Stránka 1 z 2

Prosím o preventivní kontrolu

Napsal: 10 srp 2020 21:14
od Jakob
Dobrý večer,

prosím o preventivní kontrolu, Windows defender zablokoval spuštění zřejmě škodlivého souboru, ADWcleaner ani KVRT nehlásí žádnou detekci, avšak Windows defender stále upozorňuje na podezřelý soubor z externího zařízení, děkuji.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-08-2020
Ran by Kuba (administrator) on DESKTOP-V57FHI1 (Micro-Star International Co., Ltd MS-7C02) (10-08-2020 21:57:11)
Running from C:\Users\Kuba\Desktop
Loaded Profiles: Kuba
Platform: Windows 10 Pro Version 2004 19041.388 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(A FOUR TECH CO., LTD. -> ) C:\Program Files (x86)\Bloody7\Bloody7\Bloody7.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0357776.inf_amd64_5cb88e05332b51cb\B357669\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0357776.inf_amd64_5cb88e05332b51cb\B357669\atiesrxx.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\userinit.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [878368 2019-09-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody7\Bloody7\Bloody7.exe [15905008 2019-09-11] (A FOUR TECH CO., LTD. -> )
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3375904 2020-06-04] (Valve -> Valve Corporation)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1136104 2020-07-31] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Discord] => C:\Users\Kuba\AppData\Local\Discord\app-0.0.306\Discord.exe [90950968 2020-06-09] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32406416 2020-07-23] (Epic Games Inc. -> Epic Games, Inc.)
HKLM\...\Windows x64\Print Processors\Canon TS5000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDF.DLL [30720 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.105\Installer\chrmstp.exe [2020-07-29] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0C10D01E-799B-4370-8DC9-FF69734FAF78} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-29] (Advanced Micro Devices, Inc.) [File not signed]
Task: {0ED2516F-27B7-403F-A8D6-D93350EFE799} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {2D004777-156E-4926-9E15-E8B9FF415769} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {2F410D91-5A7A-46EA-BC2F-08BAF841EFFD} - System32\Tasks\Agent Activation Runtime\S-1-5-21-2917237701-912696078-3640067623-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-06-21] (Microsoft Windows -> )
Task: {30FCEB9D-5168-48EF-9040-FD885BF5A067} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1336400 2020-07-08] (Adobe Inc. -> Adobe Inc.)
Task: {3AEDA840-1536-4DE6-A02A-C49E4D276832} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [665848 2019-06-27] (Advanced Micro Devices INC. -> )
Task: {4547595C-1EE7-4441-B4CF-6158E757AF64} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {527B123F-F873-413C-A48A-894B046AED08} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-29] (Advanced Micro Devices, Inc.) [File not signed]
Task: {5AA3A361-0400-43F9-A883-0E5573C85936} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-26] (Google Inc -> Google LLC)
Task: {621C8FBA-AA3C-4F1E-BD1E-892E8D60604F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8F08C34F-293D-4163-88BE-05FDD3BA4E65} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B186B4B4-BBD7-4651-8F45-C39864CB357C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B782C2A5-6D71-42F2-AE88-73FA66C400B5} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-29] (Advanced Micro Devices, Inc.) [File not signed]
Task: {DA7C84A8-DA62-4413-95E8-695F076E16F6} - System32\Tasks\StartCNBM => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {EB533291-6872-4524-A4E3-42B792F837F8} - System32\Tasks\AMDInstallUEP => C:\Program Files\AMD\InstallUEP\AMDInstallUEP.exe [2356736 2019-10-22] () [File not signed]
Task: {F39DAA3E-A924-4228-8BEB-3441C4EC9AA2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-26] (Google Inc -> Google LLC)
Task: {FD22DB15-CC5B-4556-88FC-6B438E625163} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{735b0e3b-3ce0-41df-8e2b-c88981d836d2}: [DhcpNameServer] 8.8.8.8 8.8.4.4 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{9d0e5ba5-5f4f-48a9-adcd-b6eb9dd1b1ce}: [DhcpNameServer] 213.46.172.36 213.46.172.37

Internet Explorer:
==================
BHO: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\84.0.522.52\BHO\ie_to_edge_bho_64.dll [2020-08-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\84.0.522.52\BHO\ie_to_edge_bho.dll [2020-08-01] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
Edge Profile: C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default [2020-08-03]

FireFox:
========
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default [2020-08-10]
CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.youtube.com
CHR Extension: (Prezentace) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-09-26]
CHR Extension: (Dokumenty) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-09-26]
CHR Extension: (Disk Google) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-09-26]
CHR Extension: (YouTube) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-09-26]
CHR Extension: (Tabulky) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-09-26]
CHR Extension: (Dokumenty Google offline) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-08-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-09-30]
CHR Extension: (Gmail) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-09-26]
CHR Extension: (Chrome Media Router) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-22]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPLauncher.exe [61624 2020-07-29] (Advanced Micro Devices, Inc. -> AMD)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2020-05-07] (FUTUREMARK INC -> Futuremark)
R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServices.exe [46000 2020-07-21] (Microsoft Corporation -> Microsoft Corporation)
R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [46000 2020-07-21] (Microsoft Corporation -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4956856 2020-06-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\NisSrv.exe [2169568 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MsMpEng.exe [128376 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMDRyzenMasterDriverV14; C:\Program Files\AMD\RyzenMaster\bin\AMDRyzenMasterDriver.sys [70432 2019-08-29] (Advanced Micro Devices INC. -> Advanced Micro Devices)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [58216 2018-03-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [61032 2020-06-04] (Advanced Micro Devices, Inc. -> )
R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [19968 2019-10-17] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_ad5ce1f12ff43d18\gameflt.sys [71528 2020-06-22] (Microsoft Windows -> Microsoft Corporation)
S3 gdrv2; C:\Windows\gdrv2.sys [32600 2020-04-10] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 GVCIDrv; C:\Program Files (x86)\GIGABYTE\RGBFusion\GVCIDrv64.sys [18432 2019-12-08] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [24000 2019-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R2 SSGDIO; C:\WINDOWS\SysWOW64\DRIVERS\ssgdio64.sys [14608 2020-06-24] (ATI Technologies, Inc -> ATI Technologies Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [78216 2020-08-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [430320 2020-08-05] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [98520 2020-08-05] (Microsoft Windows -> Microsoft Corporation)
R3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_276a87e8580345f1\xvdd.sys [510824 2020-07-21] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-08-10 21:38 - 2020-08-10 21:57 - 000015092 _____ C:\Users\Kuba\Desktop\FRST.txt
2020-08-10 21:38 - 2020-08-10 21:57 - 000000000 ____D C:\FRST
2020-08-10 21:37 - 2020-08-10 21:37 - 002296320 _____ (Farbar) C:\Users\Kuba\Desktop\FRST64 (1).exe
2020-08-10 21:36 - 2020-08-10 21:36 - 002296320 _____ (Farbar) C:\Users\Kuba\Downloads\FRST64.exe
2020-08-10 21:26 - 2020-08-10 21:26 - 000003304 _____ C:\WINDOWS\system32\Tasks\StartCNBM
2020-08-10 21:25 - 2020-08-10 21:25 - 000003522 _____ C:\WINDOWS\system32\Tasks\AMDInstallUEP
2020-08-10 21:25 - 2020-08-10 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2020-08-10 21:25 - 2020-08-10 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2020-08-10 21:24 - 2020-08-04 17:12 - 004632280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001784544 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001784544 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001374944 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001374944 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001345240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001345240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001085984 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001085984 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000944832 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000944832 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000762072 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000737504 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000621792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000497376 _____ C:\WINDOWS\system32\GameManager64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000493792 _____ C:\WINDOWS\system32\dgtrayicon.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000469208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000456920 _____ C:\WINDOWS\system32\atieah64.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000433376 _____ C:\WINDOWS\system32\EEURestart.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000380640 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000352472 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000340192 _____ C:\WINDOWS\system32\clinfo.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000245976 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000213720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000187616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000183008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000167648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000167136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000159264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000157408 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000143072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000141536 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000136400 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000126168 _____ C:\WINDOWS\system32\atidxx64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000108248 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000091360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mcl64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000076000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mcl32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000070872 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000047328 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000044256 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000020408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000020408 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 072714968 _____ C:\WINDOWS\system32\amd_comgr.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 071742168 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 060137688 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 004156120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 001686624 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 001365984 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000941784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000769240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000554200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000490200 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000467160 _____ C:\WINDOWS\system32\amdlogum.exe
2020-08-10 21:24 - 2020-08-04 17:11 - 000384216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000380632 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000168016 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000135384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000130848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000123096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000121048 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000108864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000107736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000547408 _____ C:\WINDOWS\system32\amdmiracast.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000136536 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000130848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000120880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000108864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2020-08-10 21:24 - 2020-07-29 22:39 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2020-08-10 21:24 - 2020-07-29 22:39 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2020-08-10 21:24 - 2020-07-29 22:34 - 000547424 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2020-08-10 21:24 - 2020-07-29 22:34 - 000547424 _____ C:\WINDOWS\system32\atiapfxx.blb
2020-08-05 23:28 - 2020-08-10 21:56 - 075497472 _____ C:\WINDOWS\system32\config\SOFTWARE
2020-08-05 23:27 - 2020-08-05 23:28 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2020-08-05 23:15 - 2020-08-05 23:15 - 000478392 ____N (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\C993D853.sys
2020-08-05 23:15 - 2020-08-05 23:15 - 000085600 ____N (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\90372187.sys
2020-08-05 23:15 - 2020-08-05 23:15 - 000000000 ____D C:\KVRT_Data
2020-08-05 23:10 - 2020-08-10 21:31 - 000000932 _____ C:\Users\Public\Desktop\Diablo III.lnk
2020-08-05 23:10 - 2020-08-10 21:31 - 000000932 _____ C:\ProgramData\Desktop\Diablo III.lnk
2020-08-05 23:10 - 2020-08-05 23:15 - 182592912 _____ (AO Kaspersky Lab) C:\Users\Kuba\Downloads\KVRT.exe
2020-08-05 23:10 - 2020-08-05 23:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2020-08-05 22:41 - 2020-08-05 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware
2020-08-05 22:41 - 2020-08-05 22:54 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware
2020-08-05 22:41 - 2020-08-05 22:41 - 000000000 ____D C:\ProgramData\GridinSoft
2020-08-05 22:31 - 2020-08-05 22:31 - 008414384 _____ (Malwarebytes) C:\Users\Kuba\Downloads\adwcleaner_8.0.7.exe
2020-08-05 22:22 - 2020-08-10 21:31 - 000000000 ____D C:\Program Files (x86)\Diablo III
2020-08-02 20:29 - 2020-08-02 20:29 - 000000000 ____D C:\AdwCleaner
2020-08-02 20:27 - 2020-08-02 20:27 - 000000000 ____D C:\Users\Kuba\AppData\Local\Desperados III
2020-08-02 20:24 - 2020-08-02 20:24 - 000000809 _____ C:\Users\Kuba\Desktop\Desperados III.lnk
2020-08-02 20:24 - 2020-08-02 20:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desperados III
2020-07-31 21:21 - 2020-07-31 21:21 - 000000538 _____ C:\DelFix.txt
2020-07-17 11:03 - 2020-07-17 11:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2020-07-15 07:49 - 2020-07-15 07:49 - 026271744 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 023433216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 019868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 018766336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 018068992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 017540608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 014754816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 010922808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 008892600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007992824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007964416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007593544 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007534160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007070208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006920192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006709248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006404608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006356008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006175232 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005964496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005821952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005766168 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 004783328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 004734976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 004485216 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 003925856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 003906048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003860480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003818496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003812304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003810816 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 003779896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 003778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003752448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003547280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002963456 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 002918216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002744320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002585912 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002568192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002566144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002520048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002399744 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002338304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002311680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002305024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002286128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002245632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002177528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002131024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002077696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001956016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001952392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001876480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001784488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001762632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001712128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001668904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001641472 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001606656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001557824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001556480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001509736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001474048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001449280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001448448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001403904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001374720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001305600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001301592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001286560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001253888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001246720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001239552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001207296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001195520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001182008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001126472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001090560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001082168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001071224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001069056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001058816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001041408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001014872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001008184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000994248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000991744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000966872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000945664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000937464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000933176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000914200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000902976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000889384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000881112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000876544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000868352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000856328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000831016 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000824328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000801560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000704496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000696240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000678200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000676088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000673976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000644096 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000633856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000623960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000623392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000595512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000560400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000555744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000539960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000539256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000523720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000522040 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000506672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000487552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000482616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000475704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000453952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000443704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000413208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000409552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000395600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000343992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000313152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000253016 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-07-15 07:49 - 2020-07-15 07:49 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000227640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000215896 _____ (Microsoft Corporation) C:\WINDOWS\system32\coreglobconfig.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000215864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000195128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-07-15 07:49 - 2020-07-15 07:49 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000179000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000163208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coreglobconfig.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000113112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000086784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000076992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000071792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000020632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL
2020-07-15 07:49 - 2020-07-15 07:49 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2020-07-15 07:49 - 2020-07-15 07:49 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteFXvGPUDisablement.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000009269 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-07-15 07:49 - 2020-07-15 07:49 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL
2020-07-15 07:49 - 2020-07-15 07:49 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-07-15 07:47 - 2020-06-30 05:04 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-07-15 07:47 - 2020-06-30 04:58 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-07-14 07:51 - 2020-08-10 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMDBugReportTool
2020-07-14 07:50 - 2020-06-11 19:35 - 000486320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdfendrsr.exe
2020-07-14 07:50 - 2020-06-11 19:35 - 000070576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdfendr.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-08-10 21:56 - 2020-06-21 10:16 - 000003124 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2020-08-10 21:56 - 2020-06-21 10:16 - 000003110 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2020-08-10 21:56 - 2020-06-21 10:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-08-10 21:56 - 2020-06-21 10:14 - 000008192 ___SH C:\DumpStack.log.tmp
2020-08-10 21:56 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-08-10 21:56 - 2019-12-07 11:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2020-08-10 21:32 - 2019-09-26 18:49 - 000000000 ____D C:\Users\Kuba\AppData\Local\Battle.net
2020-08-10 21:26 - 2020-06-21 10:16 - 000003194 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2020-08-10 21:26 - 2019-09-26 12:11 - 000000000 ____D C:\Program Files\AMD
2020-08-10 21:25 - 2020-06-21 10:00 - 000000000 ____D C:\WINDOWS\system32\AMD
2020-08-10 21:25 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2020-08-10 21:24 - 2019-09-26 12:11 - 000000000 ____D C:\AMD
2020-08-10 20:24 - 2020-06-21 10:16 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-08-09 21:07 - 2020-05-30 22:04 - 000000000 ____D C:\Users\Kuba\AppData\Local\D3DSCache
2020-08-07 18:30 - 2020-06-21 10:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-08-05 22:33 - 2020-06-21 10:17 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-08-05 22:33 - 2019-12-07 16:43 - 000716706 _____ C:\WINDOWS\system32\perfh005.dat
2020-08-05 22:33 - 2019-12-07 16:43 - 000144884 _____ C:\WINDOWS\system32\perfc005.dat
2020-08-05 22:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-08-05 22:20 - 2020-06-21 10:16 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2917237701-912696078-3640067623-1001
2020-08-05 22:20 - 2020-06-21 10:00 - 000002358 _____ C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-08-05 22:20 - 2019-09-26 11:19 - 000000000 ___RD C:\Users\Kuba\OneDrive
2020-08-05 22:15 - 2019-09-26 14:54 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2020-08-05 22:10 - 2019-09-26 11:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-08-04 17:12 - 2020-05-27 14:20 - 001784024 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2020-08-04 17:11 - 2020-05-27 14:19 - 000199440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2020-08-02 20:52 - 2019-10-14 18:43 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Discord
2020-08-02 20:26 - 2019-09-26 14:51 - 000000000 ____D C:\Program Files (x86)\Steam
2020-08-02 20:19 - 2020-05-05 17:21 - 000000000 ____D C:\Hry
2020-08-02 09:15 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-08-02 09:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-08-02 09:14 - 2020-05-30 14:31 - 000002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-08-02 09:14 - 2020-05-30 14:31 - 000002257 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-08-02 09:14 - 2020-05-30 14:31 - 000002257 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2020-08-02 09:10 - 2019-09-26 18:48 - 000000000 ____D C:\Program Files (x86)\Battle.net
2020-07-31 21:20 - 2020-05-29 21:20 - 000000000 ____D C:\Users\Kuba\AppData\LocalLow\Temp
2020-07-29 22:10 - 2019-09-26 11:49 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-07-29 22:10 - 2019-09-26 11:49 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-07-29 22:10 - 2019-09-26 11:49 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-07-23 22:16 - 2019-09-26 11:35 - 000000000 ____D C:\ProgramData\Package Cache
2020-07-21 07:16 - 2020-06-22 15:13 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2020-07-21 07:16 - 2020-01-27 19:16 - 000137144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2020-07-21 07:16 - 2020-01-27 19:16 - 000033712 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2020-07-21 07:16 - 2019-10-07 21:37 - 001523640 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2020-07-21 07:16 - 2019-10-07 21:37 - 000157624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2020-07-21 07:16 - 2019-10-07 21:37 - 000135096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2020-07-16 21:21 - 2019-09-26 11:17 - 000000000 ____D C:\Users\Kuba\AppData\Local\Packages
2020-07-15 20:38 - 2020-06-21 10:16 - 000003582 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-07-15 20:38 - 2020-06-21 10:16 - 000003458 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-07-15 07:52 - 2020-06-21 10:14 - 000258176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2020-07-15 07:51 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2020-07-14 16:15 - 2020-05-27 14:20 - 001784024 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\SET335.tmp
2020-07-14 16:15 - 2020-05-27 14:19 - 000199440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\SET244.tmp
2020-07-14 07:51 - 2020-06-21 10:16 - 000003160 _____ C:\WINDOWS\system32\Tasks\StartCN
2020-07-14 07:51 - 2020-06-21 10:16 - 000003080 _____ C:\WINDOWS\system32\Tasks\StartDVR

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-08-2020
Ran by Kuba (10-08-2020 21:57:49)
Running from C:\Users\Kuba\Desktop
Windows 10 Pro Version 2004 19041.388 (X64) (2020-06-21 08:16:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2917237701-912696078-3640067623-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2917237701-912696078-3640067623-503 - Limited - Disabled)
Guest (S-1-5-21-2917237701-912696078-3640067623-501 - Limited - Disabled)
Kuba (S-1-5-21-2917237701-912696078-3640067623-1001 - Administrator - Enabled) => C:\Users\Kuba
WDAGUtilityAccount (S-1-5-21-2917237701-912696078-3640067623-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
ADATA SSD ToolBox version 3.0.11 (HKLM-x32\...\{C0991D3E-8786-48E7-A5DB-57FBACB0A03A}_is1) (Version: 3.0.11 - ADATA, Inc.)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.04.28.626 - Advanced Micro Devices, Inc.)
AMD Product Verification Tool version 1.0.4.8 (HKLM\...\{4242685A-EF3E-45FF-B4AE-758E49020936}}_is1) (Version: 1.0.4.8 - AMD)
AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.0.2.1271 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 20.8.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{6f87e20b-2c1c-4788-9380-541e79886292}) (Version: 2.04.28.626 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bloody7 (HKLM-x32\...\Bloody3) (Version: 19.09.0009 - Bloody)
Branding64 (HKLM\...\{856DA29A-EA4A-468B-BBC2-B5F60DD75BFE}) (Version: 1.00.0002 - Advanced Micro Devices, Inc.) Hidden
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.75.1088 - AB Team, d.o.o.)
CPUID CPU-Z 1.90 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.90 - CPUID, Inc.)
CPUID HWMonitor 1.41 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.41 - CPUID, Inc.)
Crash Bandicoot N. Sane Trilogy (HKLM-x32\...\Crash Bandicoot N. Sane Trilogy_is1) (Version: - )
Desperados III (HKLM-x32\...\Desperados III_is1) (Version: - )
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Discord (HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.0.0 - ENE TECHNOLOGY INC.) Hidden
ENE RGB HAL (HKLM\...\{B380DBDE-BA95-481B-92E9-52F2E5E84F24}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{adbc3d98-57f2-4d68-b155-138f8fb0f73d}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE_DRAM_RGB_AURA42 (HKLM\...\{BC5E0A82-C638-44CB-8129-20C8ED70DE7A}) (Version: 1.00.02 - Ene Tech.) Hidden
ENE_DRAM_RGB_AURA42 (HKLM-x32\...\{f3d7fb09-b93f-4c01-a765-0b0adc5bc746}) (Version: 1.00.02 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{26b207d1-1f37-4df9-8b3f-aeebbca6bb85}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{1D4EB18B-0FEE-444E-B4D1-6F2CFBC363E6}) (Version: 1.1.267.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Futuremark SystemInfo (HKLM-x32\...\{9266535B-CFD6-4696-A167-4D68ED5AD303}) (Version: 5.27.826.0 - Futuremark)
Geeks3D FurMark 1.20.8.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.105 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HWiNFO64 Version 6.14 (HKLM\...\HWiNFO64_is1) (Version: 6.14 - Martin Malik - REALiX)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.52 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - )
Microsoft OneDrive (HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\OneDriveSetup.exe) (Version: 20.124.0621.0006 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.35.510.2019 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8720.1 - Realtek Semiconductor Corp.)
RGB Fusion (HKLM-x32\...\{FFA8F1FA-3C2C-4A94-AC0B-0DF47272C25F}) (Version: 3.20.0330.2 - GIGABYTE)
RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 103.2 - Ubisoft)

Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_1.1911.21713.0_x64__8wekyb3d8bbwe [2019-12-07] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x64__8wekyb3d8bbwe [2019-10-07] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x86__8wekyb3d8bbwe [2019-10-07] (Microsoft Corporation)
Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.416.287.2_x64__8wekyb3d8bbwe [2020-05-17] (Microsoft Studios)
Forza Horizon 4 Formula Drift Car Pack -> C:\Program Files\WindowsApps\Microsoft.FormulaDriftCarPack_1.0.3.2_neutral__8wekyb3d8bbwe [2019-11-18] (Microsoft Studios)
Herní služby -> C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe [2020-07-21] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-03] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-03] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-10-04] (Microsoft Corporation) [MS Ad]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.181.0_x64__dt26b99r8h8gj [2019-09-26] (Realtek Semiconductor Corp)
Streets of Rage 4 -> C:\Program Files\WindowsApps\DotEmu.StreetsofRage4_1.0.14.2_x64__map6zyh9ym1xy [2020-05-19] (DotEmu)
Super Lucky's Tale -> C:\Program Files\WindowsApps\Microsoft.AcornUWP_1.5.2019.2_x64__8wekyb3d8bbwe [2019-10-06] (Microsoft Studios)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2917237701-912696078-3640067623-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive - Personal] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}0
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-09-26 14:49 - 2017-04-17 10:43 - 003852800 ____N () [File not signed] C:\Program Files (x86)\Bloody7\Bloody7\Data\Mouse\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 003567616 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2020-07-29 15:38 - 2020-07-29 15:38 - 001583104 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll
2020-01-06 22:22 - 2019-02-21 18:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 001180672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2020-07-29 15:46 - 2020-07-29 15:46 - 006010880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 006345216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 001078272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000313856 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 004000256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 003802624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000205312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000376320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 092323328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 005560832 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000188416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 002888704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2020-07-31 21:19 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2917237701-912696078-3640067623-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kuba\Pictures\fzlxwvxvs5ry.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "EpicGamesLauncher"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D872B833-AED4-4CBE-97FC-F977003F410D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{56AC67DC-232F-4C27-B1EB-85EAEDB24E12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{B1A740D9-5877-4832-8200-9C27A21B2EDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [{B273AA41-4B2C-4E3C-B7B0-A0FAED78AED9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [UDP Query User{EEDA2868-A4E8-447D-B5F5-88E7E34BA23D}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe => No File
FirewallRules: [TCP Query User{E02B5DF8-DDDF-42EB-A0CD-08D84E9C3857}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe => No File
FirewallRules: [UDP Query User{E9F6F459-3CD1-4198-B6B9-7E047144B956}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{159404D3-F70B-4263-819F-80994D14FB1F}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{C2BA6FC4-DE9A-46C1-9357-4A0EA58657C5}] => (Allow) LPort=26789
FirewallRules: [{831CDAED-7046-4E2A-9C30-0CDCA809FD61}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{E3F8B91B-1399-483D-A8F2-885D2748C1C6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{F4221B41-7A95-4381-9AA2-D45F3C9F762F}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{19E4D5A0-EB1F-4D81-BFDD-88F6873B3E56}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{E4217116-F13D-4BE0-9BA2-ED64BFC1DC0E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{DD0499BA-C1F9-4273-A64F-9952B3F11E76}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{725B548C-1051-4190-AD9C-F22B060B049D}C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe] => (Allow) C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe (Activision Publishing Inc -> ) [File not signed]
FirewallRules: [UDP Query User{37EDE33C-2730-4FF0-AD2E-F0012824F9AC}C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe] => (Allow) C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe (Activision Publishing Inc -> ) [File not signed]
FirewallRules: [{87819262-8AE3-4BAD-B798-19835426AF65}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

23-07-2020 22:16:32 Nainstalováno rozhraní DirectX
31-07-2020 09:29:42 Naplánovaný kontrolní bod
31-07-2020 21:19:32 Restore Point Created by FRST
05-08-2020 22:31:18 Instalační služba modulů systému Windows
10-08-2020 21:25:25 Radeon Installer

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (08/03/2020 10:18:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Setup.tmp verze 51.1052.0.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 1380

Čas spuštění: 01d669d3191d600a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Users\Kuba\AppData\Local\Temp\is-IM9K2.tmp\Setup.tmp

ID hlášení: dcb7b2b7-4838-49e2-819b-f98f22158a54

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Top level window is idle

Error: (07/31/2020 09:19:32 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005, Přístup byl odepřen.
.
To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {b8ccec33-8818-44b9-9d07-2a3e67fbd0ae}

Error: (07/15/2020 09:17:40 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (07/15/2020 09:17:40 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (07/15/2020 07:52:02 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -1409.

Error: (07/01/2020 09:36:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GameBar.exe, verze: 5.220.4152.0, časové razítko: 0x5e9776ef
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.19041.1, časové razítko: 0xbd1e2564
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000007284e
ID chybujícího procesu: 0x2184
Čas spuštění chybující aplikace: 0x01d64fded90e215a
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe\GameBar.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: 62538f0c-e1a6-4728-9e83-52165dbc9d82
Úplný název chybujícího balíčku: Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App

Error: (06/24/2020 02:30:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: setup.tmp, verze: 51.1052.0.0, časové razítko: 0x506a75b5
Název chybujícího modulu: botva2.dll_unloaded, verze: 0.9.7.151, časové razítko: 0x2a425e19
Kód výjimky: 0xc000041d
Posun chyby: 0x00005514
ID chybujícího procesu: 0x2628
Čas spuštění chybující aplikace: 0x01d64a21c3582be3
Cesta k chybující aplikaci: C:\Users\Kuba\AppData\Local\Temp\is-ATANH.tmp\setup.tmp
Cesta k chybujícímu modulu: botva2.dll
ID zprávy: 68e683c2-bd19-4eb6-a17c-2d725cb3a1ab
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/24/2020 02:30:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: setup.tmp, verze: 51.1052.0.0, časové razítko: 0x506a75b5
Název chybujícího modulu: botva2.dll_unloaded, verze: 0.9.7.151, časové razítko: 0x2a425e19
Kód výjimky: 0xc0000005
Posun chyby: 0x00005514
ID chybujícího procesu: 0x2628
Čas spuštění chybující aplikace: 0x01d64a21c3582be3
Cesta k chybující aplikaci: C:\Users\Kuba\AppData\Local\Temp\is-ATANH.tmp\setup.tmp
Cesta k chybujícímu modulu: botva2.dll
ID zprávy: 19200d34-872d-4a78-a11e-6caff7f907eb
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (08/10/2020 09:26:18 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba AMD User Experience Program Launcher je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (08/10/2020 09:25:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD User Experience Program Launcher byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/03/2020 10:34:13 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1115 při pokusu o spuštění služby SecurityHealthService s argumenty Není k dispozici za účelem spuštění serveru:
{8C9C0DB7-2CBA-40F1-AFE0-C55740DD91A0}

Error: (08/03/2020 10:34:10 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Realtek Audio Universal Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (08/03/2020 10:34:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/03/2020 10:34:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD External Events Utility byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/03/2020 10:34:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD Crash Defender Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/03/2020 06:57:44 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (20:17:21, ‎02.‎08.‎2020) bylo neočekávané.


Windows Defender:
===================================
Date: 2020-08-03 22:15:46.0080000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
Verze bezpečnostních informací: AV: 1.321.509.0, AS: 1.321.509.0, NIS: 1.321.509.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-02 20:56:36.3720000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\Setup.exe; file:_D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe; webfile:_C:\Users\Kuba\Downloads\Setup.exe|https://www.email.cz/download/c/x5Sf7Ax ... 1851588409
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
Verze bezpečnostních informací: AV: 1.321.447.0, AS: 1.321.447.0, NIS: 1.321.447.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-02 20:56:27.8960000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\Setup.exe; webfile:_C:\Users\Kuba\Downloads\Setup.exe|https://www.email.cz/download/c/x5Sf7Ax ... 1851588409
Původ detekce: Internet
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.321.447.0, AS: 1.321.447.0, NIS: 1.321.447.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-02 20:56:25.9050000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\Setup.exe; webfile:_C:\Users\Kuba\Downloads\Setup.exe|https://www.email.cz/download/c/x5Sf7Ax ... 1851588409
Původ detekce: Internet
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.321.447.0, AS: 1.321.447.0, NIS: 1.321.447.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-02 20:18:13.7290000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
Verze bezpečnostních informací: AV: 1.321.403.0, AS: 1.321.403.0, NIS: 1.321.403.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

==================== Memory info ===========================

BIOS: American Megatrends Inc. 3.50 11/07/2019
Motherboard: Micro-Star International Co., Ltd B450 TOMAHAWK MAX (MS-7C02)
Processor: AMD Ryzen 5 3600 6-Core Processor
Percentage of memory in use: 16%
Total physical RAM: 16334.78 MB
Available physical RAM: 13574.57 MB
Total Virtual: 18766.78 MB
Available Virtual: 14124.3 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:476.31 GB) (Free:223.36 GB) NTFS
Drive d: (Elements) (Fixed) (Total:3725.99 GB) (Free:2140.35 GB) NTFS

\\?\Volume{9c7f80c6-2eda-4913-804a-ac3714e83a82}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.1 GB) NTFS
\\?\Volume{a765b578-b7ed-4dee-b093-7ca4c06690f3}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Size: 3726 GB) (Disk ID: 16F2A91F)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 09:24
od Rudy
Zdravím!

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {5AA3A361-0400-43F9-A883-0E5573C85936} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-26] (Google Inc -> Google LLC)
Task: {F39DAA3E-A924-4228-8BEB-3441C4EC9AA2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-26] (Google Inc -> Google LLC)
FirewallRules: [{D872B833-AED4-4CBE-97FC-F977003F410D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{56AC67DC-232F-4C27-B1EB-85EAEDB24E12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{B1A740D9-5877-4832-8200-9C27A21B2EDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [{B273AA41-4B2C-4E3C-B7B0-A0FAED78AED9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [UDP Query User{EEDA2868-A4E8-447D-B5F5-88E7E34BA23D}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe => No File
FirewallRules: [TCP Query User{E02B5DF8-DDDF-42EB-A0CD-08D84E9C3857}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe => No File
D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe
C:\Users\Kuba\Downloads\Setup.exe

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 15:40
od Jakob
Děkuji vám a přikládám log.

Fix result of Farbar Recovery Scan Tool (x64) Version: 12-08-2020
Ran by Kuba (12-08-2020 16:37:01) Run:1
Running from C:\Users\Kuba\Desktop
Loaded Profiles: Kuba
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {5AA3A361-0400-43F9-A883-0E5573C85936} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-26] (Google Inc -> Google LLC)
Task: {F39DAA3E-A924-4228-8BEB-3441C4EC9AA2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-26] (Google Inc -> Google LLC)
FirewallRules: [{D872B833-AED4-4CBE-97FC-F977003F410D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{56AC67DC-232F-4C27-B1EB-85EAEDB24E12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{B1A740D9-5877-4832-8200-9C27A21B2EDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [{B273AA41-4B2C-4E3C-B7B0-A0FAED78AED9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [UDP Query User{EEDA2868-A4E8-447D-B5F5-88E7E34BA23D}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe => No File
FirewallRules: [TCP Query User{E02B5DF8-DDDF-42EB-A0CD-08D84E9C3857}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe => No File
D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe
C:\Users\Kuba\Downloads\Setup.exe

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5AA3A361-0400-43F9-A883-0E5573C85936}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AA3A361-0400-43F9-A883-0E5573C85936}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F39DAA3E-A924-4228-8BEB-3441C4EC9AA2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F39DAA3E-A924-4228-8BEB-3441C4EC9AA2}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D872B833-AED4-4CBE-97FC-F977003F410D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56AC67DC-232F-4C27-B1EB-85EAEDB24E12}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B1A740D9-5877-4832-8200-9C27A21B2EDA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B273AA41-4B2C-4E3C-B7B0-A0FAED78AED9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EEDA2868-A4E8-447D-B5F5-88E7E34BA23D}C:\program files\epic games\gtav\gta5.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E02B5DF8-DDDF-42EB-A0CD-08D84E9C3857}C:\program files\epic games\gtav\gta5.exe" => removed successfully
"D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe" => not found
"C:\Users\Kuba\Downloads\Setup.exe" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 36242206 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 3733547 B
Edge => 0 B
Chrome => 427419439 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 23764 B
Kuba => 374170660 B

RecycleBin => 0 B
EmptyTemp: => 812.6 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:37:19 ====

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 15:52
od Jakob
V zabezpečení WIN se objevují dvě doporučené akce.

PUA:Win32/Caypnamer.A!ml
Úroveň výstrahy: Nízké
Datum: 03.08.2020 22:15
Kategorie: Potenciálně nežádoucí software
Podrobnosti: Tento program má potenciálně nežádoucí chování.
Ovlivněné položky: file: D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe

Na výběr jsou tři možné akce: odebrat, karanténa, povolit na zařízení. Externí disk již nemám k dispozici a pokud zvolím možnost karanténa, nebo odebrat, nic se neděje. Stejné hlášení mám i v "Řízení aplikací a prohlížečů", kde se potencionálně nežádoucí aplikace zobrazuje se stejným textem v blokovaných položkách. Lze prosím toto hlášení nějak fixnout, pokud se dle logu soubor nenachází na disku? Děkuji moc za radu.

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 15:55
od Rudy
Zřejmě jde o nějaký crack. Doporučuji smazat, případně odinstalovat tu hru. Crack je malware!

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 19:09
od Jakob
Aplikaci jsem odinstaloval, po spuštění nové kontroly ve Windows Defender systém opět hlásí přítomnost PUA:Win32/Caypnamer.A!ml bez možnosti spustit akci.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-08-2020
Ran by Kuba (administrator) on DESKTOP-V57FHI1 (Micro-Star International Co., Ltd MS-7C02) (12-08-2020 19:55:39)
Running from C:\Users\Kuba\Desktop
Loaded Profiles: Kuba
Platform: Windows 10 Pro Version 2004 19041.388 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(A FOUR TECH CO., LTD. -> ) C:\Program Files (x86)\Bloody7\Bloody7\Bloody7.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPLauncher.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPUF.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0357776.inf_amd64_5cb88e05332b51cb\B357669\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0357776.inf_amd64_5cb88e05332b51cb\B357669\atiesrxx.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <7>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.386_none_e72d64cd263a3a51\TiWorker.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2007.8-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [878368 2019-09-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody7\Bloody7\Bloody7.exe [15905008 2019-09-11] (A FOUR TECH CO., LTD. -> )
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3375904 2020-06-04] (Valve -> Valve Corporation)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1136104 2020-07-31] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [Discord] => C:\Users\Kuba\AppData\Local\Discord\app-0.0.306\Discord.exe [90950968 2020-06-09] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32406416 2020-07-23] (Epic Games Inc. -> Epic Games, Inc.)
HKLM\...\Windows x64\Print Processors\Canon TS5000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDF.DLL [30720 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.105\Installer\chrmstp.exe [2020-07-29] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0ED2516F-27B7-403F-A8D6-D93350EFE799} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {178510AB-E3E3-4ED5-89E5-7F875830EBBC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1336400 2020-07-08] (Adobe Inc. -> Adobe Inc.)
Task: {2D004777-156E-4926-9E15-E8B9FF415769} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {2F410D91-5A7A-46EA-BC2F-08BAF841EFFD} - System32\Tasks\Agent Activation Runtime\S-1-5-21-2917237701-912696078-3640067623-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-06-21] (Microsoft Windows -> )
Task: {3AEDA840-1536-4DE6-A02A-C49E4D276832} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [665848 2019-06-27] (Advanced Micro Devices INC. -> )
Task: {4547595C-1EE7-4441-B4CF-6158E757AF64} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {527B123F-F873-413C-A48A-894B046AED08} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-29] (Advanced Micro Devices, Inc.) [File not signed]
Task: {532E372C-EBC3-494E-9DB7-267874A46437} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-29] (Advanced Micro Devices, Inc.) [File not signed]
Task: {621C8FBA-AA3C-4F1E-BD1E-892E8D60604F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8F08C34F-293D-4163-88BE-05FDD3BA4E65} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A3483F80-B503-49C2-A88F-0F1AE2336A80} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1627648 2020-07-29] (Advanced Micro Devices, Inc.) [File not signed]
Task: {B186B4B4-BBD7-4651-8F45-C39864CB357C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DA7C84A8-DA62-4413-95E8-695F076E16F6} - System32\Tasks\StartCNBM => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {FD22DB15-CC5B-4556-88FC-6B438E625163} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MpCmdRun.exe [516776 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{735b0e3b-3ce0-41df-8e2b-c88981d836d2}: [DhcpNameServer] 8.8.8.8 8.8.4.4 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{9d0e5ba5-5f4f-48a9-adcd-b6eb9dd1b1ce}: [DhcpNameServer] 213.46.172.36 213.46.172.37

Internet Explorer:
==================

Edge:
======
Edge Profile: C:\Users\Kuba\AppData\Local\Microsoft\Edge\User Data\Default [2020-08-03]

FireFox:
========
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-07-31] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default [2020-08-12]
CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.youtube.com
CHR Extension: (Prezentace) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-09-26]
CHR Extension: (Dokumenty) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-09-26]
CHR Extension: (Disk Google) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-09-26]
CHR Extension: (YouTube) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-09-26]
CHR Extension: (Tabulky) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-09-26]
CHR Extension: (Dokumenty Google offline) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-08-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-09-30]
CHR Extension: (Gmail) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-09-26]
CHR Extension: (Chrome Media Router) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-22]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPLauncher.exe [61624 2020-07-29] (Advanced Micro Devices, Inc. -> AMD)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2020-05-07] (FUTUREMARK INC -> Futuremark)
R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServices.exe [46000 2020-07-21] (Microsoft Corporation -> Microsoft Corporation)
R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [46000 2020-07-21] (Microsoft Corporation -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4956856 2020-06-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\NisSrv.exe [2169568 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2007.8-0\MsMpEng.exe [128376 2020-08-05] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMDRyzenMasterDriverV14; C:\Program Files\AMD\RyzenMaster\bin\AMDRyzenMasterDriver.sys [70432 2019-08-29] (Advanced Micro Devices INC. -> Advanced Micro Devices)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [58216 2018-03-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [61032 2020-06-04] (Advanced Micro Devices, Inc. -> )
R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [19968 2019-10-17] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_ad5ce1f12ff43d18\gameflt.sys [71528 2020-06-22] (Microsoft Windows -> Microsoft Corporation)
S3 gdrv2; C:\Windows\gdrv2.sys [32600 2020-04-10] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 GVCIDrv; C:\Program Files (x86)\GIGABYTE\RGBFusion\GVCIDrv64.sys [18432 2019-12-08] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R1 MpKslDrv; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{14CF29CB-C0AC-464F-9AFE-18A3A6B0AC72}\MpKslDrv.sys [73952 2020-08-12] (Microsoft Windows -> Microsoft Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [24000 2019-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R2 SSGDIO; C:\WINDOWS\SysWOW64\DRIVERS\ssgdio64.sys [14608 2020-06-24] (ATI Technologies, Inc -> ATI Technologies Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [78216 2020-08-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [430320 2020-08-05] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [98520 2020-08-05] (Microsoft Windows -> Microsoft Corporation)
R3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_276a87e8580345f1\xvdd.sys [510824 2020-07-21] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-08-12 16:37 - 2020-08-12 16:37 - 000004665 _____ C:\Users\Kuba\Desktop\Fixlog.txt
2020-08-12 16:36 - 2020-08-12 16:36 - 000000000 ____D C:\Users\Kuba\Desktop\FRST-OlderVersion
2020-08-11 18:59 - 2020-08-11 19:32 - 000000000 ____D C:\ProgramData\tmp
2020-08-11 18:59 - 2020-08-11 18:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CEWE FOTOLAB fotosvet
2020-08-11 18:59 - 2020-08-11 18:59 - 000000000 ____D C:\ProgramData\hps
2020-08-11 18:57 - 2020-08-11 18:57 - 001672800 _____ C:\Users\Kuba\Downloads\setup_CEWE_FOTOLAB_fotosvet.exe
2020-08-11 18:57 - 2020-08-11 18:57 - 000000000 ____D C:\Program Files\Fotolab
2020-08-10 22:05 - 2020-08-10 22:05 - 001222144 _____ C:\Users\Kuba\Downloads\RSITx64.exe
2020-08-10 22:05 - 2020-08-10 22:05 - 000000000 ____D C:\rsit
2020-08-10 22:05 - 2020-08-10 22:05 - 000000000 ____D C:\Program Files\trend micro
2020-08-10 21:57 - 2020-08-10 21:58 - 000031606 _____ C:\Users\Kuba\Desktop\Addition.txt
2020-08-10 21:38 - 2020-08-12 19:56 - 000015499 _____ C:\Users\Kuba\Desktop\FRST.txt
2020-08-10 21:38 - 2020-08-12 19:55 - 000000000 ____D C:\FRST
2020-08-10 21:37 - 2020-08-12 16:36 - 002296320 _____ (Farbar) C:\Users\Kuba\Desktop\FRST64 (1).exe
2020-08-10 21:36 - 2020-08-10 21:36 - 002296320 _____ (Farbar) C:\Users\Kuba\Downloads\FRST64.exe
2020-08-10 21:26 - 2020-08-10 21:26 - 000003304 _____ C:\WINDOWS\system32\Tasks\StartCNBM
2020-08-10 21:25 - 2020-08-10 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2020-08-10 21:25 - 2020-08-10 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2020-08-10 21:24 - 2020-08-04 17:12 - 004632280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001784544 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001784544 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001374944 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001374944 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 001345240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001345240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001085984 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 001085984 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000944832 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000944832 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000762072 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000737504 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000621792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000497376 _____ C:\WINDOWS\system32\GameManager64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000493792 _____ C:\WINDOWS\system32\dgtrayicon.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000469208 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000456920 _____ C:\WINDOWS\system32\atieah64.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000433376 _____ C:\WINDOWS\system32\EEURestart.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000380640 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000352472 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000340192 _____ C:\WINDOWS\system32\clinfo.exe
2020-08-10 21:24 - 2020-08-04 17:12 - 000245976 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000213720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000187616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000183008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000167648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000167136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000159264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000157408 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000143072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000141536 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000136400 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000126168 _____ C:\WINDOWS\system32\atidxx64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000108248 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000091360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mcl64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000076000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mcl32.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000070872 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000047328 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000044256 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000020408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2020-08-10 21:24 - 2020-08-04 17:12 - 000020408 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 072714968 _____ C:\WINDOWS\system32\amd_comgr.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 071742168 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 060137688 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 004156120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 001686624 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 001365984 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000941784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000769240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000554200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmcl64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000490200 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000467160 _____ C:\WINDOWS\system32\amdlogum.exe
2020-08-10 21:24 - 2020-08-04 17:11 - 000384216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmcl32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000380632 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000168016 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000135384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000130848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000123096 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000121048 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000108864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2020-08-10 21:24 - 2020-08-04 17:11 - 000107736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000547408 _____ C:\WINDOWS\system32\amdmiracast.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000136536 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000130848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000120880 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2020-08-10 21:24 - 2020-08-04 17:10 - 000108864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2020-08-10 21:24 - 2020-07-29 22:39 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2020-08-10 21:24 - 2020-07-29 22:39 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2020-08-10 21:24 - 2020-07-29 22:34 - 000547424 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2020-08-10 21:24 - 2020-07-29 22:34 - 000547424 _____ C:\WINDOWS\system32\atiapfxx.blb
2020-08-05 23:28 - 2020-08-12 19:41 - 075497472 _____ C:\WINDOWS\system32\config\SOFTWARE
2020-08-05 23:27 - 2020-08-05 23:28 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2020-08-05 23:15 - 2020-08-10 22:26 - 000000000 ____D C:\KVRT_Data
2020-08-05 23:15 - 2020-08-05 23:15 - 000478392 ____N (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\C993D853.sys
2020-08-05 23:15 - 2020-08-05 23:15 - 000085600 ____N (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\90372187.sys
2020-08-05 23:10 - 2020-08-10 21:31 - 000000932 _____ C:\Users\Public\Desktop\Diablo III.lnk
2020-08-05 23:10 - 2020-08-10 21:31 - 000000932 _____ C:\ProgramData\Desktop\Diablo III.lnk
2020-08-05 23:10 - 2020-08-05 23:15 - 182592912 _____ (AO Kaspersky Lab) C:\Users\Kuba\Downloads\KVRT.exe
2020-08-05 23:10 - 2020-08-05 23:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2020-08-05 22:41 - 2020-08-05 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware
2020-08-05 22:41 - 2020-08-05 22:54 - 000000000 ____D C:\Program Files\GridinSoft Anti-Malware
2020-08-05 22:41 - 2020-08-05 22:41 - 000000000 ____D C:\ProgramData\GridinSoft
2020-08-05 22:31 - 2020-08-05 22:31 - 008414384 _____ (Malwarebytes) C:\Users\Kuba\Downloads\adwcleaner_8.0.7.exe
2020-08-05 22:22 - 2020-08-10 21:31 - 000000000 ____D C:\Program Files (x86)\Diablo III
2020-08-02 20:29 - 2020-08-02 20:29 - 000000000 ____D C:\AdwCleaner
2020-08-02 20:27 - 2020-08-02 20:27 - 000000000 ____D C:\Users\Kuba\AppData\Local\Desperados III
2020-07-31 21:21 - 2020-07-31 21:21 - 000000538 _____ C:\DelFix.txt
2020-07-17 11:03 - 2020-07-17 11:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2020-07-15 07:49 - 2020-07-15 07:49 - 026271744 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 023433216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 019868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 018766336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 018068992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 017540608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 014754816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 010922808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 008892600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007992824 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007964416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007593544 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007534160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 007070208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006920192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006709248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006404608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006356008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006175232 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005964496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005821952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005766168 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 005337504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 004783328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 004734976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 004485216 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 003925856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 003906048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003860480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003818496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003812304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003810816 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 003779896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 003778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003752448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Service.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 003547280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002963456 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 002918216 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002744320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002585912 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002568192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002566144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002520048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002399744 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002338304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002311680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002305024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002286128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002245632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002177528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002131024 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002104320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002077696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 002026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001956016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001952392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001876480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001784488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001762632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001712128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001668904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001641472 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001606656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001557824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001556480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001550336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001509736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001507328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001477632 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001474048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001449280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001448448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001422336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001403904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001374720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001305600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001303040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001301592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001286560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 001253888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001246720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001239552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001218560 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001207296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001195520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001182008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001126472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001125376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001090560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001082168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001071224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001069056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Signals.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001058816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001041408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001022976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CBDHSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001014872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001008184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001006592 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 001001472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000994248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000991744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000968192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000966872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000945664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000937464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000933176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000914200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000903168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000902976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000889384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000881112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000879104 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000876544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000868352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000856328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000843264 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000831016 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000824328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000801560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000779360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000758784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000704496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000696240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000678200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000676088 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000673976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000644096 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000633856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000623960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000623392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000606880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000595512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.applicationmodel.datatransfer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000568320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000560400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000555744 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000539960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000539256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000523720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000522040 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000506672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000487552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000482616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000475704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000453952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000443704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000429056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000424448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000420936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000419840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000413208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.Phone.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000409552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000407504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000405304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.ESim.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000395600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerPlatform.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000380632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManager.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellAPI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000343992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Cortana.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000317952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.shareexperience.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000313152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemSettings.DataModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000311920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Preview.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConsoleLogon.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerPlatform.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordEnrollmentManager.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000260288 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000253016 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000249656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-07-15 07:49 - 2020-07-15 07:49 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000227640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeopleBand.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtcModel.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000215896 _____ (Microsoft Corporation) C:\WINDOWS\system32\coreglobconfig.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000215864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Devices.Sensors.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\useractivitybroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Internal.Input.ExpressiveInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000195128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-07-15 07:49 - 2020-07-15 07:49 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000179000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Management.Workplace.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2020-07-15 07:49 - 2020-07-15 07:49 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000163208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coreglobconfig.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000151864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\useractivitybroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000148280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyServer.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Storage.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppExtension.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CaptureService.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWSDAHost.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000113112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticInvoker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-07-15 07:49 - 2020-07-15 07:49 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000086784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemUWPLauncher.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000076992 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialEnrollmentManagerForUser.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DiagnosticInvoker.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000071792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourcePolicyClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.internal.shellcommon.AccountsControlExperience.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\keyiso.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemUWPLauncher.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Print.Workflow.Source.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiverExt.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ResourcePolicyClient.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000040248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkPS.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIMgrBroker.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWorkflowProxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000024288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerEnc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000020632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerEnc.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowProxy.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDJPN.DLL
2020-07-15 07:49 - 2020-07-15 07:49 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2020-07-15 07:49 - 2020-07-15 07:49 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIManagerBrokerps.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteFXvGPUDisablement.exe
2020-07-15 07:49 - 2020-07-15 07:49 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000009269 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-07-15 07:49 - 2020-07-15 07:49 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106n.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd106.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbd101.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106n.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd101.DLL
2020-07-15 07:49 - 2020-07-15 07:49 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-07-15 07:49 - 2020-07-15 07:49 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2020-07-15 07:47 - 2020-06-30 05:04 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-07-15 07:47 - 2020-06-30 04:58 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-07-14 07:51 - 2020-08-10 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMDBugReportTool
2020-07-14 07:50 - 2020-06-11 19:35 - 000486320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdfendrsr.exe
2020-07-14 07:50 - 2020-06-11 19:35 - 000070576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdfendr.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-08-12 19:52 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-08-12 19:45 - 2020-06-21 10:17 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-08-12 19:45 - 2019-12-07 16:43 - 000716706 _____ C:\WINDOWS\system32\perfh005.dat
2020-08-12 19:45 - 2019-12-07 16:43 - 000144884 _____ C:\WINDOWS\system32\perfc005.dat
2020-08-12 19:45 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2020-08-12 19:41 - 2020-06-21 10:16 - 000003124 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2020-08-12 19:41 - 2020-06-21 10:16 - 000003110 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2020-08-12 19:41 - 2020-06-21 10:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-08-12 19:41 - 2020-06-21 10:14 - 000008192 ___SH C:\DumpStack.log.tmp
2020-08-12 19:41 - 2019-12-07 11:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2020-08-12 19:39 - 2020-05-05 17:21 - 000000000 ____D C:\Hry
2020-08-12 16:42 - 2020-06-21 10:16 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-08-12 16:42 - 2020-04-08 18:51 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-08-12 16:41 - 2020-05-30 14:31 - 000002419 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-08-12 16:41 - 2020-05-30 14:31 - 000002257 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-08-12 16:41 - 2020-05-30 14:31 - 000002257 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2020-08-12 16:41 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-08-12 16:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-08-12 16:35 - 2020-06-21 10:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-08-11 18:58 - 2020-06-21 10:00 - 000000000 ____D C:\WINDOWS\system32\AMD
2020-08-10 21:32 - 2019-09-26 18:49 - 000000000 ____D C:\Users\Kuba\AppData\Local\Battle.net
2020-08-10 21:26 - 2020-06-21 10:16 - 000003194 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2020-08-10 21:26 - 2019-09-26 12:11 - 000000000 ____D C:\Program Files\AMD
2020-08-10 21:24 - 2019-09-26 12:11 - 000000000 ____D C:\AMD
2020-08-09 21:07 - 2020-05-30 22:04 - 000000000 ____D C:\Users\Kuba\AppData\Local\D3DSCache
2020-08-05 22:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-08-05 22:20 - 2020-06-21 10:16 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2917237701-912696078-3640067623-1001
2020-08-05 22:20 - 2020-06-21 10:00 - 000002358 _____ C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-08-05 22:20 - 2019-09-26 11:19 - 000000000 ___RD C:\Users\Kuba\OneDrive
2020-08-05 22:15 - 2019-09-26 14:54 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2020-08-05 22:10 - 2019-09-26 11:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-08-04 17:12 - 2020-05-27 14:20 - 001784024 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2020-08-04 17:11 - 2020-05-27 14:19 - 000199440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2020-08-02 20:52 - 2019-10-14 18:43 - 000000000 ____D C:\Users\Kuba\AppData\Roaming\Discord
2020-08-02 20:26 - 2019-09-26 14:51 - 000000000 ____D C:\Program Files (x86)\Steam
2020-08-02 09:10 - 2019-09-26 18:48 - 000000000 ____D C:\Program Files (x86)\Battle.net
2020-07-31 21:20 - 2020-05-29 21:20 - 000000000 ____D C:\Users\Kuba\AppData\LocalLow\Temp
2020-07-29 22:10 - 2019-09-26 11:49 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-07-29 22:10 - 2019-09-26 11:49 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-07-29 22:10 - 2019-09-26 11:49 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-07-23 22:16 - 2019-09-26 11:35 - 000000000 ____D C:\ProgramData\Package Cache
2020-07-21 07:16 - 2020-06-22 15:13 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2020-07-21 07:16 - 2020-01-27 19:16 - 000137144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2020-07-21 07:16 - 2020-01-27 19:16 - 000033712 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2020-07-21 07:16 - 2019-10-07 21:37 - 001523640 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2020-07-21 07:16 - 2019-10-07 21:37 - 000157624 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2020-07-21 07:16 - 2019-10-07 21:37 - 000135096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2020-07-16 21:21 - 2019-09-26 11:17 - 000000000 ____D C:\Users\Kuba\AppData\Local\Packages
2020-07-15 20:38 - 2020-06-21 10:16 - 000003582 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-07-15 20:38 - 2020-06-21 10:16 - 000003458 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-07-15 07:52 - 2020-06-21 10:14 - 000258176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-07-15 07:51 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2020-07-15 07:51 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2020-07-14 16:15 - 2020-05-27 14:20 - 001784024 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\SET335.tmp
2020-07-14 16:15 - 2020-05-27 14:19 - 000199440 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\SET244.tmp
2020-07-14 07:51 - 2020-06-21 10:16 - 000003160 _____ C:\WINDOWS\system32\Tasks\StartCN
2020-07-14 07:51 - 2020-06-21 10:16 - 000003080 _____ C:\WINDOWS\system32\Tasks\StartDVR

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-08-2020
Ran by Kuba (12-08-2020 19:56:35)
Running from C:\Users\Kuba\Desktop
Windows 10 Pro Version 2004 19041.388 (X64) (2020-06-21 08:16:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2917237701-912696078-3640067623-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2917237701-912696078-3640067623-503 - Limited - Disabled)
Guest (S-1-5-21-2917237701-912696078-3640067623-501 - Limited - Disabled)
Kuba (S-1-5-21-2917237701-912696078-3640067623-1001 - Administrator - Enabled) => C:\Users\Kuba
WDAGUtilityAccount (S-1-5-21-2917237701-912696078-3640067623-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
ADATA SSD ToolBox version 3.0.11 (HKLM-x32\...\{C0991D3E-8786-48E7-A5DB-57FBACB0A03A}_is1) (Version: 3.0.11 - ADATA, Inc.)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.012.20041 - Adobe Systems Incorporated)
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.04.28.626 - Advanced Micro Devices, Inc.)
AMD Product Verification Tool version 1.0.4.8 (HKLM\...\{4242685A-EF3E-45FF-B4AE-758E49020936}}_is1) (Version: 1.0.4.8 - AMD)
AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.0.2.1271 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 20.8.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{6f87e20b-2c1c-4788-9380-541e79886292}) (Version: 2.04.28.626 - Advanced Micro Devices, Inc.) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bloody7 (HKLM-x32\...\Bloody3) (Version: 19.09.0009 - Bloody)
Branding64 (HKLM\...\{856DA29A-EA4A-468B-BBC2-B5F60DD75BFE}) (Version: 1.00.0002 - Advanced Micro Devices, Inc.) Hidden
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.75.1088 - AB Team, d.o.o.)
CEWE FOTOLAB fotosvet (HKLM-x32\...\CEWE FOTOLAB fotosvet) (Version: 7.0.2 - CEWE Stiftung u Co. KGaA)
CPUID CPU-Z 1.90 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.90 - CPUID, Inc.)
CPUID HWMonitor 1.41 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.41 - CPUID, Inc.)
Crash Bandicoot N. Sane Trilogy (HKLM-x32\...\Crash Bandicoot N. Sane Trilogy_is1) (Version: - )
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Discord (HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.0.0 - ENE TECHNOLOGY INC.) Hidden
ENE RGB HAL (HKLM\...\{B380DBDE-BA95-481B-92E9-52F2E5E84F24}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{adbc3d98-57f2-4d68-b155-138f8fb0f73d}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE_DRAM_RGB_AURA42 (HKLM\...\{BC5E0A82-C638-44CB-8129-20C8ED70DE7A}) (Version: 1.00.02 - Ene Tech.) Hidden
ENE_DRAM_RGB_AURA42 (HKLM-x32\...\{f3d7fb09-b93f-4c01-a765-0b0adc5bc746}) (Version: 1.00.02 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{26b207d1-1f37-4df9-8b3f-aeebbca6bb85}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{1D4EB18B-0FEE-444E-B4D1-6F2CFBC363E6}) (Version: 1.1.267.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Futuremark SystemInfo (HKLM-x32\...\{9266535B-CFD6-4696-A167-4D68ED5AD303}) (Version: 5.27.826.0 - Futuremark)
Geeks3D FurMark 1.20.8.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.105 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HWiNFO64 Version 6.14 (HKLM\...\HWiNFO64_is1) (Version: 6.14 - Martin Malik - REALiX)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.59 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - )
Microsoft OneDrive (HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\OneDriveSetup.exe) (Version: 20.124.0621.0006 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.35.510.2019 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8720.1 - Realtek Semiconductor Corp.)
RGB Fusion (HKLM-x32\...\{FFA8F1FA-3C2C-4A94-AC0B-0DF47272C25F}) (Version: 3.20.0330.2 - GIGABYTE)
RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 103.2 - Ubisoft)

Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_1.1911.21713.0_x64__8wekyb3d8bbwe [2019-12-07] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x64__8wekyb3d8bbwe [2019-10-07] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x86__8wekyb3d8bbwe [2019-10-07] (Microsoft Corporation)
Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.416.287.2_x64__8wekyb3d8bbwe [2020-05-17] (Microsoft Studios)
Forza Horizon 4 Formula Drift Car Pack -> C:\Program Files\WindowsApps\Microsoft.FormulaDriftCarPack_1.0.3.2_neutral__8wekyb3d8bbwe [2019-11-18] (Microsoft Studios)
Herní služby -> C:\Program Files\WindowsApps\Microsoft.GamingServices_2.43.13001.0_x64__8wekyb3d8bbwe [2020-07-21] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-03] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-03] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-10-04] (Microsoft Corporation) [MS Ad]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.181.0_x64__dt26b99r8h8gj [2019-09-26] (Realtek Semiconductor Corp)
Streets of Rage 4 -> C:\Program Files\WindowsApps\DotEmu.StreetsofRage4_1.0.14.2_x64__map6zyh9ym1xy [2020-05-19] (DotEmu)
Super Lucky's Tale -> C:\Program Files\WindowsApps\Microsoft.AcornUWP_1.5.2019.2_x64__8wekyb3d8bbwe [2019-10-06] (Microsoft Studios)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2917237701-912696078-3640067623-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive - Personal] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}0
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-07-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-09-26 14:49 - 2017-04-17 10:43 - 003852800 ____N () [File not signed] C:\Program Files (x86)\Bloody7\Bloody7\Data\Mouse\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 003567616 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2018-03-13 04:47 - 2018-03-13 04:47 - 000912896 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\aws-cpp-sdk-core.dll
2018-03-13 04:47 - 2018-03-13 04:47 - 003109888 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\aws-cpp-sdk-s3.dll
2015-02-19 01:13 - 2015-02-19 01:13 - 000817152 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\Device.dll
2015-02-19 01:13 - 2015-02-19 01:13 - 003650560 _____ () [File not signed] C:\Program Files\AMD\Performance Profile Client\Platform.dll
2020-07-29 15:38 - 2020-07-29 15:38 - 001583104 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000039424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000413696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000519168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 001431040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 001180672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000135680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2020-07-29 15:46 - 2020-07-29 15:46 - 006010880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 006345216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 001078272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000313856 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 004000256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 003802624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000171008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 001083904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000205312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000329728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000376320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 092323328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 005560832 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000188416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 002888704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000287232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000329216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000089088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000312320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2020-07-14 17:32 - 2020-07-14 17:32 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2020-07-29 15:46 - 2020-07-29 15:46 - 000085504 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2020-07-31 21:19 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2917237701-912696078-3640067623-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kuba\Pictures\fzlxwvxvs5ry.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2917237701-912696078-3640067623-1001\...\StartupApproved\Run: => "EpicGamesLauncher"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{E9F6F459-3CD1-4198-B6B9-7E047144B956}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{159404D3-F70B-4263-819F-80994D14FB1F}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{C2BA6FC4-DE9A-46C1-9357-4A0EA58657C5}] => (Allow) LPort=26789
FirewallRules: [{831CDAED-7046-4E2A-9C30-0CDCA809FD61}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{E3F8B91B-1399-483D-A8F2-885D2748C1C6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{F4221B41-7A95-4381-9AA2-D45F3C9F762F}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{19E4D5A0-EB1F-4D81-BFDD-88F6873B3E56}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{E4217116-F13D-4BE0-9BA2-ED64BFC1DC0E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{DD0499BA-C1F9-4273-A64F-9952B3F11E76}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{725B548C-1051-4190-AD9C-F22B060B049D}C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe] => (Allow) C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe (Activision Publishing Inc -> ) [File not signed]
FirewallRules: [UDP Query User{37EDE33C-2730-4FF0-AD2E-F0012824F9AC}C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe] => (Allow) C:\hry\crash bandicoot n. sane trilogy\crashbandicootnsanetrilogy.exe (Activision Publishing Inc -> ) [File not signed]
FirewallRules: [{87819262-8AE3-4BAD-B798-19835426AF65}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

23-07-2020 22:16:32 Nainstalováno rozhraní DirectX
31-07-2020 09:29:42 Naplánovaný kontrolní bod
31-07-2020 21:19:32 Restore Point Created by FRST
05-08-2020 22:31:18 Instalační služba modulů systému Windows
10-08-2020 21:25:25 Radeon Installer

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (08/03/2020 10:18:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Setup.tmp verze 51.1052.0.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 1380

Čas spuštění: 01d669d3191d600a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Users\Kuba\AppData\Local\Temp\is-IM9K2.tmp\Setup.tmp

ID hlášení: dcb7b2b7-4838-49e2-819b-f98f22158a54

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Top level window is idle

Error: (07/31/2020 09:19:32 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005, Přístup byl odepřen.
.
To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {b8ccec33-8818-44b9-9d07-2a3e67fbd0ae}

Error: (07/15/2020 09:17:40 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (07/15/2020 09:17:40 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (07/15/2020 07:52:02 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -1409.

Error: (07/01/2020 09:36:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GameBar.exe, verze: 5.220.4152.0, časové razítko: 0x5e9776ef
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.19041.1, časové razítko: 0xbd1e2564
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000007284e
ID chybujícího procesu: 0x2184
Čas spuštění chybující aplikace: 0x01d64fded90e215a
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe\GameBar.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: 62538f0c-e1a6-4728-9e83-52165dbc9d82
Úplný název chybujícího balíčku: Microsoft.XboxGamingOverlay_5.220.4152.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App

Error: (06/24/2020 02:30:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: setup.tmp, verze: 51.1052.0.0, časové razítko: 0x506a75b5
Název chybujícího modulu: botva2.dll_unloaded, verze: 0.9.7.151, časové razítko: 0x2a425e19
Kód výjimky: 0xc000041d
Posun chyby: 0x00005514
ID chybujícího procesu: 0x2628
Čas spuštění chybující aplikace: 0x01d64a21c3582be3
Cesta k chybující aplikaci: C:\Users\Kuba\AppData\Local\Temp\is-ATANH.tmp\setup.tmp
Cesta k chybujícímu modulu: botva2.dll
ID zprávy: 68e683c2-bd19-4eb6-a17c-2d725cb3a1ab
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (06/24/2020 02:30:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: setup.tmp, verze: 51.1052.0.0, časové razítko: 0x506a75b5
Název chybujícího modulu: botva2.dll_unloaded, verze: 0.9.7.151, časové razítko: 0x2a425e19
Kód výjimky: 0xc0000005
Posun chyby: 0x00005514
ID chybujícího procesu: 0x2628
Čas spuštění chybující aplikace: 0x01d64a21c3582be3
Cesta k chybující aplikaci: C:\Users\Kuba\AppData\Local\Temp\is-ATANH.tmp\setup.tmp
Cesta k chybujícímu modulu: botva2.dll
ID zprávy: 19200d34-872d-4a78-a11e-6caff7f907eb
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (08/12/2020 07:40:53 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1115 při pokusu o spuštění služby SecurityHealthService s argumenty Není k dispozici za účelem spuštění serveru:
{8C9C0DB7-2CBA-40F1-AFE0-C55740DD91A0}

Error: (08/12/2020 07:40:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Realtek Audio Universal Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (08/12/2020 07:40:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/12/2020 07:40:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD External Events Utility byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/12/2020 07:40:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD Crash Defender Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/12/2020 04:37:33 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1115 při pokusu o spuštění služby BITS s argumenty Není k dispozici za účelem spuštění serveru:
{4991D34B-80A1-4291-83B6-3328366B9097}

Error: (08/12/2020 04:37:01 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (08/12/2020 04:37:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Gaming Services byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
===================================
Date: 2020-08-10 22:29:41.6530000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/PiriformBundler
ID: 277517
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\ccsetup570.exe; webfile:_C:\Users\Kuba\Downloads\ccsetup570.exe|https://download.ccleaner.com/ccsetup57 ... 9789411033
Původ detekce: Internet
Typ detekce: Konkrétní
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Windows\System32\svchost.exe
Verze bezpečnostních informací: AV: 1.321.1110.0, AS: 1.321.1110.0, NIS: 1.321.1110.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-10 22:29:40.2470000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/PiriformBundler
ID: 277517
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\ccsetup570.exe; webfile:_C:\Users\Kuba\Downloads\ccsetup570.exe|https://download.ccleaner.com/ccsetup57 ... 9789411033
Původ detekce: Internet
Typ detekce: Konkrétní
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.321.1110.0, AS: 1.321.1110.0, NIS: 1.321.1110.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-03 22:15:46.0080000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
Verze bezpečnostních informací: AV: 1.321.509.0, AS: 1.321.509.0, NIS: 1.321.509.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-02 20:56:36.3720000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\Setup.exe; file:_D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe; webfile:_C:\Users\Kuba\Downloads\Setup.exe|https://www.email.cz/download/c/x5Sf7Ax ... 1851588409
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
Verze bezpečnostních informací: AV: 1.321.447.0, AS: 1.321.447.0, NIS: 1.321.447.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

Date: 2020-08-02 20:56:27.8960000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/Caypnamer.A!ml
ID: 274600
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Kuba\Downloads\Setup.exe; webfile:_C:\Users\Kuba\Downloads\Setup.exe|https://www.email.cz/download/c/x5Sf7Ax ... 1851588409
Původ detekce: Internet
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-V57FHI1\Kuba
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.321.447.0, AS: 1.321.447.0, NIS: 1.321.447.0
Verze modulu: AM: 1.1.17300.4, NIS: 1.1.17300.4

==================== Memory info ===========================

BIOS: American Megatrends Inc. 3.50 11/07/2019
Motherboard: Micro-Star International Co., Ltd B450 TOMAHAWK MAX (MS-7C02)
Processor: AMD Ryzen 5 3600 6-Core Processor
Percentage of memory in use: 31%
Total physical RAM: 16334.78 MB
Available physical RAM: 11198.86 MB
Total Virtual: 18766.78 MB
Available Virtual: 11838.57 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:476.31 GB) (Free:235.42 GB) NTFS

\\?\Volume{9c7f80c6-2eda-4913-804a-ac3714e83a82}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.1 GB) NTFS
\\?\Volume{a765b578-b7ed-4dee-b093-7ca4c06690f3}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 19:55
od Rudy
V kterém souboru?

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 20:07
od Jakob
Jedná se o soubor, který byl připojen z externího disku: file: D:\Hry\Desperados.III.Update.v1.2.4-CODEX\Update\Setup.exe
Tento disk ani obsah již nemám k dispozici. Jedná se tedy podle vás o falešný poplach? Děkuji
defender.jpg
defender.jpg (39.53 KiB) Zobrazeno 2953 x

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 20:53
od Rudy
Klikl jste na "Odebrat"? Pokud ano, vir tam není, zřejmě pouze záznam v registry.

Re: Prosím o preventivní kontrolu

Napsal: 12 srp 2020 21:21
od Jakob
Ano, zkoušel a odebral jsem pomocí tlačítka odebrat, jen se tam stále zobrazuje to varování. Nikdy jsem ve Windows Defender neřešil problém s virem, takže pokud se jedná pouze o záznam v registry, budu to ignorovat. Lze to případně nějakým způsobem odebrat z registry? Děkuji

Re: Prosím o preventivní kontrolu

Napsal: 13 srp 2020 09:26
od Rudy
Udělejte sken AVPTool: http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 . Návod je na starou verzi. Utilitu stáhněte, spusťte, nechte pracovat a po skončení akce smažte vše, co najde.

Re: Prosím o preventivní kontrolu

Napsal: 13 srp 2020 18:48
od Jakob
Sken v Kaspersky Virus Removal Tool proveden bez nálezu. Je možné, že by Windows defender detekoval virus, který byl odebrán? Děkuji

Re: Prosím o preventivní kontrolu

Napsal: 13 srp 2020 18:58
od Rudy
Možná jsou tam jen nefunkční zbytky a windef je detekuje. AVPTool je dost přesný skener a kdybyl v systému funkční malware, objevil by jej. Můžeme zkusit vyčistit prohlížeče. Spusťte postupně tyto utility:

1. Stahnete Zoek.exe http://download.bleepingcomputer.com/smeenk/zoek.exe a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.

Re: Prosím o preventivní kontrolu

Napsal: 13 srp 2020 21:11
od Jakob
Vkládám oba logy formou přílohy, děkuji.

Re: Prosím o preventivní kontrolu

Napsal: 14 srp 2020 09:18
od Rudy
Prohlížeče byly vyčištěny. Nastala teď nějaká změna?