Kontrola logu
Napsal: 14 zář 2020 17:55
Dobrý den,
prosím o kontrolu logu. Na počítači mi nejde spustit jedna aplikace, nevím, čím to je, už jsem vyzkoušel úplně všechno včetně aktualizace Windows, ale nepomohlo. Zřejmě to je tímto počítačem, na jiných to funguje. Prosím šlo by zkontrolovat, jestli tam není virus?
Děkuji.
Log z RSIT (jsou to tři části ve třech příspěvcích):
Logfile of random's system information tool 1.10 (written by random/random)
Run by danie at 2020-09-14 18:35:10
Microsoft Windows 10 Home
System drive C: has 57 GB (24%) free of 243 GB
Total RAM: 8013 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:35:21, on 14.09.2020
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
C:\Program Files\trend micro\danie.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://hp17win10.msn.com/?pc=HCTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://hp17win10.msn.com/?pc=HCTE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKCU\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
O4 - HKCU\..\Run: [HPSEU_Host_Launcher] C:\System.sav\util\HpseuHostLauncher.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [466F9362F8D864522CA0247FF83233AA5403792B._service_run] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [HPSEU_Host_Launcher] C:\System.sav\util\HpseuHostLauncher.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [OneDrive] C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe /background /setautostart (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [OneDrive] C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe /background /setautostart (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-93754314-3111490570-4120607304-1017\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'Filip')
O4 - HKUS\S-1-5-21-93754314-3111490570-4120607304-1017\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'Filip')
O4 - HKUS\S-1-5-21-93754314-3111490570-4120607304-1108\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'SAS')
O4 - Global Startup: Avast SecureLine VPN.lnk = C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{bc508dde-ec9c-40ee-bc47-8a3b67925bee}: NameServer = 100.120.14.1
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: Intel® SGX AESM (AESMService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_bff7913eb62bbf90\aesm_service.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\Avast Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\Avast Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall Service (avast! Firewall) - AVAST Software - C:\Program Files\Avast Software\Avast\afwServ.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\Avast Software\Avast\wsc_proxy.exe
O23 - Service: Avast Cleanup (CleanupPSvc) - AVAST Software - C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHeciSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_54745 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: Citrix Workspace Updater Service (CWAUpdaterService) - Citrix Systems, Inc. - C:\Program Files (x86)\Citrix\ICA Client\Receiver\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: epinjectsvc - SentryBay - C:\Program Files (x86)\SentryBay\EntryProtect\inject.exe
O23 - Service: @oem84.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.102\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Comm Recovery (HP Comm Recover) - HP Inc. - C:\Program Files\HPCommRecovery\HPCommRecovery.exe
O23 - Service: @oem114.inf,%ServiceAppHelperDesc%;HP App Helper HSA Service (HPAppHelperCap) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\AppHelperCap.exe
O23 - Service: @oem114.inf,%ServiceNetworkDesc%;HP Network HSA Service (HPNetworkCap) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\NetworkCap.exe
O23 - Service: @oem114.inf,%ServiceSysInfoDesc%;HP System Info HSA Service (HPSysInfoCap) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\SysInfoCap.exe
O23 - Service: @oem58.inf,%hpanalyticscomp%;HP Analytics service (HpTouchpointAnalyticsService) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\TouchpointAnalyticsClientService.exe
O23 - Service: @oem126.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Unknown owner - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxCUIService.exe
O23 - Service: @oem125.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_3004658ee4d7fe24\lib\SocketHeciServer.exe
O23 - Service: @oem125.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_3004658ee4d7fe24\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Unknown owner - C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @oem126.inf,%RstMwService.Name%;Intel(R) Storage Middleware Service (RstMwService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_99239023b47c777a\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @oem24.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device Manager Service (RtkBtManServ) - Realtek Semiconductor Corp. - C:\WINDOWS\RtkBtManServ.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Služba SentryBay Update (sbupdate) (sbupdate) - SentryBay - C:\Program Files (x86)\SentryBay\Update\SentryBayUpdate.exe
O23 - Service: Sound Research SECOMN Service (SECOMNService) - Unknown owner - C:\WINDOWS\System32\SECOMN64.exe (file missing)
O23 - Service: Armored Client (SECUREACCESSSYSTEM) - SentryBay - C:\Program Files (x86)\SentryBay\Armored Client\service.exe
O23 - Service: Avast SecureLine VPN (SecureLine) - AVAST Software - C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @oem25.inf,%SynTPEnhService.SVCDESC%;SynTPEnhService (SynTPEnhService) - Unknown owner - C:\WINDOWS\System32\SynTPEnhService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 19727 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
"fontdrvhost.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s DsmSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -s BTAGService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\AppHelperCap.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-48aa3dae-2d96-416c-b78d-a44e77eee2d6 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-d3e3a4d4-aa51-4e5c-9480-b596943702bf -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-4fe45f23-75c2-40d2-9575-9469ecd00da9 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-d11615a2-6608-421a-a483-2ed375cf4dc5 -LifetimeId:2209810d-f4c0-400b-8708-fe11850fe97d -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\SysInfoCap.exe
C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\TouchpointAnalyticsClientService.exe
C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\NetworkCap.exe
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
dashost.exe {92719ed6-011a-43c8-ba67017b6111dbad}
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-3ecfb69d-d030-4e7c-8351-8d1da07592e8 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-330e760d-96fa-4035-abbe-9c38f24d3d0c -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-af01a1ba-fd35-4a30-95d9-bff7a46f9c7a -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-3c670ce7-d291-4352-a2a9-26452a29da54 -LifetimeId:cfb4f85e-30f4-4f55-bea1-705e4e69df72 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SensrSvc
C:\WINDOWS\System32\SynTPEnhService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-690845cf-a1d5-4563-8d95-572fcef8f6da -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-19872bae-1396-48c4-950c-06dd2bebe589 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-05411f05-07d0-4e59-ab94-4aae5e87fb34 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-9bfc009b-9cdc-4cbb-8c6b-151510c16f98 -LifetimeId:cea046ae-9ff8-4c8c-81e6-597ad1e19581 -DeviceGroupId:ViddGroup -HostArg:0
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-e70965fc-cf2f-45fd-ba6e-e16ad372e616 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-53ce0fa1-0aa5-47d9-b2ab-ba04cccd289e -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-defdf165-e907-45b2-9557-2f8ea397e65a -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-833fe27b-45fd-4bf2-a8d0-ed5173f82720 -LifetimeId:d4c21193-bcd4-4a6a-84e8-0ee0db431ffc -DeviceGroupId: -HostArg:0
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SensorService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\system32\WLANExt.exe 2050075852848
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup -s WbioSrvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\Program Files (x86)\Citrix\ICA Client\ssonsvr.exe /HTC:632 /LUID:000000000003C3CB
"C:\Program Files\Avast Software\Avast\aswEngSrv.exe" /pipename="11F1C646-C2B4-7625-140E-B48758E0C9EC" /binpath="C:\Program Files\Avast Software\Avast"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p -s BluetoothUserService
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxEM.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
"C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe" -boot
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
"C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\WINDOWS\System32\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\BridgeCommunication.exe" 9dbb7785-ab76-4576-8f06-eea4e326413c Global\3b4eafb8-bded-4e96-908a-f2ad04ef39e5 1364
"ctfmon.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
/QuitInfo:0000000000000244;0000000000000248;
"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Avast Software\Avast\afwServ.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHDCPSvc.exe
"C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
"C:\Program Files (x86)\Citrix\ICA Client\Receiver\UpdaterService.exe"
"C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe"
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\WINDOWS\System32\RtkAudUService64.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_99239023b47c777a\RstMwService.exe
C:\WINDOWS\RtkBtManServ.exe
"C:\WINDOWS\System32\SECOMN64.exe"
"C:\Program Files (x86)\SentryBay\Armored Client\service.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
"C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHeciSvc.exe
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\TouchpointGpuInfo.exe" -m "ConnectNamePipe" -c "GraphicsMonitor"
"C:\Windows\System32\SecurityHealthSystray.exe"
AvastUI.exe /nogui
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Avast Software\Cleanup\TuneupUI.exe" /nogui
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --no-rate-limit --no-upload-gzip --type=crash-handler "--crashes-directory=C:\Users\danie\AppData\Local\Temp\skype-preview Crashes" "--database=C:\Users\danie\AppData\Local\Temp\skype-preview Crashes" "--metrics-dir=C:\Users\danie\AppData\Local\Temp\skype-preview Crashes" --url=appcenter://generic?aid=a8902fe7-ef45-455c-8513-5e56d48e36fd&iid=6e6f997d-2788-42fe-b2aa-83c045c593d4&uid=4fc41898-c0c6-4474-e7cf-2ad9a83f9bb5 --initial-client-data=0x748,0x74c,0x750,0x744,0x754,0x62ec150,0x62ec160,0x62ec16c
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=gpu-process --field-trial-handle=2328,11400089238304158928,11816348853101190752,131072 --disable-features=PictureInPicture,SpareRendererForSitePerProcess --gpu-preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=13426935164759338934 --mojo-platform-channel-handle=2092 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --field-trial-handle=2328,11400089238304158928,11816348853101190752,131072 --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --service-sandbox-type=network --service-request-channel-token=4406101337593331094 --mojo-platform-channel-handle=2640 /prefetch:8
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --ms-disable-indexeddb-transaction-timeout --field-trial-handle=2328,11400089238304158928,11816348853101190752,131072 --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=Microsoft.Skype.SkypeDesktop --app-path="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\resources\app.asar" --webview-tag --no-sandbox --no-zygote --native-window-open --preload="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\resources\app.asar\Preload.js" --disable-remote-module --background-color=#fff --node-integration-in-subframes --enable-websql --enable-spellcheck --electron-shared-settings=eyJjci5jb21wYW55IjoiRWxlY3Ryb24iLCJjci5kdW1wcyI6IiIsImNyLmVuYWJsZWQiOmZhbHNlLCJjci5wcm9kdWN0IjoiRWxlY3Ryb24iLCJjci5zZXNzaW9uIjoiIiwiY3IudXJsIjoiIiwiY3IudmVyc2lvbiI6IiJ9 --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=784425212726846492 --renderer-client-id=5 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3148 /prefetch:1 --skype-process-type=Main --skype-window-id=__MAIN_ROOT_VIEW_ID__
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\System32\svchost.exe -k smphost
"C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe" /nogui
C:\windows\System32\RtkAudUService64.exe -background
"C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.18.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe" LaunchedBySysInfo
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe"
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20071.95.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_bff7913eb62bbf90\aesm_service.exe
C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_3004658ee4d7fe24\lib\SocketHeciServer.exe
"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /c
"C:\Program Files\HPCommRecovery\HPCommRecovery.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" -- "microsoft-edge:https://www.msn.com/cs-cz/lifestyle/ces ... erzegovina"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\danie\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Crashpad" "--metrics-dir=C:\Users\danie\AppData\Local\Microsoft\Edge\User Data" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=85.0.4183.102 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 --annotation=prod=Edge --annotation=ver=85.0.564.51 --initial-client-data=0x228,0x22c,0x230,0x224,0x234,0x7ffc75f2e390,0x7ffc75f2e3a0,0x7ffc75f2e3b0
"C:\Program Files\Avast Software\Cleanup\TuneupUI.exe" --type=gpu-process --field-trial-handle=3708,4914384319804424354,17786951947142422357,131072 --no-sandbox --log-file="C:\Users\danie\AppData\Roaming\Avast Software\Cleanup\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAMAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --use-gl=swiftshader-webgl --service-request-channel-token=7620436573085629820 --mojo-platform-channel-handle=3904 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --gpu-preferences=MAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --mojo-platform-channel-handle=2032 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=2332 /prefetch:8
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s FDResPub
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --service-sandbox-type=audio --enable-audio-service-sandbox --mojo-platform-channel-handle=4548 /prefetch:8
"C:\Program Files\Avast Software\Avast\AvastUI.exe" --type=gpu-process --field-trial-handle=8740,14260266453632275168,4628138383300342412,131072 --no-sandbox --log-file="C:\Users\danie\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium (20.6.2420)" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAMAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --use-gl=swiftshader-webgl --service-request-channel-token=8768774050587732372 --mojo-platform-channel-handle=8828 /prefetch:2
"C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe" /from_scheduler:1
C:\WINDOWS\system32\AUDIODG.EXE 0x3f4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --enable-auto-reload --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=80 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=7180 /prefetch:1
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 784 788 796 8192 792 768
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --enable-auto-reload --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=87 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5700 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --enable-auto-reload --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=89 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6008 /prefetch:1
"C:\Users\danie\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Avast Driver Updater Startup.job - C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe -boot
C:\WINDOWS\tasks\SentryBayUpdateTaskMachineCore.job - C:\Program Files (x86)\SentryBay\Update\SentryBayUpdate.exe /c
C:\WINDOWS\tasks\SentryBayUpdateTaskMachineUA.job - C:\Program Files (x86)\SentryBay\Update\SentryBayUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\y61xj8xk.default-release
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Citrix.com/npican]
"Description"=Citrix ICA Client Plugin
"Path"=C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@update.sentrybay.com/SentryBay Update;version=8]
"Description"=SentryBay Update
"Path"=C:\Program Files (x86)\SentryBay\Update\1.0.0.13544\npSentryBayOneClick8.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\BHO\ie_to_edge_bho_64.dll [2020-09-09 500616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-01-17 210632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2019-12-17 439160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\BHO\ie_to_edge_bho.dll [2020-09-09 386952]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-01-17 157904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2019-12-17 414584]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"EzTiltPenSrvc"=C:\Program Files\ELAN\EzTiltPen\EzTiltPenAgent.exe [2019-04-22 238280]
"RtlS5Wake"=C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2018-04-18 2097600]
"AvastUI.exe"=C:\Program Files\Avast Software\Avast\AvLaunch.exe [2020-08-07 109160]
"TuneupUI.exe"=C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [2020-09-09 2596704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDriveSetup"=C:\Windows\SysWOW64\OneDriveSetup.exe [2019-12-07 30870320]
"HPSEU_Host_Launcher"=C:\System.sav\util\HpseuHostLauncher.exe [2020-08-02 527368]
"OneDrive"=C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe [2020-03-21 1579368]
"466F9362F8D864522CA0247FF83233AA5403792B._service_run"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2020-09-09 2880904]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Avast SecureLine VPN.lnk - C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"aux1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"wave2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2020-09-14 18:35:10 ----D---- C:\rsit
2020-09-14 18:35:10 ----D---- C:\Program Files\trend micro
2020-09-14 17:28:17 ----D---- C:\Users\danie\AppData\Roaming\ICAClient
2020-09-14 17:28:05 ----D---- C:\Program Files (x86)\Citrix
2020-09-14 13:27:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Templates
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Start Menu
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Documents
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Desktop
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Application Data
2020-09-14 13:21:27 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2020-09-14 13:20:02 ----D---- C:\WINDOWS\system32\SleepStudy
2020-09-14 13:20:02 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2020-09-14 13:20:01 ----D---- C:\WINDOWS\Prefetch
2020-09-14 13:19:57 ----ASH---- C:\DumpStack.log.tmp
2020-09-14 13:19:53 ----D---- C:\Windows.old
2020-09-14 13:19:11 ----A---- C:\WINDOWS\system32\drivers\WinSetupBoot.sys
2020-09-14 13:08:47 ----SD---- C:\Users\danie\AppData\Roaming\Microsoft
2020-09-14 13:08:19 ----AS---- C:\WINDOWS\bootstat.dat
2020-09-14 13:07:44 ----D---- C:\WINDOWS\system32\cAVS
2020-09-14 13:07:42 ----D---- C:\WINDOWS\system32\Intel
2020-09-14 13:06:59 ----D---- C:\WINDOWS\system32\Microsoft
2020-09-14 13:06:59 ----D---- C:\WINDOWS\ServiceProfiles
2020-09-14 13:05:46 ----D---- C:\ProgramData\ssh
2020-09-14 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\FXSCOMEX.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\wmp.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\WFSR.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\WFS.exe
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSUTILITY.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOVER.exe
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOMPOSERES.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOMPOSE.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\ConsoleLogon.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\wbengine.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\wbadmin.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\msrahc.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\msra.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\fvecpl.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\fveapibase.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\fveapi.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\BdeUISrv.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\bdesvc.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\WalletService.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\TSSessionUX.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\cdp.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\bootux.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\bootim.exe
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\syncutil.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\syncutil.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\notepad.exe
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\APHostService.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\notepad.exe
2020-09-14 13:03:06 ----A---- C:\WINDOWS\system32\DevicesFlowUI.App.dll
2020-09-14 13:02:48 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2020-09-14 13:02:48 ----A---- C:\WINDOWS\SYSWOW64\HoloShellRuntime.dll
2020-09-14 13:02:48 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMNetMgr.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\wmidx.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mswmdm.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSFlacEncoder.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSAudDecMFT.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmjpegdec.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\MixedReality.Broker.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HoloSHExtensions.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HolographicRuntimes.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\Analog.Shell.Broker.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMNetMgr.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\wmidx.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\winmde.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\mswmdm.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MSFlacEncoder.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\mfmjpegdec.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\HoloShellRuntime.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\DMRServer.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\msvproc.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfsvr.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfds.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfplat.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfcore.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mf.dll
2020-09-14 13:02:40 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-09-14 13:02:40 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wvc.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wkspbrokerAx.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\WinSATAPI.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wavemsp.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\Vault.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\VAN.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\termmgr.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tapisrv.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tapi3.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\SyncCenter.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\SecurityCenterBrokerPS.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\psisdecd.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\PrintWSDAHost.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\powercpl.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\opengl32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\netcenter.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\glu32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\glmf32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\FrameServerClient.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\AcSpecfc.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msxbde40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mstext40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\cic.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\cdosys.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\imapi.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wiatrace.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wiadss.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wiaaut.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\upnpcont.exe
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\udhisapi.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\sti.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\srumapi.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiverExt.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iasrecst.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iasnap.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iasads.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\FirewallControlPanel.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\fdWSD.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\fdSSDP.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\DxpTaskSync.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\dxdiagn.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\Dsui.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\dfrgui.exe
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\azroles.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\autoplay.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WinSATAPI.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WinSAT.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Windows.Mirage.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\sysmain.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SrTasks.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\srrstr.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\srcore.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Spectrum.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SIHClient.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SecurityCenterBrokerPS.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SecurityCenterBroker.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\rstrui.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\recdisc.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\RdpRelayTransport.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\rdbui.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\P2P.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\icsvcext.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\FileHistory.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\fhsettingsprovider.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\fhcpl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\dsregcmd.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\DiagSvc.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\wkspbrokerAx.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\wavemsp.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\Vault.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\VAN.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tsmf.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tsgqec.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\themecpl.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\termsrv.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\termmgr.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tapisrv.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tapi32.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tapi3.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\rdpclip.exe
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\qedit.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\psisdecd.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\mstscax.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\mstsc.exe
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\DiagCpl.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\CPFilters.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\AcSpecfc.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\acmigration.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\AcGenral.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\wvc.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\wsp_health.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\WlanMM.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\systemreset.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\ResetEngOnline.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\reseteng.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\recovery.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpudd.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpencom.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpcore.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\quartz.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\qdvd.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\powercpl.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\opengl32.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\nshwfp.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\nltest.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\netcenter.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\msisip.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\msimsg.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\msi.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\mmc.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\LocationApi.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\glu32.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\glmf32.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\FsIso.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\FrameServerClient.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\FrameServer.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\devenum.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\DAFMCP.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\cic.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\odbcconf.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\jscript9.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\ieproxy.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\ieframe.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\Chakra.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\cdosys.dll
2020-09-14 13:02:24 ----A---- C:\WINDOWS\system32\mshtml.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\edgehtml.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wsecedit.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\WinHvPlatform.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\WinHvEmulation.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiatrace.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiaservc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiarpc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiadss.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiaaut.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\werui.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\werconcpl.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\sud.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\StorSvc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\sti_ci.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\sti.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\mshtmled.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\jscript.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\imapi2.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\imapi.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iassdo.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iasrecst.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iasnap.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iasads.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\FirewallControlPanel.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\fdWSD.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\edpcsp.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\easwrt.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dxtrans.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DxpTaskSync.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DXP.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\Dsui.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dialserver.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dialclient.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dfrgui.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\defragsvc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\defragres.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\defragproxy.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\Defrag.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DataExchangeHost.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\ConsentUxClient.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\computestorage.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\computecore.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\ClipUp.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\CBDHSvc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\azroles.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\autoplay.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\WwanRadioManager.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\wwanmm.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\upnphost.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\upnpcont.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\udhisapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ucrtbase_enclave.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\tcbloader.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\srumsvc.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\srumapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\skci.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\SgrmBroker.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\securekernel.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdshext.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdengin2.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdcpl.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdclt.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\resutils.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ResourceMapper.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\NgcIsoCtnr.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\NgcIso.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\hvloader.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\hvix64.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\hvax64.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\fdSSDP.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\diagperf.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\DataUsageHandlers.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\csplte.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\clusapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\CIDiag.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\BioIso.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\spwizeng.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\scrrun.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\scecli.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtutils.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmpltfm.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmpal.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmmvrortc.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmcodecs.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rdpviewerax.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasplap.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasdlg.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\prnntfy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowService.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowProxy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\printui.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Print.Workflow.Source.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ortcengine.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\OpenWith.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\npmproxy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\nlmsprep.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\nlmproxy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\newdev.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\netprofm.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ndadmin.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\msaatext.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\drvsetup.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\drivers\afunix.sys
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\credssp.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\compstui.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\system32\bcastdvruserservice.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidnsp.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidfdp.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidcredprov.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\windowslivelogin.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\UserAccountControlSettings.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\t2embed.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\msidcrl40.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\msauserext.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\KBDJPN.DLL
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\kbd106n.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\kbd106.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\kbd101.DLL
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\DismApi.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Dism.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\acwow64.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\ActionCenterCPL.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\windowsperformancerecordercontrol.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WerEnc.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Websocket.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wdigest.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\unenrollhook.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\setupcl.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfproc.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfos.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfnet.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfdisk.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfctrs.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\omadmapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\ntlanman.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\msvcp_win.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\mdmlocalmanagement.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\enterpriseresourcemanager.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\edpnotify.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dtdump.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dmcmnutils.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dmcfgutils.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.SystemId.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.RetailInfo.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Diagnostics.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Devices.Sensors.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Utilman.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\sethc.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\PickerPlatform.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\PCShellCommonProxyStub.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\pcaui.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\pcacli.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\EaseOfAccessDialog.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\AppLockerCSP.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\appidtel.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\accessibilitycpl.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\wpnclient.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Compression.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Vpn.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Management.Workplace.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Enumeration.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.AI.MachineLearning.Preview.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.AI.MachineLearning.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\oemlicense.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\mskeyprotcli.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\KerbClientShared.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\directml.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\DiagnosticInvoker.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\cmintegrator.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Clipc.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnrollCtrl.exe
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\CapabilityAccessManagerClient.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Payments.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\WindowManagementAPI.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TextShaping.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TaskApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\socialapis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\rdpsharercom.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\PhoneOm.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\PeopleAPIs.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mbussdapi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\LicenseManagerApi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InputHost.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InkObjCore.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\GraphicsCapture.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\coreglobconfig.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\coloradapterclient.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Preview.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.Phone.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\windows.applicationmodel.datatransfer.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\useractivitybroker.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\ResourcePolicyClient.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
prosím o kontrolu logu. Na počítači mi nejde spustit jedna aplikace, nevím, čím to je, už jsem vyzkoušel úplně všechno včetně aktualizace Windows, ale nepomohlo. Zřejmě to je tímto počítačem, na jiných to funguje. Prosím šlo by zkontrolovat, jestli tam není virus?
Děkuji.
Log z RSIT (jsou to tři části ve třech příspěvcích):
Logfile of random's system information tool 1.10 (written by random/random)
Run by danie at 2020-09-14 18:35:10
Microsoft Windows 10 Home
System drive C: has 57 GB (24%) free of 243 GB
Total RAM: 8013 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:35:21, on 14.09.2020
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe
C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
C:\Program Files\trend micro\danie.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://hp17win10.msn.com/?pc=HCTE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://hp17win10.msn.com/?pc=HCTE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKCU\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup
O4 - HKCU\..\Run: [HPSEU_Host_Launcher] C:\System.sav\util\HpseuHostLauncher.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [466F9362F8D864522CA0247FF83233AA5403792B._service_run] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [HPSEU_Host_Launcher] C:\System.sav\util\HpseuHostLauncher.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [OneDrive] C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe /background /setautostart (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [OneDrive] C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe /background /setautostart (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-93754314-3111490570-4120607304-1017\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'Filip')
O4 - HKUS\S-1-5-21-93754314-3111490570-4120607304-1017\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'Filip')
O4 - HKUS\S-1-5-21-93754314-3111490570-4120607304-1108\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'SAS')
O4 - Global Startup: Avast SecureLine VPN.lnk = C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{bc508dde-ec9c-40ee-bc47-8a3b67925bee}: NameServer = 100.120.14.1
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - (no file)
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: Intel® SGX AESM (AESMService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_bff7913eb62bbf90\aesm_service.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\Avast Software\Avast\aswidsagent.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\Avast Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall Service (avast! Firewall) - AVAST Software - C:\Program Files\Avast Software\Avast\afwServ.exe
O23 - Service: AvastWscReporter - AVAST Software - C:\Program Files\Avast Software\Avast\wsc_proxy.exe
O23 - Service: Avast Cleanup (CleanupPSvc) - AVAST Software - C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHeciSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_54745 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: Citrix Workspace Updater Service (CWAUpdaterService) - Citrix Systems, Inc. - C:\Program Files (x86)\Citrix\ICA Client\Receiver\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: epinjectsvc - SentryBay - C:\Program Files (x86)\SentryBay\EntryProtect\inject.exe
O23 - Service: @oem84.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.102\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Comm Recovery (HP Comm Recover) - HP Inc. - C:\Program Files\HPCommRecovery\HPCommRecovery.exe
O23 - Service: @oem114.inf,%ServiceAppHelperDesc%;HP App Helper HSA Service (HPAppHelperCap) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\AppHelperCap.exe
O23 - Service: @oem114.inf,%ServiceNetworkDesc%;HP Network HSA Service (HPNetworkCap) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\NetworkCap.exe
O23 - Service: @oem114.inf,%ServiceSysInfoDesc%;HP System Info HSA Service (HPSysInfoCap) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\SysInfoCap.exe
O23 - Service: @oem58.inf,%hpanalyticscomp%;HP Analytics service (HpTouchpointAnalyticsService) - HP Inc. - C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\TouchpointAnalyticsClientService.exe
O23 - Service: @oem126.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Unknown owner - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxCUIService.exe
O23 - Service: @oem125.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_3004658ee4d7fe24\lib\SocketHeciServer.exe
O23 - Service: @oem125.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_3004658ee4d7fe24\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Unknown owner - C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @oem126.inf,%RstMwService.Name%;Intel(R) Storage Middleware Service (RstMwService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_99239023b47c777a\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @oem24.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device Manager Service (RtkBtManServ) - Realtek Semiconductor Corp. - C:\WINDOWS\RtkBtManServ.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Služba SentryBay Update (sbupdate) (sbupdate) - SentryBay - C:\Program Files (x86)\SentryBay\Update\SentryBayUpdate.exe
O23 - Service: Sound Research SECOMN Service (SECOMNService) - Unknown owner - C:\WINDOWS\System32\SECOMN64.exe (file missing)
O23 - Service: Armored Client (SECUREACCESSSYSTEM) - SentryBay - C:\Program Files (x86)\SentryBay\Armored Client\service.exe
O23 - Service: Avast SecureLine VPN (SecureLine) - AVAST Software - C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @oem25.inf,%SynTPEnhService.SVCDESC%;SynTPEnhService (SynTPEnhService) - Unknown owner - C:\WINDOWS\System32\SynTPEnhService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 19727 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
"fontdrvhost.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s DsmSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -s BTAGService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\AppHelperCap.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-48aa3dae-2d96-416c-b78d-a44e77eee2d6 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-d3e3a4d4-aa51-4e5c-9480-b596943702bf -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-4fe45f23-75c2-40d2-9575-9469ecd00da9 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-d11615a2-6608-421a-a483-2ed375cf4dc5 -LifetimeId:2209810d-f4c0-400b-8708-fe11850fe97d -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\SysInfoCap.exe
C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\TouchpointAnalyticsClientService.exe
C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\NetworkCap.exe
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
dashost.exe {92719ed6-011a-43c8-ba67017b6111dbad}
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-3ecfb69d-d030-4e7c-8351-8d1da07592e8 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-330e760d-96fa-4035-abbe-9c38f24d3d0c -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-af01a1ba-fd35-4a30-95d9-bff7a46f9c7a -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-3c670ce7-d291-4352-a2a9-26452a29da54 -LifetimeId:cfb4f85e-30f4-4f55-bea1-705e4e69df72 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SensrSvc
C:\WINDOWS\System32\SynTPEnhService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-690845cf-a1d5-4563-8d95-572fcef8f6da -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-19872bae-1396-48c4-950c-06dd2bebe589 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-05411f05-07d0-4e59-ab94-4aae5e87fb34 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-9bfc009b-9cdc-4cbb-8c6b-151510c16f98 -LifetimeId:cea046ae-9ff8-4c8c-81e6-597ad1e19581 -DeviceGroupId:ViddGroup -HostArg:0
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-e70965fc-cf2f-45fd-ba6e-e16ad372e616 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-53ce0fa1-0aa5-47d9-b2ab-ba04cccd289e -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-defdf165-e907-45b2-9557-2f8ea397e65a -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-833fe27b-45fd-4bf2-a8d0-ed5173f82720 -LifetimeId:d4c21193-bcd4-4a6a-84e8-0ee0db431ffc -DeviceGroupId: -HostArg:0
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SensorService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\system32\WLANExt.exe 2050075852848
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup -s WbioSrvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
C:\Program Files (x86)\Citrix\ICA Client\ssonsvr.exe /HTC:632 /LUID:000000000003C3CB
"C:\Program Files\Avast Software\Avast\aswEngSrv.exe" /pipename="11F1C646-C2B4-7625-140E-B48758E0C9EC" /binpath="C:\Program Files\Avast Software\Avast"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p -s BluetoothUserService
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_dc2a57d591329a30\igfxEM.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
"C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe" -boot
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
"C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\WINDOWS\System32\SynTPEnh.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_2552e0ccb2ccf5c4\x64\BridgeCommunication.exe" 9dbb7785-ab76-4576-8f06-eea4e326413c Global\3b4eafb8-bded-4e96-908a-f2ad04ef39e5 1364
"ctfmon.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
/QuitInfo:0000000000000244;0000000000000248;
"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Avast Software\Avast\afwServ.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHDCPSvc.exe
"C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
"C:\Program Files (x86)\Citrix\ICA Client\Receiver\UpdaterService.exe"
"C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_dc7a0fe3ada1cbf5\OneApp.IGCC.WinService.exe
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe"
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\WINDOWS\System32\RtkAudUService64.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_99239023b47c777a\RstMwService.exe
C:\WINDOWS\RtkBtManServ.exe
"C:\WINDOWS\System32\SECOMN64.exe"
"C:\Program Files (x86)\SentryBay\Armored Client\service.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
"C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_87a05f372b04db63\IntelCpHeciSvc.exe
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_fe236a380b8a8114\x64\TouchpointGpuInfo.exe" -m "ConnectNamePipe" -c "GraphicsMonitor"
"C:\Windows\System32\SecurityHealthSystray.exe"
AvastUI.exe /nogui
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Avast Software\Cleanup\TuneupUI.exe" /nogui
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --no-rate-limit --no-upload-gzip --type=crash-handler "--crashes-directory=C:\Users\danie\AppData\Local\Temp\skype-preview Crashes" "--database=C:\Users\danie\AppData\Local\Temp\skype-preview Crashes" "--metrics-dir=C:\Users\danie\AppData\Local\Temp\skype-preview Crashes" --url=appcenter://generic?aid=a8902fe7-ef45-455c-8513-5e56d48e36fd&iid=6e6f997d-2788-42fe-b2aa-83c045c593d4&uid=4fc41898-c0c6-4474-e7cf-2ad9a83f9bb5 --initial-client-data=0x748,0x74c,0x750,0x744,0x754,0x62ec150,0x62ec160,0x62ec16c
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=gpu-process --field-trial-handle=2328,11400089238304158928,11816348853101190752,131072 --disable-features=PictureInPicture,SpareRendererForSitePerProcess --gpu-preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=13426935164759338934 --mojo-platform-channel-handle=2092 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --field-trial-handle=2328,11400089238304158928,11816348853101190752,131072 --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --service-sandbox-type=network --service-request-channel-token=4406101337593331094 --mojo-platform-channel-handle=2640 /prefetch:8
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe" --type=renderer --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --ms-disable-indexeddb-transaction-timeout --field-trial-handle=2328,11400089238304158928,11816348853101190752,131072 --disable-features=PictureInPicture,SpareRendererForSitePerProcess --lang=cs --app-user-model-id=Microsoft.Skype.SkypeDesktop --app-path="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\resources\app.asar" --webview-tag --no-sandbox --no-zygote --native-window-open --preload="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\resources\app.asar\Preload.js" --disable-remote-module --background-color=#fff --node-integration-in-subframes --enable-websql --enable-spellcheck --electron-shared-settings=eyJjci5jb21wYW55IjoiRWxlY3Ryb24iLCJjci5kdW1wcyI6IiIsImNyLmVuYWJsZWQiOmZhbHNlLCJjci5wcm9kdWN0IjoiRWxlY3Ryb24iLCJjci5zZXNzaW9uIjoiIiwiY3IudXJsIjoiIiwiY3IudmVyc2lvbiI6IiJ9 --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=784425212726846492 --renderer-client-id=5 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3148 /prefetch:1 --skype-process-type=Main --skype-window-id=__MAIN_ROOT_VIEW_ID__
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\System32\svchost.exe -k smphost
"C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe" /nogui
C:\windows\System32\RtkAudUService64.exe -background
"C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.18.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe" LaunchedBySysInfo
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe"
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20071.95.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_bff7913eb62bbf90\aesm_service.exe
C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_3004658ee4d7fe24\lib\SocketHeciServer.exe
"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /c
"C:\Program Files\HPCommRecovery\HPCommRecovery.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" -- "microsoft-edge:https://www.msn.com/cs-cz/lifestyle/ces ... erzegovina"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\danie\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Crashpad" "--metrics-dir=C:\Users\danie\AppData\Local\Microsoft\Edge\User Data" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=85.0.4183.102 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 --annotation=prod=Edge --annotation=ver=85.0.564.51 --initial-client-data=0x228,0x22c,0x230,0x224,0x234,0x7ffc75f2e390,0x7ffc75f2e3a0,0x7ffc75f2e3b0
"C:\Program Files\Avast Software\Cleanup\TuneupUI.exe" --type=gpu-process --field-trial-handle=3708,4914384319804424354,17786951947142422357,131072 --no-sandbox --log-file="C:\Users\danie\AppData\Roaming\Avast Software\Cleanup\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAMAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --use-gl=swiftshader-webgl --service-request-channel-token=7620436573085629820 --mojo-platform-channel-handle=3904 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --gpu-preferences=MAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --mojo-platform-channel-handle=2032 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=2332 /prefetch:8
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s FDResPub
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --service-sandbox-type=audio --enable-audio-service-sandbox --mojo-platform-channel-handle=4548 /prefetch:8
"C:\Program Files\Avast Software\Avast\AvastUI.exe" --type=gpu-process --field-trial-handle=8740,14260266453632275168,4628138383300342412,131072 --no-sandbox --log-file="C:\Users\danie\AppData\Roaming\Avast Software\Avast\log\cef_log.txt" --log-severity=error --user-agent="Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.3.3626.1895 Safari/537.36 Avastium (20.6.2420)" --lang=en-US --proxy-auto-detect --disable-webaudio --force-wave-audio --disable-software-rasterizer --no-sandbox --blacklist-accelerated-compositing --disable-accelerated-2d-canvas --disable-accelerated-compositing --disable-accelerated-layers --disable-accelerated-video-decode --blacklist-webgl --disable-bundled-ppapi-flash --disable-flash-3d --enable-aggressive-domstorage-flushing --enable-media-stream --allow-file-access-from-files=1 --pack_loading_disabled=1 --gpu-preferences=KAAAAAAAAACAAwCAAQAAAAAAAAAAAGAAAAAAAAMAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --use-gl=swiftshader-webgl --service-request-channel-token=8768774050587732372 --mojo-platform-channel-handle=8828 /prefetch:2
"C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe" /from_scheduler:1
C:\WINDOWS\system32\AUDIODG.EXE 0x3f4
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --enable-auto-reload --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=80 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=7180 /prefetch:1
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 784 788 796 8192 792 768
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --enable-auto-reload --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=87 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5700 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --field-trial-handle=1820,2156548402695191506,4809129197596466992,131072 --lang=cs --enable-auto-reload --device-scale-factor=1.5 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=89 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6008 /prefetch:1
"C:\Users\danie\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Avast Driver Updater Startup.job - C:\Program Files (x86)\Avast Driver Updater\Avast Driver Updater.exe -boot
C:\WINDOWS\tasks\SentryBayUpdateTaskMachineCore.job - C:\Program Files (x86)\SentryBay\Update\SentryBayUpdate.exe /c
C:\WINDOWS\tasks\SentryBayUpdateTaskMachineUA.job - C:\Program Files (x86)\SentryBay\Update\SentryBayUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\y61xj8xk.default-release
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Citrix.com/npican]
"Description"=Citrix ICA Client Plugin
"Path"=C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@update.sentrybay.com/SentryBay Update;version=8]
"Description"=SentryBay Update
"Path"=C:\Program Files (x86)\SentryBay\Update\1.0.0.13544\npSentryBayOneClick8.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\BHO\ie_to_edge_bho_64.dll [2020-09-09 500616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-01-17 210632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2019-12-17 439160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\85.0.564.51\BHO\ie_to_edge_bho.dll [2020-09-09 386952]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-01-17 157904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2019-12-17 414584]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"EzTiltPenSrvc"=C:\Program Files\ELAN\EzTiltPen\EzTiltPenAgent.exe [2019-04-22 238280]
"RtlS5Wake"=C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2018-04-18 2097600]
"AvastUI.exe"=C:\Program Files\Avast Software\Avast\AvLaunch.exe [2020-08-07 109160]
"TuneupUI.exe"=C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [2020-09-09 2596704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDriveSetup"=C:\Windows\SysWOW64\OneDriveSetup.exe [2019-12-07 30870320]
"HPSEU_Host_Launcher"=C:\System.sav\util\HpseuHostLauncher.exe [2020-08-02 527368]
"OneDrive"=C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe [2020-03-21 1579368]
"466F9362F8D864522CA0247FF83233AA5403792B._service_run"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2020-09-09 2880904]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Avast SecureLine VPN.lnk - C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"aux1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"wave2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2020-09-14 18:35:10 ----D---- C:\rsit
2020-09-14 18:35:10 ----D---- C:\Program Files\trend micro
2020-09-14 17:28:17 ----D---- C:\Users\danie\AppData\Roaming\ICAClient
2020-09-14 17:28:05 ----D---- C:\Program Files (x86)\Citrix
2020-09-14 13:27:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Templates
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Start Menu
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Documents
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Desktop
2020-09-14 13:26:06 ----SHD---- C:\ProgramData\Application Data
2020-09-14 13:21:27 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2020-09-14 13:20:02 ----D---- C:\WINDOWS\system32\SleepStudy
2020-09-14 13:20:02 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2020-09-14 13:20:01 ----D---- C:\WINDOWS\Prefetch
2020-09-14 13:19:57 ----ASH---- C:\DumpStack.log.tmp
2020-09-14 13:19:53 ----D---- C:\Windows.old
2020-09-14 13:19:11 ----A---- C:\WINDOWS\system32\drivers\WinSetupBoot.sys
2020-09-14 13:08:47 ----SD---- C:\Users\danie\AppData\Roaming\Microsoft
2020-09-14 13:08:19 ----AS---- C:\WINDOWS\bootstat.dat
2020-09-14 13:07:44 ----D---- C:\WINDOWS\system32\cAVS
2020-09-14 13:07:42 ----D---- C:\WINDOWS\system32\Intel
2020-09-14 13:06:59 ----D---- C:\WINDOWS\system32\Microsoft
2020-09-14 13:06:59 ----D---- C:\WINDOWS\ServiceProfiles
2020-09-14 13:05:46 ----D---- C:\ProgramData\ssh
2020-09-14 13:03:18 ----A---- C:\WINDOWS\SYSWOW64\wmpdxm.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\SYSWOW64\FXSCOMEX.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\wmp.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\WFSR.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\WFS.exe
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSUTILITY.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOVER.exe
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOMPOSERES.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOMPOSE.dll
2020-09-14 13:03:17 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\ConsoleLogon.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\wbengine.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\wbadmin.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\msrahc.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\msra.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\fvecpl.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\fveapibase.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\fveapi.dll
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\BdeUISrv.exe
2020-09-14 13:03:16 ----A---- C:\WINDOWS\system32\bdesvc.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\WalletService.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\TSSessionUX.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\cdp.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\bootux.dll
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\bootim.exe
2020-09-14 13:03:13 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\syncutil.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\syncutil.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\notepad.exe
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\APHostService.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2020-09-14 13:03:11 ----A---- C:\WINDOWS\notepad.exe
2020-09-14 13:03:06 ----A---- C:\WINDOWS\system32\DevicesFlowUI.App.dll
2020-09-14 13:02:48 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2020-09-14 13:02:48 ----A---- C:\WINDOWS\SYSWOW64\HoloShellRuntime.dll
2020-09-14 13:02:48 ----A---- C:\WINDOWS\SYSWOW64\DolbyDecMFT.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMNetMgr.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\wmidx.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mswmdm.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSFlacEncoder.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MSAudDecMFT.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfmjpegdec.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\Windows.Internal.Feedback.Analog.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\MixedReality.Broker.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HoloSHExtensions.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HolographicRuntimes.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2020-09-14 13:02:47 ----A---- C:\WINDOWS\system32\Analog.Shell.Broker.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMNetMgr.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\wmidx.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\winmde.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\mswmdm.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MSFlacEncoder.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\mfmjpegdec.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\HoloShellRuntime.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\HolographicExtensions.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2020-09-14 13:02:46 ----A---- C:\WINDOWS\system32\DMRServer.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\msvproc.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfsvr.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2020-09-14 13:02:45 ----A---- C:\WINDOWS\system32\mfds.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfplat.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfcore.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-09-14 13:02:41 ----A---- C:\WINDOWS\system32\mf.dll
2020-09-14 13:02:40 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-09-14 13:02:40 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wvc.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wkspbrokerAx.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\WinSATAPI.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\wavemsp.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\Vault.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\VAN.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tsmf.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\termmgr.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tapisrv.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\tapi3.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\SyncCenter.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\SecurityCenterBrokerPS.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\rdpencom.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\psisdecd.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\PrintWSDAHost.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\powercpl.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\opengl32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\netcenter.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\mfsensorgroup.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\glu32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\glmf32.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\FrameServerClient.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2020-09-14 13:02:38 ----A---- C:\WINDOWS\SYSWOW64\AcSpecfc.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msxbde40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mstext40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msisip.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\cic.dll
2020-09-14 13:02:37 ----A---- C:\WINDOWS\SYSWOW64\cdosys.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2020-09-14 13:02:36 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\imapi.dll
2020-09-14 13:02:33 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wsecedit.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wiatrace.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wiadss.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\wiaaut.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\upnpcont.exe
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\udhisapi.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\sti.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\srumapi.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiverExt.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\imapi2.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iasrecst.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iasnap.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\iasads.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\FirewallControlPanel.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\fdWSD.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\fdSSDP.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\DxpTaskSync.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\dxdiagn.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\Dsui.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\dfrgui.exe
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\azroles.dll
2020-09-14 13:02:32 ----A---- C:\WINDOWS\SYSWOW64\autoplay.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WinSATAPI.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\WinSAT.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Windows.Mirage.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Windows.Internal.PredictionUnit.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\sysmain.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SrTasks.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\srrstr.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\srcore.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\Spectrum.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SIHClient.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SettingsHandlers_Clipboard.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SecurityCenterBrokerPS.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\SecurityCenterBroker.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\rstrui.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\recdisc.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\RdpRelayTransport.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\rdbui.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\ProvSysprep.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\pnrpsvc.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\P2P.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\icsvcext.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\FileHistory.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\fhsettingsprovider.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\fhcpl.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\dsregcmd.exe
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\DiagSvc.dll
2020-09-14 13:02:31 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\wkspbrokerAx.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\wavemsp.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\Vault.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\VAN.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tsmf.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tsgqec.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\themecpl.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\termsrv.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\termmgr.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tapisrv.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tapi32.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\tapi3.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\rdpclip.exe
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\qedit.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\psisdecd.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\mstscax.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\mstsc.exe
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\DiagCpl.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\CPFilters.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\AcSpecfc.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\acmigration.dll
2020-09-14 13:02:27 ----A---- C:\WINDOWS\system32\AcGenral.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\wvc.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\wsp_health.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\WlanMM.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\systemreset.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\SysResetErr.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\SyncCenter.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\ResetEngOnline.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\ResetEngine.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\reseteng.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\recovery.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpudd.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpencom.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\rdpcore.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\quartz.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\qdvd.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\PrintWSDAHost.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\powercpl.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\opengl32.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\nshwfp.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\nltest.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\netcenter.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\msisip.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\msimsg.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\msi.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\mmc.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\mfsensorgroup.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\LocationApi.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\glu32.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\glmf32.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\FsIso.exe
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\FrameServerClient.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\FrameServer.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\devenum.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\DAFMCP.dll
2020-09-14 13:02:26 ----A---- C:\WINDOWS\system32\cic.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\odbcconf.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\jscript9.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\ieproxy.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\ieframe.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\Chakra.dll
2020-09-14 13:02:25 ----A---- C:\WINDOWS\system32\cdosys.dll
2020-09-14 13:02:24 ----A---- C:\WINDOWS\system32\mshtml.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2020-09-14 13:02:20 ----A---- C:\WINDOWS\system32\edgehtml.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wsecedit.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\WinHvPlatform.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\WinHvEmulation.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiatrace.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiaservc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiarpc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiadss.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wiaaut.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\werui.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\werconcpl.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\sud.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\StorSvc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\StorageUsage.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\sti_ci.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\sti.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\mshtmled.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\MiracastReceiverExt.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\jscript.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\imapi2.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\imapi.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iassdo.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iasrecst.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iasnap.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\iasads.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\FirewallControlPanel.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\fdWSD.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\edpcsp.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\easwrt.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dxtrans.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DxpTaskSync.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DXP.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\Dsui.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dialserver.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dialclient.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\dfrgui.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\defragsvc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\defragres.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\defragproxy.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\Defrag.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\DataExchangeHost.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\ConsentUxClient.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\computestorage.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\computecore.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\ClipUp.exe
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\CBDHSvc.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\azroles.dll
2020-09-14 13:02:19 ----A---- C:\WINDOWS\system32\autoplay.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\WwanRadioManager.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\wwanmm.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\upnphost.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\upnpcont.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\udhisapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ucrtbase_enclave.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\tcbloader.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\srumsvc.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\srumapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\skci.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\SgrmBroker.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\securekernel.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdshext.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdengin2.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdcpl.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\sdclt.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\resutils.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\ResourceMapper.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\NgcIsoCtnr.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\NgcIso.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\hvloader.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\hvix64.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\hvax64.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\fdSSDP.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\diagperf.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\DataUsageHandlers.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\csplte.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\clusapi.dll
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\CIDiag.exe
2020-09-14 13:02:18 ----A---- C:\WINDOWS\system32\BioIso.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.Native.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.Workflow.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\TSpkg.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\spwizeng.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\scrrun.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\scecli.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtutils.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmpltfm.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmpal.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmmvrortc.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtmcodecs.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rdpviewerax.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasplap.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasdlg.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\prnntfy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowService.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\PrintWorkflowProxy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\printui.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\Print.Workflow.Source.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ortcengine.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\OpenWith.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\npmproxy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\nlmsprep.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\nlmproxy.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\newdev.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\netprofm.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ndadmin.exe
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\msaatext.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\drvstore.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\drvsetup.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\drivers\afunix.sys
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\credssp.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\ConfigureExpandedStorage.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\compstui.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2020-09-14 13:02:14 ----A---- C:\WINDOWS\system32\bcastdvruserservice.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidnsp.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidfdp.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidcredprov.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\windowslivelogin.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Display.BrightnessOverride.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\UserAccountControlSettings.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\t2embed.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\msidcrl40.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\msauserext.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\KBDJPN.DLL
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\kbd106n.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\kbd106.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\kbd101.DLL
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\DismApi.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\Dism.exe
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\acwow64.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\ActionCenterCPL.dll
2020-09-14 13:02:13 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\windowsperformancerecordercontrol.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.CredDialogController.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\WerEnc.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Websocket.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\wdigest.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\unenrollhook.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\setupcl.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfproc.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfos.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfnet.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfdisk.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\perfctrs.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\pdh.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\omadmapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\ntlanman.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\msvcp_win.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\msimg32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\mdmlocalmanagement.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\enterpriseresourcemanager.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\edpnotify.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dtdump.exe
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dmcmnutils.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dmcfgutils.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\BitLockerCsp.dll
2020-09-14 13:02:09 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.SystemId.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.RetailInfo.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Diagnostics.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Devices.Sensors.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\Utilman.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\srpapi.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\sethc.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\PickerPlatform.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\PCShellCommonProxyStub.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\pcaui.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\pcacli.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\msxml6r.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\EaseOfAccessDialog.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\D3D12.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\AppLockerCSP.dll
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\appidtel.exe
2020-09-14 13:02:08 ----A---- C:\WINDOWS\SYSWOW64\accessibilitycpl.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\wpnclient.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Compression.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Services.TargetedContent.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Vpn.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Management.Workplace.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Energy.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Enumeration.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.AI.MachineLearning.Preview.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.AI.MachineLearning.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\oemlicense.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\mskeyprotcli.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\KerbClientShared.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\directml.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\DiagnosticInvoker.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\cmintegrator.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\Clipc.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnrollCtrl.exe
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\CapabilityAccessManagerClient.dll
2020-09-14 13:02:04 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Payments.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.NetworkOperators.ESim.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Graphics.Display.DisplayEnhancementManagement.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Graphics.Display.DisplayColorManagement.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\WindowManagementAPI.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TextShaping.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\TaskApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\socialapis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\rdpsharercom.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\PhoneOm.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\PeopleAPIs.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mbussdapi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\LicenseManagerApi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InputHost.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\InkObjCore.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\GraphicsCapture.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\coreglobconfig.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\coloradapterclient.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2020-09-14 13:02:03 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Preview.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.Phone.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\windows.applicationmodel.datatransfer.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\useractivitybroker.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\ResourcePolicyClient.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2020-09-14 13:02:02 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll