Stránka 1 z 1

Prosím o konrolu

Napsal: 22 zář 2020 13:50
od bigmuff
Mohl bych poprosit o kontrolu logů, ntb jedem celkem jak má, začal se objevovat problémy s načítáním některých stránek....problém s DNS
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-09-2020
Ran by rossu (administrator) on DESKTOP-1TNCHR7 (Acer Aspire ES1-731G) (22-09-2020 14:41:12)
Running from C:\Users\rossu\OneDrive\Desktop
Loaded Profiles: rossu
Platform: Windows 10 Home Version 2004 19041.508 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Crystal Rich Ltd -> Crystal Rich Ltd) C:\Users\rossu\OneDrive\Desktop\USB.Safely.Remove.6.3.3.1287.Portable.KaranPC\App\USBSafelyRemove\USBSRService.exe
(Google LLC -> Google LLC) C:\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe <13>
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.9-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-08-24] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\System32\rstrui.exe [274432 2020-05-11] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32\...\RunOnce: [UnKIS] => wscript.exe //b C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs <==== ATTENTION
HKLM\...\Policies\Explorer: [DisableLocalMachineRun] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRun] 1
HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRunOnce] 1
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\Run: [qBittorrent] => C:\Program Files\qBittorrent\qbittorrent.exe [20032000 2020-04-25] () [File not signed]
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [48594832 2020-06-15] (Google LLC -> )
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\MountPoints2: {4511a448-bebd-11ea-8cae-7077812d0300} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Ribbons.scr [153600 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\LIDIL hpzlllhn: C:\Windows\system32\hpzlllhn.dll [58112 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company)
Startup: C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\qBittorrent.lnk [2020-07-25]
ShortcutTarget: qBittorrent.lnk -> C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01C9C1FA-6EEC-4621-A3DC-1FC3F2610D25} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {067A76DD-FC3F-40E3-9519-11F07BB1FAD7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-24] (Google LLC -> Google LLC)
Task: {09347C1E-C3BE-493D-A117-F4712585CBD9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {19CBEC12-1A86-46FD-BBA6-3A73A64D9CF7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4057023617-2345177252-1567271487-1001Core => C:\Users\rossu\AppData\Local\Google\Update\GoogleUpdate.exe [154920 2019-11-21] (Google Inc -> Google LLC)
Task: {238AE2F1-8483-49E0-AA36-2D069DAED23A} - System32\Tasks\Agent Activation Runtime\S-1-5-21-4057023617-2345177252-1567271487-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-06-10] (Microsoft Windows -> )
Task: {23FDB453-A3F5-48D2-B3A2-1C68B55B3985} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {2D9D7AB5-B39D-489D-9A51-2FED88FC53B8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2E520A52-1D19-48A9-9EAA-BB80E7225E44} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {578C2018-ABD6-4000-8AE1-F4F3428C5548} - System32\Tasks\Zoner.Updater.S-1-5-21-4057023617-2345177252-1567271487-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2688592 2020-09-21] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {7B0BE374-E03C-4A05-8E3C-8BA0D5B9D5CC} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232 2020-09-05] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {8308029B-925F-4592-83F8-5B96C2008992} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe
Task: {9BBA5484-2F0B-47CB-95D0-0EFA68D977ED} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-24] (Google LLC -> Google LLC)
Task: {AC54167D-1BB6-45D9-9940-EEFDC44A797C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe
Task: {B5E8ADDA-0FCA-4611-8B55-1C81CFC3356F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BB30C668-6216-445B-A9B9-E372D7A063C0} - System32\Tasks\Trojan Remover => C:\program1\Trojan Remover\ltr.exe
Task: {C3361258-59B3-4CB3-8FDA-DEA2D63AE4F5} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4057023617-2345177252-1567271487-1001UA => C:\Users\rossu\AppData\Local\Google\Update\GoogleUpdate.exe [154920 2019-11-21] (Google Inc -> Google LLC)
Task: {C4B7D603-40AA-4C00-A518-56594BA1EC44} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{208cfe45-819a-43b2-9fc0-adbcbdd70e80}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{fd3c95cb-e0e2-4a70-a1bb-b0618bb66343}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Edge:
======
Edge Profile: C:\Users\rossu\AppData\Local\Microsoft\Edge\User Data\Default [2020-09-17]
Edge DownloadDir: C:\Users\rossu\Downloads
Edge StartupUrls: Default -> "hxxp://www.seznam.cz/"

FireFox:
========
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default [2020-09-22]
CHR Notifications: Default -> hxxps://1.2solo.biz; hxxps://aukro.cz; hxxps://calendar.google.com; hxxps://cs.windows10updater.com; hxxps://drive.google.com; hxxps://indiwood.ru; hxxps://kar.uptoabc.com; hxxps://notify.rocks; hxxps://www.b2bpartner.cz; hxxps://www.eobuv.cz; hxxps://www.facebook.com; hxxps://www.media.io; hxxps://www.newsbreak.com; hxxps://www.profi-dj.cz; hxxps://xcum.com
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Extension: (Překladač Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-18]
CHR Extension: (Disk Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-11-21]
CHR Extension: (YouTube) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-11-21]
CHR Extension: (AddToAny: Share Anywhere) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffpgijchhhkhnokafdeklpllijgnbche [2020-05-13]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-11-21]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-09-18]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2020-03-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-21]
CHR Extension: (Gmail) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-11-21]
CHR Extension: (Chrome Media Router) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-08-26]
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-09-13]
CHR HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4506728 2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
S4 TeamViewer; C:\program1\teamviewer\TeamViewer_Service.exe [13109264 2020-06-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 USBSafelyRemoveService; C:\Users\rossu\OneDrive\Desktop\USB.Safely.Remove.6.3.3.1287.Portable.KaranPC\App\USBSafelyRemove\USBSRService.exe [1752552 2020-06-26] (Crystal Rich Ltd -> Crystal Rich Ltd)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\NisSrv.exe [2343112 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MsMpEng.exe [128360 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2018-09-07] (AVAST Software s.r.o. -> The OpenVPN Project)
S3 avgTap; C:\WINDOWS\System32\drivers\avgTap.sys [54888 2018-09-05] (AVG Technologies CZ, s.r.o. -> The OpenVPN Project)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2020-03-24] (Malwarebytes Corporation -> Malwarebytes)
S3 fsfreedometap; C:\WINDOWS\System32\drivers\fsfreedometap.sys [38888 2019-12-05] (WDKTestCert mbbldr,131864997439240006 -> The OpenVPN Project)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-03-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [195432 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
S3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73584 2020-03-25] (Malwarebytes Corporation -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [119960 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2019-07-16] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [12464 2020-09-09] (Macrovision Europe Ltd) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2020-08-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [428256 2020-08-29] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69856 2020-08-29] (Microsoft Windows -> Microsoft Corporation)
S4 IObitUnlocker; \??\C:\program\IObit Unlocker\IObitUnlocker.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-09-22 14:40 - 2020-09-22 14:41 - 000000000 ____D C:\FRST
2020-09-22 14:31 - 2020-09-22 14:31 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2020-09-22 13:34 - 2020-09-22 13:34 - 000015452 _____ C:\Users\rossu\Downloads\[SkT]Erasure_-_The_Neon_(2020)_Mp3_.torrent
2020-09-22 13:33 - 2020-09-22 13:33 - 000019693 _____ C:\Users\rossu\Downloads\[SkT]Zoner_Photo_Studio_X_v.19.2004.2.262_(2020)(CZ_SK) (1).torrent
2020-09-22 12:54 - 2020-09-22 12:54 - 000019693 _____ C:\Users\rossu\Downloads\[SkT]Zoner_Photo_Studio_X_v.19.2004.2.262_(2020)(CZ_SK).torrent
2020-09-21 20:27 - 2020-09-21 20:27 - 000003808 _____ C:\WINDOWS\system32\Tasks\Zoner.Updater.S-1-5-21-4057023617-2345177252-1567271487-1001
2020-09-21 20:27 - 2020-09-21 20:27 - 000001561 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2020-09-17 20:21 - 2020-09-17 20:21 - 073143835 _____ C:\Users\rossu\Downloads\Zircon_Air_software_v33.10.D6.04_(20_01_2020).zip
2020-09-17 20:21 - 2020-09-17 20:21 - 000735824 _____ C:\Users\rossu\Downloads\Zircon_Air_CZ_návod.pdf
2020-09-17 20:21 - 2020-09-17 20:21 - 000000748 _____ C:\Users\rossu\Downloads\Zircon_Air_postup_aktualizace_software.txt
2020-09-17 18:12 - 2020-09-17 18:12 - 000016957 _____ C:\Users\rossu\Downloads\(Post Industrial) Marilyn Manson - We Are Chaos - 2020, MP3, 320 kbps [rutracker-5939945].torrent
2020-09-12 18:13 - 2020-09-12 18:13 - 000013519 _____ C:\Users\rossu\Downloads\[SkT]____Marilyn_Manson_-_We_Are_Chaos_(2020)_FLAC.torrent
2020-09-10 19:47 - 2020-09-10 19:47 - 000007092 _____ C:\Users\rossu\Downloads\[SkT]Big_Tit_MILF_Next_Door_2_(2020)[HD][.MP4].torrent
2020-09-10 15:50 - 2020-09-10 15:50 - 000007636 _____ C:\Users\rossu\AppData\Local\Resmon.ResmonCfg
2020-09-09 20:25 - 2020-09-22 13:48 - 000000000 ____D C:\Users\rossu\Doctor Web
2020-09-09 20:25 - 2020-09-22 13:48 - 000000000 ____D C:\ProgramData\Doctor Web
2020-09-09 14:55 - 2020-09-09 14:55 - 000000000 _____ C:\Recovery.txt
2020-09-09 14:53 - 2020-09-09 14:53 - 032610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 031598936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 019869696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 018766848 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 018075136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 006417408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 005820416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004820992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004783344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004304384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004274688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003992576 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003659264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003547784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002687488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002519512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002452856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 002338184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002136744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 001956032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001812368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001770040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001542752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001541224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001506608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001438432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001411072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001337344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001314608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001301584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001260200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001253376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 001239040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001183256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001117344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001048064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 001014864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000961192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000946712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000759792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000749056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000744240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000680664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFSR.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000665264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000538120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000530440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glmf32.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000304640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syncutil.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstext40.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOVER.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSUTILITY.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrahc.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSERES.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootim.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 026272768 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 023441408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 014754304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 008897200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 007755776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 007633360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 007611904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 006357032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 005993968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 005430480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 005056000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004892672 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004747776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 004523008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004009064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 003978240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 003913728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 003819528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 003334656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002806152 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002757120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 002635640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002606592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002541056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002433024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002306048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002265328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002206208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001980728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001951232 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001868672 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001834496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001777152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001751432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001720832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001719096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001695208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001693208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001681408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001659904 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001617088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001557816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 001494016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001485824 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001449792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001449472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001309504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-09-09 14:52 - 2020-09-09 14:52 - 001296384 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001279288 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 001181200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001128544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001068112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001061376 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001003320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000969216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000943408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000920896 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000907440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000894768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000890944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000887304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000869376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000801544 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000797448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000794624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000775776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000763840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000757192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000755576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000750976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000733184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000707584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000702792 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000688960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000676680 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000643584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000639928 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000602184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000585696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000583608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000546464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000528352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000500968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000495848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000420920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000412688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000387072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000367416 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000360024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2020-09-09 14:52 - 2020-09-09 14:52 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000337768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFMCP.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000303288 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000303168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnputil.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000286024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000240136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000217920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000213344 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000212760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000196768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2020-09-09 14:52 - 2020-09-09 14:52 - 000190792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxApplicabilityEngine.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000166272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000153400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000138936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000133736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000125016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000119608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000117056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000110504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000109992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000099640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlgpclnt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000091448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rassstp.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000069728 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000069432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfctrs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.SystemId.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfdisk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfos.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000042320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfctrs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfdisk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfos.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCShellCommonProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfnet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2020-09-09 14:52 - 2020-09-09 14:52 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidtel.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\midimap.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000009277 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-09-09 14:52 - 2020-09-09 14:52 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragres.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 010847552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 008006248 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 007979416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 006197760 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 006193664 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 005870496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 005776544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 005729280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 004727296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 004592136 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 003875840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003815424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 003806720 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003587584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003505952 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003436544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003303936 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003181056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003082240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003062784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002991416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 002975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002951680 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 002918736 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002851128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 002772992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002647040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002587448 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002451456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002422784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002319216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002259968 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002248192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002178048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002131032 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002102784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsudk.shellcommon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002023704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001905664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001866240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001856312 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001825280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001805192 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-09-09 14:51 - 2020-09-09 14:51 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001765888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001700352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001649664 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001538656 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001504768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001498624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001492480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001473024 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001472824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 001426944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001400208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-09-09 14:51 - 2020-09-09 14:51 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001337176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001329664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001277440 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001261056 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001257984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001209344 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001209096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001198288 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001191592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001140928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001126488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001104384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001094472 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001092392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001089344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001046528 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 001044880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001028288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001027344 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001008696 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000999744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000992768 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000978760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000976680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000935936 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000929792 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000914216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000913776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000903992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000843376 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000827912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000822784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000799544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000725608 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000705560 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000647480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000635824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000634240 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000603464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000583168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000573752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000531448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000507904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000502592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-09-09 14:51 - 2020-09-09 14:51 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000455480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000454960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000437760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000428672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000403768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000374072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000373560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000361472 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_InputPersonalization.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000322376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msquic.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000269624 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000259888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000249664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000239432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000230392 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000230376 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000183112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000180040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000169456 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000167880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000152376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000147256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000143104 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlgpclnt.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000118072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000116024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiCx.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000070976 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000069752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000068928 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PlatformExtension.DevicePickerExperience.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000064824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000064008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemId.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000059448 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCShellCommonProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdiagnostics.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000017216 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-09-09 14:50 - 2020-09-09 14:51 - 001030656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 002103704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001924608 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001514496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001021952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000939448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000934912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000809280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000702776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000602440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-09-09 14:50 - 2020-09-09 14:50 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-09-09 14:50 - 2020-09-09 14:50 - 000527880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000472376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000420456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000418800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000314688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000305472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000255296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000223040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000195896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000185672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000185664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000160064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000159048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000155952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-09-09 14:50 - 2020-09-09 14:50 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-09-09 14:50 - 2020-09-09 14:50 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000060744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000056648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-09-09 14:50 - 2020-09-09 14:50 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2020-09-09 14:50 - 2020-09-09 14:50 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2020-09-09 14:50 - 2020-09-09 14:50 - 000030024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000029456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\midimap.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000019776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000016704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-09-09 14:34 - 2020-08-25 05:42 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-09-09 14:34 - 2020-08-25 05:36 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-09-09 14:31 - 2020-09-09 14:31 - 000002295 _____ C:\Users\Public\Desktop\Need For Speed Hot Pursuit 2.lnk
2020-09-09 14:31 - 2020-09-09 14:31 - 000002295 _____ C:\ProgramData\Desktop\Need For Speed Hot Pursuit 2.lnk
2020-09-09 14:31 - 2020-09-09 14:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games
2020-09-09 14:25 - 2020-09-09 14:25 - 000000000 ____D C:\Users\rossu\OneDrive\Documents\EA Games
2020-09-09 14:22 - 2020-09-09 14:22 - 000000000 ____D C:\Program Files (x86)\EA Games
2020-09-09 10:43 - 2020-09-09 10:43 - 000000000 ___HD C:\$WinREAgent
2020-09-07 21:03 - 2020-09-07 21:03 - 000000562 _____ C:\TDSSKiller.3.1.0.28_07.09.2020_21.03.23_log.txt
2020-09-07 21:02 - 2020-09-07 21:03 - 000300282 _____ C:\TDSSKiller.3.1.0.28_07.09.2020_21.02.00_log.txt
2020-09-07 20:23 - 2020-09-07 20:23 - 000000270 __RSH C:\ProgramData\ntuser.pol
2020-09-07 20:03 - 2020-09-07 20:03 - 000000000 ____D C:\Users\rossu\AppData\Local\balena-etcher-updater
2020-09-07 19:58 - 2020-09-07 20:06 - 2335047680 _____ C:\Users\rossu\Downloads\Zorin-OS-15.2-Core-64-bit.iso
2020-09-07 13:34 - 2020-09-22 14:16 - 000000871 _____ C:\Users\rossu\Desktop\JRT.txt
2020-09-06 19:48 - 2020-09-09 12:17 - 000000000 ____D C:\Users\rossu\AppData\Roaming\USBSafelyRemove
2020-09-06 19:48 - 2020-09-06 19:48 - 000000000 ____D C:\ProgramData\USBSRService
2020-09-06 15:35 - 2020-09-06 15:35 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.0
2020-09-05 19:02 - 2020-09-05 19:03 - 000302200 _____ C:\TDSSKiller.3.1.0.28_05.09.2020_19.02.30_log.txt
2020-09-05 18:40 - 2020-09-05 18:40 - 000012288 _____ C:\WINDOWS\SysWOW64\antimalware.unwanted_products.product_registry.kvdb
2020-09-05 18:40 - 2020-09-05 18:40 - 000012288 _____ C:\WINDOWS\SysWOW64\antimalware.unwanted_products.browser_extension_registry.kvdb
2020-09-05 18:40 - 2020-09-05 18:40 - 000012288 _____ C:\WINDOWS\SysWOW64\antimalware.patch_management.product_registry.kvdb
2020-09-05 14:01 - 2020-09-05 19:07 - 000002546 _____ C:\WINDOWS\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2020-09-05 14:01 - 2020-09-05 18:42 - 000000000 ____D C:\Program Files\Common Files\AV
2020-09-05 11:33 - 2020-09-07 21:01 - 000000000 ___HD C:\kleaner.tmp
2020-09-03 19:10 - 2020-09-22 14:27 - 081002496 _____ C:\WINDOWS\system32\config\SOFTWARE
2020-09-03 19:01 - 2020-09-03 19:10 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2020-09-01 15:07 - 2020-09-01 15:07 - 000001840 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2020-09-01 15:07 - 2020-09-01 15:07 - 000001840 _____ C:\ProgramData\Desktop\MyPhoneExplorer.lnk
2020-09-01 15:07 - 2020-09-01 15:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2020-08-31 19:33 - 2020-09-09 15:00 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-08-30 20:08 - 2020-08-30 20:10 - 000301650 _____ C:\TDSSKiller.3.1.0.28_30.08.2020_20.08.32_log.txt
2020-08-28 21:08 - 2020-08-28 21:08 - 014860896 _____ (ESET spol. s r.o.) C:\Users\rossu\Downloads\esetonlinescanner.exe
2020-08-28 11:39 - 2020-08-28 11:39 - 000590112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000453920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000337184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000316912 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000274208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000250144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000192800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_2.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000174064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_2.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000100880 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000083232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000044320 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140_1.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000031728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_1.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000029472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_1.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000027424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_codecvt_ids.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000026400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_codecvt_ids.dll
2020-08-27 15:37 - 2020-08-30 13:22 - 000002432 _____ C:\WINDOWS\system32\Tasks\Trojan Remover
2020-08-26 23:12 - 2020-08-26 23:12 - 000000000 ____D C:\Users\rossu\AppData\Local\GHISLER
2020-08-26 22:46 - 2020-08-26 22:46 - 000000000 ____D C:\ProgramData\Loaris
2020-08-26 22:23 - 2020-08-26 22:24 - 000000811 _____ C:\Users\Public\Desktop\Medieval CUE Splitter.lnk
2020-08-26 22:23 - 2020-08-26 22:24 - 000000811 _____ C:\ProgramData\Desktop\Medieval CUE Splitter.lnk
2020-08-26 22:21 - 2020-08-26 22:21 - 000000619 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Video Downloader.lnk
2020-08-26 22:21 - 2020-08-26 22:21 - 000000607 _____ C:\Users\Public\Desktop\4K Video Downloader.lnk
2020-08-26 22:21 - 2020-08-26 22:21 - 000000607 _____ C:\ProgramData\Desktop\4K Video Downloader.lnk
2020-08-26 22:14 - 2020-08-26 22:14 - 000000780 _____ C:\Users\Public\Desktop\Anti-Twin.lnk
2020-08-26 22:14 - 2020-08-26 22:14 - 000000780 _____ C:\ProgramData\Desktop\Anti-Twin.lnk
2020-08-26 21:29 - 2020-08-26 21:50 - 000000000 ____D C:\Local Publish
2020-08-26 20:46 - 2020-08-26 20:46 - 000000000 ___HD C:\OneDriveTemp
2020-08-26 20:44 - 2020-08-26 20:44 - 000000000 ____D C:\Users\rossu\AppData\Local\OneDrive
2020-08-26 12:34 - 2020-09-09 20:57 - 000000000 ____D C:\Users\rossu\AppData\Local\ESET
2020-08-23 17:15 - 2020-08-23 17:15 - 000000000 ____D C:\Users\rossu\AppData\Roaming\DAEMON Tools Lite
2020-08-23 17:14 - 2020-09-22 12:50 - 000000000 ____D C:\Users\rossu\AppData\Local\CrashDumps
2020-08-23 17:13 - 2020-09-21 20:51 - 000000000 ____D C:\WINDOWS\AppReadiness

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-09-22 14:34 - 2020-05-30 19:09 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-09-22 14:34 - 2019-12-07 16:41 - 000717844 _____ C:\WINDOWS\system32\perfh005.dat
2020-09-22 14:34 - 2019-12-07 16:41 - 000144986 _____ C:\WINDOWS\system32\perfc005.dat
2020-09-22 14:34 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2020-09-22 14:32 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-09-22 14:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2020-09-22 14:31 - 2019-11-21 00:32 - 000000000 __SHD C:\Users\rossu\IntelGraphicsProfiles
2020-09-22 14:30 - 2020-05-30 19:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-09-22 14:30 - 2020-05-30 19:04 - 000008192 ___SH C:\DumpStack.log.tmp
2020-09-22 14:30 - 2020-05-30 18:31 - 000000000 ____D C:\Users\rossu
2020-09-22 14:30 - 2019-11-21 00:28 - 000000000 ____D C:\ProgramData\NVIDIA
2020-09-22 14:27 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-09-22 14:12 - 2019-11-21 17:07 - 000000000 ____D C:\Users\rossu\AppData\Roaming\qBittorrent
2020-09-22 14:10 - 2020-05-30 19:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-09-21 20:34 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-09-21 20:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-09-21 20:27 - 2020-04-26 19:58 - 000000000 ____D C:\Users\rossu\AppData\Roaming\Zoner
2020-09-21 20:27 - 2020-04-26 19:58 - 000000000 ____D C:\Users\rossu\AppData\Local\Zoner
2020-09-21 20:25 - 2020-02-17 18:09 - 000000000 ____D C:\ProgramData\Zoner
2020-09-17 18:14 - 2020-03-24 20:29 - 000000000 ___RD C:\Users\rossu\Disk Google
2020-09-11 18:08 - 2020-03-24 20:24 - 000002421 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-09-10 20:07 - 2019-11-21 16:11 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-09-10 19:49 - 2019-11-21 16:11 - 129170736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-09-10 14:54 - 2020-05-07 21:11 - 000000786 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-09-10 06:41 - 2019-11-23 10:30 - 000000000 ____D C:\program1
2020-09-09 19:00 - 2020-03-24 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-09-09 18:59 - 2020-03-24 20:21 - 000000000 ____D C:\Program Files (x86)\Google
2020-09-09 15:06 - 2020-05-30 19:04 - 000503064 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-09-09 14:50 - 2020-05-30 19:06 - 002876416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-09-09 14:31 - 2020-08-10 16:11 - 000012464 _____ (Macrovision Europe Ltd) C:\WINDOWS\SysWOW64\Drivers\SECDRV.SYS
2020-09-09 14:30 - 2020-08-10 16:09 - 000000620 _____ C:\WINDOWS\eReg.dat
2020-09-09 14:25 - 2020-06-24 15:25 - 000000000 ____D C:\Users\rossu\AppData\Local\VirtualStore
2020-09-09 12:08 - 2020-06-01 17:44 - 000000000 ____D C:\Users\rossu\AppData\Roaming\MyPhoneExplorer
2020-09-06 18:37 - 2020-07-18 14:41 - 000000000 ____D C:\Users\rossu\AppData\Roaming\KSM
2020-09-06 15:34 - 2019-11-23 10:33 - 000000000 ____D C:\Program Files\LibreOffice
2020-09-05 18:43 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-09-05 18:42 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-09-05 13:57 - 2020-02-01 17:47 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2020-08-31 21:24 - 2019-11-21 00:27 - 000000000 ____D C:\Users\rossu\AppData\Local\Packages
2020-08-30 19:42 - 2019-11-23 23:56 - 000000000 ____D C:\AdwCleaner
2020-08-30 13:22 - 2020-05-30 19:17 - 000003572 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-08-30 13:22 - 2020-05-30 19:17 - 000003348 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-08-29 10:32 - 2019-11-21 00:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-08-27 12:00 - 2019-11-21 00:34 - 000000000 ___RD C:\Users\rossu\OneDrive
2020-08-26 22:14 - 2019-12-07 14:12 - 000000792 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anti-Twin.lnk
2020-08-26 22:07 - 2020-01-23 20:15 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite
2020-08-26 22:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\registration
2020-08-26 22:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2020-08-26 22:01 - 2019-11-21 00:34 - 000000000 ____D C:\Users\rossu\AppData\Local\Google
2020-08-26 14:31 - 2019-11-21 00:34 - 000002502 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-08-23 17:14 - 2019-11-21 17:07 - 000000000 ____D C:\Users\rossu\AppData\Local\qBittorrent
2020-08-23 15:48 - 2019-11-21 00:26 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-08-23 15:37 - 2020-06-08 18:12 - 000000000 ____D C:\ProgramData\Nero
2020-08-23 15:36 - 2019-11-21 00:32 - 000000000 ____D C:\Intel
2020-08-23 15:33 - 2020-07-25 14:43 - 000000000 ____D C:\Users\rossu\AppData\Roaming\dvdcss
2020-08-23 15:33 - 2020-06-24 18:12 - 000000000 ____D C:\Users\rossu\AppData\Roaming\TeamViewer
2020-08-23 15:33 - 2020-06-24 18:12 - 000000000 ____D C:\Users\rossu\AppData\Local\TeamViewer
2020-08-23 15:33 - 2020-06-08 18:16 - 000000000 ____D C:\Users\rossu\AppData\Local\Nero

==================== Files in the root of some directories ========

2020-09-10 15:50 - 2020-09-10 15:50 - 000007636 _____ () C:\Users\rossu\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Prosím o konrolu

Napsal: 22 zář 2020 13:51
od bigmuff
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-09-2020
Ran by rossu (22-09-2020 14:44:23)
Running from C:\Users\rossu\OneDrive\Desktop
Windows 10 Home Version 2004 19041.508 (X64) (2020-05-30 17:18:33)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4057023617-2345177252-1567271487-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4057023617-2345177252-1567271487-503 - Limited - Disabled)
Guest (S-1-5-21-4057023617-2345177252-1567271487-501 - Limited - Disabled)
rossu (S-1-5-21-4057023617-2345177252-1567271487-1001 - Administrator - Enabled) => C:\Users\rossu
WDAGUtilityAccount (S-1-5-21-4057023617-2345177252-1567271487-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1310 (HKLM-x32\...\{76A9FB3A-D7AB-4C8C-8C49-3CFDBF2D6C2D}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (HKLM-x32\...\{6D4553DF-2095-4D10-92C0-17934733B51D}) (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (HKLM-x32\...\{6D7E031C-4C05-4265-854A-FE9FDEA9984D}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
4K Video Downloader (HKLM\...\{94360C20-3425-4BB1-9A75-03A4E69194F8}) (Version: 4.13.0.3800 - Open Media LLC)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 19.01 alpha (x64) (HKLM\...\7-Zip) (Version: 19.01 alpha - Igor Pavlov)
AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
Anti-Twin (Installation 26.08.2020) (HKLM-x32\...\Anti-Twin 2020-08-26 22.14.34) (Version: - Joerg Rosenthal, Germany)
Backup and Sync from Google (HKLM\...\{01D33BEA-673C-439C-A7C7-DE5B236DB842}) (Version: 3.50.3166.0017 - Google, Inc.)
Balíček ovladače systému Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Balíček ovladače systému Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\50E7F7D847732396F1582CD62DD385ED7ABB0897) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.12.0.1114 - Disc Soft Ltd)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.7.1.29511 - Foxit Software Inc.)
Google Chrome (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\Google Chrome) (Version: 85.0.4183.83 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
inPixio Photo Studio 10 (HKLM-x32\...\{EEB2D77B-37DD-4FA2-9B4D-F6724AEC95DF}) (Version: 10.0.0 - inPixio)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
Java 8 Update 251 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180251F0}) (Version: 8.0.2510.8 - Oracle Corporation)
Kingston SSD Manager version 1.1.2.6 (HKLM-x32\...\{9A5DD901-0B98-4F2B-9421-B5975014184F}_is1) (Version: 1.1.2.6 - Kingston Digital, Inc)
LibreOffice 6.4 Help Pack (Czech) (HKLM\...\{AE983296-8590-4589-84E0-80B8C30ED803}) (Version: 6.4.0.3 - The Document Foundation)
LibreOffice 7.0.1.2 (HKLM\...\{B98796CE-B0AD-498E-81E4-986FA3BB20B9}) (Version: 7.0.1.2 - The Document Foundation)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.51 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.29 - )
Microsoft OneDrive (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\OneDriveSetup.exe) (Version: 20.084.0426.0007 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.4.3 (HKLM-x32\...\{B561660D-8B3C-491D-9E3E-293F14FCAADA}_is1) (Version: 1.4.3 - Samuel Rodberg)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.15 - F.J. Wechselberger)
Need For Speed Hot Pursuit 2 (HKLM-x32\...\{76F4DD9B-C246-4BE0-00B6-3DE9ABF72299}) (Version: - )
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ovládací panel NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden
Pomocník s aktualizací Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.23072 - Microsoft Corporation)
qBittorrent 4.2.5 (HKLM-x32\...\qBittorrent) (Version: 4.2.5 - The qBittorrent project)
Rajče průvodce verze 1.59.52.267 (HKLM-x32\...\rajce.net_is1) (Version: - rajce.net)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7589 - Realtek Semiconductor Corp.)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 9.3.40.0 - 2BrightSparks)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.7.6 - TeamViewer)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
VS Revo Group v.4.3.1 - 22.04.2020 (HKLM-x32\...\VS Revo Group v.4.3.1 - 22.04.2020) (Version: v.4.3.1 - 22.04.2020 - Libbi)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.90 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
Zoner Photo Studio X CS (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\ZPS X) (Version: 19.2009.2.274 - ZONER software)
ZPS 19 CZ v.19.2004.2.250 - 03.06.2020 (HKLM-x32\...\ZPS 19 CZ v.19.2004.2.250 - 03.06.2020) (Version: v.19.2004.2.250 - 03.06.2020 - Libbi)

Packages:
=========
inPixio Photo Editor -> C:\Program Files\WindowsApps\AvanquestSoftware.InPixioFreePhotoEditor_9.1.0.0_x86__hrs4p72486j8p [2020-08-26] (Avanquest Software)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-08-26] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-08-26] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.8101.0_x64__8wekyb3d8bbwe [2020-08-26] (Microsoft Studios) [MS Ad]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2020-08-26] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4057023617-2345177252-1567271487-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\rossu\AppData\Local\Google\Chrome\Application\85.0.4183.83\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-4057023617-2345177252-1567271487-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\rossu\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-4057023617-2345177252-1567271487-1001_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\rossu\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\program1\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers1: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => C:\Users\rossu\OneDrive\Desktop\shellext.dll -> No File
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\program1\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => C:\Users\rossu\OneDrive\Desktop\shellext.dll -> No File
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\program1\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers4: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => C:\Users\rossu\OneDrive\Desktop\shellext.dll -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\program1\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers6: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => C:\Users\rossu\OneDrive\Desktop\shellext.dll -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\SysWOW64\tsccvid.dll [102400 2005-06-15] (TechSmith Corporation) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Vzdálená plocha Chrome.lnk -> C:\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) =============

2011-08-18 02:29 - 2011-08-18 02:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll
2010-08-06 12:15 - 2010-08-06 12:15 - 000071680 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzinw12.dll
2010-08-06 12:15 - 2010-08-06 12:15 - 000089600 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzipm12.dll
2020-06-23 09:16 - 2019-09-05 07:00 - 000076800 _____ (Igor Pavlov) [File not signed] C:\program1\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\ssv.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\jp2ssv.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2020-09-09 20:50 - 000000879 _____ C:\WINDOWS\system32\drivers\etc\hosts

2020-01-03 20:17 - 2020-06-18 20:14 - 000000507 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
192.168.137.1 DESKTOP-1TNCHR7.mshome.net # 2025 6 2 17 18 14 50 479
192.168.137.9 LGwebOSTV.mshome.net # 2020 6 4 25 18 14 50 479

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Users\rossu\AppData\Local\Microsoft\WindowsApps;C:\adb;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rossu\Downloads\en.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "MalTray"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "qBittorrent"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{F6D04FBB-6F29-4ED7-8521-E5AC13AC1C00}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{D6B15C02-5660-4C31-BF8A-8195AE819FDC}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{254FCC5C-FC07-41BF-8ED4-A5A4151FB809}] => (Allow) C:\Users\rossu\AppData\Local\Apowersoft\Online Video Converter\Online Video Converter.exe => No File
FirewallRules: [{A6D66FE1-DE90-42B3-B5C0-BE7EF727A9CC}] => (Allow) C:\Users\rossu\AppData\Local\Apowersoft\Online Video Converter\Online Video Converter.exe => No File
FirewallRules: [{FFA0076C-3A5E-4D87-A696-50757BC1FE40}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{0AC1933D-8DC1-4B6D-8F12-13299B4FBF26}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [UDP Query User{5121987A-80E4-4A7A-A75E-7AEF44E4BF1F}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{A13112A7-CC14-4F2E-979C-B9E8312BE5BD}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2F1CFE72-8D3E-46F1-B97E-E8F1E11DBC12}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{BD955DDA-9B9F-41B0-9C10-B977F4845944}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [UDP Query User{2DBEE51B-E9A4-4683-9B07-C0F690E25751}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{76EF3312-F730-49AC-B4A4-89C875566585}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{B991C315-22B1-417A-AB57-B9D330E1FF1E}C:\program1\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program1\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [UDP Query User{A81B9797-F32F-4B21-9850-F54C01E7F4FD}C:\program1\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program1\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [{DB1F4684-5260-4116-917A-75F6137072BD}] => (Allow) C:\program1\teamviewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{6F7439CF-1ACD-46C4-9086-0D80F8A3A9BC}] => (Allow) C:\program1\teamviewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3E9BC15F-0F09-4A90-8909-48841BC37E3C}] => (Allow) C:\program1\teamviewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{89CE5012-E7A6-4955-BEDD-77C13A0D582D}] => (Allow) C:\program1\teamviewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C58CE780-FD1E-4DA4-A000-16653E48E78A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9AAA7A29-68EF-4B65-B215-95D833B99EDE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2DE12EC3-6679-4F84-B705-3C7679843BAA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9458B3E8-279C-4D66-9CFC-93D07556D8C0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Restore Points =========================

07-09-2020 21:25:55 Revo Uninstaller Pro's restore point - ZPS 19 CZ v.19.2004.2.245 - 04.05.2020
09-09-2020 14:18:36 NFS
09-09-2020 14:32:03 Instalační služba modulů systému Windows
09-09-2020 14:33:39 Instalační služba modulů systému Windows
09-09-2020 14:38:09 Instalační služba modulů systému Windows
09-09-2020 20:53:22 Installed Windows 10 Manager
09-09-2020 20:54:52 Windows 10 Manager v3.3.0 (09.09.2020 20:54:47)
10-09-2020 06:41:01 Removed Windows 10 Manager
10-09-2020 17:54:03 JRT Pre-Junkware Removal
22-09-2020 12:49:41 JRT Pre-Junkware Removal
22-09-2020 14:11:41 JRT Pre-Junkware Removal

==================== Faulty Device Manager Devices ============

Name: Android ADB Interface
Description: Android ADB Interface
Class Guid: {3f966bd9-fa04-4ec5-991c-d326973b5128}
Manufacturer: Xiaomi Technology, Inc.
Service: WinUSB
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (09/22/2020 02:05:09 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na disk roman (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/22/2020 12:50:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: StartMenuExperienceHost.exe, verze: 0.0.0.0, časové razítko: 0xeab8dc5a
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.488, časové razítko: 0x5b4a3325
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010b3cc
ID chybujícího procesu: 0x1874
Čas spuštění chybující aplikace: 0x01d690ce28686fc2
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: ad6263e5-6e93-4afb-aa6f-7dd1f5828d4b
Úplný název chybujícího balíčku: Microsoft.Windows.StartMenuExperienceHost_10.0.19041.423_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (09/21/2020 08:39:14 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:13 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:12 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:11 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:10 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:10 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894


System errors:
=============
Error: (09/22/2020 02:30:35 PM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY)
Description: H:\Device\HarddiskVolume73

Error: (09/22/2020 02:30:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (09/22/2020 02:30:31 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS

Error: (09/22/2020 02:12:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (09/22/2020 01:53:21 PM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY)
Description: H:\Device\HarddiskVolume73

Error: (09/22/2020 01:52:49 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.

Error: (09/22/2020 01:52:44 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.

Error: (09/22/2020 01:51:29 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.


Windows Defender:
===================================
Date: 2020-09-17 09:56:24.8450000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {4109C1E9-EAD2-49E1-BC27-CEB9FFBED612}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-09-15 07:49:12.6610000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5C47BDCF-0323-469A-9600-AC61DA19B3BA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-09-10 14:47:52.7490000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {D66FB76D-64B2-4152-8229-5D471A407158}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-09-10 14:22:03.0580000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/AutoKMS
ID: 2147685180
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_D:\torrent\KMSoffline v2.1.5\KMSoffline.exe; file:_D:\torrent\KMSoffline v2.1.5\KMSoffline_x64.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1TNCHR7\rossu
Název procesu: C:\Program Files\qBittorrent\qbittorrent.exe
Verze bezpečnostních informací: AV: 1.323.862.0, AS: 1.323.862.0, NIS: 1.323.862.0
Verze modulu: AM: 1.1.17400.5, NIS: 1.1.17400.5

Date: 2020-09-10 14:22:01.6420000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: HackTool:Win32/AutoKMS
ID: 2147685180
Závažnost: Vysoké
Kategorie: Nástroj
Cesta: file:_D:\torrent\KMSoffline v2.1.5\KMSoffline_x64.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1TNCHR7\rossu
Název procesu: C:\Program Files\qBittorrent\qbittorrent.exe
Verze bezpečnostních informací: AV: 1.323.862.0, AS: 1.323.862.0, NIS: 1.323.862.0
Verze modulu: AM: 1.1.17400.5, NIS: 1.1.17400.5

CodeIntegrity:
===================================

Date: 2020-06-21 13:57:17.4050000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:57:13.1480000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:57:12.7840000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:50.8460000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:49.3210000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:43.7790000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:28.9780000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:26.5710000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.03 04/20/2015
Motherboard: Acer Tashigi_BA
Processor: Intel(R) Pentium(R) CPU N3700 @ 1.60GHz
Percentage of memory in use: 76%
Total physical RAM: 4009.76 MB
Available physical RAM: 954.29 MB
Total Virtual: 8105.76 MB
Available Virtual: 3749.27 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.5 GB) (Free:382.36 GB) NTFS
Drive d: (disk roman) (Fixed) (Total:931.5 GB) (Free:496.79 GB) NTFS
Drive h: (Verbatim HDD) (Fixed) (Total:465.76 GB) (Free:368.68 GB) NTFS

\\?\Volume{22333932-bdb1-4cdc-a0a5-1104af995f8f}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{6faf45d7-9a69-41a3-a4e1-f32d1ff7af2c}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 447.1 GB) (Disk ID: 24898A96)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: A259ECD9)

Partition: GPT.

==========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: CCEAC4BE)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: Prosím o konrolu

Napsal: 25 zář 2020 17:03
od Conder
Ahoj :)

:arrow: Tieto nastavenia mas umyselne?
HKLM\...\Policies\Explorer: [DisableLocalMachineRun] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRun] 1
HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRunOnce] 1
:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Spustit skenovani a pockaj na dokoncenie
  • V pripade nalezov nechaj vsetky nalezy oznacene a klikni na Karantena (ak nie su ziadne nalezy, tak na Spustit zakladni opravu)
  • V pripade, ze sa detekuje aj "predinstalovany software", tieto programy mozes, ale nemusis zmazat (toto nie su skodlive programy, ale iba zbytocnosti)
  • Potvrd vyzvu, pockaj na dokoncenie a potvrd restartovanie PC
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah skopiruj a vloz do dalsej odpovede

Re: Prosím o konrolu

Napsal: 25 zář 2020 17:59
od bigmuff
ahoj
první otázka......... ne vůbec úmyslně...# -------------------------------




# Malwarebytes AdwCleaner 8.0.7.0
# -------------------------------
# Build: 07-22-2020
# Database: 2020-07-20.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-25-2020
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner_Debug.log - [14915 octets] - [23/11/2019 22:56:13]
AdwCleaner[S00].txt - [1400 octets] - [23/11/2019 22:56:49]
AdwCleaner[C00].txt - [1568 octets] - [23/11/2019 22:57:00]
AdwCleaner[S01].txt - [1584 octets] - [03/12/2019 20:09:47]
AdwCleaner[C01].txt - [1734 octets] - [03/12/2019 20:10:26]
AdwCleaner[S02].txt - [1706 octets] - [07/12/2019 19:01:10]
AdwCleaner[C02].txt - [1818 octets] - [07/12/2019 19:01:31]
AdwCleaner[S03].txt - [1828 octets] - [27/12/2019 16:37:48]
AdwCleaner[C03].txt - [1940 octets] - [27/12/2019 16:38:06]
AdwCleaner[S04].txt - [1950 octets] - [03/01/2020 18:44:45]
AdwCleaner[C04].txt - [2062 octets] - [03/01/2020 18:51:15]
AdwCleaner[S05].txt - [2072 octets] - [17/01/2020 16:37:06]
AdwCleaner[C05].txt - [2184 octets] - [17/01/2020 16:39:29]
AdwCleaner[S06].txt - [2934 octets] - [20/01/2020 20:44:12]
AdwCleaner[S07].txt - [2995 octets] - [20/01/2020 20:45:40]
AdwCleaner[C07].txt - [3234 octets] - [20/01/2020 20:48:55]
AdwCleaner[S08].txt - [2377 octets] - [30/01/2020 16:29:18]
AdwCleaner[C08].txt - [2489 octets] - [30/01/2020 16:30:09]
AdwCleaner[S09].txt - [2524 octets] - [02/02/2020 22:25:49]
AdwCleaner[S10].txt - [2585 octets] - [28/02/2020 16:47:09]
AdwCleaner[S11].txt - [2789 octets] - [20/03/2020 16:45:07]
AdwCleaner[C11].txt - [2886 octets] - [20/03/2020 16:45:44]
AdwCleaner[S12].txt - [2803 octets] - [29/04/2020 19:05:25]
AdwCleaner[S13].txt - [2864 octets] - [03/05/2020 20:55:08]
AdwCleaner[S14].txt - [2925 octets] - [05/05/2020 13:49:58]
AdwCleaner[S15].txt - [2986 octets] - [07/05/2020 00:13:04]
AdwCleaner[S16].txt - [3047 octets] - [04/06/2020 15:46:05]
AdwCleaner[S17].txt - [3108 octets] - [09/06/2020 20:41:36]
AdwCleaner[S18].txt - [3169 octets] - [16/06/2020 21:27:37]
AdwCleaner[C18].txt - [3339 octets] - [16/06/2020 21:28:38]
AdwCleaner[S19].txt - [3291 octets] - [19/06/2020 15:59:06]
AdwCleaner[C19].txt - [3461 octets] - [19/06/2020 16:23:19]
AdwCleaner[S20].txt - [3413 octets] - [25/06/2020 10:50:54]
AdwCleaner[S21].txt - [3421 octets] - [25/07/2020 16:44:59]
AdwCleaner[S22].txt - [3482 octets] - [25/07/2020 16:47:12]
AdwCleaner[S23].txt - [3596 octets] - [07/08/2020 13:08:38]
AdwCleaner[C23].txt - [3766 octets] - [07/08/2020 13:08:59]
AdwCleaner[S24].txt - [3718 octets] - [14/08/2020 15:40:49]
AdwCleaner[S25].txt - [3779 octets] - [30/08/2020 19:44:39]
AdwCleaner[C25].txt - [3949 octets] - [30/08/2020 19:44:55]
AdwCleaner[S26].txt - [3901 octets] - [30/08/2020 19:49:28]
AdwCleaner[C26].txt - [4071 octets] - [30/08/2020 19:49:47]
AdwCleaner[S27].txt - [3970 octets] - [30/08/2020 19:53:36]
AdwCleaner[C27].txt - [4160 octets] - [30/08/2020 19:53:50]
AdwCleaner[S28].txt - [4092 octets] - [02/09/2020 20:04:18]
AdwCleaner[S29].txt - [4153 octets] - [07/09/2020 13:36:31]
AdwCleaner[S30].txt - [4214 octets] - [22/09/2020 13:36:32]
AdwCleaner[S31].txt - [4275 octets] - [23/09/2020 19:43:00]
AdwCleaner[S32].txt - [4336 octets] - [25/09/2020 18:54:29]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C32].txt ##########

a tady log

Re: Prosím o konrolu

Napsal: 26 zář 2020 22:13
od Conder
OK, poprosim o obidva nove logy z FRST.

Re: Prosím o konrolu

Napsal: 27 zář 2020 06:55
od bigmuff
..ano tady

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-09-2020
Ran by rossu (administrator) on DESKTOP-1TNCHR7 (Acer Aspire ES1-731G) (27-09-2020 07:48:13)
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu
Platform: Windows 10 Home Version 2004 19041.508 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\qBittorrent\qbittorrent.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Google LLC -> Google LLC) C:\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe <12>
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.504_none_e781e76525fb2269\TiWorker.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2008.9-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\program1\teamviewer\TeamViewer_Service.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-08-24] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\System32\rstrui.exe [274432 2020-05-11] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32\...\RunOnce: [UnKIS] => wscript.exe //b C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs <==== ATTENTION
HKLM\...\Policies\Explorer: [DisableLocalMachineRun] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRun] 1
HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRunOnce] 1
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\Run: [qBittorrent] => C:\Program Files\qBittorrent\qbittorrent.exe [20032000 2020-04-25] () [File not signed]
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [48594832 2020-06-15] (Google LLC -> )
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\rossu\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\rossu\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\RunOnce: [Uninstall 20.084.0426.0007\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\rossu\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\RunOnce: [Uninstall 20.084.0426.0007] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\rossu\AppData\Local\Microsoft\OneDrive\20.084.0426.0007"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\MountPoints2: {4511a448-bebd-11ea-8cae-7077812d0300} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Ribbons.scr [153600 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [109288 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\LIDIL hpzlllhn: C:\Windows\system32\hpzlllhn.dll [58112 2018-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company)
Startup: C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\qBittorrent.lnk [2020-07-25]
ShortcutTarget: qBittorrent.lnk -> C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01C9C1FA-6EEC-4621-A3DC-1FC3F2610D25} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {067A76DD-FC3F-40E3-9519-11F07BB1FAD7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-24] (Google LLC -> Google LLC)
Task: {09347C1E-C3BE-493D-A117-F4712585CBD9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {19CBEC12-1A86-46FD-BBA6-3A73A64D9CF7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4057023617-2345177252-1567271487-1001Core => C:\Users\rossu\AppData\Local\Google\Update\GoogleUpdate.exe [154920 2019-11-21] (Google Inc -> Google LLC)
Task: {238AE2F1-8483-49E0-AA36-2D069DAED23A} - System32\Tasks\Agent Activation Runtime\S-1-5-21-4057023617-2345177252-1567271487-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-06-10] (Microsoft Windows -> )
Task: {23FDB453-A3F5-48D2-B3A2-1C68B55B3985} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {2D9D7AB5-B39D-489D-9A51-2FED88FC53B8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2E520A52-1D19-48A9-9EAA-BB80E7225E44} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {578C2018-ABD6-4000-8AE1-F4F3428C5548} - System32\Tasks\Zoner.Updater.S-1-5-21-4057023617-2345177252-1567271487-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2688592 2020-09-21] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {7B0BE374-E03C-4A05-8E3C-8BA0D5B9D5CC} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232 2020-09-05] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {8308029B-925F-4592-83F8-5B96C2008992} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe
Task: {9BBA5484-2F0B-47CB-95D0-0EFA68D977ED} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-24] (Google LLC -> Google LLC)
Task: {AC54167D-1BB6-45D9-9940-EEFDC44A797C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe
Task: {B5E8ADDA-0FCA-4611-8B55-1C81CFC3356F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MpCmdRun.exe [525032 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BB30C668-6216-445B-A9B9-E372D7A063C0} - System32\Tasks\Trojan Remover => C:\program1\Trojan Remover\ltr.exe
Task: {C3361258-59B3-4CB3-8FDA-DEA2D63AE4F5} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4057023617-2345177252-1567271487-1001UA => C:\Users\rossu\AppData\Local\Google\Update\GoogleUpdate.exe [154920 2019-11-21] (Google Inc -> Google LLC)
Task: {C4B7D603-40AA-4C00-A518-56594BA1EC44} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{208cfe45-819a-43b2-9fc0-adbcbdd70e80}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{fd3c95cb-e0e2-4a70-a1bb-b0618bb66343}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Edge:
======
Edge Profile: C:\Users\rossu\AppData\Local\Microsoft\Edge\User Data\Default [2020-09-26]
Edge DownloadDir: C:\Users\rossu\Downloads
Edge StartupUrls: Default -> "hxxp://www.seznam.cz/"

FireFox:
========
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default [2020-09-27]
CHR Notifications: Default -> hxxps://1.2solo.biz; hxxps://aukro.cz; hxxps://calendar.google.com; hxxps://cs.windows10updater.com; hxxps://drive.google.com; hxxps://indiwood.ru; hxxps://kar.uptoabc.com; hxxps://notify.rocks; hxxps://www.b2bpartner.cz; hxxps://www.eobuv.cz; hxxps://www.facebook.com; hxxps://www.media.io; hxxps://www.newsbreak.com; hxxps://www.profi-dj.cz; hxxps://xcum.com
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Extension: (Překladač Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-18]
CHR Extension: (Disk Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-11-21]
CHR Extension: (YouTube) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-11-21]
CHR Extension: (AddToAny: Share Anywhere) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffpgijchhhkhnokafdeklpllijgnbche [2020-05-13]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-11-21]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-09-25]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2020-03-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-21]
CHR Extension: (Gmail) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-11-21]
CHR Extension: (Chrome Media Router) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-08-26]
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-09-24]
CHR HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4506728 2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 TeamViewer; C:\program1\teamviewer\TeamViewer_Service.exe [13103632 2020-09-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\NisSrv.exe [2343112 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2008.9-0\MsMpEng.exe [128360 2020-08-29] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2018-09-07] (AVAST Software s.r.o. -> The OpenVPN Project)
S3 avgTap; C:\WINDOWS\System32\drivers\avgTap.sys [54888 2018-09-05] (AVG Technologies CZ, s.r.o. -> The OpenVPN Project)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2020-03-24] (Malwarebytes Corporation -> Malwarebytes)
S3 fsfreedometap; C:\WINDOWS\System32\drivers\fsfreedometap.sys [38888 2019-12-05] (WDKTestCert mbbldr,131864997439240006 -> The OpenVPN Project)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-03-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [195432 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
S3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73584 2020-03-25] (Malwarebytes Corporation -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [119960 2020-03-25] (Malwarebytes Inc -> Malwarebytes)
R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2019-07-16] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [12464 2020-09-09] (Macrovision Europe Ltd) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2020-08-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [428256 2020-08-29] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69856 2020-08-29] (Microsoft Windows -> Microsoft Corporation)
S4 IObitUnlocker; \??\C:\program\IObit Unlocker\IObitUnlocker.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-09-27 07:48 - 2020-09-27 07:49 - 000018385 _____ C:\Users\rossu\Desktop\FRST.txt
2020-09-27 07:45 - 2020-09-27 07:45 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2020-09-26 22:11 - 2020-09-26 22:13 - 228287688 _____ C:\Users\rossu\Downloads\awmk315m.exe
2020-09-26 21:43 - 2020-09-26 21:43 - 000000734 _____ C:\Users\rossu\Desktop\Rajče.lnk
2020-09-26 21:43 - 2020-09-26 21:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rajce
2020-09-26 21:42 - 2020-09-26 21:42 - 017493680 _____ (rajče.net ) C:\Users\rossu\Downloads\rajce-latest.exe
2020-09-26 20:39 - 2020-09-26 20:39 - 000001736 _____ C:\Users\rossu\Documents\Kde jsou moje soubory.lnk
2020-09-25 18:50 - 2020-09-25 18:50 - 008414384 _____ (Malwarebytes) C:\Users\rossu\Desktop\adwcleaner_8.0.7.exe
2020-09-24 14:54 - 2020-09-24 14:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-09-24 10:41 - 2020-09-24 10:41 - 000782346 _____ C:\Users\rossu\Downloads\Návod k použití CZ.pdf
2020-09-23 20:57 - 2020-09-23 20:57 - 000000000 ____D C:\Users\rossu\AppData\Roaming\4kdownload.com
2020-09-23 20:55 - 2020-09-23 20:55 - 000001054 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K Video Downloader.lnk
2020-09-23 19:39 - 2020-09-23 19:39 - 000000000 ____D C:\Users\rossu\Desktop\FRST-OlderVersion
2020-09-23 19:38 - 2020-09-23 19:39 - 002299392 _____ (Farbar) C:\Users\rossu\Desktop\FRST64.exe
2020-09-23 19:32 - 2020-09-23 19:32 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4057023617-2345177252-1567271487-1001
2020-09-23 19:32 - 2020-09-23 19:32 - 000002365 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-09-22 17:42 - 2020-09-22 17:42 - 000000000 ____D C:\Users\rossu\Downloads\Depeche_Mode_Violator_The_12_Singles
2020-09-22 17:33 - 2020-09-22 17:39 - 1739474693 _____ C:\Users\rossu\Downloads\Depeche_Mode_Violator_The_12_Singles.zip
2020-09-22 15:53 - 2020-09-22 15:53 - 000000000 ____D C:\Users\rossu\AppData\Local\NVIDIA
2020-09-22 14:40 - 2020-09-27 07:49 - 000000000 ____D C:\FRST
2020-09-21 20:27 - 2020-09-26 11:21 - 000003808 _____ C:\WINDOWS\system32\Tasks\Zoner.Updater.S-1-5-21-4057023617-2345177252-1567271487-1001
2020-09-21 20:27 - 2020-09-23 18:58 - 000001565 _____ C:\Users\rossu\Desktop\Zoner Photo Studio X.lnk
2020-09-21 20:27 - 2020-09-23 18:58 - 000001561 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2020-09-10 15:50 - 2020-09-10 15:50 - 000007636 _____ C:\Users\rossu\AppData\Local\Resmon.ResmonCfg
2020-09-09 20:25 - 2020-09-26 22:25 - 000000000 ____D C:\ProgramData\Doctor Web
2020-09-09 20:25 - 2020-09-26 22:24 - 000000000 ____D C:\Users\rossu\Doctor Web
2020-09-09 14:55 - 2020-09-09 14:55 - 000000000 _____ C:\Recovery.txt
2020-09-09 14:53 - 2020-09-09 14:53 - 032610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 031598936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 024264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 019869696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 018766848 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 018075136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 006417408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 005820416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004820992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004783344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004304384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 004274688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003992576 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003868672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003659264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 003547784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002687488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002519512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002452856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 002338184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 002136744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 001956032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001812368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001770040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001542752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001541224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001506608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001438432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001411072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 001352232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001337344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001314608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001301584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001260200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001253376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 001239040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001183256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001117344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 001048064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 001014864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000961192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000946712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000759792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000749056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000744240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000680664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFSR.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000665264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-09-09 14:53 - 2020-09-09 14:53 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000538120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000530440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000526848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glmf32.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000377344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000304640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\syncutil.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstext40.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOVER.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSUTILITY.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrahc.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWSD.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSERES.dll
2020-09-09 14:53 - 2020-09-09 14:53 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootim.exe
2020-09-09 14:53 - 2020-09-09 14:53 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 026272768 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 023441408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 014754304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 008897200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 007755776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 007633360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 007611904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 006357032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 005993968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 005430480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 005056000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004892672 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004747776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 004523008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 004009064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 003978240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 003913728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 003819528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 003334656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002806152 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002757120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 002635640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002606592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002541056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002433024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002306048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002265328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 002206208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001980728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001951232 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001868672 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001834496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001777152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001751432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001720832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001719096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001695208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001693208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001681408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001659904 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001654824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001640888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001617088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001557816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 001494016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001485824 _____ (Microsoft Corporation) C:\WINDOWS\system32\APMon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001449792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001449472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001388544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001375232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001309504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-09-09 14:52 - 2020-09-09 14:52 - 001296384 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001279288 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001255744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 001181200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001128544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001068112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001061376 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 001003320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000969216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000943408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000920896 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000907440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000894768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000890944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000887304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000882176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000869376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000801544 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000797448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000794624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000775776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000763840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000761280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000757192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000755576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000750976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000748360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000733184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000707584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000702792 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000688960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000676680 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000651776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000643584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000639928 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000634680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000617472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000602184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000585696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000583608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000546464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000528352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UiaManager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000500968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000495848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000420920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000412688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000387072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShellCommonCommonProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000367416 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000360024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2020-09-09 14:52 - 2020-09-09 14:52 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000337768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFMCP.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000303288 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000303168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnputil.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000286024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcomapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000240136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\VideoHandlers.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000217920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000213344 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000212760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000196768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2020-09-09 14:52 - 2020-09-09 14:52 - 000190792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxApplicabilityEngine.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000166272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeHelper.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000153400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000141008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000138936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000133736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000125016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000119608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadWamExtension.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000117056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000110504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000109992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GraphicsCapture.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000099640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlgpclnt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000095032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000092952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000091448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceReactivation.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rassstp.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000069728 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000069432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceReactivation.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\edpnotify.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000061752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntlanman.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtutils.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edpnotify.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfctrs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.SystemId.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfdisk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfos.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000042320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfctrs.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfdisk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfos.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-09-09 14:52 - 2020-09-09 14:52 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCShellCommonProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfnet.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2020-09-09 14:52 - 2020-09-09 14:52 - 000021312 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidtel.exe
2020-09-09 14:52 - 2020-09-09 14:52 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragproxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\midimap.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000009277 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-09-09 14:52 - 2020-09-09 14:52 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragres.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-09-09 14:52 - 2020-09-09 14:52 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 010847552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 010336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 009034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 008006248 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 007979416 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 006197760 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 006193664 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 005870496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 005776544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 005729280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 004727296 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 004592136 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 003875840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003815424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 003806720 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 003749376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003587584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003505952 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003436544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003384832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003303936 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003181056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003082240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 003062784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002991416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 002975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002951680 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 002918736 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002851128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 002772992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002647040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002631168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002587448 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002451456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002422784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002319216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002259968 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002248192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002178048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002131032 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002102784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsudk.shellcommon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 002023704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001978656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001905664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001866240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001856312 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001825280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001805192 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-09-09 14:51 - 2020-09-09 14:51 - 001766912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001765888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001701368 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001700352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001649664 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001538656 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001530880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001504768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001498624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001492480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001488384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001473024 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001472824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 001426944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001400208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-09-09 14:51 - 2020-09-09 14:51 - 001378568 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001337176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001329664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001277440 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001261056 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001257984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001209344 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001209096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001198288 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 001191592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001140928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001126488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001114112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001104384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001094472 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001092392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001089344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001046528 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 001044880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001028288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001027344 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 001008696 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000999744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000992768 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000978760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000976680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000935936 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000929792 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000914216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000913776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000903992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000844448 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000843376 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000827912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000822784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000799544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.applicationmodel.datatransfer.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000753152 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000725608 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000705560 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000647480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UiaManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000635824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000634240 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000603464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000583168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000573752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000531448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000507904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000502592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-09-09 14:51 - 2020-09-09 14:51 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000455480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000454960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000437760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountExtension.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000429880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000428672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000403768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000374072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000373560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000361472 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_InputPersonalization.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000322376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msquic.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000269624 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000259888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000249664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000239432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000230392 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000230376 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2020-09-09 14:51 - 2020-09-09 14:51 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.CapturePicker.Desktop.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000208696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000183112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000180040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000180024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000169456 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000167880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000152376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadWamExtension.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000147256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000143104 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredDialogBroker.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GraphicsCapture.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000132728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlgpclnt.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000118072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000116024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsiCx.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000070976 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000069752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000068928 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.PlatformExtension.DevicePickerExperience.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000064824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000064008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemId.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000059448 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagnosticdataquery.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCShellCommonProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdiagnostics.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2020-09-09 14:51 - 2020-09-09 14:51 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2020-09-09 14:51 - 2020-09-09 14:51 - 000017216 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-09-09 14:51 - 2020-09-09 14:51 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-09-09 14:50 - 2020-09-09 14:51 - 001030656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 002103704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001924608 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001514496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 001021952 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000939448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000934912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000809280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000702776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000602440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2020-09-09 14:50 - 2020-09-09 14:50 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-09-09 14:50 - 2020-09-09 14:50 - 000527880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000472376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000420456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000418800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000314688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000305472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000255296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000223040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ataport.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000195896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000185672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000185664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000160064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000159048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000155952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-09-09 14:50 - 2020-09-09 14:50 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2020-09-09 14:50 - 2020-09-09 14:50 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\monitor.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000060744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000056648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciidex.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2020-09-09 14:50 - 2020-09-09 14:50 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2020-09-09 14:50 - 2020-09-09 14:50 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2020-09-09 14:50 - 2020-09-09 14:50 - 000030024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000029456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\midimap.dll
2020-09-09 14:50 - 2020-09-09 14:50 - 000019776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2020-09-09 14:50 - 2020-09-09 14:50 - 000016704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2020-09-09 14:34 - 2020-08-25 05:42 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-09-09 14:34 - 2020-08-25 05:36 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-09-09 14:31 - 2020-09-09 14:31 - 000002295 _____ C:\Users\Public\Desktop\Need For Speed Hot Pursuit 2.lnk
2020-09-09 14:31 - 2020-09-09 14:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games
2020-09-09 14:22 - 2020-09-09 14:22 - 000000000 ____D C:\Program Files (x86)\EA Games
2020-09-09 13:45 - 2020-06-08 18:24 - 000001091 _____ C:\Users\rossu\Desktop\Mass Storage Device – zástupce.lnk
2020-09-09 10:43 - 2020-09-09 10:43 - 000000000 ___HD C:\$WinREAgent
2020-09-07 21:34 - 2020-09-07 21:34 - 000001748 _____ C:\Users\rossu\Desktop\Zoner CZ.lnk
2020-09-07 21:03 - 2020-09-07 21:03 - 000000562 _____ C:\TDSSKiller.3.1.0.28_07.09.2020_21.03.23_log.txt
2020-09-07 21:02 - 2020-09-07 21:03 - 000300282 _____ C:\TDSSKiller.3.1.0.28_07.09.2020_21.02.00_log.txt
2020-09-07 20:23 - 2020-09-07 20:23 - 000000270 __RSH C:\ProgramData\ntuser.pol
2020-09-07 20:13 - 2020-09-07 22:13 - 000000000 ____D C:\Users\rossu\Desktop\rufus
2020-09-07 20:03 - 2020-09-07 20:03 - 000000000 ____D C:\Users\rossu\AppData\Local\balena-etcher-updater
2020-09-07 19:58 - 2020-09-07 20:06 - 2335047680 _____ C:\Users\rossu\Downloads\Zorin-OS-15.2-Core-64-bit.iso
2020-09-06 19:48 - 2020-09-25 11:00 - 000000000 ____D C:\Users\rossu\AppData\Roaming\USBSafelyRemove
2020-09-06 19:48 - 2020-09-06 19:48 - 000000000 ____D C:\ProgramData\USBSRService
2020-09-06 19:44 - 2020-06-28 03:17 - 000000000 ____D C:\Users\rossu\Desktop\USB.Safely.Remove.6.3.3.1287.Portable.KaranPC
2020-09-06 15:35 - 2020-09-06 15:35 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.0
2020-09-05 19:02 - 2020-09-05 19:03 - 000302200 _____ C:\TDSSKiller.3.1.0.28_05.09.2020_19.02.30_log.txt
2020-09-05 18:40 - 2020-09-05 18:40 - 000012288 _____ C:\WINDOWS\SysWOW64\antimalware.unwanted_products.product_registry.kvdb
2020-09-05 18:40 - 2020-09-05 18:40 - 000012288 _____ C:\WINDOWS\SysWOW64\antimalware.unwanted_products.browser_extension_registry.kvdb
2020-09-05 18:40 - 2020-09-05 18:40 - 000012288 _____ C:\WINDOWS\SysWOW64\antimalware.patch_management.product_registry.kvdb
2020-09-05 14:01 - 2020-09-05 19:07 - 000002546 _____ C:\WINDOWS\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2020-09-05 14:01 - 2020-09-05 18:42 - 000000000 ____D C:\Program Files\Common Files\AV
2020-09-05 11:33 - 2020-09-07 21:01 - 000000000 ___HD C:\kleaner.tmp
2020-09-05 11:17 - 2019-11-29 19:43 - 000001879 _____ C:\Users\rossu\Desktop\hp psc 1310 series – zástupce.lnk
2020-09-05 09:51 - 2020-09-05 09:51 - 000000000 ____D C:\Users\rossu\Desktop\AS SSD Benchmark
2020-09-03 19:10 - 2020-09-27 02:58 - 081002496 _____ C:\WINDOWS\system32\config\SOFTWARE
2020-09-03 19:01 - 2020-09-03 19:10 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2020-09-03 15:10 - 2020-09-03 15:10 - 000000000 ____D C:\Users\rossu\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2020-09-01 15:07 - 2020-09-01 15:07 - 000001840 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2020-09-01 15:07 - 2020-09-01 15:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2020-09-01 14:58 - 2020-09-26 20:43 - 000000000 ____D C:\Users\rossu\Desktop\pc komponent
2020-08-31 19:33 - 2020-09-09 15:00 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-08-30 20:08 - 2020-08-30 20:10 - 000301650 _____ C:\TDSSKiller.3.1.0.28_30.08.2020_20.08.32_log.txt
2020-08-28 21:20 - 2020-08-28 21:21 - 000001419 _____ C:\Users\rossu\Desktop\resrtart.lnk
2020-08-28 21:08 - 2020-09-22 17:39 - 000000664 _____ C:\Users\rossu\Desktop\ESET Online Scanner.lnk
2020-08-28 21:08 - 2020-08-28 21:08 - 014860896 _____ (ESET spol. s r.o.) C:\Users\rossu\Downloads\esetonlinescanner.exe
2020-08-28 11:39 - 2020-08-28 11:39 - 000590112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000453920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000337184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000316912 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000274208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000250144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000192800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_2.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000174064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_2.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000100880 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000083232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000044320 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140_1.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000031728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_1.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000029472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_1.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000027424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_codecvt_ids.dll
2020-08-28 11:39 - 2020-08-28 11:39 - 000026400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_codecvt_ids.dll

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-09-27 07:47 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-09-27 07:47 - 2019-11-21 17:07 - 000000000 ____D C:\Users\rossu\AppData\Roaming\qBittorrent
2020-09-27 07:45 - 2020-05-30 19:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-09-27 07:45 - 2020-05-30 19:04 - 000008192 ___SH C:\DumpStack.log.tmp
2020-09-27 07:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2020-09-27 07:45 - 2019-11-21 00:32 - 000000000 __SHD C:\Users\rossu\IntelGraphicsProfiles
2020-09-27 07:45 - 2019-11-21 00:28 - 000000000 ____D C:\ProgramData\NVIDIA
2020-09-27 02:58 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-09-27 02:48 - 2020-05-30 19:09 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-09-27 02:48 - 2019-12-07 16:41 - 000717844 _____ C:\WINDOWS\system32\perfh005.dat
2020-09-27 02:48 - 2019-12-07 16:41 - 000144986 _____ C:\WINDOWS\system32\perfc005.dat
2020-09-27 02:48 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2020-09-26 23:43 - 2020-05-30 18:31 - 000000000 ____D C:\Users\rossu
2020-09-26 23:04 - 2020-05-30 19:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-09-26 22:22 - 2019-11-21 00:34 - 000000000 ___RD C:\Users\rossu\OneDrive
2020-09-26 22:17 - 2020-08-23 17:14 - 000000000 ____D C:\Users\rossu\AppData\Local\CrashDumps
2020-09-26 20:53 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-09-26 20:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\registration
2020-09-26 16:05 - 2020-06-01 17:44 - 000000000 ____D C:\Users\rossu\AppData\Roaming\MyPhoneExplorer
2020-09-26 11:21 - 2020-02-17 18:09 - 000000000 ____D C:\ProgramData\Zoner
2020-09-25 18:59 - 2020-08-23 17:13 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-09-25 18:59 - 2020-03-24 20:24 - 000002421 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-09-25 10:43 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-09-25 04:57 - 2020-05-08 19:25 - 000000000 ____D C:\Program Files (x86)\WinRAR
2020-09-24 15:10 - 2019-11-23 17:58 - 000000000 ____D C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2020-09-24 15:10 - 2019-11-23 17:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2020-09-24 15:04 - 2020-02-28 20:58 - 000000000 ____D C:\Users\rossu\Desktop\Jednorázové bezpečnostní utility pro Windows ( 2-2020 )
2020-09-24 14:53 - 2019-11-23 10:30 - 000000000 ____D C:\program1
2020-09-23 19:43 - 2020-04-26 19:58 - 000000000 ____D C:\Users\rossu\AppData\Roaming\Zoner
2020-09-23 19:43 - 2020-04-26 19:58 - 000000000 ____D C:\Users\rossu\AppData\Local\Zoner
2020-09-23 06:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-09-22 18:28 - 2020-03-24 20:29 - 000000000 ___RD C:\Users\rossu\Disk Google
2020-09-22 17:39 - 2020-05-07 21:11 - 000000786 _____ C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-09-10 20:07 - 2019-11-21 16:11 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-09-10 19:49 - 2019-11-21 16:11 - 129170736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-09-09 20:57 - 2020-08-26 12:34 - 000000000 ____D C:\Users\rossu\AppData\Local\ESET
2020-09-09 19:00 - 2020-03-24 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-09-09 18:59 - 2020-03-24 20:21 - 000000000 ____D C:\Program Files (x86)\Google
2020-09-09 15:06 - 2020-05-30 19:04 - 000503064 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2020-09-09 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-09-09 14:50 - 2020-05-30 19:06 - 002876416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-09-09 14:31 - 2020-08-10 16:11 - 000012464 _____ (Macrovision Europe Ltd) C:\WINDOWS\SysWOW64\Drivers\SECDRV.SYS
2020-09-09 14:30 - 2020-08-10 16:09 - 000000620 _____ C:\WINDOWS\eReg.dat
2020-09-09 14:25 - 2020-06-24 15:25 - 000000000 ____D C:\Users\rossu\AppData\Local\VirtualStore
2020-09-06 18:37 - 2020-07-18 14:41 - 000000000 ____D C:\Users\rossu\AppData\Roaming\KSM
2020-09-06 15:34 - 2019-11-23 10:33 - 000000000 ____D C:\Program Files\LibreOffice
2020-09-05 18:43 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-09-05 18:42 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2020-09-05 13:57 - 2020-02-01 17:47 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2020-08-31 21:24 - 2019-11-21 00:27 - 000000000 ____D C:\Users\rossu\AppData\Local\Packages
2020-08-30 19:42 - 2019-11-23 23:56 - 000000000 ____D C:\AdwCleaner
2020-08-30 13:22 - 2020-08-27 15:37 - 000002432 _____ C:\WINDOWS\system32\Tasks\Trojan Remover
2020-08-30 13:22 - 2020-05-30 19:17 - 000003572 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-08-30 13:22 - 2020-05-30 19:17 - 000003348 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-08-29 10:32 - 2019-11-21 00:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd

==================== Files in the root of some directories ========

2020-09-10 15:50 - 2020-09-10 15:50 - 000007636 _____ () C:\Users\rossu\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Prosím o konrolu

Napsal: 27 zář 2020 06:55
od bigmuff
...a druhý tady


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-09-2020
Ran by rossu (27-09-2020 07:51:21)
Running from C:\Users\rossu\Desktop
Windows 10 Home Version 2004 19041.508 (X64) (2020-05-30 17:18:33)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4057023617-2345177252-1567271487-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4057023617-2345177252-1567271487-503 - Limited - Disabled)
Guest (S-1-5-21-4057023617-2345177252-1567271487-501 - Limited - Disabled)
rossu (S-1-5-21-4057023617-2345177252-1567271487-1001 - Administrator - Enabled) => C:\Users\rossu
WDAGUtilityAccount (S-1-5-21-4057023617-2345177252-1567271487-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1310 (HKLM-x32\...\{76A9FB3A-D7AB-4C8C-8C49-3CFDBF2D6C2D}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (HKLM-x32\...\{6D4553DF-2095-4D10-92C0-17934733B51D}) (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (HKLM-x32\...\{6D7E031C-4C05-4265-854A-FE9FDEA9984D}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
4K Video Downloader (HKLM\...\{94360C20-3425-4BB1-9A75-03A4E69194F8}) (Version: 4.13.0.3800 - Open Media LLC)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
7-Zip 19.01 alpha (x64) (HKLM\...\7-Zip) (Version: 19.01 alpha - Igor Pavlov)
AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
Anti-Twin (Installation 26.08.2020) (HKLM-x32\...\Anti-Twin 2020-08-26 22.14.34) (Version: - Joerg Rosenthal, Germany)
Backup and Sync from Google (HKLM\...\{01D33BEA-673C-439C-A7C7-DE5B236DB842}) (Version: 3.50.3166.0017 - Google, Inc.)
Balíček ovladače systému Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Balíček ovladače systému Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\50E7F7D847732396F1582CD62DD385ED7ABB0897) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
CCleaner (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: PRO v.5.72.7974 - 23.09.2020 - libbi)
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.12.0.1114 - Disc Soft Ltd)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.7.1.29511 - Foxit Software Inc.)
Google Chrome (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\Google Chrome) (Version: 85.0.4183.83 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
inPixio Photo Studio 10 (HKLM-x32\...\{EEB2D77B-37DD-4FA2-9B4D-F6724AEC95DF}) (Version: 10.0.0 - inPixio)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
Java 8 Update 251 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180251F0}) (Version: 8.0.2510.8 - Oracle Corporation)
Kingston SSD Manager version 1.1.2.6 (HKLM-x32\...\{9A5DD901-0B98-4F2B-9421-B5975014184F}_is1) (Version: 1.1.2.6 - Kingston Digital, Inc)
LibreOffice 6.4 Help Pack (Czech) (HKLM\...\{AE983296-8590-4589-84E0-80B8C30ED803}) (Version: 6.4.0.3 - The Document Foundation)
LibreOffice 7.0.1.2 (HKLM\...\{B98796CE-B0AD-498E-81E4-986FA3BB20B9}) (Version: 7.0.1.2 - The Document Foundation)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.63 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.29 - )
Microsoft OneDrive (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\OneDriveSetup.exe) (Version: 20.143.0716.0003 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.4.3 (HKLM-x32\...\{B561660D-8B3C-491D-9E3E-293F14FCAADA}_is1) (Version: 1.4.3 - Samuel Rodberg)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.15 - F.J. Wechselberger)
Need For Speed Hot Pursuit 2 (HKLM-x32\...\{76F4DD9B-C246-4BE0-00B6-3DE9ABF72299}) (Version: - )
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ovládací panel NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden
Pomocník s aktualizací Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.23072 - Microsoft Corporation)
qBittorrent 4.2.5 (HKLM-x32\...\qBittorrent) (Version: 4.2.5 - The qBittorrent project)
Rajče průvodce verze 1.59.52.267 (HKLM-x32\...\rajce.net_is1) (Version: - rajce.net)
Rajče verze 2.6.2 sestavení 292 (HKLM-x32\...\Rajče.net_is1) (Version: - rajče.net)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7589 - Realtek Semiconductor Corp.)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 9.3.40.0 - 2BrightSparks)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.10.5 - TeamViewer)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
VS Revo Group v.4.3.1 - 22.04.2020 (HKLM-x32\...\VS Revo Group v.4.3.1 - 22.04.2020) (Version: v.4.3.1 - 22.04.2020 - Libbi)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.91 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.91.0 - win.rar GmbH)
Zoner Photo Studio X CS (HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\ZPS X) (Version: 19.2009.2.276 - ZONER software)
ZPS 19 CZ v.19.2004.2.250 - 03.06.2020 (HKLM-x32\...\ZPS 19 CZ v.19.2004.2.250 - 03.06.2020) (Version: v.19.2004.2.250 - 03.06.2020 - Libbi)

Packages:
=========
inPixio Photo Editor -> C:\Program Files\WindowsApps\AvanquestSoftware.InPixioFreePhotoEditor_9.1.0.0_x86__hrs4p72486j8p [2020-09-26] (Avanquest Software)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-09-26] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-09-26] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.8101.0_x64__8wekyb3d8bbwe [2020-09-26] (Microsoft Studios) [MS Ad]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2020-09-26] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4057023617-2345177252-1567271487-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\rossu\AppData\Local\Google\Chrome\Application\85.0.4183.83\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-4057023617-2345177252-1567271487-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\rossu\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-4057023617-2345177252-1567271487-1001_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\rossu\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\program1\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers1: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\program1\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-01-23] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\program1\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers4: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\program1\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2019-12-26] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers6: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.tscc] => C:\Windows\SysWOW64\tsccvid.dll [102400 2005-06-15] (TechSmith Corporation) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\rossu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Vzdálená plocha Chrome.lnk -> C:\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) =============

2011-08-18 02:29 - 2011-08-18 02:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll
2010-08-06 12:15 - 2010-08-06 12:15 - 000071680 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzinw12.dll
2010-08-06 12:15 - 2010-08-06 12:15 - 000089600 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzipm12.dll
2020-06-23 09:16 - 2019-09-05 07:00 - 000076800 _____ (Igor Pavlov) [File not signed] C:\program1\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\ssv.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\jp2ssv.dll [2020-06-19] (Oracle America, Inc. -> Oracle Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2020-09-09 20:50 - 000000879 _____ C:\WINDOWS\system32\drivers\etc\hosts

2020-01-03 20:17 - 2020-06-18 20:14 - 000000507 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
192.168.137.1 DESKTOP-1TNCHR7.mshome.net # 2025 6 2 17 18 14 50 479
192.168.137.9 LGwebOSTV.mshome.net # 2020 6 4 25 18 14 50 479

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Users\rossu\AppData\Local\Microsoft\WindowsApps;C:\adb;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rossu\Downloads\en.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run: => "*Restore"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "MalTray"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "UnKIS"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Google Update"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "qBittorrent"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "GoogleDriveSync"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Delete Cached Standalone Update Binary"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Uninstall 20.084.0426.0007\amd64"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Uninstall 20.084.0426.0007"
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\StartupApproved\Run: => "Delete Cached Update Binary"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{F6D04FBB-6F29-4ED7-8521-E5AC13AC1C00}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{D6B15C02-5660-4C31-BF8A-8195AE819FDC}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{FFA0076C-3A5E-4D87-A696-50757BC1FE40}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{0AC1933D-8DC1-4B6D-8F12-13299B4FBF26}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [UDP Query User{5121987A-80E4-4A7A-A75E-7AEF44E4BF1F}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{A13112A7-CC14-4F2E-979C-B9E8312BE5BD}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2F1CFE72-8D3E-46F1-B97E-E8F1E11DBC12}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{BD955DDA-9B9F-41B0-9C10-B977F4845944}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [UDP Query User{2DBEE51B-E9A4-4683-9B07-C0F690E25751}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{76EF3312-F730-49AC-B4A4-89C875566585}C:\users\rossu\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\rossu\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{B991C315-22B1-417A-AB57-B9D330E1FF1E}C:\program1\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program1\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [UDP Query User{A81B9797-F32F-4B21-9850-F54C01E7F4FD}C:\program1\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program1\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [{C58CE780-FD1E-4DA4-A000-16653E48E78A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9AAA7A29-68EF-4B65-B215-95D833B99EDE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2DE12EC3-6679-4F84-B705-3C7679843BAA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9458B3E8-279C-4D66-9CFC-93D07556D8C0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A176B6CB-870D-41FE-9FAE-434367239D02}] => (Allow) C:\program1\teamviewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{976E5E43-FE09-4E46-8E62-EFE8A5F4C52F}] => (Allow) C:\program1\teamviewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{6244E57A-44CE-4F3E-BFAC-7D4E58A76D7C}] => (Allow) C:\program1\teamviewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4CC21D6D-3C74-4F25-B3C9-7599ADFFC030}] => (Allow) C:\program1\teamviewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)

==================== Restore Points =========================

10-09-2020 17:54:03 JRT Pre-Junkware Removal
22-09-2020 12:49:41 JRT Pre-Junkware Removal
22-09-2020 14:11:41 JRT Pre-Junkware Removal
26-09-2020 20:29:48 one drive
26-09-2020 20:46:40 Operace obnovení

==================== Faulty Device Manager Devices ============

Name: Android ADB Interface
Description: Android ADB Interface
Class Guid: {3f966bd9-fa04-4ec5-991c-d326973b5128}
Manufacturer: Xiaomi Technology, Inc.
Service: WinUSB
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (09/24/2020 03:10:04 PM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Službě Windows Search se nepodařilo zpracovat seznam zahrnutých a vyloučených umístění, a to s chybou <30, 0x80040d07, iehistory://{S-1-5-21-4057023617-2345177252-1567271487-1001}/>.

Error: (09/24/2020 02:28:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_stisvc, verze: 10.0.19041.1, časové razítko: 0x7f0c4c00
Název chybujícího modulu: wiaservc.dll, verze: 10.0.19041.450, časové razítko: 0xc31beaff
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000004d651
ID chybujícího procesu: 0x1078
Čas spuštění chybující aplikace: 0x01d6925dd3265b93
Cesta k chybující aplikaci: C:\WINDOWS\system32\svchost.exe
Cesta k chybujícímu modulu: c:\windows\system32\wiaservc.dll
ID zprávy: abaa126b-f8e1-49d7-99de-b7ccb0319752
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (09/22/2020 05:20:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SecHealthUI.exe, verze: 10.0.19041.423, časové razítko: 0xc09a617f
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.488, časové razítko: 0x5b4a3325
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010b3cc
ID chybujícího procesu: 0x1a90
Čas spuštění chybující aplikace: 0x01d690f3e0eb64d7
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: b81a8feb-2c89-4549-be63-67213a391a71
Úplný název chybujícího balíčku: Microsoft.Windows.SecHealthUI_10.0.19041.423_neutral__cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: SecHealthUI

Error: (09/22/2020 02:05:09 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na disk roman (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/22/2020 12:50:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: StartMenuExperienceHost.exe, verze: 0.0.0.0, časové razítko: 0xeab8dc5a
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.488, časové razítko: 0x5b4a3325
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010b3cc
ID chybujícího procesu: 0x1874
Čas spuštění chybující aplikace: 0x01d690ce28686fc2
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: ad6263e5-6e93-4afb-aa6f-7dd1f5828d4b
Úplný název chybujícího balíčku: Microsoft.Windows.StartMenuExperienceHost_10.0.19041.423_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (09/21/2020 08:39:14 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:13 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894

Error: (09/21/2020 08:39:12 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 13) (User: DESKTOP-1TNCHR7)
Description: C:\Users\rossu\AppData\Local\Packages\Microsoft.WindowsFeedbackHub_8wekyb3d8bbwe\TempStateMicrosoft.WindowsFeedbackHub_8wekyb3d8bbwe-2147024894


System errors:
=============
Error: (09/27/2020 07:45:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (09/27/2020 02:40:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (09/26/2020 11:42:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (09/26/2020 09:04:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (09/26/2020 09:04:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba USBSafelyRemoveService neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (09/26/2020 08:58:12 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.

Error: (09/26/2020 08:57:21 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.

Error: (09/26/2020 08:57:11 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.


Windows Defender:
===================================
Date: 2020-09-26 22:29:38.7050000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Vigorf.A
ID: 2147714384
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\AppData\Local\Temp\Rar$EXa5624.484\Loaris Trojan Remover 3.1.25.1470\Setup\Loaris Trojan Remover 3.1.25.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.323.1940.0, AS: 1.323.1940.0, NIS: 1.323.1940.0
Verze modulu: AM: 1.1.17400.5, NIS: 1.1.17400.5

Date: 2020-09-25 11:00:23.6980000Z
Description:
Řízený přístup ke složkám zablokoval pro C:\Users\rossu\OneDrive\Desktop\USB.Safely.Remove.6.3.3.1287.Portable.KaranPC\App\USBSafelyRemove\USBSafelyRemove.exe provádění změn v paměti.
Čas detekce: 2020-09-25T09:00:23.697Z
Uživatel: DESKTOP-1TNCHR7\rossu
Cesta: \Device\CdRom0
Název procesu: C:\Users\rossu\OneDrive\Desktop\USB.Safely.Remove.6.3.3.1287.Portable.KaranPC\App\USBSafelyRemove\USBSafelyRemove.exe
Verze bezpečnostních informací: 1.323.1854.0
Verze modulu: 1.1.17400.5
Verze produktu: 4.18.2008.9

Date: 2020-09-24 19:31:18.9330000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Occamy.C76
ID: 2147756075
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\AppData\Local\Temp\Rar$EXa5624.484\Loaris Trojan Remover 3.1.25.1470\Loaris Trojan Remover 3.1.25.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1TNCHR7\rossu
Název procesu: C:\Program Files (x86)\WinRAR\WinRAR.exe
Verze bezpečnostních informací: AV: 1.323.1803.0, AS: 1.323.1803.0, NIS: 1.323.1803.0
Verze modulu: AM: 1.1.17400.5, NIS: 1.1.17400.5

Date: 2020-09-24 18:32:05.9920000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Vigorf.A
ID: 2147714384
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_D:\torrent\Loaris Trojan Remover 3.1.25.1470\Loaris Trojan Remover 3.1.25.1470\Setup\Loaris Trojan Remover 3.1.25.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1TNCHR7\rossu
Název procesu: C:\Windows\System32\svchost.exe
Verze bezpečnostních informací: AV: 1.323.1803.0, AS: 1.323.1803.0, NIS: 1.323.1803.0
Verze modulu: AM: 1.1.17400.5, NIS: 1.1.17400.5

Date: 2020-09-24 18:31:23.5830000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Occamy.C76
ID: 2147756075
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_D:\torrent\Loaris Trojan Remover 3.1.25.1470\Loaris Trojan Remover 3.1.25.1470\Loaris Trojan Remover 3.1.25.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.323.1803.0, AS: 1.323.1803.0, NIS: 1.323.1803.0
Verze modulu: AM: 1.1.17400.5, NIS: 1.1.17400.5

CodeIntegrity:
===================================

Date: 2020-06-21 13:57:17.4050000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:57:13.1480000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:57:12.7840000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:50.8460000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:49.3210000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:43.7790000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:28.9780000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-21 13:56:26.5710000Z
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\rossu\AppData\Local\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\program1\avast\snxhk.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.03 04/20/2015
Motherboard: Acer Tashigi_BA
Processor: Intel(R) Pentium(R) CPU N3700 @ 1.60GHz
Percentage of memory in use: 64%
Total physical RAM: 4009.76 MB
Available physical RAM: 1420.38 MB
Total Virtual: 8105.76 MB
Available Virtual: 4697.68 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.5 GB) (Free:385.37 GB) NTFS
Drive d: (disk roman) (Fixed) (Total:931.5 GB) (Free:503.57 GB) NTFS

\\?\Volume{22333932-bdb1-4cdc-a0a5-1104af995f8f}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{6faf45d7-9a69-41a3-a4e1-f32d1ff7af2c}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 447.1 GB) (Disk ID: 24898A96)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: A259ECD9)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Prosím o konrolu

Napsal: 28 zář 2020 22:54
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    VirusTotal: C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs
    CMD: type "C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs"
    File: C:\Program Files\qBittorrent\qbittorrent.exe
    File: C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS
    CMD: gpresult /v
    ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer
    ExportKey: HKLM\SOFTWARE\Policies\Mozilla\Firefox
    Folder: C:\program1\Trojan Remover
    CMD: dir /a "C:\program1"
    
    HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\System32\rstrui.exe [274432 2020-05-11] (Microsoft Windows -> Microsoft Corporation)
    HKLM-x32\...\RunOnce: [UnKIS] => wscript.exe //b C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs <==== ATTENTION
    HKLM\...\Policies\Explorer: [DisableLocalMachineRun] 1
    HKLM\...\Policies\Explorer: [DisableCurrentUserRun] 1
    HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 1
    HKLM\...\Policies\Explorer: [DisableCurrentUserRunOnce] 1
    HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\MountPoints2: {4511a448-bebd-11ea-8cae-7077812d0300} - "E:\HiSuiteDownLoader.exe" 
    GroupPolicy: Restriction ? <==== ATTENTION
    FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
    Task: {BB30C668-6216-445B-A9B9-E372D7A063C0} - System32\Tasks\Trojan Remover => C:\program1\Trojan Remover\ltr.exe
    S4 IObitUnlocker; \??\C:\program\IObit Unlocker\IObitUnlocker.sys [X]
    2020-09-05 11:33 - 2020-09-07 21:01 - 000000000 ___HD C:\kleaner.tmp
    ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers1: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} =>  -> No File
    ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} =>  -> No File
    ContextMenuHandlers2: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} =>  -> No File
    ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
    ContextMenuHandlers4: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} =>  -> No File
    ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
    ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} =>  -> No File
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers6: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} =>  -> No File
    ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
    ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} =>  -> No File
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = 
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = 
    HKLM\...\StartupApproved\Run: => "*Restore"
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Prosím o konrolu

Napsal: 29 zář 2020 06:17
od bigmuff
provedeno log tady



Fix result of Farbar Recovery Scan Tool (x64) Version: 23-09-2020
Ran by rossu (29-09-2020 07:03:32) Run:1
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
VirusTotal: C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs
CMD: type "C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs"
File: C:\Program Files\qBittorrent\qbittorrent.exe
File: C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS
CMD: gpresult /v
ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer
ExportKey: HKLM\SOFTWARE\Policies\Mozilla\Firefox
Folder: C:\program1\Trojan Remover
CMD: dir /a "C:\program1"

HKLM\...\RunOnce: [*Restore] => C:\WINDOWS\System32\rstrui.exe [274432 2020-05-11] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32\...\RunOnce: [UnKIS] => wscript.exe //b C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs <==== ATTENTION
HKLM\...\Policies\Explorer: [DisableLocalMachineRun] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRun] 1
HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 1
HKLM\...\Policies\Explorer: [DisableCurrentUserRunOnce] 1
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\...\MountPoints2: {4511a448-bebd-11ea-8cae-7077812d0300} - "E:\HiSuiteDownLoader.exe"
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {BB30C668-6216-445B-A9B9-E372D7A063C0} - System32\Tasks\Trojan Remover => C:\program1\Trojan Remover\ltr.exe
S4 IObitUnlocker; \??\C:\program\IObit Unlocker\IObitUnlocker.sys [X]
2020-09-05 11:33 - 2020-09-07 21:01 - 000000000 ___HD C:\kleaner.tmp
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers2: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => -> No File
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKLM\...\StartupApproved\Run: => "*Restore"

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 375
Average :
Sum : 354891431
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

"VirusTotal: C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs" => not found

========= type "C:\Users\rossu\AppData\Local\Temp\UnKIS.vbs" =========

Syst‚m nem…§e nal‚zt uvedeně soubor.

========= End of CMD: =========


========================= File: C:\Program Files\qBittorrent\qbittorrent.exe ========================

C:\Program Files\qBittorrent\qbittorrent.exe
File not signed
MD5: 69E9BA3C7E8601859E9E064BE69C0656
Creation and modification date: 2020-04-25 01:44 - 2020-04-25 01:44
Size: 020032000
Attributes: ----A
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version:
Product Version:
Copyright:
VirusTotal: https://www.virustotal.com/gui/file/e0c ... 1601104801

====== End of File: ======


========================= File: C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS ========================

C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS
File not signed
MD5: 890CADA2AB7ACF53A5F9CCE7515522A2
Creation and modification date: 2020-08-10 16:11 - 2020-09-09 14:31
Size: 000012464
Attributes: ----A
Company Name: Macrovision Europe Ltd
Internal Name: SECDRV
Original Name: SECDRV.SYS
Product: Security Windows NT
Description: Macrovision SECURITY Driver
File Version: 3.17.000
Product Version: 3.17.000 Windows NT 2002/07/01
Copyright: Copyright (c) 1998-2002 Macrovision Corp.
VirusTotal: https://www.virustotal.com/gui/file/78f ... 1594579348

====== End of File: ======


========= gpresult /v =========


Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
c 2020 Microsoft Corporation. All rights reserved.

Created on ?29.?09.?2020 at 7:04:21



RSOP data for DESKTOP-1TNCHR7\rossu on DESKTOP-1TNCHR7 : Logging Mode
----------------------------------------------------------------------

OS Configuration: Standalone Workstation
OS Version: 10.0.19041
Site Name: N/A
Roaming Profile: N/A
Local Profile: C:\Users\rossu
Connected over a slow link?: No


COMPUTER SETTINGS
------------------

Last time Group Policy was applied: 29.09.2020 at 6:36:12
Group Policy was applied from: N/A
Group Policy slow link threshold: 500 kbps
Domain Name: DESKTOP-1TNCHR7
Domain Type: <Local Computer>

Applied Group Policy Objects
-----------------------------
Mˇstnˇ z sady skupiny

The computer is a part of the following security groups
-------------------------------------------------------
BUILTIN\Administrators
Everyone
NT AUTHORITY\Authenticated Users
Syst‚mov  povinn  Łroveĺ

Resultant Set Of Policies for Computer
---------------------------------------

Software Installations
----------------------
N/A

Startup Scripts
---------------
N/A

Shutdown Scripts
----------------
N/A

Account Policies
----------------
N/A

Audit Policy
------------
N/A

User Rights
-----------
N/A

Security Options
----------------
N/A

N/A

Event Log Settings
------------------
N/A

Restricted Groups
-----------------
N/A

System Services
---------------
N/A

Registry Settings
-----------------
N/A

File System Settings
--------------------
N/A

Public Key Policies
-------------------
N/A

Administrative Templates
------------------------
N/A


USER SETTINGS
--------------

Last time Group Policy was applied: 29.09.2020 at 6:36:23
Group Policy was applied from: N/A
Group Policy slow link threshold: 500 kbps
Domain Name: DESKTOP-1TNCHR7
Domain Type: <Local Computer>

Applied Group Policy Objects
-----------------------------
Mˇstnˇ z sady skupiny

The user is a part of the following security groups
---------------------------------------------------
High Mandatory Level
Everyone
Mˇstnˇ Łźet a źlen skupiny Administrators
BUILTIN\Administrators
BUILTIN\Users
NT AUTHORITY\INTERACTIVE
PüIHLµćENÖ KE KONZOLE
NT AUTHORITY\Authenticated Users
This Organization
rossu@seznam.cz
Mˇstnˇ Łźet
LOCAL
OvŘýenˇ cloudov‚ho Łźtu

The user has the following security privileges
----------------------------------------------

Nepou§ˇvat kontrolu proch zenˇ
Spravovat auditov nˇ a protokol zabezpeźenˇ
Z lohovat soubory a adres ýe
Obnovit soubory a adres ýe
ZmŘnit syst‚mově źas
Vypnout syst‚m
Vynutit vypnutˇ ze vzd len‚ho syst‚mu
Pýevzˇt vlastnictvˇ soubor… a dalçˇch objekt…
Ladit programy
Upravit hodnoty prostýedˇ firmwaru
Profilovat věkon syst‚mu
Profilovat jedině proces
Zvěçit pl novacˇ prioritu
Naźˇtat a uvolĺovat ovladaźe zaýˇzenˇ
Vytvoýit str nkovacˇ soubor
Upravit kv˘ty pamŘti pro proces
Vyjmout poźˇtaź z dokovacˇ stanice
Prov‚st Łlohy Łdr§by svazku
Po ovŘýenˇ zosobnit klienta
Vytv ýet glob lnˇ objekty
ZmŘnit źasov‚ p smo
Vytvoýit symbolick‚ odkazy
Zˇskat token zosobnŘnˇ pro jin‚ho u§ivatele ve stejn‚ relaci
Zvěçit pracovnˇ sadu procesu

Resultant Set Of Policies for User
-----------------------------------

Software Installations
----------------------
N/A

Logon Scripts
-------------
N/A

Logoff Scripts
--------------
N/A

Public Key Policies
-------------------
N/A

Administrative Templates
------------------------
N/A

Folder Redirection
------------------
N/A

Internet Explorer Browser User Interface
----------------------------------------
N/A

Internet Explorer Connection
----------------------------
N/A

Internet Explorer URLs
----------------------
N/A

Internet Explorer Security
--------------------------
N/A

Internet Explorer Programs
--------------------------
N/A

========= End of CMD: =========

================== ExportKey: ===================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"ForceActiveDesktopOn"="0"
"NoActiveDesktop"="1"
"NoActiveDesktopChanges"="1"
"NoRecentDocsHistory"="0"
"DisableLocalMachineRun"="1"
"DisableCurrentUserRun"="1"
"DisableLocalMachineRunOnce"="1"
"DisableCurrentUserRunOnce"="1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]

=== End of ExportKey ===
================== ExportKey: ===================

[HKLM\SOFTWARE\Policies\Mozilla\Firefox]
[HKLM\SOFTWARE\Policies\Mozilla\Firefox\Certificates]

=== End of ExportKey ===

========================= Folder: C:\program1\Trojan Remover ========================

not found.

====== End of Folder: ======


========= dir /a "C:\program1" =========

Volume in drive C has no label.
Volume Serial Number is 1859-A0B8

Directory of C:\program1

24.09.2020 14:53 <DIR> .
24.09.2020 14:53 <DIR> ..
23.09.2020 20:59 <DIR> 4k downloaad
23.06.2020 09:16 <DIR> 7-Zip
26.08.2020 22:14 <DIR> AntiTwin
24.09.2020 14:54 <DIR> CCleaner
26.08.2020 22:24 <DIR> cuspliter
01.09.2020 15:07 <DIR> MyPhoneExplorer
26.09.2020 21:43 <DIR> rajce
30.07.2020 15:07 <DIR> SyncBackFree
29.09.2020 07:03 <DIR> teamviewer
30.05.2020 19:54 <DIR> totalcmd
06.06.2020 18:54 <DIR> VS Revo Group
07.12.2019 12:20 <DIR> winrar
26.08.2020 22:53 <DIR> WYSIWYG Web Builder 15
22.09.2020 18:06 <DIR> ZPS 19 CZ
0 File(s) 0 bytes
16 Dir(s) 415˙001˙554˙944 bytes free

========= End of CMD: =========

"HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\*Restore" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\UnKIS" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisableLocalMachineRun" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisableCurrentUserRun" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisableLocalMachineRunOnce" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisableCurrentUserRunOnce" => removed successfully
HKU\S-1-5-21-4057023617-2345177252-1567271487-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4511a448-bebd-11ea-8cae-7077812d0300} => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BB30C668-6216-445B-A9B9-E372D7A063C0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB30C668-6216-445B-A9B9-E372D7A063C0}" => removed successfully
C:\WINDOWS\System32\Tasks\Trojan Remover => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Trojan Remover" => removed successfully
HKLM\System\CurrentControlSet\Services\IObitUnlocker => removed successfully
IObitUnlocker => service removed successfully
C:\kleaner.tmp => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Loaris Trojan Remover => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\UnLockerMenu => removed successfully
HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\Loaris Trojan Remover => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Loaris Trojan Remover => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\UnLockerMenu => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Loaris Trojan Remover => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UnLockerMenu => removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Local Page"="C:\Windows\System32\blank.htm" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Local Page"="C:\Windows\SysWOW64\blank.htm" => value restored successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\*Restore" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\*Restore" => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10248192 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 121494062 B
Java, Flash, Steam htmlcache => 1128 B
Windows/system/drivers => 5826795 B
Edge => 0 B
Chrome => 453057506 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 29476 B
NetworkService => 286426 B
rossu => 147430952 B

RecycleBin => 3161322 B
EmptyTemp: => 707.2 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 07:06:26 ====

Re: Prosím o konrolu

Napsal: 29 zář 2020 18:16
od Conder
OK. Ako to vyzera s PC? Su este nejake problemy?

Co sa tyka tych problemov s DNS, islo o problemy s nacitavanim stranok? Mozes vyskusat ine DNS servery (nie od poskytovatela internetu), napr. Google DNS alebo Cloudflare DNS. Navod napr. tu: https://www.zive.cz/clanky/jak-a-proc-p ... fault.aspx

Re: Prosím o konrolu

Napsal: 29 zář 2020 21:49
od bigmuff
Vypadá to dobře, na ty DNS se kuknu.

DĚKUJI

Re: Prosím o konrolu

Napsal: 01 říj 2020 21:46
od Conder
Nie je zaco, rad som pomohol :)