4A9F-8D02-84BE212E7E1E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{3ed265cf-d7f0-4239-a306-20ff36ac8934}: [NameServer] 100.120.128.1
Tcpip\..\Interfaces\{48fda326-985b-4567-acf1-5001486dd5ab}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{7d292253-024e-45d5-a545-757a31cd434b}: [DhcpNameServer] 8.8.8.8

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
======
Edge Profile: C:\Users\User_753\AppData\Local\Microsoft\Edge\User Data\Default [2020-07-22]

FireFox:
========
FF DefaultProfile: tgnymfxn.default
FF ProfilePath: C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\tgnymfxn.default [2020-02-25]
FF ProfilePath: C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992 [2020-07-22]
FF DownloadDir: D:\DOWNLOAD
FF Homepage: Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992 -> www.centrum.cz
FF Notifications: Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992 -> hxxps://www.lide.cz
FF Extension: (uBlock Origin) - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992\Extensions\uBlock0@raymondhill.net.xpi [2020-02-12]
FF Extension: (YouTube NonStop) - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992\Extensions\{0d7cafdd-501c-49ca-8ebb-e3341caaa55e}.xpi [2020-04-16]
FF Extension: (Feedbro) - C:\Users\User_753\AppData\Roaming\Mozilla\Firefox\Profiles\k7h5hj30.default-release-1581530573992\Extensions\{a9c2ad37-e940-4892-8dce-cd73c6cbbc0c}.xpi [2020-02-12]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_403.dll [2020-07-18] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_403.dll [2020-07-18] (Adobe Inc. -> )
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\npAvastBrowserUpdate3.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.7.915.0\npAvastBrowserUpdate3.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6514072 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [193688 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [356824 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1065456 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [193688 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\83.1.4977.117\elevation_service.exe [1310024 2020-07-03] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 SecureLine; C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe [7415168 2020-07-14] (Avast Software s.r.o. -> AVAST Software)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-01-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-01-19] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ALSysIO; C:\Users\User_753\AppData\Local\Temp\ALSysIO64.sys [47240 2020-07-22] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
S3 asmthub3; C:\WINDOWS\System32\drivers\asmthub3.sys [140032 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
S3 asmtxhci; C:\WINDOWS\System32\drivers\asmtxhci.sys [424192 2013-08-16] (MCCI Corporation -> ASMedia Technology Inc)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205880 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [235584 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [195648 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [60480 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16824 2020-07-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42768 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175192 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [514448 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109272 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84848 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851600 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [466232 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216816 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [323272 2020-07-02] (Avast Software s.r.o. -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [59312 2020-07-10] (Avast Software s.r.o. -> Avast Software)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-05-09] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-05-09] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [145920 2019-12-07] (Microsoft Windows -> Qualcomm Atheros, Inc.)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-01-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-01-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-01-19] (Microsoft Windows -> Microsoft Corporation)
S3 WinRing0_1_2_0; C:\Program Files (x86)\Transcend\SSD Scope\WinRing0x64.sys [14544 2019-07-22] (Noriyuki MIYAZAKI -> OpenLibSys.org)
R3 XtuAcpiDriver; C:\WINDOWS\System32\drivers\XtuAcpiDriver.sys [54168 2017-04-18] (Intel Corporation -> Intel Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-07-21 22:05 - 2020-07-21 22:05 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2020-07-21 22:04 - 2020-07-07 18:31 - 001780952 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-07-21 22:04 - 2020-07-07 18:31 - 001780952 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-07-21 22:04 - 2020-07-07 18:31 - 001371352 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-07-21 22:04 - 2020-07-07 18:31 - 001371352 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-07-21 22:04 - 2020-07-07 18:31 - 001086680 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-07-21 22:04 - 2020-07-07 18:31 - 001086680 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-07-21 22:04 - 2020-07-07 18:31 - 000946392 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-07-21 22:04 - 2020-07-07 18:31 - 000946392 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-07-21 22:04 - 2020-07-07 18:30 - 000456600 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-07-21 22:04 - 2020-07-07 18:30 - 000349936 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 002076560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 001569680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 001486744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 001146264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000816368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000812432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000674032 _____ C:\WINDOWS\system32\nvofapi64.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000670616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000655592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000555928 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2020-07-21 22:04 - 2020-07-07 18:29 - 000541936 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2020-07-21 22:04 - 2020-07-07 18:28 - 006652816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2020-07-21 22:04 - 2020-07-07 18:28 - 005883280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2020-07-21 22:04 - 2020-07-07 18:28 - 003901672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2020-07-21 22:04 - 2020-07-07 18:28 - 002367720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2020-07-21 22:04 - 2020-07-07 18:28 - 001722088 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6445167.dll
2020-07-21 22:04 - 2020-07-07 18:28 - 001482976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6445167.dll
2020-07-21 20:12 - 2020-07-21 20:14 - 000000000 ____D C:\Program Files (x86)\Google
2020-07-21 20:04 - 2020-07-21 20:04 - 000026162 _____ C:\Users\User_753\Desktop\Addition.txt
2020-07-21 20:03 - 2020-07-22 06:37 - 000023223 _____ C:\Users\User_753\Desktop\FRST.txt
2020-07-21 20:02 - 2020-07-22 06:37 - 000000000 ____D C:\FRST
2020-07-21 20:02 - 2020-07-21 20:02 - 002293760 _____ (Farbar) C:\Users\User_753\Desktop\FRST64.exe
2020-07-20 23:24 - 2020-07-21 20:52 - 000002350 _____ C:\WINDOWS\system32\Tasks\AdwCleaner_onReboot
2020-07-20 23:23 - 2020-07-20 23:24 - 000000000 ____D C:\AdwCleaner
2020-07-20 20:47 - 2020-07-20 20:47 - 008420016 _____ (Malwarebytes) C:\Users\User_753\Desktop\adwcleaner_8.0.6.exe
2020-07-18 19:07 - 2020-07-20 17:18 - 000000813 _____ C:\Users\User_753\Desktop\Nový textový dokument.txt
2020-07-18 11:52 - 2020-07-18 11:51 - 001222144 _____ C:\Users\User_753\Desktop\RSITx64.exe
2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\rsit
2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\Program Files\trend micro
2020-07-18 00:59 - 2020-03-04 14:54 - 001804784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2020-07-18 00:59 - 2020-03-04 14:54 - 000050592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\NvModuleTracker.sys
2020-07-18 00:53 - 2020-07-18 00:53 - 000001116 _____ C:\Users\User_753\Desktop\SpeedFan.lnk
2020-07-16 06:15 - 2020-07-16 06:15 - 026271744 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 023433216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 019868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 018766336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 018068992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 007534160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 007070208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 006404608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 005821952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 004783328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 003547280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 002520048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001956016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001301592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001246720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001090560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 001014872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000991744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-07-16 06:15 - 2020-07-16 06:15 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000453952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000413208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000343992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-07-16 06:15 - 2020-07-16 06:15 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-07-16 06:15 - 2020-07-16 06:15 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-07-16 06:15 - 2020-07-16 06:15 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-07-16 06:15 - 2020-07-16 06:15 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2020-07-16 06:15 - 2020-07-16 06:15 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2020-07-16 06:14 - 2020-07-16 06:15 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 017540608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 014754816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 010922808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 008892600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 007992824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 007964416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 007593544 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006920192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006709248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006356008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006175232 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 005964496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 005766168 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 004734976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 004485216 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 003925856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 003906048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003860480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003812304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003810816 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 003779896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 003778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003752448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002963456 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 002918216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002744320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002585912 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002568192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002566144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002399744 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002338304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002311680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002305024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002286128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002245632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002177528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002131024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002077696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 002026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001952392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001876480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001784488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001762632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001712128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001668904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001641472 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001606656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001557824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001556480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001509736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001474048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001449280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001448448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001403904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001374720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001305600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001286560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 001253888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001239552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001207296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001195520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001182008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001126472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001082168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001071224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001069056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001058816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001041408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001008184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000994248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000966872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000945664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000937464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000933176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000914200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000902976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000889384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000881112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000876544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000868352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000856328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000831016 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000824328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000801560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000704496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000696240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000678200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000676088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000673976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000644096 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000633856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000623960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000623392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000595512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000560400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000555744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000539960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000539256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000523720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000522040 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000506672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000487552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000482616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000475704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000443704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000409552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000395600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000313152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000253016 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000227640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000215896 _____ (Microsoft Corporation) C:\WINDOWS\system32\coreglobconfig.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000215864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000195128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000179000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-07-16 06:14 - 2020-07-16 06:14 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000163208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coreglobconfig.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000113112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-07-16 06:14 - 2020-07-16 06:14 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000086784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000076992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000071792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe
2020-07-16 06:14 - 2020-07-16 06:14 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000020632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL
2020-07-16 06:14 - 2020-07-16 06:14 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2020-07-16 06:14 - 2020-07-16 06:14 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000009269 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-07-16 06:14 - 2020-07-16 06:14 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL
2020-07-16 06:14 - 2020-07-16 06:14 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-07-16 06:14 - 2020-07-16 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-07-16 06:11 - 2020-06-30 05:04 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-07-16 06:11 - 2020-06-30 04:58 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-07-10 20:00 - 2020-07-15 06:02 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2020-07-10 12:06 - 2020-07-10 12:06 - 000002149 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SecureLine VPN.lnk
2020-07-10 12:06 - 2020-07-10 08:10 - 000059312 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys
2020-07-10 08:10 - 2020-07-09 10:16 - 000076184 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2020-07-09 23:02 - 2020-07-10 08:08 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-07-09 23:02 - 2020-07-09 23:02 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2020-07-09 17:38 - 2020-07-10 12:06 - 000002137 _____ C:\Users\Public\Desktop\Avast SecureLine VPN.lnk
2020-07-09 17:38 - 2020-07-09 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2020-07-02 21:16 - 2020-07-02 21:16 - 000335976 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-07-02 21:16 - 2020-07-02 21:16 - 000216816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-07-02 21:16 - 2020-07-02 21:16 - 000175192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-06-24 19:19 - 2020-06-23 01:11 - 001722096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6445148.dll
2020-06-24 19:19 - 2020-06-23 01:11 - 001482992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6445148.dll
2020-06-24 19:19 - 2020-06-22 03:45 - 000039824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2020-06-23 06:18 - 2020-06-23 06:18 - 000000000 ____D C:\Program Files\TAP-Windows

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-07-22 06:24 - 2020-01-19 17:30 - 000000000 ____D C:\ProgramData\AVAST Software
2020-07-22 06:21 - 2020-01-19 13:56 - 000000000 ____D C:\Users\User_753\AppData\LocalLow\Mozilla
2020-07-22 06:15 - 2020-06-11 20:59 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-07-22 06:15 - 2019-12-07 16:41 - 000716602 _____ C:\WINDOWS\system32\perfh005.dat
2020-07-22 06:15 - 2019-12-07 16:41 - 000144780 _____ C:\WINDOWS\system32\perfc005.dat
2020-07-22 06:15 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2020-07-22 06:11 - 2020-01-19 12:35 - 000000000 ____D C:\ProgramData\NVIDIA
2020-07-22 06:11 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-07-22 06:09 - 2020-01-19 19:14 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2020-07-22 06:08 - 2020-06-11 21:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-07-22 06:08 - 2020-06-11 20:55 - 000008192 ___SH C:\DumpStack.log.tmp
2020-07-21 22:19 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-07-21 21:50 - 2020-06-11 20:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-07-21 20:52 - 2020-06-11 21:00 - 000003776 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-07-21 20:52 - 2020-06-11 21:00 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-07-21 20:52 - 2020-06-11 21:00 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-07-21 20:52 - 2020-06-11 21:00 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000003286 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-07-21 20:52 - 2020-06-11 21:00 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000003166 _____ C:\WINDOWS\system32\Tasks\Zoner.Updater.S-1-5-21-3581442496-2330036367-2054281957-1002
2020-07-21 20:52 - 2020-06-11 21:00 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000003080 _____ C:\WINDOWS\system32\Tasks\klcp_update
2020-07-21 20:52 - 2020-06-11 21:00 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-07-21 20:52 - 2020-06-11 21:00 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002896 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe
2020-07-21 20:52 - 2020-06-11 21:00 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-07-21 20:52 - 2020-06-11 21:00 - 000002444 _____ C:\WINDOWS\system32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2020-07-21 20:52 - 2020-06-11 21:00 - 000002392 _____ C:\WINDOWS\system32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2020-07-21 20:52 - 2020-06-11 21:00 - 000002388 _____ C:\WINDOWS\system32\Tasks\Microsoft_Hardware_Launch_itype_exe
2020-07-21 20:52 - 2020-06-11 21:00 - 000002374 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2020-07-21 20:52 - 2020-06-11 21:00 - 000002370 _____ C:\WINDOWS\system32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2020-07-21 20:52 - 2020-06-11 21:00 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-07-21 20:52 - 2020-06-11 21:00 - 000002220 _____ C:\WINDOWS\system32\Tasks\Core Temp Autostart User_753
2020-07-21 20:52 - 2020-06-11 21:00 - 000002038 _____ C:\WINDOWS\system32\Tasks\Wetter
2020-07-21 20:51 - 2020-06-11 21:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2020-07-21 20:13 - 2020-01-19 13:57 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-07-21 20:11 - 2020-01-22 23:46 - 000000000 ____D C:\Wswin
2020-07-21 19:02 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-07-21 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-07-21 18:25 - 2020-01-19 17:31 - 000016824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2020-07-19 09:12 - 2020-06-07 07:53 - 000002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-07-19 09:12 - 2020-01-19 12:43 - 000000000 ____D C:\Users\User_753\AppData\Local\Packages
2020-07-19 01:07 - 2020-06-11 20:15 - 000000000 ____D C:\Users\User_753
2020-07-18 15:53 - 2020-01-19 21:09 - 000000000 ____D C:\Users\User_753\AppData\Local\Adobe
2020-07-18 15:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-07-18 15:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-07-18 09:58 - 2020-01-20 20:25 - 000000000 ____D C:\Users\User_753\AppData\Local\AVAST Software
2020-07-18 00:59 - 2020-01-19 12:35 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-07-18 00:59 - 2020-01-19 12:35 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-07-18 00:59 - 2020-01-19 12:35 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-07-18 00:57 - 2020-01-19 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2020-07-18 00:57 - 2020-01-19 20:22 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2020-07-18 00:49 - 2020-01-23 00:38 - 000000000 ____D C:\Users\User_753\AppData\Local\CrashDumps
2020-07-16 15:20 - 2020-06-11 20:55 - 000355192 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-07-16 07:10 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2020-07-16 06:16 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2020-07-16 06:16 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-07-16 06:14 - 2015-09-22 09:51 - 000413710 __RSH C:\bootmgr
2020-07-14 19:36 - 2020-01-20 20:25 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2020-07-10 08:10 - 2020-01-19 17:31 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2020-07-10 08:08 - 2020-01-19 13:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-07-09 23:02 - 2020-01-19 13:56 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-07-09 17:38 - 2020-01-19 17:31 - 000000000 ____D C:\Program Files\AVAST Software
2020-07-09 13:28 - 2020-06-11 21:00 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-07-07 18:27 - 2020-06-03 17:58 - 005399808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2020-07-07 18:26 - 2020-06-03 17:58 - 004716168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2020-07-07 09:44 - 2020-01-19 21:11 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-07-06 01:26 - 2020-06-03 17:58 - 000058532 _____ C:\WINDOWS\system32\nvinfo.pb
2020-07-05 21:12 - 2020-01-19 12:35 - 005492712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2020-07-05 21:12 - 2020-01-19 12:35 - 002633528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2020-07-05 21:12 - 2020-01-19 12:35 - 001760232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2020-07-05 21:12 - 2020-01-19 12:35 - 000991032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2020-07-05 21:12 - 2020-01-19 12:35 - 000195560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2020-07-05 21:12 - 2020-01-19 12:35 - 000121144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2020-07-05 21:12 - 2020-01-19 12:35 - 000084456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2020-07-03 18:12 - 2020-01-19 12:35 - 009216447 _____ C:\WINDOWS\system32\nvcoproc.bin
2020-07-02 21:16 - 2020-04-04 20:58 - 000514448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000851600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000466232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000323272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000235584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000205880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000195648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000109272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000084848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000060480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-07-02 21:16 - 2020-01-19 17:31 - 000042768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-07-02 21:16 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-07-02 19:30 - 2020-06-11 21:00 - 000003508 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineUA
2020-07-02 19:30 - 2020-06-11 21:00 - 000003384 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineCore
2020-06-25 20:43 - 2020-01-19 13:59 - 000000000 ____D C:\Users\User_753\AppData\Local\D3DSCache
2020-06-24 21:57 - 2020-01-24 22:59 - 000000000 ____D C:\ProgramData\Zoner
2020-06-23 21:09 - 2020-06-11 19:35 - 000000000 ___DC C:\WINDOWS\Panther
2020-06-23 16:20 - 2020-01-19 22:57 - 002754024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2020-06-23 16:20 - 2020-01-19 22:57 - 002122216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2020-06-23 16:20 - 2020-01-19 22:57 - 001295848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2020-06-23 06:22 - 2020-01-19 22:57 - 000000000 ____D C:\ProgramData\Package Cache
2020-06-22 03:45 - 2020-06-03 17:58 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2020-06-22 03:45 - 2020-06-03 17:58 - 000222112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys

==================== Files in the root of some directories ========

2020-02-10 14:33 - 2020-02-10 14:33 - 001065984 _____ () C:\Users\User_753\AppData\Local\file__0.localstorage

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#9 Příspěvek od kcobain »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2020
Ran by User_753 (22-07-2020 06:38:22)
Running from C:\Users\User_753\Desktop
Windows 10 Home Version 2004 19041.388 (X64) (2020-06-11 19:00:20)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3581442496-2330036367-2054281957-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3581442496-2330036367-2054281957-503 - Limited - Disabled)
Guest (S-1-5-21-3581442496-2330036367-2054281957-501 - Limited - Disabled)
User_753 (S-1-5-21-3581442496-2330036367-2054281957-1002 - Administrator - Enabled) => C:\Users\User_753
WDAGUtilityAccount (S-1-5-21-3581442496-2330036367-2054281957-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.403 - Adobe)
Aktualizace NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
Anti-Vibrate Oscar Editor (HKLM-x32\...\InstallShield_{5600BE52-805C-4847-93F2-7921116ED0B3}) (Version: 12.08.0005 - A4TECH)
Avast Premium Security (HKLM-x32\...\Avast Antivirus) (Version: 20.5.2415 - Avast Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 83.1.4977.117 - Autoři prohlížeče Avast Secure Browser)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 5.6.4982.470 - Avast Software)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.7.915.0 - AVAST Software) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.69 - Piriform)
Core Temp 1.15.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.15.1 - ALCPU)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
Europa 1400 - The Guild Update 1.05 Beta 3 (HKLM-x32\...\Europa 1400 - The Guild Update 1.05 Beta 3) (Version: - )
Farming Simulator 19 Platinum Expansion (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\Farming Simulator 19 Platinum Expansion) (Version: - HOODLUM)
FastStone Image Viewer 7.5 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.5 - FastStone Soft)
Grand Theft Auto V verze 1.0.877.1 (HKLM-x32\...\{4189D927-4C39-41E5-A456-31F51EE67CE5}_is1) (Version: 1.0.877.1 - )
HP Officejet Pro 8100 Nápověda (HKLM-x32\...\{F7635BFA-96BB-426D-91ED-1DB0E09585A9}) (Version: 28.0.0 - Hewlett Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
K-Lite Mega Codec Pack 15.6.1 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.6.1 - KLCP)
Mafia (HKLM-x32\...\1595659240_is1) (Version: 1.3 - GOG.com)
Mafia Compatibility Database (HKLM\...\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb) (Version: - )
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.40 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - )
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 12.181.137.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox 78.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 78.0.2 (x64 cs)) (Version: 78.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.1 - Mozilla)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.4.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.4.14 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.34 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 451.67 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 451.67 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
OSCAR Editor (HKLM-x32\...\{5600BE52-805C-4847-93F2-7921116ED0B3}) (Version: 12.08.0005 - A4TECH) Hidden
Ovládací panel NVIDIA 451.67 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 451.67 - NVIDIA Corporation) Hidden
Rajče průvodce verze 1.59.54.269 (HKLM-x32\...\rajce.net_is1) (Version: - rajce.net)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
SSDlife Pro (HKLM-x32\...\{6F104B6D-535A-4D27-9A11-8525368AEB1F}) (Version: 2.5.82 - BinarySense Inc.)
TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.)
Transcend SSD Scope version 3.14 (HKLM-x32\...\{AD8E7B8B-EAD8-4B9F-882E-7970ABFACE34}_is1) (Version: 3.14 - Transcend Information, Inc.)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
Wargaming.net Game Center (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\Wargaming.net Game Center) (Version: 20.3.4.1077 - Wargaming.net)
Winamp (HKLM-x32\...\Winamp) (Version: 5.8 - Winamp SA)
WinRAR 5.90 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
WsWin V2.99.8 - 2020-06-09 (HKLM-x32\...\PC-Wetterstation_is1) (Version: 2.99.8.8 - Werner Krenn)
Základní software zařízení HP Officejet Pro 8100 (HKLM\...\{6F19CF85-371F-439C-A97B-35269F9A882B}) (Version: 28.0.1321.0 - Hewlett-Packard Co.)
Zoner Photo Studio X CS (HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\ZPS X) (Version: 19.1909.2.204 - ZONER software)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-01-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-01-22] (Microsoft Corporation) [MS Ad]
Microsoft Edge -> C:\Program Files (x86)\Microsoft\Edge\Application [2020-07-19] (0)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7162.0_x64__8wekyb3d8bbwe [2020-07-21] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-07-05] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-07-02] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\WINDOWS\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\WINDOWS\system32\lagarith.dll [148992 2011-12-08] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\WINDOWS\system32\xvidvfw.dll [310784 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-08] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284160 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112128 2015-10-25] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-06-11 21:02 - 2020-07-22 06:09 - 000192512 _____ () [File not signed] C:\Users\User_753\AppData\Local\Temp\sfamcc00001.dll
2020-07-19 08:26 - 2020-07-22 06:09 - 000158720 _____ () [File not signed] C:\Users\User_753\AppData\Local\Temp\sfareca00001.dll
2003-03-18 23:23 - 2003-03-18 23:23 - 000024576 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\1029\mdmui.dll
2006-10-26 13:44 - 2006-10-26 13:44 - 000123904 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\csm.dll
2006-10-26 13:45 - 2006-10-26 13:45 - 000247296 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\msdbg2.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`29hfm [0]
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [128]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2020-01-19 12:13 - 2020-01-19 12:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "Avast SecureLine VPN.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3581442496-2330036367-2054281957-1002\...\StartupApproved\Run: => "Wargaming.net Game Center"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{4230663C-D927-4CF3-87DC-E22A218B1C39}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6B6F4D00-7857-4113-BDF1-3FCBC9599ADB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5DB7B2B2-C8E5-4291-82F1-E055618B73E4}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8100\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{92D81135-1823-43D3-8EF9-53A959F3EC2B}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8100\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B42DC3EE-DA47-458A-BE9C-D3084192EA2F}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8100\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B80D7CDE-1CB3-4D92-927D-543E6FAE3BA0}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{4CDB99FC-839D-4CF7-BD22-F1C4B52B7888}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{44C70936-7896-4432-AD2E-47962A1D64D4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{850E2A28-C030-4CFA-95F2-87948052C209}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{41587D39-E114-4691-8E97-60370A943DBB}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{532BCA73-A4FC-4434-8509-B3714292EF8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{56250136-F8F5-4659-8856-B3967347D049}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CA2E4F31-1BE9-4A20-AE42-B11FA485A667}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{06C0C678-85D8-4ACE-970B-026F4769A3A1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)

==================== Restore Points =========================

01-07-2020 19:56:27 Naplánovaný kontrolní bod
09-07-2020 17:47:35 Naplánovaný kontrolní bod
16-07-2020 06:11:34 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

Name: avast! SecureLine TAP Adapter v3
Description: avast! SecureLine TAP Adapter v3
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-Windows Provider V9
Service: aswTap
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (07/18/2020 12:09:13 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)


System errors:
=============
Error: (07/21/2020 10:05:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (07/21/2020 10:05:27 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba NVIDIA LocalSystem Container byla ukončena s následující chybou:
Obecný spustitelný příkaz vrátil výsledek označující selhání.

Error: (07/20/2020 11:24:41 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3OR1S13)
Description: Server Microsoft.AAD.BrokerPlugin_1000.19041.1.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Machine Debug Manager byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/20/2020 11:24:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (07/19/2020 02:53:59 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3OR1S13)
Description: Server {D18705BE-FC2F-44C8-AEFF-1CD49AEA8FC1} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================

Date: 2020-07-22 06:36:02.7400000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.7370000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.6200000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.6140000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.4250000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.4230000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.1470000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-22 06:36:02.1440000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume1\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: American Megatrends Inc. V1.6 12/23/2014
Motherboard: MSI Z97M GAMING (MS-7919)
Processor: Intel(R) Core(TM) i5-4690K CPU @ 3.50GHz
Percentage of memory in use: 46%
Total physical RAM: 8142.42 MB
Available physical RAM: 4351.89 MB
Total Virtual: 10062.42 MB
Available Virtual: 5691.04 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.92 GB) (Free:141.55 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:931.51 GB) (Free:513.66 GB) NTFS

\\?\Volume{46da0bfb-0000-0000-0000-307b3b000000}\ () (Fixed) (Total:0.55 GB) (Free:0.11 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 46DA0BFB)
Partition 1: (Active) - (Size=237.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=560 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 4D1629CF)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#10 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    ExportKey: HKLM\SOFTWARE\Policies\Mozilla\Firefox
    ExportKey: HKLM\SOFTWARE\Policies\Google
    ExportKey: HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer
    PowerShell: Get-Content "C:\DumpStack.log.tmp" -Head 10
    CMD: dir /a "C:\Wswin"
    File: C:\Wswin\Wswin32.exe
    File: C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
    File: C:\Users\User_753\AppData\Local\Temp\sfamcc00001.dll
    File: C:\Users\User_753\AppData\Local\Temp\sfareca00001.dll
    
    Task: {B4BA62B4-1D8A-414E-A0AD-0A0881FE816A} - System32\Tasks\AdwCleaner_onReboot => C:\Users\User_753\Desktop\adwcleaner_8.0.6.exe [8420016 2020-07-20] (Malwarebytes Inc -> Malwarebytes)
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
    R3 ALSysIO; C:\Users\User_753\AppData\Local\Temp\ALSysIO64.sys [47240 2020-07-22] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
    2020-07-18 11:52 - 2020-07-18 11:51 - 001222144 _____ C:\Users\User_753\Desktop\RSITx64.exe
    2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\rsit
    2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\Program Files\trend micro
    2020-07-22 06:08 - 2020-06-11 20:55 - 000008192 ___SH C:\DumpStack.log.tmp
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
    AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`29hfm [0]
    AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [128]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#11 Příspěvek od kcobain »

Vše provedeno, snad správně. Zde je log:


Fix result of Farbar Recovery Scan Tool (x64) Version: 22-07-2020
Ran by User_753 (23-07-2020 06:58:24) Run:1
Running from C:\Users\User_753\Desktop
Loaded Profiles: User_753
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
ExportKey: HKLM\SOFTWARE\Policies\Mozilla\Firefox
ExportKey: HKLM\SOFTWARE\Policies\Google
ExportKey: HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer
PowerShell: Get-Content "C:\DumpStack.log.tmp" -Head 10
CMD: dir /a "C:\Wswin"
File: C:\Wswin\Wswin32.exe
File: C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
File: C:\Users\User_753\AppData\Local\Temp\sfamcc00001.dll
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 27
Average :
Sum : 14258368
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

================== ExportKey: ===================

[HKLM\SOFTWARE\Policies\Mozilla\Firefox]
[HKLM\SOFTWARE\Policies\Mozilla\Firefox\Certificates]
"ImportEnterpriseRoots"="1"

=== End of ExportKey ===
================== ExportKey: ===================

[HKLM\SOFTWARE\Policies\Google]
[HKLM\SOFTWARE\Policies\Google\Chrome]

=== End of ExportKey ===
================== ExportKey: ===================

[HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer]
[HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer\Main]
"DisableFirstRunCustomize"="1"

=== End of ExportKey ===

========= Get-Content "C:\DumpStack.log.tmp" -Head 10 =========

Get-Content : Cannot find path 'C:\DumpStack.log.tmp' because it does not exist.
At C:\FRST\tmp.ps1:1 char:1
+ Get-Content "C:\DumpStack.log.tmp" -Head 10
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
+ CategoryInfo : ObjectNotFound: (C:\DumpStack.log.tmp:String) [Get-Content], ItemNotFoundException
+ FullyQualifiedErrorId : PathNotFound,Microsoft.PowerShell.Commands.GetContentCommand


========= End of Powershell: =========


========= dir /a "C:\Wswin" =========

Volume in drive C has no label.
Volume Serial Number is 16E1-EC6F

Directory of C:\Wswin

22.07.2020 21:14 <DIR> .
22.07.2020 21:14 <DIR> ..
22.07.2020 21:14 23˙666 aktuell.txt
23.01.2020 00:00 <DIR> AllData
19.10.2006 23:23 17˙233 current_.txt
26.02.2005 19:46 2˙626 custom_r_.txt
22.01.2020 23:46 <DIR> Debug
20.10.2006 20:33 2˙400 display_.txt
23.01.2020 00:52 131˙072 EEPROM_20200122_2347.bin
24.01.2020 22:40 <DIR> Export
13.06.2020 17:00 <DIR> html
03.10.2019 09:40 2˙487 info-smartweather.txt
04.10.2019 19:43 2˙226 info-smartweather_en.txt
18.05.2019 20:41 4˙548 info-wswin-custom-x-cz.txt
18.05.2019 20:40 4˙488 info-wswin-custom-x-en.txt
02.05.2019 16:12 4˙512 info-wswin-custom-x.txt
09.06.2020 17:50 270˙194 info.txt
09.06.2020 17:51 218˙879 info_en.txt
03.03.2006 09:07 5˙798 INFO_R.TXT
20.09.2002 16:40 86˙528 lame_enc.dll
11.01.2003 20:12 9˙148 libSMBM.js
13.02.2017 12:22 9˙192 libSMBMblank.js
13.02.2017 22:07 9˙192 libSMBMframe.js
23.05.2020 16:03 1˙412 License.txt
20.10.2006 20:31 6˙442 longtime_.txt
23.01.2020 20:06 <DIR> PDF
23.05.2020 16:02 255 Readme.txt
05.01.2010 15:05 9˙567 sunmoon_.txt
26.02.2005 19:46 2˙224 template_d_.txt
26.02.2005 19:46 19˙064 template_d_de.txt
24.01.2009 10:51 2˙968 template_m_.txt
24.01.2009 10:49 2˙933 template_noaa_m_.txt
24.01.2009 10:50 4˙455 template_noaa_y_.txt
26.02.2005 19:46 10˙349 template_yest_.txt
24.01.2009 11:46 4˙668 template_y_.txt
22.01.2020 23:46 <DIR> Text
15.08.2004 22:00 728 ticker_.txt
13.06.2020 17:00 301˙454 unins000.dat
13.06.2020 17:00 1˙209˙185 unins000.exe
07.03.2006 11:17 45˙056 USB.dll
04.10.2019 22:01 19˙056 wap-smartweather-x1.txt
04.10.2019 22:01 19˙056 wap-smartweather-x1_.txt
05.10.2019 22:02 19˙271 wap-smartweather-x1_en.txt
01.10.2019 22:59 8˙119 wap-smartweather-x2.txt
01.10.2019 13:33 8˙119 wap-smartweather-x2_.txt
05.10.2019 22:02 8˙194 wap-smartweather-x2_en.txt
01.10.2019 10:59 10˙383 wap-smartweather-x3.txt
01.10.2019 10:59 10˙383 wap-smartweather-x3_.txt
05.10.2019 22:01 10˙432 wap-smartweather-x3_en.txt
06.10.2019 13:59 10˙614 wap-smartweather-x4.txt
06.10.2019 14:00 10˙614 wap-smartweather-x4_.txt
05.10.2019 22:01 10˙663 wap-smartweather-x4_en.txt
03.05.2001 00:48 1˙592 wap_.txt
22.01.2020 23:50 491˙530 WD2_2016.DAT
22.01.2020 23:53 491˙530 WD2_2017.DAT
22.01.2020 23:55 491˙530 WD2_2018.DAT
03.02.2020 23:52 491˙530 WD2_2019.DAT
22.07.2020 21:14 491˙530 WD2_2020.DAT
22.01.2020 23:47 678˙622 WD_01_17.DAT
22.01.2020 23:47 678˙470 WD_01_18.DAT
22.01.2020 23:55 678˙622 WD_01_19.DAT
01.02.2020 12:06 677˙862 WD_01_20.DAT
22.01.2020 23:51 612˙730 WD_02_17.DAT
22.01.2020 23:53 612˙730 WD_02_18.DAT
22.01.2020 23:55 612˙806 WD_02_19.DAT
01.03.2020 20:56 634˙770 WD_02_20.DAT
22.01.2020 23:51 677˙406 WD_03_17.DAT
22.01.2020 23:53 677˙634 WD_03_18.DAT
22.01.2020 23:55 677˙558 WD_03_19.DAT
01.04.2020 16:20 677˙482 WD_03_20.DAT
22.01.2020 23:51 656˙430 WD_04_17.DAT
22.01.2020 23:53 656˙658 WD_04_18.DAT
22.01.2020 23:55 656˙582 WD_04_19.DAT
02.05.2020 11:20 656˙658 WD_04_20.DAT
22.01.2020 23:49 93˙042 WD_05_16.DAT
22.01.2020 23:51 678˙546 WD_05_17.DAT
22.01.2020 23:53 677˙634 WD_05_18.DAT
22.01.2020 23:49 678˙546 WD_05_19.DAT
04.06.2020 06:59 678˙546 WD_05_20.DAT
22.01.2020 23:50 326˙970 WD_06_16.DAT
22.01.2020 23:52 656˙658 WD_06_17.DAT
22.01.2020 23:54 656˙658 WD_06_18.DAT
22.01.2020 23:55 656˙658 WD_06_19.DAT
04.07.2020 23:18 656˙658 WD_06_20.DAT
22.01.2020 23:50 339˙434 WD_07_16.DAT
22.01.2020 23:52 678˙546 WD_07_17.DAT
22.01.2020 23:54 678˙546 WD_07_18.DAT
22.01.2020 23:56 678˙546 WD_07_19.DAT
22.07.2020 21:14 478˙894 WD_07_20.DAT
22.01.2020 23:50 339˙358 WD_08_16.DAT
22.01.2020 23:52 678˙394 WD_08_17.DAT
22.01.2020 23:54 678˙546 WD_08_18.DAT
22.01.2020 23:56 678˙546 WD_08_19.DAT
22.01.2020 23:50 328˙338 WD_09_16.DAT
22.01.2020 23:52 656˙658 WD_09_17.DAT
22.01.2020 23:54 656˙582 WD_09_18.DAT
22.01.2020 23:56 656˙658 WD_09_19.DAT
22.01.2020 23:50 356˙230 WD_10_16.DAT
22.01.2020 23:52 678˙546 WD_10_17.DAT
22.01.2020 23:55 678˙546 WD_10_18.DAT
22.01.2020 23:56 678˙546 WD_10_19.DAT
22.01.2020 23:50 656˙658 WD_11_16.DAT
22.01.2020 23:53 656˙582 WD_11_17.DAT
22.01.2020 23:49 656˙886 WD_11_18.DAT
22.01.2020 23:49 656˙658 WD_11_19.DAT
22.01.2020 23:48 678˙470 WD_12_16.DAT
22.01.2020 23:48 678˙546 WD_12_17.DAT
22.01.2020 23:48 678˙546 WD_12_18.DAT
22.01.2020 23:48 678˙546 WD_12_19.DAT
22.01.2020 23:46 <DIR> WinHelp32
30.04.2001 09:43 83˙968 Wsarchiv0.mdb
10.09.2019 12:22 42˙397 wswin-analyse.txt
10.09.2019 14:44 42˙064 wswin-analyse_en.txt
10.09.2019 23:12 44˙174 wswin-analyse_xx.txt
18.05.2019 20:44 262˙507 wswin-custom-x-cz.sec
18.05.2019 20:45 262˙228 wswin-custom-x-en.sec
18.05.2019 20:44 262˙739 wswin-custom-x.sec
22.07.2020 21:16 28˙452 WSWIN.CFG
22.01.2020 23:46 24 WSWIN.SET
09.06.2020 17:33 2˙357˙760 Wswin32.exe
23.01.2020 21:55 33˙234 WSWIN32.GID
23.05.2020 15:39 10˙398˙273 Wswin32.hlp
27.06.2013 17:00 168˙448 WsWinAprs.exe
13.06.2020 17:01 3˙308 Wswin_TE923usb.cmd
13.06.2020 17:01 177 wswin_usb.txt
23.01.2020 00:01 246 wswin_www.cfg
02.02.2013 19:48 660 wswin_x-csv_cumulus.cfg
31.03.2009 22:55 578 wswin_x-csv_elv_ws300.cfg
17.03.2009 18:03 607 wswin_x-csv_elv_ws550.cfg
09.06.2011 01:58 1˙889 wswin_x-csv_envoy8x.cfg
09.06.2011 23:16 3˙529 wswin_x-csv_Envoy8x.csv
03.12.2009 01:49 545 wswin_x-csv_eusotec_vantage.cfg
23.12.2018 16:04 565 wswin_x-csv_hp1000se.cfg
01.03.2015 03:46 561 wswin_x-csv_hp1000wifi.cfg
19.01.2016 14:08 563 wswin_x-csv_hp1000wifiFW2.cfg
01.04.2015 17:53 528 wswin_x-csv_hp1000wifi_php.cfg
12.03.2009 17:40 295 wswin_x-csv_hygrosens.cfg
06.10.2010 01:24 610 wswin_x-csv_logger_te923.cfg
09.06.2011 01:58 1˙889 wswin_x-csv_meteohub.cfg
12.03.2009 17:42 503 wswin_x-csv_reinhardt_mws.cfg
06.08.2015 17:42 635 wswin_x-csv_reinhardt_mws5mv-10.cfg
06.08.2015 17:47 518 wswin_x-csv_reinhardt_mws5mv-10x.cfg
17.03.2009 18:36 694 wswin_x-csv_tfa-nexus.cfg
09.06.2020 17:46 637 wswin_x-csv_ventus_w835.cfg
06.10.2010 23:32 475 wswin_x-csv_wdcsv.cfg
17.03.2009 18:37 571 wswin_x-csv_wh1080.cfg
28.06.2011 19:34 718 wswin_x-csv_wh3080.cfg
26.12.2018 22:30 569 wswin_x-csv_wh4000se.cfg
22.12.2018 22:52 564 wswin_x-csv_wh4000sewifi.cfg
27.12.2018 17:30 569 wswin_x-csv_wh4000se_lux.cfg
29.12.2018 15:37 570 wswin_x-csv_wh4000se_wm2.cfg
31.12.2012 13:28 1˙151 wswin_x-csv_wmr200.cfg
28.08.2014 21:33 1˙022 wswin_x-csv_wmr300.cfg
07.01.2019 22:53 563 wswin_x-csv_ws3080_lux.cfg
26.02.2005 19:46 43˙289 wswin_xml_.txt
28.09.2002 22:04 17˙467 ws_alarm_.wav
22.07.2020 21:14 8˙400 ws_ddays.txt
22.07.2020 21:16 22˙242 ws_hist.txt
22.07.2020 21:14 4˙763˙793 ws_newdata.csv
26.02.2005 19:46 582 ws_speech1h_.txt
26.02.2005 19:46 1˙980 ws_speech_.txt
29.01.2019 20:35 10˙435 ws_var-course.txt
29.01.2019 20:14 11˙048 ws_var-kurs.txt
12.05.2020 20:26 219˙055 ws_variables.txt
12.05.2020 21:04 206˙015 ws_variables_en.txt
05.02.2009 01:22 3˙382 www_template_example.txt
23.05.2015 15:15 3˙195 www_template_example_en.txt
16.04.2011 22:29 709 www_template_pws.txt
28.05.2015 00:33 4˙053 www_template_weathercloud.txt
160 File(s) 55˙900˙059 bytes
9 Dir(s) 149˙270˙695˙936 bytes free

========= End of CMD: =========


========================= File: C:\Wswin\Wswin32.exe ========================

C:\Wswin\Wswin32.exe
File not signed
MD5: 0A6515CAD11B4821802F6EB509598077
Creation and modification date: 2020-01-22 23:46 - 2020-06-09 17:33
Size: 002357760
Attributes: ----A
Company Name: Werner Krenn
Internal Name: Wetterstations-Auswertesoftware
Original Name: WsWin32.exe
Product: Wetterstation Bedien- und Auswertesoftware
Description: PC-Wetterstation
File Version: 2.99.8
Product Version: 2.99.8
Copyright: Copyright © Werner Krenn 1999-2020
VirusTotal: 0

====== End of File: ======


========================= File: C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe ========================

C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
File not signed
MD5: 7CF1B716372B89568AE4C0FE769F5869
Creation and modification date: 2006-10-26 14:40 - 2006-10-26 14:40
Size: 000335872
Attributes: ----A
Company Name: Microsoft Corporation
Internal Name: mdm.exe
Original Name: mdm.exe
Product: Microsoft® Visual Studio .NET
Description: Machine Debug Manager
File Version: 7.10.3077
Product Version: 7.10.3077
Copyright: Copyright© Microsoft Corporation. All rights reserved.
VirusTotal: https://www.virustotal.com/gui/file/0d7 ... 1595396657

====== End of File: ======


========================= File: C:\Users\User_753\AppData\Local\Temp\sfamcc00001.dll ========================

C:\Users\User_753\AppData\Local\Temp\sfamcc00001.dll
File not signed
MD5: 7E7EB7AFF595774E5E500B34058CC1A7
Creation and modification date: 2020-06-11 21:02 - 2020-07-23 06:26
Size: 000192512
Attributes: ----A
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version:
Product Version:
Copyright:
VirusTotal: https://www.virustotal.com/gui/file/d9c ... 1593944547

====== End of File: ======



The system needed a reboot.

==== End of Fixlog 06:58:39 ====
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#12 Příspěvek od Conder »

:arrow: Fixlist nebol skopirovany a vykonany cely, tak este raz s upravou:

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    VirusTotal: C:\Wswin\Wswin32.exe
    File: C:\Wswin\Wswin32.exe
    
    Task: {B4BA62B4-1D8A-414E-A0AD-0A0881FE816A} - System32\Tasks\AdwCleaner_onReboot => C:\Users\User_753\Desktop\adwcleaner_8.0.6.exe [8420016 2020-07-20] (Malwarebytes Inc -> Malwarebytes)
    R3 ALSysIO; C:\Users\User_753\AppData\Local\Temp\ALSysIO64.sys [47240 2020-07-22] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
    2020-07-18 11:52 - 2020-07-18 11:51 - 001222144 _____ C:\Users\User_753\Desktop\RSITx64.exe
    2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\rsit
    2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\Program Files\trend micro
    2020-07-22 06:08 - 2020-06-11 20:55 - 000008192 ___SH C:\DumpStack.log.tmp
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
    AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`29hfm [0]
    AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [128]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#13 Příspěvek od kcobain »

Pardon, nějak mě to s PC nejde..

tak snad na podruhé to vyjde, zde je log:


Fix result of Farbar Recovery Scan Tool (x64) Version: 22-07-2020
Ran by User_753 (23-07-2020 19:17:34) Run:2
Running from C:\Users\User_753\Desktop
Loaded Profiles: User_753
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
VirusTotal: C:\Wswin\Wswin32.exe
File: C:\Wswin\Wswin32.exe

Task: {B4BA62B4-1D8A-414E-A0AD-0A0881FE816A} - System32\Tasks\AdwCleaner_onReboot => C:\Users\User_753\Desktop\adwcleaner_8.0.6.exe [8420016 2020-07-20] (Malwarebytes Inc -> Malwarebytes)
R3 ALSysIO; C:\Users\User_753\AppData\Local\Temp\ALSysIO64.sys [47240 2020-07-22] (ALCPU (Arthur Liberman) -> Arthur Liberman) <==== ATTENTION
2020-07-18 11:52 - 2020-07-18 11:51 - 001222144 _____ C:\Users\User_753\Desktop\RSITx64.exe
2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\rsit
2020-07-18 11:51 - 2020-07-18 11:52 - 000000000 ____D C:\Program Files\trend micro
2020-07-22 06:08 - 2020-06-11 20:55 - 000008192 ___SH C:\DumpStack.log.tmp
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`29hfm [0]
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [128]

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 26
Average :
Sum : 11968572
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

VirusTotal: C:\Wswin\Wswin32.exe => https://www.virustotal.com/gui/file/e86 ... 1595524681

========================= File: C:\Wswin\Wswin32.exe ========================

C:\Wswin\Wswin32.exe
File not signed
MD5: 0A6515CAD11B4821802F6EB509598077
Creation and modification date: 2020-01-22 23:46 - 2020-06-09 17:33
Size: 002357760
Attributes: ----A
Company Name: Werner Krenn
Internal Name: Wetterstations-Auswertesoftware
Original Name: WsWin32.exe
Product: Wetterstation Bedien- und Auswertesoftware
Description: PC-Wetterstation
File Version: 2.99.8
Product Version: 2.99.8
Copyright: Copyright © Werner Krenn 1999-2020
VirusTotal: 0

====== End of File: ======

"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B4BA62B4-1D8A-414E-A0AD-0A0881FE816A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B4BA62B4-1D8A-414E-A0AD-0A0881FE816A}" => removed successfully
C:\WINDOWS\System32\Tasks\AdwCleaner_onReboot => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdwCleaner_onReboot" => removed successfully
ALSysIO => Unable to stop service.
HKLM\System\CurrentControlSet\Services\ALSysIO => removed successfully
ALSysIO => service removed successfully
C:\Users\User_753\Desktop\RSITx64.exe => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
C:\ProgramData\Reprise => ":wupeogjxlctlfudivq`qsp`28hfm" ADS removed successfully
C:\ProgramData\Reprise => ":wupeogjxlctlfudivq`qsp`29hfm" ADS removed successfully
C:\ProgramData\TEMP => ":4FC01C57" ADS removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 47615673 B
Java, Flash, Steam htmlcache => 1127 B
Windows/system/drivers => 24794 B
Edge => 229196 B
Chrome => 0 B
Firefox => 1129924017 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 73110 B
NetworkService => 73110 B
User_753 => 10316159 B

RecycleBin => 2307889 B
EmptyTemp: => 1.1 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 23-07-2020 19:19:15)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 19:19:15 ====
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#14 Příspěvek od Conder »

Ziadny problem :) Ako to vyzera s PC? Su nejake problemy?
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

kcobain
Návštěvník
Návštěvník
Příspěvky: 145
Registrován: 20 dub 2008 08:47

Re: Prosím o preventivku

#15 Příspěvek od kcobain »

Tak sem to nakonec zvládnul :) Sem rád že je čisto. PC se zdá že šůae v pohodě, vše frčí jak má. Pokud teda je to vše moc díky za čas a pomoc a přeju pěkný den :fez:
Smějte se mě že sem jinej a já se vám budu smát že ste každej stejnej ;-)

Zamčeno