Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o preventivní kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Prosím o preventivní kontrolu logu
Dobrý večer, prosím o preventivní kontrolu logu. PC se jeví nestabilně a Norton Antivius každou chvilku zastavuje jakési spojení. Děkuji moc.
Logfile of random's system information tool 1.10 (written by random/random)
Run by hlava at 2023-07-15 19:14:18
Microsoft Windows 11 Home
System drive C: has 102 GB (10%) free of 976 GB
Total RAM: 16179 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:14:22, on 15.07.2023
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.22621.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files (x86)\NetSetMan\netsetman.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Adguard\Adguard.exe
C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe
C:\Program Files\trend micro\hlava.exe
C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O4 - HKLM\..\Run: [NetSetMan] "C:\Program Files (x86)\NetSetMan\netsetman.exe" -h
O4 - HKLM\..\Run: [Adobe CCXProcess] C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [TeamsMachineUninstallerLocalAppData] %LOCALAPPDATA%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
O4 - HKLM\..\Run: [TeamsMachineUninstallerProgramData] %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
O4 - HKLM\..\Run: [Adguard] "C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
O4 - HKLM\..\Run: [nettrafficstat] C:\Program Files (x86)\NetTrafficStat\netmon.exe
O4 - HKCU\..\Run: [PicPick Start] "C:\Program Files (x86)\PicPick\picpick.exe" /startup
O4 - HKCU\..\Run: [f.lux] "C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKCU\..\Run: [electron.app.Fing] C:\Program Files\Fing\Fing.exe --processStart "Fing.exe" --process-start-args "--hidden"
O4 - HKCU\..\Run: [Bonus.SSR.FR15] "C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlansp_c.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: ACC Service (ACCSvc) - Acer Incorporated - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
O23 - Service: Adguard Service - Adguard Software Limited - C:\Program Files (x86)\Adguard\AdguardSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Autodesk Desktop Licensing Service (AdskLicensingService) - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe
O23 - Service: AdskNLM - Flexera - C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe
O23 - Service: Adobe Genuine Software Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Autodesk Access Service Host - Autodesk, Inc. - C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_50284b7 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: DtsApo4Service - Unknown owner - C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe (file missing)
O23 - Service: EABackgroundService - Electronic Arts - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
O23 - Service: EasyAntiCheat - Epic Games, Inc - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Wondershare Driver Install Service help (ElevationService) - Unknown owner - C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\ElevationService.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: @oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Fing.Agent - Unknown owner - C:\Program Files\Fing\resources\extraResources\fingagent.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: FlexNet Licensing Service 64 - Flexera - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Flixmate update service (Flixmate.UpdateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe
O23 - Service: Flixmate service (FlixmateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe
O23 - Service: Freedome Service - F-Secure Corporation - C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe
O23 - Service: NVIDIA FrameView SDK service (FvSvc) - NVIDIA - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe
O23 - Service: Grafana - Unknown owner - C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
O23 - Service: @oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe
O23 - Service: @oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Intel - C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
O23 - Service: @oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service (KAPSService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @oem42.inf,%KillerAnalyticsService%;Killer Analytics Service (Killer Analytics Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe (file missing)
O23 - Service: @oem42.inf,%Killer_Service%;Killer Network Service (Killer Network Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (file missing)
O23 - Service: @oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management (KNDBWM) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
O23 - Service: Macrium Service (MacriumService) - Paramount Software UK Ltd - C:\Program Files\Macrium\Common\MacriumService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Security (NortonSecurity) - NortonLifelock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe
O23 - Service: NSM Service (nsmService) - NetSetMan GmbH - C:\Program Files (x86)\NetSetMan\nsmservice.exe
O23 - Service: Norton WSC Service (nsWscSvc) - NortonLifeLock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: PDF24 - geek software GmbH - C:\Program Files\PDF24\pdf24.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) - arvato digital services llc - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Predator Service (PSSvc) - Acer Incorporated - C:\Program Files\Acer\NitroSense Service\PSSvc.exe
O23 - Service: Quick Access Local Service (QALSvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QALSvc.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QASvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @oem115.inf,%RstMwService.ServiceName%;Intel(R) Storage Middleware Service (RstMwService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Realtek Semiconductor - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\Sgrm\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\Sgrm\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTrap) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\steamservice.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Experience Improvement Program (UEIPSvc) - Acer Incorporated - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe
O23 - Service: SHAREit Hotspot Service (uSHAREitSvc) - SHAREit Technologies Co.Ltd - C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.Service.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Install Assist Service (Wondershare InstallAssist) - Wondershare - C:\ProgramData\Wondershare\Service\InstallAssistService.exe
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Unknown owner - C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\DriverInstall.exe (file missing)
O23 - Service: @oem42.inf,%xTendSoftAPService%;xTendSoftAPService (xTendSoftAPService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe (file missing)
O23 - Service: @oem42.inf,%xTendUtilityService%;xTendUtilityService (xTendUtilityService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (file missing)
--
End of file - 21568 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c0d20138-96fa-4068-a277-3c1aad8f8ea2 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c10740e7-ce58-4074-8416-bad581eb2c79 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-2b3aa78c-641f-4e7c-8dbd-e7f5e6ded309 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fd37861e-1514-4e19-bd95-6528b7c7f4a8 -LifetimeId:e6598c49-0565-4f10-87bd-f725264f8027 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fdee2f93-bd6e-4733-9c64-439d9a4c61b9 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-f1af8a11-6c96-4718-8296-119ce9d3667a -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-cc808607-7685-47fd-a85e-2cad2be76da4 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c6a244d3-f186-4ce9-9383-2d3f3c88dab3 -LifetimeId:bef9d8ff-ac82-49d0-a2c2-beb9eb35f4ff -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k UserProfileService -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k osprivacy -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
dashost.exe {b98041ae-cb89-495c-b6fe95ba569e0ad4}
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DevQueryBroker
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TextInputManagementService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\WLANExt.exe 2248076304480
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {1b4b7bbc-495d-4371-ac21ae30c511b5fa}
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
"C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s WebClient
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe"
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe
"C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe"
"C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe"
"C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe"
"C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
"C:\Program Files\Macrium\Common\MacriumService.exe"
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /s "NortonSecurity" /m "C:\Program Files\Norton Security\Engine\22.23.5.106\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NetSetMan\nsmservice.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
"C:\Program Files\PDF24\pdf24.exe" -service
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\ProgramData\Wondershare\Service\InstallAssistService.exe
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Browser
"C:\Program Files\GrafanaLabs\grafana\bin\grafana-server.exe"
AggregatorHost.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
"xTendUtility.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k WebThreatDefense -p -s webthreatdefsvc
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\Program Files\Acer\NitroSense Service\PSSvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
"C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe"
"C:\Program Files\Acer\Quick Access Service\QASvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s QWAVE
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s seclogon
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation -p -s wcncsvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s DsSvc
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe
"KAPS.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\svchost.exe -k netprofm -p -s netprofm
C:\WINDOWS\system32\AUDIODG.EXE 0x0000000000000538
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Adguard\AdguardSvc.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s XblAuthManager
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
C:\WINDOWS\system32\svchost.exe -k InvSvcGroup -p -s InventorySvc
C:\WINDOWS\system32\svchost.exe -k LocalService -s W32Time
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"fontdrvhost.exe"
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
"C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg NVDisplay.ContainerLocalSystem\Session -c
C:\WINDOWS\System32\vds.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s webthreatdefusersvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEMN.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -admin
"c:\program files\macrium\common\reflectui.exe"
C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup -s UdkUserSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"ctfmon.exe"
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=114.0.5735.199 --initial-client-data=0x160,0x164,0x168,0x13c,0x16c,0x7ffa2217d9e0,0x7ffa2217d9f0,0x7ffa2217da00
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1836 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2136 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2236 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe" -ComServer:Background -Embedding
"C:\Program Files\Acer\NitroSense Service\PSAgent.exe"
"C:\Program Files\Acer\NitroSense Service\PSAdminAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\widgetservice.exe" -RegisterProcessAsComServer -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=8 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729204686 --mojo-platform-channel-handle=4616 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=9 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729243470 --mojo-platform-channel-handle=4816 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=10 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729266950 --mojo-platform-channel-handle=2560 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=11 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729291069 --mojo-platform-channel-handle=5168 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
C:\WINDOWS\system32\cmd.exe /d /c "C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0 < \\.\pipe\chrome.nativeMessaging.in.48fcff8c3a1dd7a3 > \\.\pipe\chrome.nativeMessaging.out.48fcff8c3a1dd7a3
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
"C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=19 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41730583200 --mojo-platform-channel-handle=6440 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=25 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41730662355 --mojo-platform-channel-handle=4844 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-trial-handle=2292,17601856203337280820,13963829766523758658,131072 --disable-features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACACwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-token=10761422815061766251 --mojo-platform-channel-handle=2316 /prefetch:2
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-handle=2292,17601856203337280820,13963829766523758658,131072 --disable-features=VizDisplayCompositor --service-pipe-token=7188536650659502789 --lang=en-US --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=7188536650659502789 --renderer-client-id=3 --mojo-platform-channel-handle=2328 /prefetch:1
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -background
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=22 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41736694128 --mojo-platform-channel-handle=3436 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=30 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41738161513 --mojo-platform-channel-handle=4960 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Windows\System32\cmd.exe" /K %qa% -e "C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\PDF24\pdf24.exe"
"C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=21 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41739687373 --mojo-platform-channel-handle=7412 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe" --minimizedUi
"C:\Program Files\Autodesk\AdskIdentityManager\1.9.18.0/AdskIdentityManager.exe" --process_name Autodesk.IDSDK.DefaultProcess-v2 --server_name Autodesk.IDSDK.DefaultServer-v2
C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\bin\ADPClientService.exe -f C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\JSON
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=20 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41741215971 --mojo-platform-channel-handle=3464 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --appName ada --minimized
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=gpu-process --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1556 --field-trial-handle=1664,i,5462488189904670747,10437594556750267553,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --mojo-platform-channel-handle=1980 --field-trial-handle=1664,i,5462488189904670747,10437594556750267553,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=renderer --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --app-user-model-id=Autodesk.Access --app-path="C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\resources\app.asar" --no-sandbox --no-zygote --enable-blink-features=WebAppWindowControlsOverlay --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=41742060133 --mojo-platform-channel-handle=2512 --field-trial-handle=1664,i,5462488189904670747,10437594556750267553,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s NPSMSvc
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k DevicesFlow -s DevicesFlowUserSvc
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=114.0.5735.201 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=114.0.1823.79 --initial-client-data=0x178,0x17c,0x180,0x154,0x18c,0x7ff9e7b54210,0x7ff9e7b54220,0x7ff9e7b54230
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1984 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2176 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2576 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:8
"c:\program files\macrium\common\reflectmonitor.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe"
"iCloudCKKS-AppX.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --mojo-named-platform-channel-pipe=14912.11580.9580883422253648749
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe" -Embedding
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView /prefetch:7 --monitor-self --monitor-self-argument=--type=crashpad-handler --monitor-self-argument=--user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView --monitor-self-argument=/prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=105.0.5195.127 "--annotation=exe=C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=105.0.1343.53 --initial-client-data=0x114,0x118,0x11c,0xf0,0x128,0x7ff9d54a5850,0x7ff9d54a5860,0x7ff9d54a5870
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView /prefetch:7 --no-periodic-tasks --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=105.0.5195.127 "--annotation=exe=C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=105.0.1343.53 --initial-client-data=0x154,0x18c,0x190,0x168,0x194,0x7ff7b5d5c988,0x7ff7b5d5c998,0x7ff7b5d5c9a8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1972 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:2
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2116 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:3
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=utility --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2416 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --display-capture-permissions-policy-allowed --js-flags=--ms-user-locale= --event-path-policy=0 --first-renderer-process --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc" --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=41746976658 --mojo-platform-channel-handle=3188 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --instant-process --first-renderer-process --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=13 --time-ticks-at-unix-epoch=-1689399241261045 --launch-time-ticks=41747152988 --mojo-platform-channel-handle=5292 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:1
C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\secd.exe -Embedding
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudDrive.exe"
"C:\WINDOWS\System32\LocationNotificationWindows.exe"
"C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt\app\Messenger.exe"
"C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt\app\CrashpadHandlerWindows.exe" --no-rate-limit --no-upload-gzip --database=C:\Users\hlava\AppData\Local\Packages\FACEBOOK.317180B0BB486_8xx8rvfyw5nnt\AC\Messenger\crashpad --metrics-dir=C:\Users\hlava\AppData\Local\Packages\FACEBOOK.317180B0BB486_8xx8rvfyw5nnt\AC\Messenger\crashpad --url=https://www.facebook.com/messenger/desktop/crash_upload --annotation=crash_type=breakpad --initial-client-data=0x51c,0x520,0x524,0x4f8,0x52c,0x7ff72561d748,0x7ff72561d758,0x7ff72561d768
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /c /a /s UserSession
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Program Files\Acer\Quick Access Service\QAAgent.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2327.6.0_x64__cv1g1gvanyjgm\WhatsApp.exe" -ServerName:App.AppXkf4yh0averk473g9chjmra34tgccdh3d.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=15 --time-ticks-at-unix-epoch=-1689399241261045 --launch-time-ticks=41753001661 --mojo-platform-channel-handle=5580 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:1
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxextN.exe" -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=39 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41758735162 --mojo-platform-channel-handle=6856 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=40 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41759694981 --mojo-platform-channel-handle=7964 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\NetSetMan\netsetman.exe" "-h" -multi
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe"
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe" "C:\Program Files\Adobe\Adobe Creative Cloud Experience\js\main.js"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe" "-launchedbyvulcan-3932 C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe"
-BootProc
-BootProc
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=cs --service-sandbox-type=audio --mojo-platform-channel-handle=5964 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:8
"C:\Users\hlava\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe" /LOGON
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
"C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe"
"C:\WINDOWS\system32\taskmgr.exe" /0
"C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe"
"C:\Program Files (x86)\Acer\Care Center\ACCStd.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=60 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41910095248 --mojo-platform-channel-handle=9368 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\uus\AMD64\MoUsoCoreWorker.exe
C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
"C:\WINDOWS\System32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe8_ Global\UsGthrCtrlFltPipeMssGthrPipe8 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\hlava\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe" /default
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe" /frequentupdate SCHEDULEDTASK displaylevel=False
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXm5nbs0wqqh5w1vpp4sj9sswswdn6fyrg.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
=========Mozilla firefox=========
ProfilePath - C:\Users\hlava\AppData\Roaming\Mozilla\Firefox\Profiles\nzn7m1zy.default-release
"web2pdfextension.17@acrobat.adobe.com"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFGuide]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npGuide.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFWeb]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.17.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.18]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho_64.dll [2023-07-10 589248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho.dll [2023-07-10 454592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01 167824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2022-10-12 266240]
"RtkAudUService"=C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe [2021-06-29 1222448]
"Reflect UI"=C:\Program Files\Macrium\Common\ReflectUI.exe [2022-10-30 9922800]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11 509936]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [2022-07-12 6711808]
""= []
"AdobeGCInvoker-1.0"=C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2023-01-19 3503584]
"RunSmartHIDFile"=C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartHIDStart.exe [2020-09-15 524288]
"PDF24"=C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
"Autodesk Access"=C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe [2023-05-02 18088224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PicPick Start"=C:\Program Files (x86)\PicPick\picpick.exe /startup []
"f.lux"=C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe [2023-05-18 1525880]
"GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA"=C:\Program Files\Google\Chrome\Application\chrome.exe [2023-06-24 3233560]
"electron.app.Fing"=C:\Program Files\Fing\Fing.exe --processStart Fing.exe --process-start-args --hidden []
"Bonus.SSR.FR15"=C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe [2020-09-09 1187488]
"MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2023-07-10 4113824]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NetSetMan"=C:\Program Files (x86)\NetSetMan\netsetman.exe [2019-11-08 7447424]
"Adobe CCXProcess"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [2022-09-02 129288]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2019-07-26 145344]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2022-02-07 3146752]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2018-03-27 1069296]
"TeamsMachineUninstallerLocalAppData"=C:\Users\hlava\AppData\Local\Microsoft\Teams\Update.exe [2022-09-11 2454240]
"TeamsMachineUninstallerProgramData"=C:\ProgramData\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default []
"Adguard"=C:\Program Files (x86)\Adguard\Adguard.exe [2023-06-26 7291096]
"nettrafficstat"=C:\Program Files (x86)\NetTrafficStat\netmon.exe []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"DisallowRun"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"aux4"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave6"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux3"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave5"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
======File associations======
.inf - open -
.inf - install -
.ini - open -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
.txt - open -
Logfile of random's system information tool 1.10 (written by random/random)
Run by hlava at 2023-07-15 19:14:18
Microsoft Windows 11 Home
System drive C: has 102 GB (10%) free of 976 GB
Total RAM: 16179 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:14:22, on 15.07.2023
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.22621.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files (x86)\NetSetMan\netsetman.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Adguard\Adguard.exe
C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe
C:\Program Files\trend micro\hlava.exe
C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O4 - HKLM\..\Run: [NetSetMan] "C:\Program Files (x86)\NetSetMan\netsetman.exe" -h
O4 - HKLM\..\Run: [Adobe CCXProcess] C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [TeamsMachineUninstallerLocalAppData] %LOCALAPPDATA%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
O4 - HKLM\..\Run: [TeamsMachineUninstallerProgramData] %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
O4 - HKLM\..\Run: [Adguard] "C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
O4 - HKLM\..\Run: [nettrafficstat] C:\Program Files (x86)\NetTrafficStat\netmon.exe
O4 - HKCU\..\Run: [PicPick Start] "C:\Program Files (x86)\PicPick\picpick.exe" /startup
O4 - HKCU\..\Run: [f.lux] "C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKCU\..\Run: [electron.app.Fing] C:\Program Files\Fing\Fing.exe --processStart "Fing.exe" --process-start-args "--hidden"
O4 - HKCU\..\Run: [Bonus.SSR.FR15] "C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlansp_c.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: ACC Service (ACCSvc) - Acer Incorporated - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
O23 - Service: Adguard Service - Adguard Software Limited - C:\Program Files (x86)\Adguard\AdguardSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Autodesk Desktop Licensing Service (AdskLicensingService) - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe
O23 - Service: AdskNLM - Flexera - C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe
O23 - Service: Adobe Genuine Software Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Autodesk Access Service Host - Autodesk, Inc. - C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_50284b7 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: DtsApo4Service - Unknown owner - C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe (file missing)
O23 - Service: EABackgroundService - Electronic Arts - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
O23 - Service: EasyAntiCheat - Epic Games, Inc - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Wondershare Driver Install Service help (ElevationService) - Unknown owner - C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\ElevationService.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: @oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Fing.Agent - Unknown owner - C:\Program Files\Fing\resources\extraResources\fingagent.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: FlexNet Licensing Service 64 - Flexera - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Flixmate update service (Flixmate.UpdateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe
O23 - Service: Flixmate service (FlixmateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe
O23 - Service: Freedome Service - F-Secure Corporation - C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe
O23 - Service: NVIDIA FrameView SDK service (FvSvc) - NVIDIA - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe
O23 - Service: Grafana - Unknown owner - C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
O23 - Service: @oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe
O23 - Service: @oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Intel - C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
O23 - Service: @oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service (KAPSService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @oem42.inf,%KillerAnalyticsService%;Killer Analytics Service (Killer Analytics Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe (file missing)
O23 - Service: @oem42.inf,%Killer_Service%;Killer Network Service (Killer Network Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (file missing)
O23 - Service: @oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management (KNDBWM) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
O23 - Service: Macrium Service (MacriumService) - Paramount Software UK Ltd - C:\Program Files\Macrium\Common\MacriumService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Security (NortonSecurity) - NortonLifelock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe
O23 - Service: NSM Service (nsmService) - NetSetMan GmbH - C:\Program Files (x86)\NetSetMan\nsmservice.exe
O23 - Service: Norton WSC Service (nsWscSvc) - NortonLifeLock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: PDF24 - geek software GmbH - C:\Program Files\PDF24\pdf24.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) - arvato digital services llc - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Predator Service (PSSvc) - Acer Incorporated - C:\Program Files\Acer\NitroSense Service\PSSvc.exe
O23 - Service: Quick Access Local Service (QALSvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QALSvc.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QASvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @oem115.inf,%RstMwService.ServiceName%;Intel(R) Storage Middleware Service (RstMwService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Realtek Semiconductor - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\Sgrm\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\Sgrm\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTrap) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\steamservice.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Experience Improvement Program (UEIPSvc) - Acer Incorporated - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe
O23 - Service: SHAREit Hotspot Service (uSHAREitSvc) - SHAREit Technologies Co.Ltd - C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.Service.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Install Assist Service (Wondershare InstallAssist) - Wondershare - C:\ProgramData\Wondershare\Service\InstallAssistService.exe
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Unknown owner - C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\DriverInstall.exe (file missing)
O23 - Service: @oem42.inf,%xTendSoftAPService%;xTendSoftAPService (xTendSoftAPService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe (file missing)
O23 - Service: @oem42.inf,%xTendUtilityService%;xTendUtilityService (xTendUtilityService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (file missing)
--
End of file - 21568 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c0d20138-96fa-4068-a277-3c1aad8f8ea2 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c10740e7-ce58-4074-8416-bad581eb2c79 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-2b3aa78c-641f-4e7c-8dbd-e7f5e6ded309 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fd37861e-1514-4e19-bd95-6528b7c7f4a8 -LifetimeId:e6598c49-0565-4f10-87bd-f725264f8027 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fdee2f93-bd6e-4733-9c64-439d9a4c61b9 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-f1af8a11-6c96-4718-8296-119ce9d3667a -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-cc808607-7685-47fd-a85e-2cad2be76da4 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-c6a244d3-f186-4ce9-9383-2d3f3c88dab3 -LifetimeId:bef9d8ff-ac82-49d0-a2c2-beb9eb35f4ff -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k UserProfileService -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k osprivacy -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
dashost.exe {b98041ae-cb89-495c-b6fe95ba569e0ad4}
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DevQueryBroker
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TextInputManagementService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\WLANExt.exe 2248076304480
\??\C:\WINDOWS\system32\conhost.exe 0x4
dashost.exe {1b4b7bbc-495d-4371-ac21ae30c511b5fa}
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
"C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s WebClient
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe"
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe
"C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe"
"C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe"
"C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe"
"C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
"C:\Program Files\Macrium\Common\MacriumService.exe"
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /s "NortonSecurity" /m "C:\Program Files\Norton Security\Engine\22.23.5.106\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NetSetMan\nsmservice.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
"C:\Program Files\PDF24\pdf24.exe" -service
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\ProgramData\Wondershare\Service\InstallAssistService.exe
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Browser
"C:\Program Files\GrafanaLabs\grafana\bin\grafana-server.exe"
AggregatorHost.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
"xTendUtility.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k WebThreatDefense -p -s webthreatdefsvc
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\Program Files\Acer\NitroSense Service\PSSvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
"C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe"
"C:\Program Files\Acer\Quick Access Service\QASvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s QWAVE
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s seclogon
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation -p -s wcncsvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s DsSvc
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe
"KAPS.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\svchost.exe -k netprofm -p -s netprofm
C:\WINDOWS\system32\AUDIODG.EXE 0x0000000000000538
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\Program Files (x86)\Adguard\AdguardSvc.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s XblAuthManager
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
C:\WINDOWS\system32\svchost.exe -k InvSvcGroup -p -s InventorySvc
C:\WINDOWS\system32\svchost.exe -k LocalService -s W32Time
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"fontdrvhost.exe"
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
"C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg NVDisplay.ContainerLocalSystem\Session -c
C:\WINDOWS\System32\vds.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s webthreatdefusersvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEMN.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -admin
"c:\program files\macrium\common\reflectui.exe"
C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup -s UdkUserSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"ctfmon.exe"
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=114.0.5735.199 --initial-client-data=0x160,0x164,0x168,0x13c,0x16c,0x7ffa2217d9e0,0x7ffa2217d9f0,0x7ffa2217da00
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1836 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2136 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2236 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe" -ComServer:Background -Embedding
"C:\Program Files\Acer\NitroSense Service\PSAgent.exe"
"C:\Program Files\Acer\NitroSense Service\PSAdminAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\widgetservice.exe" -RegisterProcessAsComServer -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=8 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729204686 --mojo-platform-channel-handle=4616 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=9 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729243470 --mojo-platform-channel-handle=4816 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=10 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729266950 --mojo-platform-channel-handle=2560 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=11 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41729291069 --mojo-platform-channel-handle=5168 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
C:\WINDOWS\system32\cmd.exe /d /c "C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0 < \\.\pipe\chrome.nativeMessaging.in.48fcff8c3a1dd7a3 > \\.\pipe\chrome.nativeMessaging.out.48fcff8c3a1dd7a3
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv
"C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=19 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41730583200 --mojo-platform-channel-handle=6440 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=25 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41730662355 --mojo-platform-channel-handle=4844 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-trial-handle=2292,17601856203337280820,13963829766523758658,131072 --disable-features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACACwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-token=10761422815061766251 --mojo-platform-channel-handle=2316 /prefetch:2
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-handle=2292,17601856203337280820,13963829766523758658,131072 --disable-features=VizDisplayCompositor --service-pipe-token=7188536650659502789 --lang=en-US --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=7188536650659502789 --renderer-client-id=3 --mojo-platform-channel-handle=2328 /prefetch:1
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -background
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=22 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41736694128 --mojo-platform-channel-handle=3436 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=30 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41738161513 --mojo-platform-channel-handle=4960 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Windows\System32\cmd.exe" /K %qa% -e "C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\PDF24\pdf24.exe"
"C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=21 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41739687373 --mojo-platform-channel-handle=7412 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe" --minimizedUi
"C:\Program Files\Autodesk\AdskIdentityManager\1.9.18.0/AdskIdentityManager.exe" --process_name Autodesk.IDSDK.DefaultProcess-v2 --server_name Autodesk.IDSDK.DefaultServer-v2
C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\bin\ADPClientService.exe -f C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\JSON
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=20 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41741215971 --mojo-platform-channel-handle=3464 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --appName ada --minimized
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=gpu-process --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1556 --field-trial-handle=1664,i,5462488189904670747,10437594556750267553,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --mojo-platform-channel-handle=1980 --field-trial-handle=1664,i,5462488189904670747,10437594556750267553,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=renderer --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --app-user-model-id=Autodesk.Access --app-path="C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\resources\app.asar" --no-sandbox --no-zygote --enable-blink-features=WebAppWindowControlsOverlay --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=41742060133 --mojo-platform-channel-handle=2512 --field-trial-handle=1664,i,5462488189904670747,10437594556750267553,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s NPSMSvc
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k DevicesFlow -s DevicesFlowUserSvc
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=114.0.5735.201 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=114.0.1823.79 --initial-client-data=0x178,0x17c,0x180,0x154,0x18c,0x7ff9e7b54210,0x7ff9e7b54220,0x7ff9e7b54230
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1984 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2176 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2576 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:8
"c:\program files\macrium\common\reflectmonitor.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe"
"iCloudCKKS-AppX.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --mojo-named-platform-channel-pipe=14912.11580.9580883422253648749
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe" -Embedding
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView /prefetch:7 --monitor-self --monitor-self-argument=--type=crashpad-handler --monitor-self-argument=--user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView --monitor-self-argument=/prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=105.0.5195.127 "--annotation=exe=C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=105.0.1343.53 --initial-client-data=0x114,0x118,0x11c,0xf0,0x128,0x7ff9d54a5850,0x7ff9d54a5860,0x7ff9d54a5870
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView /prefetch:7 --no-periodic-tasks --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=105.0.5195.127 "--annotation=exe=C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=105.0.1343.53 --initial-client-data=0x154,0x18c,0x190,0x168,0x194,0x7ff7b5d5c988,0x7ff7b5d5c998,0x7ff7b5d5c9a8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1972 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:2
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2116 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:3
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=utility --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2416 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --display-capture-permissions-policy-allowed --js-flags=--ms-user-locale= --event-path-policy=0 --first-renderer-process --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc" --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=41746976658 --mojo-platform-channel-handle=3188 --field-trial-handle=2036,i,6140452628797218221,387421404027676231,131072 /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --instant-process --first-renderer-process --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=13 --time-ticks-at-unix-epoch=-1689399241261045 --launch-time-ticks=41747152988 --mojo-platform-channel-handle=5292 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:1
C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\secd.exe -Embedding
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudDrive.exe"
"C:\WINDOWS\System32\LocationNotificationWindows.exe"
"C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt\app\Messenger.exe"
"C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt\app\CrashpadHandlerWindows.exe" --no-rate-limit --no-upload-gzip --database=C:\Users\hlava\AppData\Local\Packages\FACEBOOK.317180B0BB486_8xx8rvfyw5nnt\AC\Messenger\crashpad --metrics-dir=C:\Users\hlava\AppData\Local\Packages\FACEBOOK.317180B0BB486_8xx8rvfyw5nnt\AC\Messenger\crashpad --url=https://www.facebook.com/messenger/desktop/crash_upload --annotation=crash_type=breakpad --initial-client-data=0x51c,0x520,0x524,0x4f8,0x52c,0x7ff72561d748,0x7ff72561d758,0x7ff72561d768
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /c /a /s UserSession
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Program Files\Acer\Quick Access Service\QAAgent.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2327.6.0_x64__cv1g1gvanyjgm\WhatsApp.exe" -ServerName:App.AppXkf4yh0averk473g9chjmra34tgccdh3d.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=15 --time-ticks-at-unix-epoch=-1689399241261045 --launch-time-ticks=41753001661 --mojo-platform-channel-handle=5580 --field-trial-handle=1772,i,1259073859324692092,16701615058638638973,262144 /prefetch:1
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxextN.exe" -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=39 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41758735162 --mojo-platform-channel-handle=6856 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=40 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41759694981 --mojo-platform-channel-handle=7964 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
C:\WINDOWS\System32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\NetSetMan\netsetman.exe" "-h" -multi
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe"
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe" "C:\Program Files\Adobe\Adobe Creative Cloud Experience\js\main.js"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe" "-launchedbyvulcan-3932 C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe"
-BootProc
-BootProc
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=cs --service-sandbox-type=audio --mojo-platform-channel-handle=5964 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:8
"C:\Users\hlava\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe" /LOGON
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
"C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe"
"C:\WINDOWS\system32\taskmgr.exe" /0
"C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe"
"C:\Program Files (x86)\Acer\Care Center\ACCStd.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=60 --time-ticks-at-unix-epoch=-1689399241265026 --launch-time-ticks=41910095248 --mojo-platform-channel-handle=9368 --field-trial-handle=1832,i,1893906143649714125,741450319126305080,262144 /prefetch:1
"C:\Windows\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
C:\WINDOWS\uus\AMD64\MoUsoCoreWorker.exe
C:\Windows\System32\oobe\UserOOBEBroker.exe -Embedding
"C:\WINDOWS\System32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe8_ Global\UsGthrCtrlFltPipeMssGthrPipe8 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\hlava\Downloads\RSITx64.exe"
"C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe" /default
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe" /frequentupdate SCHEDULEDTASK displaylevel=False
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXm5nbs0wqqh5w1vpp4sj9sswswdn6fyrg.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
=========Mozilla firefox=========
ProfilePath - C:\Users\hlava\AppData\Roaming\Mozilla\Firefox\Profiles\nzn7m1zy.default-release
"web2pdfextension.17@acrobat.adobe.com"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFGuide]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npGuide.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFWeb]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.17.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.18]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho_64.dll [2023-07-10 589248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho.dll [2023-07-10 454592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01 167824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2022-10-12 266240]
"RtkAudUService"=C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe [2021-06-29 1222448]
"Reflect UI"=C:\Program Files\Macrium\Common\ReflectUI.exe [2022-10-30 9922800]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11 509936]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [2022-07-12 6711808]
""= []
"AdobeGCInvoker-1.0"=C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2023-01-19 3503584]
"RunSmartHIDFile"=C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartHIDStart.exe [2020-09-15 524288]
"PDF24"=C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
"Autodesk Access"=C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe [2023-05-02 18088224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PicPick Start"=C:\Program Files (x86)\PicPick\picpick.exe /startup []
"f.lux"=C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe [2023-05-18 1525880]
"GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA"=C:\Program Files\Google\Chrome\Application\chrome.exe [2023-06-24 3233560]
"electron.app.Fing"=C:\Program Files\Fing\Fing.exe --processStart Fing.exe --process-start-args --hidden []
"Bonus.SSR.FR15"=C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe [2020-09-09 1187488]
"MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2023-07-10 4113824]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NetSetMan"=C:\Program Files (x86)\NetSetMan\netsetman.exe [2019-11-08 7447424]
"Adobe CCXProcess"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [2022-09-02 129288]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2019-07-26 145344]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2022-02-07 3146752]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2018-03-27 1069296]
"TeamsMachineUninstallerLocalAppData"=C:\Users\hlava\AppData\Local\Microsoft\Teams\Update.exe [2022-09-11 2454240]
"TeamsMachineUninstallerProgramData"=C:\ProgramData\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default []
"Adguard"=C:\Program Files (x86)\Adguard\Adguard.exe [2023-06-26 7291096]
"nettrafficstat"=C:\Program Files (x86)\NetTrafficStat\netmon.exe []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"DisallowRun"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"aux4"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave6"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux3"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave5"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
======File associations======
.inf - open -
.inf - install -
.ini - open -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
.txt - open -
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
======List of files/folders created in the last 1 month======
2023-07-15 19:14:18 ----D---- C:\rsit
2023-07-15 19:14:18 ----D---- C:\Program Files\trend micro
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfh009.dat
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfh005.dat
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfc009.dat
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfc005.dat
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\wmp.dll
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\ntkrla57.exe
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\HoloSHExtensions.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\msvproc.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfsvr.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfds.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drttransport.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drtprov.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drt.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfps.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\MFPlay.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfcore.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\browser.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\msdt.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2023-07-11 23:55:01 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\jscript9Legacy.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassvcs.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iashlpr.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iasdatastore.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dswave.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmusic.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmsynth.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmstyle.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmscript.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmloader.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmime.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmcompos.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmband.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcspoffln.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\tsgqec.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\SIHClient.exe
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drttransport.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drtprov.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drt.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\CPFilters.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcLayers.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcGenral.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_Troubleshoot.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\rdpclip.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\msdt.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\certutil.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\WlanMM.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\offreg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\odbc32.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nshwfp.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nltest.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msimsg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msi.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\certreq.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\wshrm.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\jscript9Legacy.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\edgehtml.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\windlp.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiatrace.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiaservc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiarpc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\werconcpl.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\sti.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassvcs.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassdo.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iashlpr.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iasdatastore.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\EsclWiaDriver.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\xolehlp.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\UsbSettingsHandlers.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\mtxclu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtctm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcspoffln.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtclog.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtckrm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtc.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dswave.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmusic.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmsynth.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmloader.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\DisplaySwitch.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computestorage.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computecore.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatIntelligence.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatExperienceManager.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\SFAPM.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdshext.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdengin2.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdclt.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\upnphost.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcbloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\skci.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\RDXService.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvix64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvax64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\msaatext.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\FrameServerMonitorClient.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\runonce.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\proquota.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmcfgutils.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userinit.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schedcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\tdhres.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\negoexts.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\MrmDeploy.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexerCore.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\InkObjCore.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\crypttpmeksvc.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\aadauthhelper.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\IDStore.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdprt.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadWamExtension.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\windowsudk.shellcommon.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\twext.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscproxystub.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscisvif.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscadminui.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SystemSettings.DataModel.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\secproc.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\profapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\fcon.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsound.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsdmo.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\umb.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppobjs.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppcext.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppc.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ServicingUAPI.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ngctasks.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\tpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\sppsvc.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\rmttpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\immersivetpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\certprop.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\twext.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\shell32.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\rtm.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ntshrui.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\mprdim.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtprio.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\AuthExt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\VideoHandlers.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Keyboard.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_IME.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_HumanPresence.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Camera.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlaapi.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netshell.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\msaatext.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\FrameServerMonitorClient.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\AudioHandlers.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\WLanConn.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\SetProxyCredential.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\NetworkIcon.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\ncsi.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\urlmon.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\runonce.exe
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\msIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LockController.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\lapscsp.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\laps.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\iertutil.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\edgeIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\proquota.exe
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profsvcext.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profprov.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpsvc.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpapi.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\fonts\StaticCache.dat
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\policymanager.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\omadmclient.exe
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\LogonController.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\crashdmp.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmcfgutils.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\cryptcatsvc.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovs.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovhost.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\configmanager2.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\uDWM.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\netlogon.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dwmcore.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dcomp.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\winresume.exe
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\cxcredprov.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\comsvcs.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\SRH.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\osk.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\wkscli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcutil.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcapi.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userinit.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userenv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\srvcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\schedcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\runexehelper.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsasrv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsaadt.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dtdump.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagnosticdataquery.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dab.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\wldp.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\schannel.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samsrv.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samlib.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcss.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\RpcEpMap.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profsvc.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profapi.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\offlinesam.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\logoncli.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\keyiso.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\crypt32.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcrypt.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\usermgr.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\winload.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntdll.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\kdnet.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ci.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\winlogon.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\http.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\WinREAgent.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Pen.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\QuietHours.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\NotificationController.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\InputCloudStore.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\Facilitator.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2023-07-11 23:54:13 ----A---- C:\WINDOWS\system32\ShellAppRuntime.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.XamlInputViewHost.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Taskbar.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wups2.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuauclt.exe
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuapi.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\AppResolver.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvcimpl.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvc.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbd.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\SHCore.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\EthernetMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\winbio.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32u.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32kfull.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32k.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wcimage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wc_storage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\tdhres.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\SensorService.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\daxexec.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\container.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\BioCredProv.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\user32.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\tquery.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\SearchIndexerCore.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\NPSM.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputService.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\win32kbase.sys
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssvp.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssrch.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssprxy.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssph.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssitlb.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\msscntrs.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\d3d11.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\rdpbase.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\InkObjCore.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\doclient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\crypttpmeksvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadauthhelper.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcrecovery.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cryptngc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdprt.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdp.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdd.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\negoexts.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\CapabilityAccessHandlers.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\WpnUserService.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnservice.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpncore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnapps.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\wintrust.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\profext.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\MrmDeploy.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicPS.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\kernel32.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallService.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadWamExtension.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadtb.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudkservices.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudk.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\twinui.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\msctf.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\lsm.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\IDStore.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\TabSvc.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\StartTileData.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wlanapi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WiredNetworkCSP.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WcnApi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SystemSettings.DataModel.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_OneCore_PowerAndSleep.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3svc.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3msm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3mm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3api.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\explorer.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscisvif.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscapi.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscadminui.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wpx.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\win32spl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolsv.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolss.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrintIsolationProxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelineprxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrinterCleanupTask.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\localspl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\LanguageOverlayServer.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\hspfw.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\browcli.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\splwow64.exe
2023-07-11 23:53:52 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\cmimcext.sys
2023-07-11 23:53:50 ----A---- C:\WINDOWS\system32\drivers\monitor.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\AcxHdAudio.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\CloudRestoreLauncher.dll
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\bcdedit.exe
2023-07-11 23:53:48 ----A---- C:\WINDOWS\bfsvc.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SettingsHandlers_Backup.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\ManageCI.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\fcon.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\energyprov.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsound.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsdmo.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiosrv.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioSes.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEng.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiodg.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\system32\poqexec.exe
2023-07-11 23:49:00 ----HD---- C:\$WinREAgent
2023-07-09 13:35:40 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2023-07-03 10:39:13 ----D---- C:\ProgramData\Blizzard Entertainment
2023-07-03 07:26:50 ----D---- C:\ProgramData\Transmission
2023-07-03 07:21:32 ----D---- C:\Users\hlava\AppData\Roaming\ReflectionNetworkLauncher
2023-07-02 05:56:48 ----A---- C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS
2023-07-02 05:56:31 ----D---- C:\ProgramData\FPSMonitor
2023-07-02 05:56:31 ----D---- C:\Program Files (x86)\FPS Monitor
2023-06-27 14:29:22 ----D---- C:\Users\hlava\AppData\Roaming\DOGE
2023-06-25 20:20:58 ----D---- C:\ProgramData\Battle.net
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo-1-999-0-0-0.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1-999-0-0-0.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\OpenCL.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\nvofapi.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvofapi64.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvml.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvidia-smi.exe
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvdebugdump.exe
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcudadebugger.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcuda.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcpl.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\MCU.exe
======List of files/folders modified in the last 1 month======
2023-07-15 19:14:22 ----D---- C:\WINDOWS\Temp
2023-07-15 19:14:18 ----RD---- C:\Program Files
2023-07-15 19:14:15 ----D---- C:\WINDOWS\Prefetch
2023-07-15 19:10:24 ----D---- C:\ProgramData\Adguard
2023-07-15 19:10:22 ----D---- C:\WINDOWS\system32\sru
2023-07-15 19:09:41 ----D---- C:\ProgramData\boost_interprocess
2023-07-15 19:09:25 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2023-07-15 19:09:23 ----D---- C:\WINDOWS\SystemTemp
2023-07-15 19:09:22 ----D---- C:\Program Files (x86)\Google
2023-07-15 19:09:21 ----D---- C:\ProgramData\NVIDIA
2023-07-15 15:44:21 ----D---- C:\WINDOWS\AppReadiness
2023-07-15 14:18:47 ----D---- C:\WINDOWS\system32\SleepStudy
2023-07-15 12:54:47 ----D---- C:\Program Files (x86)\Steam
2023-07-15 11:34:23 ----SHD---- C:\System Volume Information
2023-07-15 11:34:03 ----RD---- C:\WINDOWS\Microsoft.NET
2023-07-15 09:53:39 ----D---- C:\Program Files (x86)\Adguard
2023-07-15 09:42:42 ----D---- C:\Users\hlava\AppData\Roaming\PrusaSlicer
2023-07-15 07:41:48 ----D---- C:\WINDOWS\System32
2023-07-15 07:41:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2023-07-15 07:41:47 ----D---- C:\WINDOWS\INF
2023-07-15 07:34:18 ----D---- C:\WINDOWS\system32\catroot2
2023-07-15 07:34:13 ----HD---- C:\Intel
2023-07-15 07:34:13 ----D---- C:\WINDOWS\ServiceState
2023-07-15 07:34:11 ----ASH---- C:\DumpStack.log.tmp
2023-07-15 05:29:30 ----D---- C:\WINDOWS\system32\Tasks
2023-07-14 17:10:04 ----D---- C:\WINDOWS\system32\CatRoot
2023-07-14 16:20:36 ----HD---- C:\Program Files\WindowsApps
2023-07-13 04:23:47 ----D---- C:\WINDOWS\system32\LogFiles
2023-07-13 04:21:44 ----D---- C:\WINDOWS\Minidump
2023-07-12 21:10:01 ----RD---- C:\WINDOWS\assembly
2023-07-12 19:31:45 ----D---- C:\WINDOWS\system32\config
2023-07-12 19:31:12 ----RD---- C:\Program Files (x86)
2023-07-12 13:57:29 ----D---- C:\WINDOWS\WinSxS
2023-07-12 13:56:54 ----D---- C:\Windows
2023-07-12 13:56:48 ----D---- C:\WINDOWS\system32\DriverStore
2023-07-12 13:56:34 ----D---- C:\WINDOWS\system32\drivers
2023-07-12 13:56:06 ----D---- C:\WINDOWS\UUS
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\wbem
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\setup
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\migration
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SysWOW64
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\en-US
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\cs-CZ
2023-07-12 13:56:05 ----D---- C:\WINDOWS\SystemResources
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\wbem
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Sgrm
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\setup
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\oobe
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migwiz
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migration
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\DDFs
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Boot
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\appraiser
2023-07-12 13:56:04 ----RSD---- C:\WINDOWS\Fonts
2023-07-12 13:56:04 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2023-07-12 13:56:04 ----D---- C:\WINDOWS\ShellComponents
2023-07-12 13:56:04 ----D---- C:\WINDOWS\bcastdvr
2023-07-12 13:56:04 ----D---- C:\WINDOWS\apppatch
2023-07-12 13:56:04 ----D---- C:\Program Files\Internet Explorer
2023-07-12 13:56:04 ----D---- C:\Program Files (x86)\Internet Explorer
2023-07-12 13:56:03 ----D---- C:\WINDOWS\system32\CodeIntegrity
2023-07-11 23:58:09 ----D---- C:\WINDOWS\CbsTemp
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2023-07-11 23:51:07 ----HD---- C:\Recovery
2023-07-11 23:41:23 ----D---- C:\WINDOWS\system32\MRT
2023-07-11 23:41:08 ----AC---- C:\WINDOWS\system32\MRT.exe
2023-07-11 23:41:02 ----SHD---- C:\WINDOWS\Installer
2023-07-11 23:41:02 ----D---- C:\ProgramData\Package Cache
2023-07-11 23:40:48 ----D---- C:\Program Files\dotnet
2023-07-11 11:12:11 ----D---- C:\WINDOWS\servicing
2023-07-09 06:28:38 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent Web
2023-07-08 23:54:31 ----D---- C:\WINDOWS\system32\drivers\wd
2023-07-08 23:54:26 ----D---- C:\Program Files\Windows Defender
2023-07-03 10:39:13 ----HD---- C:\ProgramData
2023-07-03 09:07:13 ----D---- C:\WINDOWS\LiveKernelReports
2023-07-02 12:29:39 ----D---- C:\Users\hlava\AppData\Roaming\Autodesk
2023-07-01 22:09:29 ----D---- C:\Users\hlava\AppData\Roaming\Kodi
2023-07-01 08:39:19 ----D---- C:\Program Files\Microsoft Office
2023-06-30 08:34:14 ----D---- C:\Users\hlava\AppData\Roaming\vlc
2023-06-30 06:20:30 ----D---- C:\Program Files\Prusa3D
2023-06-30 06:19:40 ----D---- C:\Users\hlava\AppData\Roaming\Prusa Research
2023-06-25 22:50:13 ----D---- C:\Program Files\Common Files\AV
2023-06-25 22:18:04 ----D---- C:\WINDOWS\system32\drivers\NGCx64
2023-06-24 21:51:24 ----D---- C:\Users\hlava\AppData\Roaming\Loxone
2023-06-21 15:29:46 ----D---- C:\ProgramData\Loxone
2023-06-19 21:23:10 ----D---- C:\Program Files (x86)\DODI-Repacks
2023-06-19 17:51:23 ----D---- C:\WINDOWS\system32\SecurityHealth
2023-06-18 14:49:23 ----D---- C:\ProgramData\NVIDIA Corporation
2023-06-18 14:49:09 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2023-06-18 14:49:05 ----D---- C:\Program Files\NVIDIA Corporation
2023-06-18 12:09:11 ----D---- C:\WINDOWS\Logs
2023-06-17 14:41:49 ----D---- C:\WINDOWS\WUModels
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\sppui
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\en-US
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\Dism
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2023-06-17 14:41:48 ----D---- C:\WINDOWS\system32\WinMetadata
2023-06-17 14:41:48 ----D---- C:\WINDOWS\system32\sppui
2023-06-17 14:41:47 ----D---- C:\WINDOWS\system32\nl-NL
2023-06-17 14:41:47 ----D---- C:\WINDOWS\system32\fr-FR
2023-06-17 14:41:47 ----D---- C:\WINDOWS\system32\Dism
2023-06-17 14:41:46 ----D---- C:\WINDOWS\ShellExperiences
2023-06-17 14:41:46 ----D---- C:\Program Files\Windows Media Player
2023-06-16 05:47:20 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 HHDNLWFH;@oem173.inf,%HelperFilt.SvcDesc%;HHD Software Network Monitor Helper Driver; C:\WINDOWS\system32\DRIVERS\hhdnethp64.sys [2022-01-14 39024]
R0 iaStorVD;@oem115.inf,%iaStorVD.ServiceName%;Intel(R) Chipset VMD RST Controller service; C:\WINDOWS\System32\drivers\iaStorVD.sys [2021-08-26 1544912]
R0 IntelPMT;@intelpmt.inf,%IntelPMT.SVCDESC%;Intel(R) Platform Monitoring Technology Service; C:\WINDOWS\System32\drivers\IntelPMT.sys [2023-04-12 91688]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2022-05-07 87392]
R1 adgnetworkwfpdrv;adgnetworkwfpdrv; C:\WINDOWS\system32\drivers\adgnetworkwfpdrv.sys [2023-02-09 88112]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2022-05-07 81920]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2022-05-07 116056]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\BASHDefs\20230713.001\BHDrvx64.sys [2023-03-05 1696736]
R1 ccSet_NGC;NGC Settings Manager; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\ccSetx64.sys [2023-06-14 198280]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2022-05-07 173424]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2022-09-10 527864]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2022-05-07 90112]
R1 HHDNLWF;@oem173.inf,%ClasFilt.SvcDesc%;HHD Software Network Monitor Filter Driver; C:\WINDOWS\system32\DRIVERS\hhdnet64.sys [2022-01-14 52848]
R1 HWiNFO_172;HWiNFO Kernel Driver (v172); \??\C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS [2023-07-02 56888]
R1 IDSVia64;IDSVia64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\IPSDefs\20230714.062\IDSvia64.sys [2023-02-21 1527816]
R1 npcap;@oem172.inf,%NPF_Desc_Standard%;Npcap Packet Driver (NPCAP); C:\WINDOWS\system32\DRIVERS\npcap.sys [2021-08-30 71736]
R2 bfs;@%systemroot%\system32\drivers\bfs.sys,-100; C:\WINDOWS\system32\drivers\bfs.sys [2023-06-14 91504]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2023-01-19 173424]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2023-07-11 565248]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2022-10-12 90112]
R3 AcerAirplaneModeController;@oem164.inf,%ServiceDesc%;Acer Airplane Mode Controller; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [2022-06-02 36800]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2023-07-11 2088960]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2023-07-11 139264]
R3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2022-05-07 90112]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2022-05-07 99672]
R3 dptf_acpi;dptf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_a5bac3087ca5f8d5\dptf_acpi.sys [2020-08-26 76968]
R3 dptf_cpu;dptf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\dptf_cpu.sys [2020-08-26 73384]
R3 dtlitescsibus;@oem119.inf,%DisplayName%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2022-08-24 42256]
R3 dtliteusbbus;@oem35.inf,%DisplayName%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2022-08-24 63696]
R3 e2kw10x64;@oem18.inf,%EthDriver.Service.DispName%;Killer E2500/E2600 NDIS 6.40 64-bit Driver; C:\WINDOWS\System32\drivers\e2kw10x64.sys [2020-09-01 1146456]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2022-10-21 159720]
R3 esif_lf;esif_lf; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_lf.sys [2020-08-26 420008]
R3 fsfreedomewintun;@oem182.inf,%fsfreedomewintun.Name%;fsfreedomewintun; C:\WINDOWS\System32\drivers\fsfreedomewintun.sys [2023-03-07 31248]
R3 gFilterMouUsb;@oem68.inf,%gFilterMouUsb.SvcDesc%;SmartGenius Mouse Driver; C:\WINDOWS\System32\drivers\gFilterMouUsb.sys [2020-09-15 30568]
R3 HidEventFilter;@oem57.inf,%HidEventFilter%;Intel(R) HID Event Filter; C:\WINDOWS\System32\DriverStore\FileRepository\hideventfilter.inf_amd64_010863cba57434d0\HidEventFilter.sys [2020-09-18 86680]
R3 hvservice;@hvservice.inf,%hvservice.SvcDesc%;Microsoft Hypervisor Service Driver; C:\WINDOWS\System32\drivers\hvservice.sys [2022-10-12 91472]
R3 iaLPSS2_GPIO2_TGL;@oem21.inf,%iaLPSS2_GPIO2_TGL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_d0e63c4e3754f42f\iaLPSS2_GPIO2_TGL.sys [2020-08-12 128152]
R3 iaLPSS2_I2C_TGL;@oem91.inf,%iaLPSS2_I2C_TGL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_ab87bf17a571e523\iaLPSS2_I2C_TGL.sys [2020-08-12 197272]
R3 ibtusb;@oem117.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\System32\DriverStore\FileRepository\ibtusb.inf_amd64_723c8f13c52715bb\ibtusb.sys [2021-03-10 4887016]
R3 igfxn;igfxn; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\igdkmdn64.sys [2021-06-17 28658760]
R3 IntcAudioBus;@oem118.inf,%IntcAudioBus.SVCDESC%;Sběrnice technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcaudiobus.inf_amd64_a5bfc4a9cc7fdf5a\IntcAudioBus.sys [2022-01-26 311872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-06-29 6008928]
R3 IntcBTAu;@oem148.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro Bluetooth® Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcbtau.inf_amd64_42d4c8c359e6d3fb\IntcBTAu.sys [2022-01-26 858176]
R3 IntcDMic;@oem40.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro digitální mikrofony; C:\WINDOWS\System32\DriverStore\FileRepository\intcdmic.inf_amd64_b1529a2a6789f39e\IntcDMic.sys [2022-01-26 745536]
R3 IntcOED;@oem29.inf,%IntcOED.SVCDESC%;OED technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\IntcOED.sys [2022-01-26 1154624]
R3 IntcUSB;@oem64.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro USB Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_2cc98897d8dddf62\IntcUSB.sys [2022-01-26 882280]
R3 IntelGNA;@oem122.inf,%IntelGNA.SVCDESC%;Intel(R) GNA Scoring Accelerator service; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [2020-11-06 84880]
R3 KfeCoSvc;@oem42.inf,%RivetCoServiceName%;KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [2020-11-04 201096]
R3 MEIx64;@oem143.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_e9ffe3f2557dd9e9\x64\TeeDriverW10x64.sys [2020-10-26 300040]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-200; C:\WINDOWS\system32\drivers\msquic.sys [2023-04-12 419152]
R3 Netwtw10;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 10 64 Bit; C:\WINDOWS\System32\drivers\Netwtw10.sys [2021-03-11 5287784]
R3 nhi;@oem31.inf,%TbtBusDrv_SVCDESC%;Thunderbolt(TM) Controller; C:\WINDOWS\System32\drivers\TbtBusDrv.sys [2020-09-27 2876264]
R3 NVHDA;@oem186.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2023-06-09 121880]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvlddmkm.sys [2023-06-09 59008024]
R3 NvModuleTracker;@oem158.inf,%ServiceName%;NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [2022-07-14 45656]
R3 nvpcf;@oem185.inf,%nvpcf.SVCDESC%;NVPCF Service; C:\WINDOWS\System32\drivers\nvpcf.sys [2023-06-09 240152]
R3 nvvad_WaveExtensible;@oem183.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2022-10-14 59928]
R3 nvvhci;@oem159.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2022-07-14 60112]
S0 AppleSSD;@AppleSSD.inf,%DevDesc1%;Apple Solid State Drive Device; C:\WINDOWS\System32\drivers\AppleSSD.sys [2022-05-07 113496]
S0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys []
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2022-05-07 79184]
S0 ebdrv0;@netevbd0a.inf,%vbd_srv_desc%;QLogic Legacy Ethernet Adapter VBD; C:\WINDOWS\System32\drivers\evbd0a.sys [2022-05-07 3424104]
S0 GenPass;@genpass.inf,%GenPass.SVCDESC%;Microsoft GenPass Driver; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [2022-05-07 62800]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2022-05-07 320880]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2022-05-07 885584]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2022-05-07 187224]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2022-05-07 125280]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2022-05-07 138600]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2022-05-07 81752]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2022-05-07 101224]
S0 mpi3drvi;mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [2022-05-07 90472]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2022-05-07 206160]
S0 nvmedisk;@nvmedisk.inf,%nvmedisk.SvcDesc%;Microsoft NVMe disk driver; C:\WINDOWS\System32\drivers\nvmedisk.sys [2022-05-07 91496]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2022-05-07 59752]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2022-05-07 69464]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2022-10-12 57344]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2023-06-14 733184]
S3 AcxHdAudio;@acxhdaudiop.inf,%Audio_Device.DeviceDesc%;ACX HD Audio Driver; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [2023-07-11 561152]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2022-05-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2022-05-07 45568]
S3 AppleKmdfFilter;@oem128.inf,%AppleKmdfFilterDisplayName%;Apple KMDF Filter Driver; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [2020-10-09 20032]
S3 AppleLowerFilter;@oem128.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [2020-10-09 35976]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2022-10-12 49152]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2023-06-14 544768]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2023-07-11 143360]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2023-06-14 143360]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2023-07-11 86016]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2023-04-12 159744]
S3 ExecutionContext;@%SystemRoot%\System32\Drivers\ExecutionContext.sys,-101; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [2022-10-12 75088]
S3 FTDIBUS;@oem175.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2021-07-08 145192]
S3 FTSER2K;@oem181.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2021-07-08 99296]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_cea150c98a1ca844\genericusbfn.sys [2022-05-07 61440]
S3 gKbdfltr;@oem71.inf,%gKbdUpper.SvcDesc%;gKbd Upper Filter; C:\WINDOWS\System32\drivers\gKbdfltr.sys [2020-09-15 29576]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2022-05-07 91472]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2022-10-12 139264]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2022-10-12 126976]
S3 Hsp;@hsp.inf,%Hsp.SVCDESC%;Microsoft Pluton Service; C:\WINDOWS\System32\drivers\Hsp.sys [2022-05-07 124264]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2022-05-07 61440]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2022-05-07 1854832]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2022-05-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2022-05-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2022-05-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2022-05-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2022-05-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2022-05-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2022-05-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2022-05-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2022-05-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2022-05-07 177664]
S3 iaStorAfs;@oem115.inf,%iaStorAfs.ServiceName%;iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [2021-08-26 74448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2022-05-07 559976]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2022-10-12 77824]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2022-05-07 65536]
S3 ioFakMap;@oem70.inf,%ioFakMap.SVCDESC%;MiniHid Driver Service for ioFakeDrv Interface layer; C:\WINDOWS\System32\drivers\ioFakMap.sys [2020-09-15 24664]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2022-05-07 99688]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2022-05-07 566632]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2022-05-07 99664]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2023-04-12 454656]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2023-06-14 98304]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2022-05-07 1132392]
S3 mvusbews;@oem180.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2010-03-06 20480]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2022-05-07 147304]
S3 NDKPerf;NDKPerf Driver; C:\WINDOWS\system32\drivers\NDKPerf.sys [2022-05-07 83288]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2022-05-07 107872]
S3 Netaapl;@oem163.inf,%Netaapl.Service.DispName%;Apple Mobile Device Ethernet Service; C:\WINDOWS\System32\drivers\netaapl64.sys [2017-11-28 32352]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2023-04-12 394576]
S3 nsvst_NGC;NortonLifeLock Split Tunneling WFP Callout driver; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\nsvst.sys [2023-06-14 57120]
S3 P9Rdr;@%SystemRoot%\System32\drivers\p9rdr.sys,-100; C:\WINDOWS\System32\drivers\p9rdr.sys [2022-05-07 148816]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2022-05-07 75112]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACCSvc;ACC Service; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [2021-12-30 259232]
R2 Adguard Service;Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [2023-06-26 798936]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2023-04-03 173040]
R2 AGMService;Adobe Genuine Software Monitor Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2023-01-19 3896288]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2020-09-24 96056]
R2 Autodesk Access Service Host;Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [2023-05-21 10539808]
R2 cbdhsvc_50284b7;Uživatelská služba schránky_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPUserSvc_50284b7;Uživatelská služba platformy připojených zařízení_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 ClickToRunSvc;Microsoft Office Click-to-Run Service; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2023-07-01 11851144]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 cplspcon;Intel(R) Content Protection HDCP Service; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe [2021-06-17 365120]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DtsApo4Service;DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [2022-10-13 420536]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 esifsvc;@oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe [2020-09-20 2254776]
R2 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2023-05-29 1518928]
R2 Flixmate.UpdateService;Flixmate update service; C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe [2022-08-31 24352]
R2 FlixmateService;Flixmate service; C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe [2022-08-31 136704]
R2 Grafana;Grafana; C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe [2022-09-13 331264]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-07 127800]
R2 igccservice;Intel(R) Graphics Command Center Service; C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe [2021-06-17 87584]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe [2021-06-17 398392]
R2 IntelAudioService;Intel(R) Audio Service; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe [2022-01-26 531008]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe [2021-06-16 628616]
R2 Killer Analytics Service;@oem42.inf,%KillerAnalyticsService%;Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2020-11-04 1783992]
R2 Killer Network Service;@oem42.inf,%Killer_Service%;Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2020-11-04 2671800]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe [2021-09-02 4064384]
R2 MacriumService;Macrium Service; C:\Program Files\Macrium\Common\MacriumService.exe [2022-10-30 11072008]
R2 NortonSecurity;Norton Security; C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe [2023-06-14 344888]
R2 nsmService;NSM Service; C:\Program Files (x86)\NetSetMan\nsmservice.exe [2017-04-24 1782976]
R2 nsWscSvc;Norton WSC Service; C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe [2023-06-14 1059176]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2022-03-15 1003128]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe [2023-06-09 1014792]
R2 OneSyncSvc_50284b7;Hostitel synchronizace_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 PDF24;PDF24; C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2022-01-26 321536]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 DevicesFlowUserSvc_50284b7;Tok zařízení_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2022-08-24 4960120]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2022-10-06 45992]
R3 Freedome Service;Freedome Service; C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe [2023-03-07 1812360]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 InventorySvc;@%SystemRoot%\system32\inventorysvc.dll,-501; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 KAPSService;@oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [2020-11-04 82080]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 NPSMSvc_50284b7;NPSMSvc_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 AdskLicensingService;Autodesk Desktop Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [2022-11-23 15280648]
S2 AdskNLM;AdskNLM; C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe [2021-04-05 1201488]
S2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2023-01-19 3729888]
S2 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S2 ElevationService;Wondershare Driver Install Service help; C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\ElevationService.exe []
S2 Fing.Agent;Fing.Agent; C:\Program Files\Fing\resources\extraResources\fingagent.exe --servicemode Fing.Agent --agentroot C:\Users\hlava\AppData\Roaming []
S2 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2022-08-24 2657616]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S2 Intel(R) TPM Provisioning Service;@oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe [2021-09-15 729944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc_50284b7;Agent Activation Runtime_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService_50284b7;Uživatelská služba pro GameDVR a vysílání her_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BluetoothUserService_50284b7;Služba pro podporu uživatelů Bluetooth_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService_50284b7;CaptureService_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2022-10-06 69568]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 ConsentUxUserSvc_50284b7;Uživatelská služba ConsentUX_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 CredentialEnrollmentManagerUserSvc_50284b7;CredentialEnrollmentManagerUserSvc_50284b7; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 dcsvc;@%systemroot%\system32\dcsvc,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc_50284b7;DeviceAssociationBroker_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc_50284b7;DevicePicker_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-05-07 114688]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 EABackgroundService;EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [2023-04-17 11029096]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2022-08-27 1135648]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 EpicOnlineServices;Epic Online Services; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2022-03-03 934368]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FrameServerMonitor;@%systemroot%\system32\FrameServerMonitor.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FvSvc;NVIDIA FrameView SDK service; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [2023-01-13 1081896]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe [2023-06-24 1742616]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 iaStorAfsService;@oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service; C:\WINDOWS\System32\iaStorAfsService.exe [2021-08-26 3160784]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 Intel(R) Capability Licensing Service TCP IP Interface;@oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe [2021-09-15 785240]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 KNDBWM;@oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [2020-11-04 82088]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService_50284b7;Služba zasílání zpráv_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\elevation_service.exe [2023-07-10 1744320]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2022-10-10 232776]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 NPSMSvc;@%SystemRoot%\system32\npsm.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService;@%systemroot%\system32\p9rdrservice.dll,-102; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService_50284b7;P9RdrService_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService;@%SystemRoot%\system32\PenService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService_50284b7;PenService_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2022-05-07 241664]
-----------------EOF-----------------
2023-07-15 19:14:18 ----D---- C:\rsit
2023-07-15 19:14:18 ----D---- C:\Program Files\trend micro
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfh009.dat
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfh005.dat
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfc009.dat
2023-07-15 07:41:47 ----A---- C:\WINDOWS\system32\perfc005.dat
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\wmp.dll
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\ntkrla57.exe
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\HoloSHExtensions.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\msvproc.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfsvr.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfds.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drttransport.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drtprov.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drt.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfps.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\MFPlay.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfcore.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\browser.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\msdt.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2023-07-11 23:55:01 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\jscript9Legacy.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassvcs.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iashlpr.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iasdatastore.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dswave.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmusic.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmsynth.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmstyle.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmscript.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmloader.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmime.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmcompos.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmband.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcspoffln.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\tsgqec.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\SIHClient.exe
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drttransport.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drtprov.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drt.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\CPFilters.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcLayers.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcGenral.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_Troubleshoot.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\rdpclip.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\msdt.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\certutil.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\WlanMM.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\offreg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\odbc32.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nshwfp.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nltest.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msimsg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msi.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\certreq.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\wshrm.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\jscript9Legacy.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\edgehtml.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\windlp.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiatrace.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiaservc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiarpc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\werconcpl.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\sti.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassvcs.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassdo.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iashlpr.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iasdatastore.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\EsclWiaDriver.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\xolehlp.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\UsbSettingsHandlers.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\mtxclu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtctm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcspoffln.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtclog.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtckrm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtc.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dswave.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmusic.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmsynth.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmloader.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\DisplaySwitch.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computestorage.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computecore.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatIntelligence.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatExperienceManager.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\SFAPM.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdshext.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdengin2.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdclt.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\upnphost.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcbloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\skci.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\RDXService.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvix64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvax64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\msaatext.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\FrameServerMonitorClient.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\runonce.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\proquota.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmcfgutils.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userinit.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schedcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\tdhres.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\negoexts.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\MrmDeploy.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexerCore.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\InkObjCore.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\crypttpmeksvc.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\aadauthhelper.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\IDStore.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdprt.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadWamExtension.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\windowsudk.shellcommon.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\twext.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscproxystub.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscisvif.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscadminui.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SystemSettings.DataModel.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\secproc.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\profapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\fcon.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsound.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsdmo.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\umb.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppobjs.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppcext.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppc.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ServicingUAPI.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ngctasks.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\tpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\sppsvc.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\rmttpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\immersivetpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\certprop.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\twext.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\shell32.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\rtm.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ntshrui.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\mprdim.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtprio.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\AuthExt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\VideoHandlers.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Keyboard.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_IME.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_HumanPresence.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Camera.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlaapi.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netshell.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\msaatext.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\FrameServerMonitorClient.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\AudioHandlers.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\WLanConn.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\SetProxyCredential.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\NetworkIcon.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\ncsi.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\urlmon.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\runonce.exe
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\msIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LockController.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\lapscsp.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\laps.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\iertutil.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\edgeIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\proquota.exe
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profsvcext.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profprov.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpsvc.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpapi.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\fonts\StaticCache.dat
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\policymanager.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\omadmclient.exe
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\LogonController.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\crashdmp.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmcfgutils.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\cryptcatsvc.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovs.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovhost.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\configmanager2.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\uDWM.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\netlogon.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dwmcore.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dcomp.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\winresume.exe
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\cxcredprov.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\comsvcs.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\SRH.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\osk.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\wkscli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcutil.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcapi.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userinit.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userenv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\srvcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\schedcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\runexehelper.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsasrv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsaadt.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dtdump.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagnosticdataquery.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dab.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\wldp.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\schannel.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samsrv.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samlib.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcss.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\RpcEpMap.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profsvc.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profapi.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\offlinesam.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\logoncli.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\keyiso.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\crypt32.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcrypt.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\usermgr.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\winload.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntdll.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\kdnet.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ci.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\winlogon.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\http.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\WinREAgent.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Pen.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\QuietHours.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\NotificationController.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\InputCloudStore.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\Facilitator.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2023-07-11 23:54:13 ----A---- C:\WINDOWS\system32\ShellAppRuntime.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.XamlInputViewHost.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Taskbar.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wups2.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuauclt.exe
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuapi.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\AppResolver.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvcimpl.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvc.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbd.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\SHCore.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\EthernetMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\winbio.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32u.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32kfull.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32k.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wcimage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wc_storage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\tdhres.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\SensorService.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\daxexec.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\container.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\BioCredProv.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\user32.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\tquery.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\SearchIndexerCore.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\NPSM.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputService.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\win32kbase.sys
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssvp.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssrch.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssprxy.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssph.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssitlb.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\msscntrs.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\d3d11.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\rdpbase.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\InkObjCore.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\doclient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\crypttpmeksvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadauthhelper.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcrecovery.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cryptngc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdprt.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdp.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdd.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\negoexts.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\CapabilityAccessHandlers.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\WpnUserService.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnservice.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpncore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnapps.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\wintrust.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\profext.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\MrmDeploy.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicPS.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\kernel32.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallService.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadWamExtension.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadtb.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudkservices.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudk.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\twinui.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\msctf.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\lsm.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\IDStore.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\TabSvc.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\StartTileData.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wlanapi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WiredNetworkCSP.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WcnApi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SystemSettings.DataModel.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_OneCore_PowerAndSleep.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3svc.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3msm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3mm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3api.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\explorer.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscisvif.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscapi.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscadminui.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wpx.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\win32spl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolsv.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolss.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrintIsolationProxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelineprxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrinterCleanupTask.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\localspl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\LanguageOverlayServer.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\hspfw.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\browcli.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\splwow64.exe
2023-07-11 23:53:52 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\cmimcext.sys
2023-07-11 23:53:50 ----A---- C:\WINDOWS\system32\drivers\monitor.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\AcxHdAudio.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\CloudRestoreLauncher.dll
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\bcdedit.exe
2023-07-11 23:53:48 ----A---- C:\WINDOWS\bfsvc.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SettingsHandlers_Backup.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\ManageCI.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\fcon.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\energyprov.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsound.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsdmo.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiosrv.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioSes.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEng.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiodg.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\system32\poqexec.exe
2023-07-11 23:49:00 ----HD---- C:\$WinREAgent
2023-07-09 13:35:40 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2023-07-03 10:39:13 ----D---- C:\ProgramData\Blizzard Entertainment
2023-07-03 07:26:50 ----D---- C:\ProgramData\Transmission
2023-07-03 07:21:32 ----D---- C:\Users\hlava\AppData\Roaming\ReflectionNetworkLauncher
2023-07-02 05:56:48 ----A---- C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS
2023-07-02 05:56:31 ----D---- C:\ProgramData\FPSMonitor
2023-07-02 05:56:31 ----D---- C:\Program Files (x86)\FPS Monitor
2023-06-27 14:29:22 ----D---- C:\Users\hlava\AppData\Roaming\DOGE
2023-06-25 20:20:58 ----D---- C:\ProgramData\Battle.net
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo-1-999-0-0-0.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1-999-0-0-0.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2023-06-18 14:54:09 ----A---- C:\WINDOWS\system32\OpenCL.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\nvofapi.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvofapi64.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvml.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvidia-smi.exe
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2023-06-18 14:54:08 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvdebugdump.exe
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcudadebugger.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcuda.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\nvcpl.dll
2023-06-18 14:54:07 ----A---- C:\WINDOWS\system32\MCU.exe
======List of files/folders modified in the last 1 month======
2023-07-15 19:14:22 ----D---- C:\WINDOWS\Temp
2023-07-15 19:14:18 ----RD---- C:\Program Files
2023-07-15 19:14:15 ----D---- C:\WINDOWS\Prefetch
2023-07-15 19:10:24 ----D---- C:\ProgramData\Adguard
2023-07-15 19:10:22 ----D---- C:\WINDOWS\system32\sru
2023-07-15 19:09:41 ----D---- C:\ProgramData\boost_interprocess
2023-07-15 19:09:25 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2023-07-15 19:09:23 ----D---- C:\WINDOWS\SystemTemp
2023-07-15 19:09:22 ----D---- C:\Program Files (x86)\Google
2023-07-15 19:09:21 ----D---- C:\ProgramData\NVIDIA
2023-07-15 15:44:21 ----D---- C:\WINDOWS\AppReadiness
2023-07-15 14:18:47 ----D---- C:\WINDOWS\system32\SleepStudy
2023-07-15 12:54:47 ----D---- C:\Program Files (x86)\Steam
2023-07-15 11:34:23 ----SHD---- C:\System Volume Information
2023-07-15 11:34:03 ----RD---- C:\WINDOWS\Microsoft.NET
2023-07-15 09:53:39 ----D---- C:\Program Files (x86)\Adguard
2023-07-15 09:42:42 ----D---- C:\Users\hlava\AppData\Roaming\PrusaSlicer
2023-07-15 07:41:48 ----D---- C:\WINDOWS\System32
2023-07-15 07:41:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2023-07-15 07:41:47 ----D---- C:\WINDOWS\INF
2023-07-15 07:34:18 ----D---- C:\WINDOWS\system32\catroot2
2023-07-15 07:34:13 ----HD---- C:\Intel
2023-07-15 07:34:13 ----D---- C:\WINDOWS\ServiceState
2023-07-15 07:34:11 ----ASH---- C:\DumpStack.log.tmp
2023-07-15 05:29:30 ----D---- C:\WINDOWS\system32\Tasks
2023-07-14 17:10:04 ----D---- C:\WINDOWS\system32\CatRoot
2023-07-14 16:20:36 ----HD---- C:\Program Files\WindowsApps
2023-07-13 04:23:47 ----D---- C:\WINDOWS\system32\LogFiles
2023-07-13 04:21:44 ----D---- C:\WINDOWS\Minidump
2023-07-12 21:10:01 ----RD---- C:\WINDOWS\assembly
2023-07-12 19:31:45 ----D---- C:\WINDOWS\system32\config
2023-07-12 19:31:12 ----RD---- C:\Program Files (x86)
2023-07-12 13:57:29 ----D---- C:\WINDOWS\WinSxS
2023-07-12 13:56:54 ----D---- C:\Windows
2023-07-12 13:56:48 ----D---- C:\WINDOWS\system32\DriverStore
2023-07-12 13:56:34 ----D---- C:\WINDOWS\system32\drivers
2023-07-12 13:56:06 ----D---- C:\WINDOWS\UUS
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\wbem
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\setup
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\migration
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SysWOW64
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\en-US
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\cs-CZ
2023-07-12 13:56:05 ----D---- C:\WINDOWS\SystemResources
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\wbem
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Sgrm
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\setup
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\oobe
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migwiz
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migration
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\DDFs
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Boot
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\appraiser
2023-07-12 13:56:04 ----RSD---- C:\WINDOWS\Fonts
2023-07-12 13:56:04 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2023-07-12 13:56:04 ----D---- C:\WINDOWS\ShellComponents
2023-07-12 13:56:04 ----D---- C:\WINDOWS\bcastdvr
2023-07-12 13:56:04 ----D---- C:\WINDOWS\apppatch
2023-07-12 13:56:04 ----D---- C:\Program Files\Internet Explorer
2023-07-12 13:56:04 ----D---- C:\Program Files (x86)\Internet Explorer
2023-07-12 13:56:03 ----D---- C:\WINDOWS\system32\CodeIntegrity
2023-07-11 23:58:09 ----D---- C:\WINDOWS\CbsTemp
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2023-07-11 23:51:07 ----HD---- C:\Recovery
2023-07-11 23:41:23 ----D---- C:\WINDOWS\system32\MRT
2023-07-11 23:41:08 ----AC---- C:\WINDOWS\system32\MRT.exe
2023-07-11 23:41:02 ----SHD---- C:\WINDOWS\Installer
2023-07-11 23:41:02 ----D---- C:\ProgramData\Package Cache
2023-07-11 23:40:48 ----D---- C:\Program Files\dotnet
2023-07-11 11:12:11 ----D---- C:\WINDOWS\servicing
2023-07-09 06:28:38 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent Web
2023-07-08 23:54:31 ----D---- C:\WINDOWS\system32\drivers\wd
2023-07-08 23:54:26 ----D---- C:\Program Files\Windows Defender
2023-07-03 10:39:13 ----HD---- C:\ProgramData
2023-07-03 09:07:13 ----D---- C:\WINDOWS\LiveKernelReports
2023-07-02 12:29:39 ----D---- C:\Users\hlava\AppData\Roaming\Autodesk
2023-07-01 22:09:29 ----D---- C:\Users\hlava\AppData\Roaming\Kodi
2023-07-01 08:39:19 ----D---- C:\Program Files\Microsoft Office
2023-06-30 08:34:14 ----D---- C:\Users\hlava\AppData\Roaming\vlc
2023-06-30 06:20:30 ----D---- C:\Program Files\Prusa3D
2023-06-30 06:19:40 ----D---- C:\Users\hlava\AppData\Roaming\Prusa Research
2023-06-25 22:50:13 ----D---- C:\Program Files\Common Files\AV
2023-06-25 22:18:04 ----D---- C:\WINDOWS\system32\drivers\NGCx64
2023-06-24 21:51:24 ----D---- C:\Users\hlava\AppData\Roaming\Loxone
2023-06-21 15:29:46 ----D---- C:\ProgramData\Loxone
2023-06-19 21:23:10 ----D---- C:\Program Files (x86)\DODI-Repacks
2023-06-19 17:51:23 ----D---- C:\WINDOWS\system32\SecurityHealth
2023-06-18 14:49:23 ----D---- C:\ProgramData\NVIDIA Corporation
2023-06-18 14:49:09 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2023-06-18 14:49:05 ----D---- C:\Program Files\NVIDIA Corporation
2023-06-18 12:09:11 ----D---- C:\WINDOWS\Logs
2023-06-17 14:41:49 ----D---- C:\WINDOWS\WUModels
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\sppui
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\en-US
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\Dism
2023-06-17 14:41:49 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2023-06-17 14:41:48 ----D---- C:\WINDOWS\system32\WinMetadata
2023-06-17 14:41:48 ----D---- C:\WINDOWS\system32\sppui
2023-06-17 14:41:47 ----D---- C:\WINDOWS\system32\nl-NL
2023-06-17 14:41:47 ----D---- C:\WINDOWS\system32\fr-FR
2023-06-17 14:41:47 ----D---- C:\WINDOWS\system32\Dism
2023-06-17 14:41:46 ----D---- C:\WINDOWS\ShellExperiences
2023-06-17 14:41:46 ----D---- C:\Program Files\Windows Media Player
2023-06-16 05:47:20 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 HHDNLWFH;@oem173.inf,%HelperFilt.SvcDesc%;HHD Software Network Monitor Helper Driver; C:\WINDOWS\system32\DRIVERS\hhdnethp64.sys [2022-01-14 39024]
R0 iaStorVD;@oem115.inf,%iaStorVD.ServiceName%;Intel(R) Chipset VMD RST Controller service; C:\WINDOWS\System32\drivers\iaStorVD.sys [2021-08-26 1544912]
R0 IntelPMT;@intelpmt.inf,%IntelPMT.SVCDESC%;Intel(R) Platform Monitoring Technology Service; C:\WINDOWS\System32\drivers\IntelPMT.sys [2023-04-12 91688]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2022-05-07 87392]
R1 adgnetworkwfpdrv;adgnetworkwfpdrv; C:\WINDOWS\system32\drivers\adgnetworkwfpdrv.sys [2023-02-09 88112]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2022-05-07 81920]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2022-05-07 116056]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\BASHDefs\20230713.001\BHDrvx64.sys [2023-03-05 1696736]
R1 ccSet_NGC;NGC Settings Manager; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\ccSetx64.sys [2023-06-14 198280]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2022-05-07 173424]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2022-09-10 527864]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2022-05-07 90112]
R1 HHDNLWF;@oem173.inf,%ClasFilt.SvcDesc%;HHD Software Network Monitor Filter Driver; C:\WINDOWS\system32\DRIVERS\hhdnet64.sys [2022-01-14 52848]
R1 HWiNFO_172;HWiNFO Kernel Driver (v172); \??\C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS [2023-07-02 56888]
R1 IDSVia64;IDSVia64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\IPSDefs\20230714.062\IDSvia64.sys [2023-02-21 1527816]
R1 npcap;@oem172.inf,%NPF_Desc_Standard%;Npcap Packet Driver (NPCAP); C:\WINDOWS\system32\DRIVERS\npcap.sys [2021-08-30 71736]
R2 bfs;@%systemroot%\system32\drivers\bfs.sys,-100; C:\WINDOWS\system32\drivers\bfs.sys [2023-06-14 91504]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2023-01-19 173424]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2023-07-11 565248]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2022-10-12 90112]
R3 AcerAirplaneModeController;@oem164.inf,%ServiceDesc%;Acer Airplane Mode Controller; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [2022-06-02 36800]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2023-07-11 2088960]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2023-07-11 139264]
R3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2022-05-07 90112]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2022-05-07 99672]
R3 dptf_acpi;dptf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_a5bac3087ca5f8d5\dptf_acpi.sys [2020-08-26 76968]
R3 dptf_cpu;dptf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\dptf_cpu.sys [2020-08-26 73384]
R3 dtlitescsibus;@oem119.inf,%DisplayName%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2022-08-24 42256]
R3 dtliteusbbus;@oem35.inf,%DisplayName%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2022-08-24 63696]
R3 e2kw10x64;@oem18.inf,%EthDriver.Service.DispName%;Killer E2500/E2600 NDIS 6.40 64-bit Driver; C:\WINDOWS\System32\drivers\e2kw10x64.sys [2020-09-01 1146456]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2022-10-21 159720]
R3 esif_lf;esif_lf; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_lf.sys [2020-08-26 420008]
R3 fsfreedomewintun;@oem182.inf,%fsfreedomewintun.Name%;fsfreedomewintun; C:\WINDOWS\System32\drivers\fsfreedomewintun.sys [2023-03-07 31248]
R3 gFilterMouUsb;@oem68.inf,%gFilterMouUsb.SvcDesc%;SmartGenius Mouse Driver; C:\WINDOWS\System32\drivers\gFilterMouUsb.sys [2020-09-15 30568]
R3 HidEventFilter;@oem57.inf,%HidEventFilter%;Intel(R) HID Event Filter; C:\WINDOWS\System32\DriverStore\FileRepository\hideventfilter.inf_amd64_010863cba57434d0\HidEventFilter.sys [2020-09-18 86680]
R3 hvservice;@hvservice.inf,%hvservice.SvcDesc%;Microsoft Hypervisor Service Driver; C:\WINDOWS\System32\drivers\hvservice.sys [2022-10-12 91472]
R3 iaLPSS2_GPIO2_TGL;@oem21.inf,%iaLPSS2_GPIO2_TGL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_d0e63c4e3754f42f\iaLPSS2_GPIO2_TGL.sys [2020-08-12 128152]
R3 iaLPSS2_I2C_TGL;@oem91.inf,%iaLPSS2_I2C_TGL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_ab87bf17a571e523\iaLPSS2_I2C_TGL.sys [2020-08-12 197272]
R3 ibtusb;@oem117.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\System32\DriverStore\FileRepository\ibtusb.inf_amd64_723c8f13c52715bb\ibtusb.sys [2021-03-10 4887016]
R3 igfxn;igfxn; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\igdkmdn64.sys [2021-06-17 28658760]
R3 IntcAudioBus;@oem118.inf,%IntcAudioBus.SVCDESC%;Sběrnice technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcaudiobus.inf_amd64_a5bfc4a9cc7fdf5a\IntcAudioBus.sys [2022-01-26 311872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-06-29 6008928]
R3 IntcBTAu;@oem148.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro Bluetooth® Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcbtau.inf_amd64_42d4c8c359e6d3fb\IntcBTAu.sys [2022-01-26 858176]
R3 IntcDMic;@oem40.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro digitální mikrofony; C:\WINDOWS\System32\DriverStore\FileRepository\intcdmic.inf_amd64_b1529a2a6789f39e\IntcDMic.sys [2022-01-26 745536]
R3 IntcOED;@oem29.inf,%IntcOED.SVCDESC%;OED technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\IntcOED.sys [2022-01-26 1154624]
R3 IntcUSB;@oem64.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro USB Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_2cc98897d8dddf62\IntcUSB.sys [2022-01-26 882280]
R3 IntelGNA;@oem122.inf,%IntelGNA.SVCDESC%;Intel(R) GNA Scoring Accelerator service; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [2020-11-06 84880]
R3 KfeCoSvc;@oem42.inf,%RivetCoServiceName%;KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [2020-11-04 201096]
R3 MEIx64;@oem143.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_e9ffe3f2557dd9e9\x64\TeeDriverW10x64.sys [2020-10-26 300040]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-200; C:\WINDOWS\system32\drivers\msquic.sys [2023-04-12 419152]
R3 Netwtw10;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 10 64 Bit; C:\WINDOWS\System32\drivers\Netwtw10.sys [2021-03-11 5287784]
R3 nhi;@oem31.inf,%TbtBusDrv_SVCDESC%;Thunderbolt(TM) Controller; C:\WINDOWS\System32\drivers\TbtBusDrv.sys [2020-09-27 2876264]
R3 NVHDA;@oem186.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2023-06-09 121880]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvlddmkm.sys [2023-06-09 59008024]
R3 NvModuleTracker;@oem158.inf,%ServiceName%;NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [2022-07-14 45656]
R3 nvpcf;@oem185.inf,%nvpcf.SVCDESC%;NVPCF Service; C:\WINDOWS\System32\drivers\nvpcf.sys [2023-06-09 240152]
R3 nvvad_WaveExtensible;@oem183.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2022-10-14 59928]
R3 nvvhci;@oem159.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2022-07-14 60112]
S0 AppleSSD;@AppleSSD.inf,%DevDesc1%;Apple Solid State Drive Device; C:\WINDOWS\System32\drivers\AppleSSD.sys [2022-05-07 113496]
S0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys []
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2022-05-07 79184]
S0 ebdrv0;@netevbd0a.inf,%vbd_srv_desc%;QLogic Legacy Ethernet Adapter VBD; C:\WINDOWS\System32\drivers\evbd0a.sys [2022-05-07 3424104]
S0 GenPass;@genpass.inf,%GenPass.SVCDESC%;Microsoft GenPass Driver; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [2022-05-07 62800]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2022-05-07 320880]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2022-05-07 885584]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2022-05-07 187224]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2022-05-07 125280]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2022-05-07 138600]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2022-05-07 81752]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2022-05-07 101224]
S0 mpi3drvi;mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [2022-05-07 90472]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2022-05-07 206160]
S0 nvmedisk;@nvmedisk.inf,%nvmedisk.SvcDesc%;Microsoft NVMe disk driver; C:\WINDOWS\System32\drivers\nvmedisk.sys [2022-05-07 91496]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2022-05-07 59752]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2022-05-07 69464]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2022-10-12 57344]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2023-06-14 733184]
S3 AcxHdAudio;@acxhdaudiop.inf,%Audio_Device.DeviceDesc%;ACX HD Audio Driver; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [2023-07-11 561152]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2022-05-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2022-05-07 45568]
S3 AppleKmdfFilter;@oem128.inf,%AppleKmdfFilterDisplayName%;Apple KMDF Filter Driver; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [2020-10-09 20032]
S3 AppleLowerFilter;@oem128.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [2020-10-09 35976]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2022-10-12 49152]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2023-06-14 544768]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2023-07-11 143360]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2023-06-14 143360]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2023-07-11 86016]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2023-04-12 159744]
S3 ExecutionContext;@%SystemRoot%\System32\Drivers\ExecutionContext.sys,-101; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [2022-10-12 75088]
S3 FTDIBUS;@oem175.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2021-07-08 145192]
S3 FTSER2K;@oem181.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2021-07-08 99296]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_cea150c98a1ca844\genericusbfn.sys [2022-05-07 61440]
S3 gKbdfltr;@oem71.inf,%gKbdUpper.SvcDesc%;gKbd Upper Filter; C:\WINDOWS\System32\drivers\gKbdfltr.sys [2020-09-15 29576]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2022-05-07 91472]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2022-10-12 139264]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2022-10-12 126976]
S3 Hsp;@hsp.inf,%Hsp.SVCDESC%;Microsoft Pluton Service; C:\WINDOWS\System32\drivers\Hsp.sys [2022-05-07 124264]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2022-05-07 61440]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2022-05-07 1854832]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2022-05-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2022-05-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2022-05-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2022-05-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2022-05-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2022-05-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2022-05-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2022-05-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2022-05-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2022-05-07 177664]
S3 iaStorAfs;@oem115.inf,%iaStorAfs.ServiceName%;iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [2021-08-26 74448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2022-05-07 559976]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2022-10-12 77824]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2022-05-07 65536]
S3 ioFakMap;@oem70.inf,%ioFakMap.SVCDESC%;MiniHid Driver Service for ioFakeDrv Interface layer; C:\WINDOWS\System32\drivers\ioFakMap.sys [2020-09-15 24664]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2022-05-07 99688]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2022-05-07 566632]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2022-05-07 99664]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2023-04-12 454656]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2023-06-14 98304]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2022-05-07 1132392]
S3 mvusbews;@oem180.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2010-03-06 20480]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2022-05-07 147304]
S3 NDKPerf;NDKPerf Driver; C:\WINDOWS\system32\drivers\NDKPerf.sys [2022-05-07 83288]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2022-05-07 107872]
S3 Netaapl;@oem163.inf,%Netaapl.Service.DispName%;Apple Mobile Device Ethernet Service; C:\WINDOWS\System32\drivers\netaapl64.sys [2017-11-28 32352]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2023-04-12 394576]
S3 nsvst_NGC;NortonLifeLock Split Tunneling WFP Callout driver; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\nsvst.sys [2023-06-14 57120]
S3 P9Rdr;@%SystemRoot%\System32\drivers\p9rdr.sys,-100; C:\WINDOWS\System32\drivers\p9rdr.sys [2022-05-07 148816]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2022-05-07 75112]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACCSvc;ACC Service; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [2021-12-30 259232]
R2 Adguard Service;Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [2023-06-26 798936]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2023-04-03 173040]
R2 AGMService;Adobe Genuine Software Monitor Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2023-01-19 3896288]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2020-09-24 96056]
R2 Autodesk Access Service Host;Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [2023-05-21 10539808]
R2 cbdhsvc_50284b7;Uživatelská služba schránky_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPUserSvc_50284b7;Uživatelská služba platformy připojených zařízení_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 ClickToRunSvc;Microsoft Office Click-to-Run Service; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2023-07-01 11851144]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 cplspcon;Intel(R) Content Protection HDCP Service; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe [2021-06-17 365120]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DtsApo4Service;DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [2022-10-13 420536]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 esifsvc;@oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe [2020-09-20 2254776]
R2 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2023-05-29 1518928]
R2 Flixmate.UpdateService;Flixmate update service; C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe [2022-08-31 24352]
R2 FlixmateService;Flixmate service; C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe [2022-08-31 136704]
R2 Grafana;Grafana; C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe [2022-09-13 331264]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-07 127800]
R2 igccservice;Intel(R) Graphics Command Center Service; C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe [2021-06-17 87584]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe [2021-06-17 398392]
R2 IntelAudioService;Intel(R) Audio Service; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe [2022-01-26 531008]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe [2021-06-16 628616]
R2 Killer Analytics Service;@oem42.inf,%KillerAnalyticsService%;Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2020-11-04 1783992]
R2 Killer Network Service;@oem42.inf,%Killer_Service%;Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2020-11-04 2671800]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe [2021-09-02 4064384]
R2 MacriumService;Macrium Service; C:\Program Files\Macrium\Common\MacriumService.exe [2022-10-30 11072008]
R2 NortonSecurity;Norton Security; C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe [2023-06-14 344888]
R2 nsmService;NSM Service; C:\Program Files (x86)\NetSetMan\nsmservice.exe [2017-04-24 1782976]
R2 nsWscSvc;Norton WSC Service; C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe [2023-06-14 1059176]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2022-03-15 1003128]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe [2023-06-09 1014792]
R2 OneSyncSvc_50284b7;Hostitel synchronizace_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 PDF24;PDF24; C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2022-01-26 321536]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 DevicesFlowUserSvc_50284b7;Tok zařízení_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2022-08-24 4960120]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2022-10-06 45992]
R3 Freedome Service;Freedome Service; C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe [2023-03-07 1812360]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 InventorySvc;@%SystemRoot%\system32\inventorysvc.dll,-501; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 KAPSService;@oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [2020-11-04 82080]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 NPSMSvc_50284b7;NPSMSvc_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 AdskLicensingService;Autodesk Desktop Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [2022-11-23 15280648]
S2 AdskNLM;AdskNLM; C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe [2021-04-05 1201488]
S2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2023-01-19 3729888]
S2 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S2 ElevationService;Wondershare Driver Install Service help; C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\ElevationService.exe []
S2 Fing.Agent;Fing.Agent; C:\Program Files\Fing\resources\extraResources\fingagent.exe --servicemode Fing.Agent --agentroot C:\Users\hlava\AppData\Roaming []
S2 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2022-08-24 2657616]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S2 Intel(R) TPM Provisioning Service;@oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe [2021-09-15 729944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc_50284b7;Agent Activation Runtime_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService_50284b7;Uživatelská služba pro GameDVR a vysílání her_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BluetoothUserService_50284b7;Služba pro podporu uživatelů Bluetooth_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService_50284b7;CaptureService_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2022-10-06 69568]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 ConsentUxUserSvc_50284b7;Uživatelská služba ConsentUX_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 CredentialEnrollmentManagerUserSvc_50284b7;CredentialEnrollmentManagerUserSvc_50284b7; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 dcsvc;@%systemroot%\system32\dcsvc,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc_50284b7;DeviceAssociationBroker_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc_50284b7;DevicePicker_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-05-07 114688]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 EABackgroundService;EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [2023-04-17 11029096]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2022-08-27 1135648]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 EpicOnlineServices;Epic Online Services; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2022-03-03 934368]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FrameServerMonitor;@%systemroot%\system32\FrameServerMonitor.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FvSvc;NVIDIA FrameView SDK service; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [2023-01-13 1081896]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe [2023-06-24 1742616]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 iaStorAfsService;@oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service; C:\WINDOWS\System32\iaStorAfsService.exe [2021-08-26 3160784]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 Intel(R) Capability Licensing Service TCP IP Interface;@oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe [2021-09-15 785240]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 KNDBWM;@oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [2020-11-04 82088]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService_50284b7;Služba zasílání zpráv_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\elevation_service.exe [2023-07-10 1744320]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2022-10-10 232776]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 NPSMSvc;@%SystemRoot%\system32\npsm.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService;@%systemroot%\system32\p9rdrservice.dll,-102; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService_50284b7;P9RdrService_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService;@%SystemRoot%\system32\PenService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService_50284b7;PenService_50284b7; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2022-05-07 241664]
-----------------EOF-----------------
Re: Prosím o preventivní kontrolu logu
ahoj,
RSIT je pre w11 nepouzitelny
1. vycisti PC s CCleanerom, vcetne registrov
restart
2. vycisti PC s ADWCleanerom
3. vycisti PC s MBAM
napis, ci je vsetko OK
RSIT je pre w11 nepouzitelny
1. vycisti PC s CCleanerom, vcetne registrov
restart
2. vycisti PC s ADWCleanerom
3. vycisti PC s MBAM
napis, ci je vsetko OK
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
Ahoj, tak provedeno:
1)ok
2)tady uváděl, že bych měl soubory ACER - preinstalled soubory - možnost vložení do karantény - zatím jsem tak neučinil.
3)MBAM - přikládám log
Děkuji za další rady
Malwarebytes
www.malwarebytes.com
-Podrobnosti logovacího souboru-
Datum skenování: 19.07.23
Čas skenování: 7:17
Logovací soubor: 9a0f51ba-25f3-11ee-82c7-088fc327ce3d.json
-Informace o softwaru-
Verze: 4.5.33.272
Verze komponentů: 1.0.2069
Aktualizovat verzi balíku komponent: 1.0.72619
Licence: Zkušební
-Systémová informace-
OS: Windows 11 (Build 22621.1992)
CPU: x64
Systém souborů: NTFS
Uživatel: ACER-ASPIRE\hlava
-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 328591
Zjištěné hrozby: 74
Hrozby umístěné do karantény: 0
Uplynulý čas: 2 min, 47 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 9
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WindowsTaskCoreUpdate, Žádná uživatelská akce, 744, 721978, , , , , ,
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{E14A4067-2CC0-4416-91F6-FD85D44F9B43}, Žádná uživatelská akce, 744, 721978, , , , , ,
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{E14A4067-2CC0-4416-91F6-FD85D44F9B43}, Žádná uživatelská akce, 744, 721978, , , , , ,
Trojan.BitCoinMiner.TSK, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\UnpackCheck, Žádná uživatelská akce, 7410, 1158726, , , , , ,
Trojan.BitCoinMiner.TSK, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{574D15D6-364C-40EA-8C39-78BC263DB7A2}, Žádná uživatelská akce, 7410, 1158726, , , , , ,
Trojan.BitCoinMiner.TSK, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{574D15D6-364C-40EA-8C39-78BC263DB7A2}, Žádná uživatelská akce, 7410, 1158726, , , , , ,
Trojan.Agent.VBS.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Microsoft\Windows\Shell\WindowsObjectChecking, Žádná uživatelská akce, 4901, 763708, , , , , ,
Trojan.Agent.VBS.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{64C1CDA3-96E5-49C1-828D-A3504D7A566F}, Žádná uživatelská akce, 4901, 763708, , , , , ,
Trojan.Agent.VBS.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{64C1CDA3-96E5-49C1-828D-A3504D7A566F}, Žádná uživatelská akce, 4901, 763708, , , , , ,
Hodnota v registru: 9
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{E14A4067-2CC0-4416-91F6-FD85D44F9B43}|PATH, Žádná uživatelská akce, 744, 721980, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|1, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|2, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|3, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|4, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|5, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|6, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|7, Žádná uživatelská akce, 4741, 944913, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|8, Žádná uživatelská akce, 4741, 944915, 1.0.72619, , ame, , ,
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 14
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\0F9AC7EE476643A9815DC98CCAAA646F, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\268ED642D19A465995336774262FF966, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\275275B2E9B84C84B1156D915D177824, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\683E821ADEE94C74ACC0F4D4784566E9, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\6A54C012AC2C47F0A037E9DDB48D9FCE, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\81B33B7D0092433199F2F6CCB8E4E971, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\9AAB7FD836484AC7AB94C5C2A0AE51B0, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\CDE05CB1697B4DB7AFB102FD0B005F68, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\D053813C8E5443CBA432273CDCD7F878, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E559ADF5CD6040C88B29D6C7AD80CF00, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E74A7121B70C4EEEBA7AADDB26D4B155, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E7F26009599544FBB9155A4E79F7ED8C, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
PUP.Optional.PushNotifications.Generic, C:\USERS\AGNES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Žádná uživatelská akce, 9890, 1094562, , , , , ,
Soubor: 42
Trojan.FakeMS, C:\WINDOWS\SYSTEM32\TASKS\WINDOWSTASKCOREUPDATE, Žádná uživatelská akce, 744, 721978, 1.0.72619, , ame, , 5F9624B3BABEFFBCC15071E485A55E79, 540FFE0F59F5EEF3DF46558F205442675965491C6CCC1F2CB15C6E636BE2760A
Trojan.BitCoinMiner.TSK, C:\WINDOWS\SYSTEM32\TASKS\UNPACKCHECK, Žádná uživatelská akce, 7410, 1158726, 1.0.72619, , ame, , FE679377F073956B3BBCF2E5897B256F, B9026BB16D417CCAE01A67ADF05019F5AF27D78796994A580773C5EE08FD4062
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\0F9AC7EE476643A9815DC98CCAAA646F\869B969ECB7144F386BEF43312B64AF2.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , D8235E8AADDBE8EAA3371361D37543B2, E0EC0F15D69BCA22E273781920005FAFE48DA95A0A7E189148DD8BBB143651CF
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\268ED642D19A465995336774262FF966\88497D3EE8784D60911F4E293E6DF85F.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 74864B13B5929DC2F66628E903EE3124, 1CF4B9D7B594BAB9CB0358C67163D57F5D5B6D8126FA1538FF946D7ED7CB6AB9
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\275275B2E9B84C84B1156D915D177824\C74166D1C0DB4320B933BDB68344266A.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 0E5AB176EF614E68119C79021F727DA0, 8481284BC3BE88796BD56339EBB1E64AAD654AED4656CF730A4162C781287E45
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\683E821ADEE94C74ACC0F4D4784566E9\D14CE8FBB25F4A9CA6E72ED1451C4BDA.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 92A8F2D91335C7E1F2190E72B2C6FA3D, 22F999BCA5789CC6C84258FF6A84001672A8104687F7C3B5A41729CF591504A3
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\6A54C012AC2C47F0A037E9DDB48D9FCE\AD422891F49545D0B66CCDF53B3453BF.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 38FCBDF4D908BA74697A6DF8507D773C, 5F082ED549635BEE7EFA8C6505CDB69D67114135B2864EF6CCDD258878CC9386
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\81B33B7D0092433199F2F6CCB8E4E971\7389F13F4BDD4C2984E1E0BC5E01E223.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 2B366B06441879FE40C6D181A84BB4EA, BE8D3770D06BD53A585C2D06128A64E5DA4DA9178F01506B5F9759C1ED523397
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\9AAB7FD836484AC7AB94C5C2A0AE51B0\526780C2FF824CDD99B47668BCE80882.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 51C547D9DC4972AA19C18B6DCD753E5F, 4F4F4C48709B2CF13DC5EAAD25EADF00A81F4617AADD395DB5E6C2A8B9DC8867
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\CDE05CB1697B4DB7AFB102FD0B005F68\F027BE8151924032BE1BD7584945798B.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ECFC591BB09E186626A4A78F9DC92E48, 62AE7A819F8D1F5FA568619BC71BECD301F1996690A458627BFDB059C2E0F0C9
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\D053813C8E5443CBA432273CDCD7F878\DB5024E5C5A7469196BD4E108DFB05B5.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 39EBCDBA78A9DB27A77AF4020A9A52D5, 410C1FD02A65C391D58D060D12987B2B6EA4F506B5D125418AD894096F835D75
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E559ADF5CD6040C88B29D6C7AD80CF00\FD495583759D46D7A5188AA82C4133FD.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 395E7090C2805251C9D451FBC21A631F, B8ED617EEE5BDD2A08BA97B2964C40F1FC293F326A46519C1085B20570A2AA2E
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E74A7121B70C4EEEBA7AADDB26D4B155\FA5B4AF73A284E30A385F86FA07F183F.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 20D1B1A316E45B5FE879B129F55EFC79, 855B114206077906ABBA8318FA1197B89C685B5CF52C270F8480F49BC6B65E0F
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\TASKS\Microsoft\Windows\Shell\WindowsObjectChecking, Žádná uživatelská akce, 4901, 763708, , , , , E2903CE91F52C0BC97F8D6CCAC815D7A, 20E905407FD4E89F99558F33543EF3AB1AADD7337FA0D25F3B9A1FC6E601B8E3
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E7F26009599544FBB9155A4E79F7ED8C\FC1AB13DE4FC40578F7F377C14E07975.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 6B424DE0C34D38EB8A7F73CF9C959BFD, 62D6B34BE8B4EF725FFA258511079D2E3295A6C804A6A1B831E727CD108799C7
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46802.EXE, Žádná uživatelská akce, 101, 1147950, 1.0.72619, , ame, , 5EE686EFDF016823B1C96CD871AA66B1, B8607028C5CC453A91A899F6B045D8C7BF93C9969F884A1270F5596768CBA5DB
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\UTORRENT.EXE, Žádná uživatelská akce, 101, 1148570, 1.0.72619, , ame, , 8CDC1930F5F11AD16F68DAEB94C8CB17, EAE4E7436085D7A10CB8C90A75284EA9DCD9602E034F501FF36203FA74A8FCE8
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46672.EXE, Žádná uživatelská akce, 101, 1121241, 1.0.72619, , ame, , 437ED8763AE1A4D9FA62F3643927CCC6, 94D24CAD6B8E158DF73247376A420291E2D954CE387E4A6665670A4E8E586EE3
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46738.EXE, Žádná uživatelská akce, 101, 1131981, 1.0.72619, , ame, , FD42379761A5DDA477083EBFB172286B, 9A27F17D859D7F60A26030C7A0EF3698FFA0FF5FF4230963E52AB79A6A4DACDF
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.5.5_46514.EXE, Žádná uživatelská akce, 101, 1095642, 1.0.72619, , ame, , CDAE52391B92667C9FA26BE90862DC24, 081198C6B5236260AEE9B1183F96EE765E3581724D90B1C5E4484EB1755E773C
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46812.EXE, Žádná uživatelská akce, 101, 1148570, 1.0.72619, , ame, , B2D0827D3C3F63866DFFC587B792F123, 296F56958CD5F557150C1836272FE251938C02309BB162D058D7E306870D4CFD
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46590.EXE, Žádná uživatelská akce, 101, 1116198, 1.0.72619, , ame, , 4B4149C544EA79ACCC7CB55015FCC0FA, 761BE1C00F156CAA8D04DB5BD0E2F7B3F12FD0B4B9F29BD4E0AF13125F2E4646
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\DOWNLOADS\UTORRENT_3.5.5BUILD46348.EXE, Žádná uživatelská akce, 101, 1089421, 1.0.72619, , ame, , FC4AE0723D1EBDEE5EB0A250DC7B1DDE, E8EC2361D122FC63C18BEB4AEF80C03B0443AD2259409148E01D39F79C0678EC
PUP.Optional.Seznam, C:\USERS\HLAVA\DOWNLOADS\RPC420_SETUP.EXE, Žádná uživatelská akce, 666, 623984, 1.0.72619, , ame, , AFAFF1F92C13E5DA8B898509C93216A6, C562443FD78CFBCD11C150253CF44DB3782D6371520E033F14B676A165277D69
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\DOWNLOADS\UTORRENT_INSTALLER.EXE, Žádná uživatelská akce, 101, 1127518, 1.0.72619, , ame, , 045685F8D9785A5BFC2945ABAB28343A, 81903CC8A6C3085050806173305E6EDE45BCA27B05191973EC4C95F120FCB16E
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , ECBB9CE1FE54AA553E2ED92BE557975F, E7CD499E52370CE87D2F2C3D56E6EFC6D09DC02D748FA94A680321A1D2786555
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000104.log, Žádná uživatelská akce, 9890, 1094562, , , , , A4B06D4382203E91FA1FFD374BBB7E97, 8FC3BA3C38D1A689F5308EE70C51212552D31E9B3B2166D0A1F67B127FF744B4
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000106.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , 37CB179E8FD7C066D8FBC87A740EC18F, EC04EEDE3F1151E76D95676DF8416410D34AA805BF213597833192904FA6CFA5
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Žádná uživatelská akce, 9890, 1094562, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Žádná uživatelská akce, 9890, 1094562, , , , , 3BD16984383463D670C49941228224EA, 8AC0DDA985485FF0427E8D86B2ED2A418A49E63BD8C940F38ED193D42C3B68DF
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Žádná uživatelská akce, 9890, 1094562, , , , , CBAEC4C60AC6032635830E52A5B0B98D, A9F72A3446B389199A5EE354EAB1D3837803C3604F6871333241AE2FFBF55D68
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Žádná uživatelská akce, 9890, 1094562, , , , , 62BE31549602B42E341FE0C71ABFB176, A3067479AFFFBFE6728DB74125504B6380F0DD653D6DA2B691495D5B077FE065
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , 154DB8BB07C4C2BB50BE6157EBCFFBC8, 0FEA07263E58360B0F0DBA9DD974AE5FA1F6E1D113076F278087FE77910207E0
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\002480.log, Žádná uživatelská akce, 9890, 1094562, , , , , 529312517023D8C3061F6F0838D81475, 2D4F5BA8A0BBF1EF6BF09DE4DAA77EA35F36E109CB386E0525465DE48CEDB2AB
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\002482.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , 91406BC2DE1800316ECB5FD76BAA0646, 84958E37C271C8F7E730F714487448800785A1CA55D6CA001C904618B08158E9
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Žádná uživatelská akce, 9890, 1094562, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Žádná uživatelská akce, 9890, 1094562, , , , , A47D59B822D9083AD7141F5FBABE4B84, B9397292E55EC54DB330D3CAF659A28C3EB2C4744B175B8C89F28D4AA65DB013
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Žádná uživatelská akce, 9890, 1094562, , , , , E317DAAC449718078DB438AEFF65EAB8, A07C91A088C23A570ED5DAE20ED70D3BC57E4BAE8B88C4E00CBA11117457E91E
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Žádná uživatelská akce, 9890, 1094562, , , , , ADB161D3AAA168D792E61AE4FD5B92D7, 0C34C9E0EF7ED21D33703494C5A8E7CEBBBBF8B35B55D2045FEC2ECD1451A9E8
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Žádná uživatelská akce, 9890, 1094562, 1.0.72619, , ame, , 8634ABAD518A348FC4BC24A10905257E, 7E89EFB4FC15281BB24E26EA1791937AFCE62CE5087C87E606784A1ACFAAB199
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
WMI: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
1)ok
2)tady uváděl, že bych měl soubory ACER - preinstalled soubory - možnost vložení do karantény - zatím jsem tak neučinil.
3)MBAM - přikládám log
Děkuji za další rady
Malwarebytes
www.malwarebytes.com
-Podrobnosti logovacího souboru-
Datum skenování: 19.07.23
Čas skenování: 7:17
Logovací soubor: 9a0f51ba-25f3-11ee-82c7-088fc327ce3d.json
-Informace o softwaru-
Verze: 4.5.33.272
Verze komponentů: 1.0.2069
Aktualizovat verzi balíku komponent: 1.0.72619
Licence: Zkušební
-Systémová informace-
OS: Windows 11 (Build 22621.1992)
CPU: x64
Systém souborů: NTFS
Uživatel: ACER-ASPIRE\hlava
-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 328591
Zjištěné hrozby: 74
Hrozby umístěné do karantény: 0
Uplynulý čas: 2 min, 47 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 9
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\WindowsTaskCoreUpdate, Žádná uživatelská akce, 744, 721978, , , , , ,
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{E14A4067-2CC0-4416-91F6-FD85D44F9B43}, Žádná uživatelská akce, 744, 721978, , , , , ,
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{E14A4067-2CC0-4416-91F6-FD85D44F9B43}, Žádná uživatelská akce, 744, 721978, , , , , ,
Trojan.BitCoinMiner.TSK, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\UnpackCheck, Žádná uživatelská akce, 7410, 1158726, , , , , ,
Trojan.BitCoinMiner.TSK, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{574D15D6-364C-40EA-8C39-78BC263DB7A2}, Žádná uživatelská akce, 7410, 1158726, , , , , ,
Trojan.BitCoinMiner.TSK, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{574D15D6-364C-40EA-8C39-78BC263DB7A2}, Žádná uživatelská akce, 7410, 1158726, , , , , ,
Trojan.Agent.VBS.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Microsoft\Windows\Shell\WindowsObjectChecking, Žádná uživatelská akce, 4901, 763708, , , , , ,
Trojan.Agent.VBS.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{64C1CDA3-96E5-49C1-828D-A3504D7A566F}, Žádná uživatelská akce, 4901, 763708, , , , , ,
Trojan.Agent.VBS.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\BOOT\{64C1CDA3-96E5-49C1-828D-A3504D7A566F}, Žádná uživatelská akce, 4901, 763708, , , , , ,
Hodnota v registru: 9
Trojan.FakeMS, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{E14A4067-2CC0-4416-91F6-FD85D44F9B43}|PATH, Žádná uživatelská akce, 744, 721980, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|1, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|2, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|3, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|4, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|5, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|6, Žádná uživatelská akce, 4741, 944897, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|7, Žádná uživatelská akce, 4741, 944913, 1.0.72619, , ame, , ,
PUM.Optional.DisallowRun, HKU\S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\DISALLOWRUN|8, Žádná uživatelská akce, 4741, 944915, 1.0.72619, , ame, , ,
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 14
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\0F9AC7EE476643A9815DC98CCAAA646F, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\268ED642D19A465995336774262FF966, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\275275B2E9B84C84B1156D915D177824, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\683E821ADEE94C74ACC0F4D4784566E9, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\6A54C012AC2C47F0A037E9DDB48D9FCE, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\81B33B7D0092433199F2F6CCB8E4E971, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\9AAB7FD836484AC7AB94C5C2A0AE51B0, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\CDE05CB1697B4DB7AFB102FD0B005F68, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\D053813C8E5443CBA432273CDCD7F878, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E559ADF5CD6040C88B29D6C7AD80CF00, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E74A7121B70C4EEEBA7AADDB26D4B155, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E7F26009599544FBB9155A4E79F7ED8C, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ,
PUP.Optional.PushNotifications.Generic, C:\USERS\AGNES\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Žádná uživatelská akce, 9890, 1094562, , , , , ,
Soubor: 42
Trojan.FakeMS, C:\WINDOWS\SYSTEM32\TASKS\WINDOWSTASKCOREUPDATE, Žádná uživatelská akce, 744, 721978, 1.0.72619, , ame, , 5F9624B3BABEFFBCC15071E485A55E79, 540FFE0F59F5EEF3DF46558F205442675965491C6CCC1F2CB15C6E636BE2760A
Trojan.BitCoinMiner.TSK, C:\WINDOWS\SYSTEM32\TASKS\UNPACKCHECK, Žádná uživatelská akce, 7410, 1158726, 1.0.72619, , ame, , FE679377F073956B3BBCF2E5897B256F, B9026BB16D417CCAE01A67ADF05019F5AF27D78796994A580773C5EE08FD4062
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\0F9AC7EE476643A9815DC98CCAAA646F\869B969ECB7144F386BEF43312B64AF2.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , D8235E8AADDBE8EAA3371361D37543B2, E0EC0F15D69BCA22E273781920005FAFE48DA95A0A7E189148DD8BBB143651CF
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\268ED642D19A465995336774262FF966\88497D3EE8784D60911F4E293E6DF85F.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 74864B13B5929DC2F66628E903EE3124, 1CF4B9D7B594BAB9CB0358C67163D57F5D5B6D8126FA1538FF946D7ED7CB6AB9
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\275275B2E9B84C84B1156D915D177824\C74166D1C0DB4320B933BDB68344266A.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 0E5AB176EF614E68119C79021F727DA0, 8481284BC3BE88796BD56339EBB1E64AAD654AED4656CF730A4162C781287E45
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\683E821ADEE94C74ACC0F4D4784566E9\D14CE8FBB25F4A9CA6E72ED1451C4BDA.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 92A8F2D91335C7E1F2190E72B2C6FA3D, 22F999BCA5789CC6C84258FF6A84001672A8104687F7C3B5A41729CF591504A3
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\6A54C012AC2C47F0A037E9DDB48D9FCE\AD422891F49545D0B66CCDF53B3453BF.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 38FCBDF4D908BA74697A6DF8507D773C, 5F082ED549635BEE7EFA8C6505CDB69D67114135B2864EF6CCDD258878CC9386
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\81B33B7D0092433199F2F6CCB8E4E971\7389F13F4BDD4C2984E1E0BC5E01E223.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 2B366B06441879FE40C6D181A84BB4EA, BE8D3770D06BD53A585C2D06128A64E5DA4DA9178F01506B5F9759C1ED523397
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\9AAB7FD836484AC7AB94C5C2A0AE51B0\526780C2FF824CDD99B47668BCE80882.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 51C547D9DC4972AA19C18B6DCD753E5F, 4F4F4C48709B2CF13DC5EAAD25EADF00A81F4617AADD395DB5E6C2A8B9DC8867
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\CDE05CB1697B4DB7AFB102FD0B005F68\F027BE8151924032BE1BD7584945798B.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , ECFC591BB09E186626A4A78F9DC92E48, 62AE7A819F8D1F5FA568619BC71BECD301F1996690A458627BFDB059C2E0F0C9
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\D053813C8E5443CBA432273CDCD7F878\DB5024E5C5A7469196BD4E108DFB05B5.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 39EBCDBA78A9DB27A77AF4020A9A52D5, 410C1FD02A65C391D58D060D12987B2B6EA4F506B5D125418AD894096F835D75
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E559ADF5CD6040C88B29D6C7AD80CF00\FD495583759D46D7A5188AA82C4133FD.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 395E7090C2805251C9D451FBC21A631F, B8ED617EEE5BDD2A08BA97B2964C40F1FC293F326A46519C1085B20570A2AA2E
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E74A7121B70C4EEEBA7AADDB26D4B155\FA5B4AF73A284E30A385F86FA07F183F.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 20D1B1A316E45B5FE879B129F55EFC79, 855B114206077906ABBA8318FA1197B89C685B5CF52C270F8480F49BC6B65E0F
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\TASKS\Microsoft\Windows\Shell\WindowsObjectChecking, Žádná uživatelská akce, 4901, 763708, , , , , E2903CE91F52C0BC97F8D6CCAC815D7A, 20E905407FD4E89F99558F33543EF3AB1AADD7337FA0D25F3B9A1FC6E601B8E3
Trojan.Agent.VBS.Generic, C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\E7F26009599544FBB9155A4E79F7ED8C\FC1AB13DE4FC40578F7F377C14E07975.vbe, Žádná uživatelská akce, 4901, 763708, 1.0.72619, , ame, , 6B424DE0C34D38EB8A7F73CF9C959BFD, 62D6B34BE8B4EF725FFA258511079D2E3295A6C804A6A1B831E727CD108799C7
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46802.EXE, Žádná uživatelská akce, 101, 1147950, 1.0.72619, , ame, , 5EE686EFDF016823B1C96CD871AA66B1, B8607028C5CC453A91A899F6B045D8C7BF93C9969F884A1270F5596768CBA5DB
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\UTORRENT.EXE, Žádná uživatelská akce, 101, 1148570, 1.0.72619, , ame, , 8CDC1930F5F11AD16F68DAEB94C8CB17, EAE4E7436085D7A10CB8C90A75284EA9DCD9602E034F501FF36203FA74A8FCE8
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46672.EXE, Žádná uživatelská akce, 101, 1121241, 1.0.72619, , ame, , 437ED8763AE1A4D9FA62F3643927CCC6, 94D24CAD6B8E158DF73247376A420291E2D954CE387E4A6665670A4E8E586EE3
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46738.EXE, Žádná uživatelská akce, 101, 1131981, 1.0.72619, , ame, , FD42379761A5DDA477083EBFB172286B, 9A27F17D859D7F60A26030C7A0EF3698FFA0FF5FF4230963E52AB79A6A4DACDF
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.5.5_46514.EXE, Žádná uživatelská akce, 101, 1095642, 1.0.72619, , ame, , CDAE52391B92667C9FA26BE90862DC24, 081198C6B5236260AEE9B1183F96EE765E3581724D90B1C5E4484EB1755E773C
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46812.EXE, Žádná uživatelská akce, 101, 1148570, 1.0.72619, , ame, , B2D0827D3C3F63866DFFC587B792F123, 296F56958CD5F557150C1836272FE251938C02309BB162D058D7E306870D4CFD
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\APPDATA\ROAMING\UTORRENT\UPDATES\3.6.0_46590.EXE, Žádná uživatelská akce, 101, 1116198, 1.0.72619, , ame, , 4B4149C544EA79ACCC7CB55015FCC0FA, 761BE1C00F156CAA8D04DB5BD0E2F7B3F12FD0B4B9F29BD4E0AF13125F2E4646
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\DOWNLOADS\UTORRENT_3.5.5BUILD46348.EXE, Žádná uživatelská akce, 101, 1089421, 1.0.72619, , ame, , FC4AE0723D1EBDEE5EB0A250DC7B1DDE, E8EC2361D122FC63C18BEB4AEF80C03B0443AD2259409148E01D39F79C0678EC
PUP.Optional.Seznam, C:\USERS\HLAVA\DOWNLOADS\RPC420_SETUP.EXE, Žádná uživatelská akce, 666, 623984, 1.0.72619, , ame, , AFAFF1F92C13E5DA8B898509C93216A6, C562443FD78CFBCD11C150253CF44DB3782D6371520E033F14B676A165277D69
PUP.Optional.BundleInstaller, C:\USERS\HLAVA\DOWNLOADS\UTORRENT_INSTALLER.EXE, Žádná uživatelská akce, 101, 1127518, 1.0.72619, , ame, , 045685F8D9785A5BFC2945ABAB28343A, 81903CC8A6C3085050806173305E6EDE45BCA27B05191973EC4C95F120FCB16E
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , ECBB9CE1FE54AA553E2ED92BE557975F, E7CD499E52370CE87D2F2C3D56E6EFC6D09DC02D748FA94A680321A1D2786555
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000104.log, Žádná uživatelská akce, 9890, 1094562, , , , , A4B06D4382203E91FA1FFD374BBB7E97, 8FC3BA3C38D1A689F5308EE70C51212552D31E9B3B2166D0A1F67B127FF744B4
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000106.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , 37CB179E8FD7C066D8FBC87A740EC18F, EC04EEDE3F1151E76D95676DF8416410D34AA805BF213597833192904FA6CFA5
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Žádná uživatelská akce, 9890, 1094562, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Žádná uživatelská akce, 9890, 1094562, , , , , 3BD16984383463D670C49941228224EA, 8AC0DDA985485FF0427E8D86B2ED2A418A49E63BD8C940F38ED193D42C3B68DF
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Žádná uživatelská akce, 9890, 1094562, , , , , CBAEC4C60AC6032635830E52A5B0B98D, A9F72A3446B389199A5EE354EAB1D3837803C3604F6871333241AE2FFBF55D68
PUP.Optional.PushNotifications.Generic, C:\Users\agnes\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Žádná uživatelská akce, 9890, 1094562, , , , , 62BE31549602B42E341FE0C71ABFB176, A3067479AFFFBFE6728DB74125504B6380F0DD653D6DA2B691495D5B077FE065
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , 154DB8BB07C4C2BB50BE6157EBCFFBC8, 0FEA07263E58360B0F0DBA9DD974AE5FA1F6E1D113076F278087FE77910207E0
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\002480.log, Žádná uživatelská akce, 9890, 1094562, , , , , 529312517023D8C3061F6F0838D81475, 2D4F5BA8A0BBF1EF6BF09DE4DAA77EA35F36E109CB386E0525465DE48CEDB2AB
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\002482.ldb, Žádná uživatelská akce, 9890, 1094562, , , , , 91406BC2DE1800316ECB5FD76BAA0646, 84958E37C271C8F7E730F714487448800785A1CA55D6CA001C904618B08158E9
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Žádná uživatelská akce, 9890, 1094562, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Žádná uživatelská akce, 9890, 1094562, , , , , A47D59B822D9083AD7141F5FBABE4B84, B9397292E55EC54DB330D3CAF659A28C3EB2C4744B175B8C89F28D4AA65DB013
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Žádná uživatelská akce, 9890, 1094562, , , , , E317DAAC449718078DB438AEFF65EAB8, A07C91A088C23A570ED5DAE20ED70D3BC57E4BAE8B88C4E00CBA11117457E91E
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Žádná uživatelská akce, 9890, 1094562, , , , , ADB161D3AAA168D792E61AE4FD5B92D7, 0C34C9E0EF7ED21D33703494C5A8E7CEBBBBF8B35B55D2045FEC2ECD1451A9E8
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Žádná uživatelská akce, 9890, 1094562, 1.0.72619, , ame, , 8634ABAD518A348FC4BC24A10905257E, 7E89EFB4FC15281BB24E26EA1791937AFCE62CE5087C87E606784A1ACFAAB199
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
WMI: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
Re: Prosím o preventivní kontrolu logu
1,2 - OK
3 - vsetko najdene nechaj zmazat - restart - opakovana kontrola MBAM
3 - vsetko najdene nechaj zmazat - restart - opakovana kontrola MBAM
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
Ahoj,
vrátím se ke dvojce - nechat nebo mu dát za úkol soubory dát do karantény?
3) dáno do karantény plus restart - dále nový scan a zase výsledky zde:
Děkuji
Malwarebytes
www.malwarebytes.com
-Podrobnosti logovacího souboru-
Datum skenování: 19.07.23
Čas skenování: 8:14
Logovací soubor: 88fb0128-25fb-11ee-a3ee-088fc327ce3d.json
-Informace o softwaru-
Verze: 4.5.33.272
Verze komponentů: 1.0.2069
Aktualizovat verzi balíku komponent: 1.0.72623
Licence: Zkušební
-Systémová informace-
OS: Windows 11 (Build 22621.1992)
CPU: x64
Systém souborů: NTFS
Uživatel: ACER-ASPIRE\hlava
-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 328716
Zjištěné hrozby: 9
Hrozby umístěné do karantény: 0
Uplynulý čas: 1 min, 17 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 1
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Žádná uživatelská akce, 9890, 1094562, , , , , ,
Soubor: 8
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log, Žádná uživatelská akce, 9890, 1094562, , , , , 9FD93D84FA854972EEA0AB7F1EB3A051, 559AA447A10CDCFE303A078201081578B16298D1F4A75CBA3F51CB46D4B767EE
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Žádná uživatelská akce, 9890, 1094562, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Žádná uživatelská akce, 9890, 1094562, , , , , 9131E85966EA9C0294E25E683750A576, 5310E0425C7E6EA0149A10FDE82E3406C775EBA84897555CB43FBF19FB814A2C
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Žádná uživatelská akce, 9890, 1094562, , , , , 46D65D13593715F9655221725722B67F, AAE40C4DAC232E0303B921F9B6FBD8C22D1F2229ED305BFB51C53CA989E47002
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Žádná uživatelská akce, 9890, 1094562, , , , , 5AF87DFD673BA2115E2FCF5CFDB727AB, F9D31B278E215EB0D0E9CD709EDFA037E828F36214AB7906F612160FEAD4B2B4
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Žádná uživatelská akce, 9890, 1094562, , , , , 53A547EEA19E4440C4C8AA4429FDD6EF, DE85706651F037CCE9DC05A7C2DB02C1EF910D19BDF4E679789352B4C870FC13
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Žádná uživatelská akce, 9890, 1094562, 1.0.72623, , ame, , 6C097554E3EC567FD567B1C54D2AF246, CAD39F2B68C0B0CCEB2A849477A026333300591F0AC1249BFEF05C642701EDA0
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
WMI: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
vrátím se ke dvojce - nechat nebo mu dát za úkol soubory dát do karantény?
3) dáno do karantény plus restart - dále nový scan a zase výsledky zde:
Děkuji
Malwarebytes
www.malwarebytes.com
-Podrobnosti logovacího souboru-
Datum skenování: 19.07.23
Čas skenování: 8:14
Logovací soubor: 88fb0128-25fb-11ee-a3ee-088fc327ce3d.json
-Informace o softwaru-
Verze: 4.5.33.272
Verze komponentů: 1.0.2069
Aktualizovat verzi balíku komponent: 1.0.72623
Licence: Zkušební
-Systémová informace-
OS: Windows 11 (Build 22621.1992)
CPU: x64
Systém souborů: NTFS
Uživatel: ACER-ASPIRE\hlava
-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 328716
Zjištěné hrozby: 9
Hrozby umístěné do karantény: 0
Uplynulý čas: 1 min, 17 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 1
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Žádná uživatelská akce, 9890, 1094562, , , , , ,
Soubor: 8
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log, Žádná uživatelská akce, 9890, 1094562, , , , , 9FD93D84FA854972EEA0AB7F1EB3A051, 559AA447A10CDCFE303A078201081578B16298D1F4A75CBA3F51CB46D4B767EE
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Žádná uživatelská akce, 9890, 1094562, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Žádná uživatelská akce, 9890, 1094562, , , , , ,
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Žádná uživatelská akce, 9890, 1094562, , , , , 9131E85966EA9C0294E25E683750A576, 5310E0425C7E6EA0149A10FDE82E3406C775EBA84897555CB43FBF19FB814A2C
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Žádná uživatelská akce, 9890, 1094562, , , , , 46D65D13593715F9655221725722B67F, AAE40C4DAC232E0303B921F9B6FBD8C22D1F2229ED305BFB51C53CA989E47002
PUP.Optional.PushNotifications.Generic, C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Žádná uživatelská akce, 9890, 1094562, , , , , 5AF87DFD673BA2115E2FCF5CFDB727AB, F9D31B278E215EB0D0E9CD709EDFA037E828F36214AB7906F612160FEAD4B2B4
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Preferences, Žádná uživatelská akce, 9890, 1094562, , , , , 53A547EEA19E4440C4C8AA4429FDD6EF, DE85706651F037CCE9DC05A7C2DB02C1EF910D19BDF4E679789352B4C870FC13
PUP.Optional.PushNotifications.Generic, C:\USERS\HLAVA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Žádná uživatelská akce, 9890, 1094562, 1.0.72623, , ame, , 6C097554E3EC567FD567B1C54D2AF246, CAD39F2B68C0B0CCEB2A849477A026333300591F0AC1249BFEF05C642701EDA0
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
WMI: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
Re: Prosím o preventivní kontrolu logu
preinstalled ponechaj
toto skus dat znovu zmazat, ak nepojde, tak sa nic nedeje, nie je to take zavazne, ako tie prve
toto skus dat znovu zmazat, ak nepojde, tak sa nic nedeje, nie je to take zavazne, ako tie prve
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
Děkuji,
3) vše jsem znovu dal do karantény a reset a nový scan - nyní bez nálezu.
PC ozkouším. Děkuji za všechny rady.
3) vše jsem znovu dal do karantény a reset a nový scan - nyní bez nálezu.
PC ozkouším. Děkuji za všechny rady.
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
jinak ještě pro příště, nedaří se mi spustit ani jako správce FRST64.exe . Nevím čím to může být. Stává se to někomu? Díky
Re: Prosím o preventivní kontrolu logu
rado sa stalo
FRST64 - moznosti nespustenia:
- priaktivny" AV" - nacas vypnut
- stiahnut z ineho zdroja
- spustit y ineho umiestnenia
FRST64 - moznosti nespustenia:
- priaktivny" AV" - nacas vypnut
- stiahnut z ineho zdroja
- spustit y ineho umiestnenia
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
super, pomohla změna umístění souboru, zde pro jistotu LOG. Pokud to půjde, zkoukněte mi ho prosím. Děkuji.
Logfile of random's system information tool 1.10 (written by random/random)
Run by hlava at 2023-07-19 11:56:12
Microsoft Windows 11 Home
System drive C: has 141 GB (14%) free of 976 GB
Total RAM: 16179 MB (55% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:56:15, on 19.07.2023
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.22621.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Windows\SysWOW64\cmd.exe
C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe
C:\Program Files (x86)\NetSetMan\netsetman.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Adguard\Adguard.exe
C:\Program Files\trend micro\hlava.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O4 - HKLM\..\Run: [NetSetMan] "C:\Program Files (x86)\NetSetMan\netsetman.exe" -h
O4 - HKLM\..\Run: [Adobe CCXProcess] C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [TeamsMachineUninstallerLocalAppData] %LOCALAPPDATA%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
O4 - HKLM\..\Run: [Adguard] "C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
O4 - HKCU\..\Run: [f.lux] "C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKCU\..\Run: [Bonus.SSR.FR15] "C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlansp_c.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: ACC Service (ACCSvc) - Acer Incorporated - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
O23 - Service: Adguard Service - Adguard Software Limited - C:\Program Files (x86)\Adguard\AdguardSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Autodesk Desktop Licensing Service (AdskLicensingService) - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe
O23 - Service: AdskNLM - Flexera - C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe
O23 - Service: Adobe Genuine Software Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Autodesk Access Service Host - Autodesk, Inc. - C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_2226bf - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: DtsApo4Service - Unknown owner - C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe (file missing)
O23 - Service: EABackgroundService - Electronic Arts - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
O23 - Service: EasyAntiCheat - Epic Games, Inc - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: @oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: FlexNet Licensing Service 64 - Flexera - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Flixmate update service (Flixmate.UpdateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe
O23 - Service: Flixmate service (FlixmateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe
O23 - Service: Freedome Service - F-Secure Corporation - C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe
O23 - Service: NVIDIA FrameView SDK service (FvSvc) - NVIDIA - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe
O23 - Service: Grafana - Unknown owner - C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
O23 - Service: @oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe
O23 - Service: @oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Intel - C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
O23 - Service: @oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service (KAPSService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @oem42.inf,%KillerAnalyticsService%;Killer Analytics Service (Killer Analytics Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe (file missing)
O23 - Service: @oem42.inf,%Killer_Service%;Killer Network Service (Killer Network Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (file missing)
O23 - Service: @oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management (KNDBWM) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
O23 - Service: Macrium Service (MacriumService) - Paramount Software UK Ltd - C:\Program Files\Macrium\Common\MacriumService.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Security (NortonSecurity) - NortonLifelock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe
O23 - Service: NSM Service (nsmService) - NetSetMan GmbH - C:\Program Files (x86)\NetSetMan\nsmservice.exe
O23 - Service: Norton WSC Service (nsWscSvc) - NortonLifeLock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: PDF24 - geek software GmbH - C:\Program Files\PDF24\pdf24.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) - arvato digital services llc - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Predator Service (PSSvc) - Acer Incorporated - C:\Program Files\Acer\NitroSense Service\PSSvc.exe
O23 - Service: Quick Access Local Service (QALSvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QALSvc.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QASvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @oem115.inf,%RstMwService.ServiceName%;Intel(R) Storage Middleware Service (RstMwService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Realtek Semiconductor - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\Sgrm\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\Sgrm\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTrap) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\steamservice.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Experience Improvement Program (UEIPSvc) - Acer Incorporated - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe
O23 - Service: SHAREit Hotspot Service (uSHAREitSvc) - SHAREit Technologies Co.Ltd - C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.Service.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Install Assist Service (Wondershare InstallAssist) - Wondershare - C:\ProgramData\Wondershare\Service\InstallAssistService.exe
O23 - Service: @oem42.inf,%xTendSoftAPService%;xTendSoftAPService (xTendSoftAPService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe (file missing)
O23 - Service: @oem42.inf,%xTendUtilityService%;xTendUtilityService (xTendUtilityService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (file missing)
--
End of file - 20631 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-583bff8b-002c-4432-9db5-617ee704f5ed -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-1d25e605-95f2-4a0c-a937-ca6b51f7e3d6 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-da150393-ec7b-495e-a9a5-3d50c8cb809a -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5721b265-acf7-4465-b594-15626a737a1e -LifetimeId:b7e42998-eaaa-4a0f-a187-6b184939fd57 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-42f27f36-fca0-48f9-8944-b142f42399db -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-d6b46237-e2c3-434c-94a7-c040f6de2c89 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5ca56769-e9ea-4a05-bc51-1feb25c6d652 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-106d596d-a56b-4262-bddb-7c47d3a30a54 -LifetimeId:81718c0a-867e-4069-8be5-d61c3ae1f305 -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
winlogon.exe
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -s BTAGService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\System32\svchost.exe -k netprofm -p -s netprofm
C:\WINDOWS\system32\svchost.exe -k UserProfileService -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k osprivacy -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
dashost.exe {aea19e16-6bcb-43ea-ac16e47171d9c7ac}
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s PhoneSvc
C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
"C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg NVDisplay.ContainerLocalSystem\Session -c
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DevQueryBroker
dashost.exe {f78f400b-c537-4298-82f327fd5cba29fb}
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TextInputManagementService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\WLANExt.exe 2614054565008
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
"C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files (x86)\Adguard\AdguardSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s WebClient
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe"
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe"
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe
"C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
"C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe"
"C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe"
"C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe"
"C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe"
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Browser
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\Program Files\Macrium\Common\MacriumService.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /s "NortonSecurity" /m "C:\Program Files\Norton Security\Engine\22.23.5.106\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NetSetMan\nsmservice.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
"C:\Program Files\PDF24\pdf24.exe" -service
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\ProgramData\Wondershare\Service\InstallAssistService.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe
rundll32.exe "c:\program files\nvidia corporation\nvstreamsrv\rxdiag.dll" RxDiagSetRuntimeMessagePump
C:\WINDOWS\System32\vds.exe
AggregatorHost.exe
"KAPS.exe"
"xTendUtility.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\GrafanaLabs\grafana\bin\grafana-server.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
wmiadap.exe /F /T /R
C:\WINDOWS\system32\svchost.exe -k WebThreatDefense -p -s webthreatdefsvc
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /c /a /s UserSession
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
sihost.exe
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p -s BluetoothUserService
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s webthreatdefusersvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEMN.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -admin
"C:\WINDOWS\System32\LocationNotificationWindows.exe"
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"c:\program files\macrium\common\reflectui.exe"
C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup -s UdkUserSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"ctfmon.exe"
C:\WINDOWS\system32\AUDIODG.EXE 0x000000000000057C
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe" -ComServer:Background -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files\Acer\NitroSense Service\PSSvc.exe"
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\widgetservice.exe" -RegisterProcessAsComServer -Embedding
"c:\program files\macrium\common\reflectmonitor.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Acer\NitroSense Service\PSAgent.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-trial-handle=2240,1770853603363157177,15481932573962303659,131072 --disable-features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACACwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-token=17618239164370466896 --mojo-platform-channel-handle=2284 /prefetch:2
"C:\Program Files\Acer\NitroSense Service\PSAdminAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-handle=2240,1770853603363157177,15481932573962303659,131072 --disable-features=VizDisplayCompositor --service-pipe-token=6664654329617977083 --lang=en-US --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=6664654329617977083 --renderer-client-id=3 --mojo-platform-channel-handle=2588 /prefetch:1
"C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -background
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe"
"C:\Windows\System32\cmd.exe" /K %qa% -e "C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\PDF24\pdf24.exe"
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe" --minimizedUi
C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\bin\ADPClientService.exe -f C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\JSON
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe"
"C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
"C:\Program Files\Autodesk\AdskIdentityManager\1.9.18.0/AdskIdentityManager.exe" --process_name Autodesk.IDSDK.DefaultProcess-v2 --server_name Autodesk.IDSDK.DefaultServer-v2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=114.0.5735.199 --initial-client-data=0x158,0x15c,0x160,0x134,0x164,0x7fff4801d9e0,0x7fff4801d9f0,0x7fff4801da00
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1752 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2168 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2220 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:8
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353196931 --mojo-platform-channel-handle=3740 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=6 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353215820 --mojo-platform-channel-handle=3892 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=7 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353253045 --mojo-platform-channel-handle=2064 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=10 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353288529 --mojo-platform-channel-handle=4300 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=11 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353336913 --mojo-platform-channel-handle=4848 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=8 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353381215 --mojo-platform-channel-handle=4628 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --appName ada --minimized
C:\WINDOWS\system32\cmd.exe /d /c "C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0 < \\.\pipe\chrome.nativeMessaging.in.bf7a73b847e788a0 > \\.\pipe\chrome.nativeMessaging.out.bf7a73b847e788a0
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=gpu-process --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1576 --field-trial-handle=1648,i,8836072397796765346,8947917260366637650,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --mojo-platform-channel-handle=2036 --field-trial-handle=1648,i,8836072397796765346,8947917260366637650,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=renderer --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --app-user-model-id=Autodesk.Access --app-path="C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\resources\app.asar" --no-sandbox --no-zygote --enable-blink-features=WebAppWindowControlsOverlay --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=354733232 --mojo-platform-channel-handle=2484 --field-trial-handle=1648,i,8836072397796765346,8947917260366637650,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=114.0.5735.201 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=114.0.1823.82 --initial-client-data=0x180,0x184,0x188,0x15c,0x194,0x7fff34e84210,0x7fff34e84220,0x7fff34e84230
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1980 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2100 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2584 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --instant-process --first-renderer-process --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=14 --time-ticks-at-unix-epoch=-1689760170302550 --launch-time-ticks=357849988 --mojo-platform-channel-handle=4684 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:1
"iCloudCKKS-AppX.exe"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=17 --time-ticks-at-unix-epoch=-1689760170302550 --launch-time-ticks=357997095 --mojo-platform-channel-handle=5544 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:1
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --mojo-named-platform-channel-pipe=15656.18452.544002366392879102
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe" -Embedding
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=105.0.5195.127 "--annotation=exe=C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=105.0.1343.53 --initial-client-data=0x114,0x118,0x11c,0xf0,0x128,0x7fff22365850,0x7fff22365860,0x7fff22365870
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2032 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:2
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2172 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:3
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=utility --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2348 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --display-capture-permissions-policy-allowed --js-flags=--ms-user-locale= --event-path-policy=0 --first-renderer-process --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc" --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=358762990 --mojo-platform-channel-handle=3292 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:1
C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\secd.exe -Embedding
"C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudDrive.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=22 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=364484158 --mojo-platform-channel-handle=6424 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=33 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=365408777 --mojo-platform-channel-handle=5724 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=25 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=367052189 --mojo-platform-channel-handle=6340 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files (x86)\NetSetMan\netsetman.exe" "-h" -multi
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe"
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe" "C:\Program Files\Adobe\Adobe Creative Cloud Experience\js\main.js"
"C:\Program Files\Acer\Quick Access Service\QASvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s seclogon
"C:\Program Files\Acer\Quick Access Service\QAAgent.exe"
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe" "-launchedbyvulcan-18656 C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe"
-BootProc
"C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe"
-BootProc
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxextN.exe" -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=34 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=370693331 --mojo-platform-channel-handle=6152 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=cs --service-sandbox-type=audio --mojo-platform-channel-handle=6864 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=26 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=373479348 --mojo-platform-channel-handle=3744 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=32 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=373489585 --mojo-platform-channel-handle=6860 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=30 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=373505533 --mojo-platform-channel-handle=7160 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s SmsRouter
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation -p -s wcncsvc
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=37 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=388003895 --mojo-platform-channel-handle=6884 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
taskhostw.exe $(Arg0)
"D:\RSITx64.exe"
=========Mozilla firefox=========
ProfilePath - C:\Users\hlava\AppData\Roaming\Mozilla\Firefox\Profiles\nzn7m1zy.default-release
"web2pdfextension.17@acrobat.adobe.com"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFGuide]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npGuide.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFWeb]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.17.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.18]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\BHO\ie_to_edge_bho_64.dll [2023-07-13 589264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\BHO\ie_to_edge_bho.dll [2023-07-13 454592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01 167824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2022-10-12 266240]
"RtkAudUService"=C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe [2021-06-29 1222448]
"Reflect UI"=C:\Program Files\Macrium\Common\ReflectUI.exe [2022-10-30 9922800]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11 509936]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [2022-07-12 6711808]
""= []
"AdobeGCInvoker-1.0"=C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2023-01-19 3503584]
"RunSmartHIDFile"=C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartHIDStart.exe [2020-09-15 524288]
"PDF24"=C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
"Autodesk Access"=C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe [2023-05-02 18088224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"f.lux"=C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe [2023-05-18 1525880]
"GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA"=C:\Program Files\Google\Chrome\Application\chrome.exe [2023-06-24 3233560]
"Bonus.SSR.FR15"=C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe [2020-09-09 1187488]
"MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2023-07-13 4113856]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NetSetMan"=C:\Program Files (x86)\NetSetMan\netsetman.exe [2019-11-08 7447424]
"Adobe CCXProcess"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [2022-09-02 129288]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2019-07-26 145344]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2022-02-07 3146752]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2018-03-27 1069296]
"TeamsMachineUninstallerLocalAppData"=C:\Users\hlava\AppData\Local\Microsoft\Teams\Update.exe [2022-09-11 2454240]
"Adguard"=C:\Program Files (x86)\Adguard\Adguard.exe [2023-06-26 7291096]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"DisallowRun"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"aux4"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave6"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux3"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave5"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
Logfile of random's system information tool 1.10 (written by random/random)
Run by hlava at 2023-07-19 11:56:12
Microsoft Windows 11 Home
System drive C: has 141 GB (14%) free of 976 GB
Total RAM: 16179 MB (55% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:56:15, on 19.07.2023
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.22621.0001)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Windows\SysWOW64\cmd.exe
C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe
C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe
C:\Program Files (x86)\NetSetMan\netsetman.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Adguard\Adguard.exe
C:\Program Files\trend micro\hlava.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O4 - HKLM\..\Run: [NetSetMan] "C:\Program Files (x86)\NetSetMan\netsetman.exe" -h
O4 - HKLM\..\Run: [Adobe CCXProcess] C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [TeamsMachineUninstallerLocalAppData] %LOCALAPPDATA%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
O4 - HKLM\..\Run: [Adguard] "C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
O4 - HKCU\..\Run: [f.lux] "C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKCU\..\Run: [Bonus.SSR.FR15] "C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe" /autorun
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD] "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlansp_c.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: ACC Service (ACCSvc) - Acer Incorporated - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
O23 - Service: Adguard Service - Adguard Software Limited - C:\Program Files (x86)\Adguard\AdguardSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Autodesk Desktop Licensing Service (AdskLicensingService) - Autodesk - C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe
O23 - Service: AdskNLM - Flexera - C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe
O23 - Service: Adobe Genuine Software Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Autodesk Access Service Host - Autodesk, Inc. - C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_2226bf - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: DtsApo4Service - Unknown owner - C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe (file missing)
O23 - Service: EABackgroundService - Electronic Arts - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
O23 - Service: EasyAntiCheat - Epic Games, Inc - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: @oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: FlexNet Licensing Service 64 - Flexera - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Flixmate update service (Flixmate.UpdateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe
O23 - Service: Flixmate service (FlixmateService) - Unknown owner - C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe
O23 - Service: Freedome Service - F-Secure Corporation - C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe
O23 - Service: NVIDIA FrameView SDK service (FvSvc) - NVIDIA - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe
O23 - Service: Grafana - Unknown owner - C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP SI Service (HPSIService) - Unknown owner - C:\WINDOWS\system32\HPSIsvc.exe (file missing)
O23 - Service: @oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
O23 - Service: @oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe
O23 - Service: @oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Intel - C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
O23 - Service: @oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service (KAPSService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @oem42.inf,%KillerAnalyticsService%;Killer Analytics Service (Killer Analytics Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe (file missing)
O23 - Service: @oem42.inf,%Killer_Service%;Killer Network Service (Killer Network Service) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (file missing)
O23 - Service: @oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management (KNDBWM) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
O23 - Service: Macrium Service (MacriumService) - Paramount Software UK Ltd - C:\Program Files\Macrium\Common\MacriumService.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Security (NortonSecurity) - NortonLifelock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe
O23 - Service: NSM Service (nsmService) - NetSetMan GmbH - C:\Program Files (x86)\NetSetMan\nsmservice.exe
O23 - Service: Norton WSC Service (nsWscSvc) - NortonLifeLock Inc. - C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: PDF24 - geek software GmbH - C:\Program Files\PDF24\pdf24.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) - arvato digital services llc - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Predator Service (PSSvc) - Acer Incorporated - C:\Program Files\Acer\NitroSense Service\PSSvc.exe
O23 - Service: Quick Access Local Service (QALSvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QALSvc.exe
O23 - Service: Quick Access Service (QASvc) - Acer Incorporated - C:\Program Files\Acer\Quick Access Service\QASvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @oem115.inf,%RstMwService.ServiceName%;Intel(R) Storage Middleware Service (RstMwService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Realtek Semiconductor - C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\Sgrm\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\Sgrm\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTrap) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\steamservice.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: User Experience Improvement Program (UEIPSvc) - Acer Incorporated - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe
O23 - Service: SHAREit Hotspot Service (uSHAREitSvc) - SHAREit Technologies Co.Ltd - C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.Service.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Install Assist Service (Wondershare InstallAssist) - Wondershare - C:\ProgramData\Wondershare\Service\InstallAssistService.exe
O23 - Service: @oem42.inf,%xTendSoftAPService%;xTendSoftAPService (xTendSoftAPService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe (file missing)
O23 - Service: @oem42.inf,%xTendUtilityService%;xTendUtilityService (xTendUtilityService) - Unknown owner - C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (file missing)
--
End of file - 20631 bytes
======Listing Processes======
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-583bff8b-002c-4432-9db5-617ee704f5ed -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-1d25e605-95f2-4a0c-a937-ca6b51f7e3d6 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-da150393-ec7b-495e-a9a5-3d50c8cb809a -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5721b265-acf7-4465-b594-15626a737a1e -LifetimeId:b7e42998-eaaa-4a0f-a187-6b184939fd57 -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-42f27f36-fca0-48f9-8944-b142f42399db -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-d6b46237-e2c3-434c-94a7-c040f6de2c89 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-5ca56769-e9ea-4a05-bc51-1feb25c6d652 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-106d596d-a56b-4262-bddb-7c47d3a30a54 -LifetimeId:81718c0a-867e-4069-8be5-d61c3ae1f305 -DeviceGroupId:WudfDefaultDevicePool -HostArg:0
winlogon.exe
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -s BTAGService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s gpsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\System32\svchost.exe -k netprofm -p -s netprofm
C:\WINDOWS\system32\svchost.exe -k UserProfileService -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k NetworkService -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k osprivacy -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
dashost.exe {aea19e16-6bcb-43ea-ac16e47171d9c7ac}
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s PhoneSvc
C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
"C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg NVDisplay.ContainerLocalSystem\Session -c
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DevQueryBroker
dashost.exe {f78f400b-c537-4298-82f327fd5cba29fb}
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TextInputManagementService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\system32\WLANExt.exe 2614054565008
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
"C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files (x86)\Adguard\AdguardSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s WebClient
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe"
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe"
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe
"C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
"C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe"
"C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe"
"C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe"
"C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe"
C:\WINDOWS\system32\HPSIsvc.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Browser
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
"C:\Program Files\Macrium\Common\MacriumService.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /s "NortonSecurity" /m "C:\Program Files\Norton Security\Engine\22.23.5.106\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NetSetMan\nsmservice.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
"C:\Program Files\PDF24\pdf24.exe" -service
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
"c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
C:\ProgramData\Wondershare\Service\InstallAssistService.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe
rundll32.exe "c:\program files\nvidia corporation\nvstreamsrv\rxdiag.dll" RxDiagSetRuntimeMessagePump
C:\WINDOWS\System32\vds.exe
AggregatorHost.exe
"KAPS.exe"
"xTendUtility.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\GrafanaLabs\grafana\bin\grafana-server.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
wmiadap.exe /F /T /R
C:\WINDOWS\system32\svchost.exe -k WebThreatDefense -p -s webthreatdefsvc
"C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe" /c /a /s UserSession
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
sihost.exe
C:\WINDOWS\system32\svchost.exe -k BthAppGroup -p -s BluetoothUserService
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s webthreatdefusersvc
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEMN.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -admin
"C:\WINDOWS\System32\LocationNotificationWindows.exe"
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"c:\program files\macrium\common\reflectui.exe"
C:\WINDOWS\system32\svchost.exe -k UdkSvcGroup -s UdkUserSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"ctfmon.exe"
C:\WINDOWS\system32\AUDIODG.EXE 0x000000000000057C
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.122.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe" -ComServer:Background -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files\Acer\NitroSense Service\PSSvc.exe"
"C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.13900.0.0_x64__cw5n1h2txyewy\Dashboard\widgetservice.exe" -RegisterProcessAsComServer -Embedding
"c:\program files\macrium\common\reflectmonitor.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Acer\NitroSense Service\PSAgent.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-trial-handle=2240,1770853603363157177,15481932573962303659,131072 --disable-features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACACwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-token=17618239164370466896 --mojo-platform-channel-handle=2284 /prefetch:2
"C:\Program Files\Acer\NitroSense Service\PSAdminAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-handle=2240,1770853603363157177,15481932573962303659,131072 --disable-features=VizDisplayCompositor --service-pipe-token=6664654329617977083 --lang=en-US --log-file="C:\Users\hlava\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=6664654329617977083 --renderer-client-id=3 --mojo-platform-channel-handle=2588 /prefetch:1
"C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe" -background
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe"
"C:\Windows\System32\cmd.exe" /K %qa% -e "C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe "
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\PDF24\pdf24.exe"
"C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe" --minimizedUi
C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\bin\ADPClientService.exe -f C:\Users\hlava\AppData\Roaming\Autodesk\ADPSDK\JSON
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartFore.exe"
"C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe" /noshow
"C:\Program Files\Autodesk\AdskIdentityManager\1.9.18.0/AdskIdentityManager.exe" --process_name Autodesk.IDSDK.DefaultProcess-v2 --server_name Autodesk.IDSDK.DefaultServer-v2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\hlava\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=114.0.5735.199 --initial-client-data=0x158,0x15c,0x160,0x134,0x164,0x7fff4801d9e0,0x7fff4801d9f0,0x7fff4801da00
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1752 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:2
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2168 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2220 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:8
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353196931 --mojo-platform-channel-handle=3740 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=6 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353215820 --mojo-platform-channel-handle=3892 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=7 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353253045 --mojo-platform-channel-handle=2064 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=10 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353288529 --mojo-platform-channel-handle=4300 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=11 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353336913 --mojo-platform-channel-handle=4848 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --extension-process --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=8 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=353381215 --mojo-platform-channel-handle=4628 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --appName ada --minimized
C:\WINDOWS\system32\cmd.exe /d /c "C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0 < \\.\pipe\chrome.nativeMessaging.in.bf7a73b847e788a0 > \\.\pipe\chrome.nativeMessaging.out.bf7a73b847e788a0
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Adguard\Adguard.BrowserExtensionHost.exe" chrome-extension://fbohpolgemkbfphodcfgnpjcmedcjhpn/ --parent-window=0
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=gpu-process --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1576 --field-trial-handle=1648,i,8836072397796765346,8947917260366637650,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --mojo-platform-channel-handle=2036 --field-trial-handle=1648,i,8836072397796765346,8947917260366637650,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
"C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe" --type=renderer --user-data-dir="C:\Users\hlava\AppData\Roaming\UI Launcher/ada-ui" --app-user-model-id=Autodesk.Access --app-path="C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\resources\app.asar" --no-sandbox --no-zygote --enable-blink-features=WebAppWindowControlsOverlay --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=354733232 --mojo-platform-channel-handle=2484 --field-trial-handle=1648,i,8836072397796765346,8947917260366637650,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\hlava\AppData\Local\Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=114.0.5735.201 "--annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --annotation=ver=114.0.1823.82 --initial-client-data=0x180,0x184,0x188,0x15c,0x194,0x7fff34e84210,0x7fff34e84220,0x7fff34e84230
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1980 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:2
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --mojo-platform-channel-handle=2100 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:3
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --mojo-platform-channel-handle=2584 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --instant-process --first-renderer-process --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=14 --time-ticks-at-unix-epoch=-1689760170302550 --launch-time-ticks=357849988 --mojo-platform-channel-handle=4684 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:1
"iCloudCKKS-AppX.exe"
"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=cs --js-flags=--ms-user-locale=cs_CZ --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=17 --time-ticks-at-unix-epoch=-1689760170302550 --launch-time-ticks=357997095 --mojo-platform-channel-handle=5544 --field-trial-handle=1996,i,15439882576846633436,6052067050297176397,262144 /prefetch:1
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --mojo-named-platform-channel-pipe=15656.18452.544002366392879102
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe" -Embedding
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=105.0.5195.127 "--annotation=exe=C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=105.0.1343.53 --initial-client-data=0x114,0x118,0x11c,0xf0,0x128,0x7fff22365850,0x7fff22365860,0x7fff22365870
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2032 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:2
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2172 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:3
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=utility --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2348 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:8
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\hlava\AppData\Local\Packages\AppleInc.iCloud_nzyj5cx40ttqa\LocalCache\Local\WebViewUserDataDirs\iCloudServices\EBWebView" --webview-exe-name=iCloudServices.exe --webview-exe-version=14.1.0.108 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --display-capture-permissions-policy-allowed --js-flags=--ms-user-locale= --event-path-policy=0 --first-renderer-process --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc" --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=358762990 --mojo-platform-channel-handle=3292 --field-trial-handle=1924,i,5854341989440389981,11078393640003504249,131072 /prefetch:1
C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\secd.exe -Embedding
"C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe"
"C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa\iCloud\iCloudDrive.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=22 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=364484158 --mojo-platform-channel-handle=6424 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=33 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=365408777 --mojo-platform-channel-handle=5724 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe"
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=25 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=367052189 --mojo-platform-channel-handle=6340 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files (x86)\NetSetMan\netsetman.exe" "-h" -multi
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe"
"C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe" "C:\Program Files\Adobe\Adobe Creative Cloud Experience\js\main.js"
"C:\Program Files\Acer\Quick Access Service\QASvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s seclogon
"C:\Program Files\Acer\Quick Access Service\QAAgent.exe"
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe" "-launchedbyvulcan-18656 C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe"
-BootProc
"C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe"
-BootProc
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxextN.exe" -Embedding
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=34 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=370693331 --mojo-platform-channel-handle=6152 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files (x86)\Adguard\Adguard.exe" /nosplash
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=cs --service-sandbox-type=audio --mojo-platform-channel-handle=6864 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:8
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=26 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=373479348 --mojo-platform-channel-handle=3744 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=32 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=373489585 --mojo-platform-channel-handle=6860 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=30 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=373505533 --mojo-platform-channel-handle=7160 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s SmsRouter
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceAndNoImpersonation -p -s wcncsvc
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=37 --time-ticks-at-unix-epoch=-1689760170302392 --launch-time-ticks=388003895 --mojo-platform-channel-handle=6884 --field-trial-handle=1764,i,7184489819382953811,14877443771106288006,262144 /prefetch:1
taskhostw.exe $(Arg0)
"D:\RSITx64.exe"
=========Mozilla firefox=========
ProfilePath - C:\Users\hlava\AppData\Roaming\Mozilla\Firefox\Profiles\nzn7m1zy.default-release
"web2pdfextension.17@acrobat.adobe.com"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFGuide]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npGuide.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\JFWeb]
"Description"=
"Path"=C:\Program Files (x86)\NetSurveillance\CMS\npWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.17.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=3.0.18]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\BHO\ie_to_edge_bho_64.dll [2023-07-13 589264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\BHO\ie_to_edge_bho.dll [2023-07-13 454592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01 167824]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Helper - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05 170720]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05 150240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2022-10-12 266240]
"RtkAudUService"=C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_63ffa3cb4ae6dbc0\RtkAudUService64.exe [2021-06-29 1222448]
"Reflect UI"=C:\Program Files\Macrium\Common\ReflectUI.exe [2022-10-30 9922800]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11 509936]
"Acrobat Assistant 8.0"=C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [2022-07-12 6711808]
""= []
"AdobeGCInvoker-1.0"=C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2023-01-19 3503584]
"RunSmartHIDFile"=C:\Users\hlava\AppData\Local\SmartGenius\resources\KeyboardDriver\SmartHIDStart.exe [2020-09-15 524288]
"PDF24"=C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
"Autodesk Access"=C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessCore.exe [2023-05-02 18088224]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"f.lux"=C:\Users\hlava\AppData\Local\FluxSoftware\Flux\flux.exe [2023-05-18 1525880]
"GoogleChromeAutoLaunch_BEF88DE6C69ADEC784F7524F894B6CAA"=C:\Program Files\Google\Chrome\Application\chrome.exe [2023-06-24 3233560]
"Bonus.SSR.FR15"=C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe [2020-09-09 1187488]
"MicrosoftEdgeAutoLaunch_76554E69F94DC990BB425147D5D0F2CD"=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe [2023-07-13 4113856]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"NetSetMan"=C:\Program Files (x86)\NetSetMan\netsetman.exe [2019-11-08 7447424]
"Adobe CCXProcess"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [2022-09-02 129288]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2019-07-26 145344]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2022-02-07 3146752]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2018-03-27 1069296]
"TeamsMachineUninstallerLocalAppData"=C:\Users\hlava\AppData\Local\Microsoft\Teams\Update.exe [2022-09-11 2454240]
"Adguard"=C:\Program Files (x86)\Adguard\Adguard.exe [2023-06-26 7291096]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HidSpiCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TextInputManagementService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{53966CB1-4D46-4166-BF23-C522403CD495}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"DisallowRun"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"aux1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave4"=wdmaud.drv
"aux4"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave6"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux3"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave5"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
======File associations======
.inf - open -
.inf - install -
.ini - open -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
.txt - open -
======List of files/folders created in the last 1 month======
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfh009.dat
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfh005.dat
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfc009.dat
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfc005.dat
2023-07-19 08:27:41 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2023-07-19 08:27:39 ----A---- C:\WINDOWS\system32\drivers\farflt11.sys
2023-07-19 08:27:38 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2023-07-19 07:16:42 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2023-07-19 07:16:42 ----A---- C:\WINDOWS\system32\drivers\MbamChameleon.sys
2023-07-19 07:16:38 ----A---- C:\WINDOWS\system32\drivers\MbamElam.sys
2023-07-19 07:16:38 ----A---- C:\WINDOWS\system32\drivers\mbae64.sys
2023-07-19 07:10:37 ----D---- C:\ProgramData\Malwarebytes
2023-07-19 07:10:10 ----D---- C:\Program Files\Malwarebytes
2023-07-19 07:07:39 ----D---- C:\AdwCleaner
2023-07-15 19:14:18 ----D---- C:\rsit
2023-07-15 19:14:18 ----D---- C:\Program Files\trend micro
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\wmp.dll
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\ntkrla57.exe
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\HoloSHExtensions.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\msvproc.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfsvr.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfds.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drttransport.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drtprov.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drt.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfps.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\MFPlay.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfcore.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\browser.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\msdt.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2023-07-11 23:55:01 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\jscript9Legacy.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassvcs.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iashlpr.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iasdatastore.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dswave.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmusic.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmsynth.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmstyle.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmscript.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmloader.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmime.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmcompos.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmband.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcspoffln.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\tsgqec.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\SIHClient.exe
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drttransport.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drtprov.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drt.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\CPFilters.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcLayers.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcGenral.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_Troubleshoot.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\rdpclip.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\msdt.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\certutil.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\WlanMM.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\offreg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\odbc32.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nshwfp.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nltest.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msimsg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msi.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\certreq.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\wshrm.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\jscript9Legacy.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\edgehtml.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\windlp.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiatrace.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiaservc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiarpc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\werconcpl.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\sti.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassvcs.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassdo.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iashlpr.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iasdatastore.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\EsclWiaDriver.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\xolehlp.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\UsbSettingsHandlers.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\mtxclu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtctm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcspoffln.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtclog.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtckrm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtc.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dswave.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmusic.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmsynth.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmloader.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\DisplaySwitch.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computestorage.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computecore.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatIntelligence.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatExperienceManager.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\SFAPM.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdshext.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdengin2.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdclt.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\upnphost.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcbloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\skci.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\RDXService.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvix64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvax64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\msaatext.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\FrameServerMonitorClient.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\runonce.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\proquota.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmcfgutils.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userinit.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schedcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\tdhres.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\negoexts.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\MrmDeploy.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexerCore.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\InkObjCore.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\crypttpmeksvc.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\aadauthhelper.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\IDStore.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdprt.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadWamExtension.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\windowsudk.shellcommon.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\twext.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscproxystub.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscisvif.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscadminui.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SystemSettings.DataModel.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\secproc.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\profapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\fcon.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsound.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsdmo.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\umb.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppobjs.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppcext.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppc.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ServicingUAPI.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ngctasks.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\tpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\sppsvc.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\rmttpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\immersivetpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\certprop.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\twext.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\shell32.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\rtm.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ntshrui.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\mprdim.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtprio.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\AuthExt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\VideoHandlers.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Keyboard.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_IME.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_HumanPresence.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Camera.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlaapi.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netshell.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\msaatext.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\FrameServerMonitorClient.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\AudioHandlers.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\WLanConn.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\SetProxyCredential.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\NetworkIcon.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\ncsi.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\urlmon.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\runonce.exe
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\msIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LockController.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\lapscsp.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\laps.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\iertutil.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\edgeIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\proquota.exe
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profsvcext.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profprov.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpsvc.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpapi.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\fonts\StaticCache.dat
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\policymanager.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\omadmclient.exe
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\LogonController.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\crashdmp.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmcfgutils.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\cryptcatsvc.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovs.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovhost.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\configmanager2.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\uDWM.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\netlogon.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dwmcore.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dcomp.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\winresume.exe
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\cxcredprov.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\comsvcs.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\SRH.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\osk.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\wkscli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcutil.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcapi.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userinit.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userenv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\srvcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\schedcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\runexehelper.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsasrv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsaadt.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dtdump.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagnosticdataquery.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dab.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\wldp.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\schannel.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samsrv.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samlib.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcss.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\RpcEpMap.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profsvc.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profapi.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\offlinesam.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\logoncli.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\keyiso.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\crypt32.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcrypt.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\usermgr.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\winload.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntdll.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\kdnet.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ci.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\winlogon.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\http.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\WinREAgent.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Pen.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\QuietHours.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\NotificationController.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\InputCloudStore.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\Facilitator.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2023-07-11 23:54:13 ----A---- C:\WINDOWS\system32\ShellAppRuntime.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.XamlInputViewHost.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Taskbar.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wups2.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuauclt.exe
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuapi.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\AppResolver.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvcimpl.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvc.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbd.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\SHCore.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\EthernetMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\winbio.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32u.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32kfull.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32k.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wcimage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wc_storage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\tdhres.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\SensorService.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\daxexec.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\container.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\BioCredProv.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\user32.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\tquery.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\SearchIndexerCore.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\NPSM.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputService.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\win32kbase.sys
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssvp.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssrch.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssprxy.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssph.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssitlb.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\msscntrs.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\d3d11.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\rdpbase.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\InkObjCore.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\doclient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\crypttpmeksvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadauthhelper.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcrecovery.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cryptngc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdprt.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdp.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdd.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\negoexts.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\CapabilityAccessHandlers.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\WpnUserService.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnservice.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpncore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnapps.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\wintrust.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\profext.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\MrmDeploy.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicPS.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\kernel32.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallService.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadWamExtension.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadtb.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudkservices.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudk.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\twinui.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\msctf.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\lsm.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\IDStore.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\TabSvc.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\StartTileData.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wlanapi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WiredNetworkCSP.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WcnApi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SystemSettings.DataModel.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_OneCore_PowerAndSleep.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3svc.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3msm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3mm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3api.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\explorer.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscisvif.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscapi.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscadminui.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wpx.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\win32spl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolsv.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolss.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrintIsolationProxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelineprxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrinterCleanupTask.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\localspl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\LanguageOverlayServer.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\hspfw.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\browcli.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\splwow64.exe
2023-07-11 23:53:52 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\cmimcext.sys
2023-07-11 23:53:50 ----A---- C:\WINDOWS\system32\drivers\monitor.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\AcxHdAudio.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\CloudRestoreLauncher.dll
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\bcdedit.exe
2023-07-11 23:53:48 ----A---- C:\WINDOWS\bfsvc.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SettingsHandlers_Backup.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\ManageCI.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\fcon.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\energyprov.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsound.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsdmo.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiosrv.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioSes.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEng.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiodg.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\system32\poqexec.exe
2023-07-11 23:49:00 ----HD---- C:\$WinREAgent
2023-07-09 13:35:40 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2023-07-03 10:39:13 ----D---- C:\ProgramData\Blizzard Entertainment
2023-07-03 07:26:50 ----D---- C:\ProgramData\Transmission
2023-07-03 07:21:32 ----D---- C:\Users\hlava\AppData\Roaming\ReflectionNetworkLauncher
2023-07-02 05:56:48 ----A---- C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS
2023-07-02 05:56:31 ----D---- C:\ProgramData\FPSMonitor
2023-07-02 05:56:31 ----D---- C:\Program Files (x86)\FPS Monitor
2023-06-27 14:29:22 ----D---- C:\Users\hlava\AppData\Roaming\DOGE
2023-06-25 20:20:58 ----D---- C:\ProgramData\Battle.net
======List of files/folders modified in the last 1 month======
2023-07-19 11:56:14 ----D---- C:\WINDOWS\Temp
2023-07-19 11:56:10 ----D---- C:\WINDOWS\Prefetch
2023-07-19 11:55:49 ----D---- C:\ProgramData\Adguard
2023-07-19 11:55:22 ----D---- C:\ProgramData\boost_interprocess
2023-07-19 11:55:14 ----D---- C:\ProgramData\NVIDIA
2023-07-19 11:55:07 ----D---- C:\WINDOWS\SystemTemp
2023-07-19 11:55:07 ----D---- C:\Program Files (x86)\Google
2023-07-19 11:51:49 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2023-07-19 11:49:52 ----D---- C:\WINDOWS\Minidump
2023-07-19 11:49:42 ----HD---- C:\Intel
2023-07-19 11:49:41 ----D---- C:\WINDOWS\ServiceState
2023-07-19 11:49:40 ----D---- C:\WINDOWS\system32\SleepStudy
2023-07-19 11:13:01 ----D---- C:\WINDOWS\system32\sru
2023-07-19 11:05:29 ----D---- C:\WINDOWS\System32
2023-07-19 11:05:29 ----D---- C:\WINDOWS\INF
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2023-07-19 10:19:12 ----D---- C:\Users\hlava\AppData\Roaming\vlc
2023-07-19 10:11:25 ----D---- C:\WINDOWS\system32\Tasks
2023-07-19 09:46:28 ----D---- C:\WINDOWS\system32\catroot2
2023-07-19 09:40:39 ----D---- C:\Users\hlava\AppData\Roaming\PrusaSlicer
2023-07-19 09:26:29 ----D---- C:\Program Files (x86)\Adguard
2023-07-19 08:37:51 ----SHD---- C:\System Volume Information
2023-07-19 08:27:41 ----D---- C:\WINDOWS\system32\drivers
2023-07-19 08:27:39 ----D---- C:\WINDOWS\system32\CatRoot
2023-07-19 08:06:14 ----D---- C:\WINDOWS\AppReadiness
2023-07-19 07:20:19 ----D---- C:\WINDOWS\system32\config
2023-07-19 07:16:39 ----HD---- C:\WINDOWS\ELAMBKUP
2023-07-19 07:10:37 ----HD---- C:\ProgramData
2023-07-19 07:10:10 ----RD---- C:\Program Files
2023-07-19 07:09:48 ----RD---- C:\Program Files (x86)
2023-07-19 07:09:48 ----D---- C:\WINDOWS\SYSWOW64\drivers
2023-07-19 07:09:18 ----D---- C:\WINDOWS\SoftwareDistribution
2023-07-19 07:09:18 ----D---- C:\Windows
2023-07-19 07:05:43 ----SHD---- C:\WINDOWS\Installer
2023-07-19 07:05:40 ----D---- C:\WINDOWS\Tasks
2023-07-19 07:04:53 ----D---- C:\Program Files\Microsoft Office
2023-07-19 07:02:37 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent
2023-07-19 07:02:37 ----D---- C:\Program Files (x86)\Steam
2023-07-19 07:02:28 ----D---- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-07-19 07:02:25 ----DC---- C:\WINDOWS\Panther
2023-07-19 07:02:25 ----D---- C:\WINDOWS\debug
2023-07-18 12:53:07 ----D---- C:\WINDOWS\WinSxS
2023-07-18 12:50:05 ----RD---- C:\WINDOWS\Microsoft.NET
2023-07-18 12:46:27 ----HD---- C:\Program Files\WindowsApps
2023-07-13 04:23:47 ----D---- C:\WINDOWS\system32\LogFiles
2023-07-12 21:10:01 ----RD---- C:\WINDOWS\assembly
2023-07-12 13:56:48 ----D---- C:\WINDOWS\system32\DriverStore
2023-07-12 13:56:06 ----D---- C:\WINDOWS\UUS
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\wbem
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\setup
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\migration
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SysWOW64
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\en-US
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\cs-CZ
2023-07-12 13:56:05 ----D---- C:\WINDOWS\SystemResources
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\wbem
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Sgrm
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\setup
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\oobe
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migwiz
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migration
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\DDFs
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Boot
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\appraiser
2023-07-12 13:56:04 ----RSD---- C:\WINDOWS\Fonts
2023-07-12 13:56:04 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2023-07-12 13:56:04 ----D---- C:\WINDOWS\ShellComponents
2023-07-12 13:56:04 ----D---- C:\WINDOWS\bcastdvr
2023-07-12 13:56:04 ----D---- C:\WINDOWS\apppatch
2023-07-12 13:56:04 ----D---- C:\Program Files\Internet Explorer
2023-07-12 13:56:04 ----D---- C:\Program Files (x86)\Internet Explorer
2023-07-12 13:56:03 ----D---- C:\WINDOWS\system32\CodeIntegrity
2023-07-11 23:58:09 ----D---- C:\WINDOWS\CbsTemp
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2023-07-11 23:51:07 ----HD---- C:\Recovery
2023-07-11 23:47:57 ----D---- C:\WINDOWS\system32\MRT
2023-07-11 23:41:08 ----AC---- C:\WINDOWS\system32\MRT.exe
2023-07-11 23:41:02 ----D---- C:\ProgramData\Package Cache
2023-07-11 23:40:48 ----D---- C:\Program Files\dotnet
2023-07-11 11:12:11 ----D---- C:\WINDOWS\servicing
2023-07-09 06:28:38 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent Web
2023-07-08 23:54:31 ----D---- C:\WINDOWS\system32\drivers\wd
2023-07-08 23:54:26 ----D---- C:\Program Files\Windows Defender
2023-07-03 09:07:13 ----D---- C:\WINDOWS\LiveKernelReports
2023-07-02 12:29:39 ----D---- C:\Users\hlava\AppData\Roaming\Autodesk
2023-07-01 22:09:29 ----D---- C:\Users\hlava\AppData\Roaming\Kodi
2023-06-30 06:20:33 ----D---- C:\Users\hlava\AppData\Roaming\Prusa Research
2023-06-30 06:20:30 ----D---- C:\Program Files\Prusa3D
2023-06-25 22:50:13 ----D---- C:\Program Files\Common Files\AV
2023-06-25 22:18:04 ----D---- C:\WINDOWS\system32\drivers\NGCx64
2023-06-24 21:51:24 ----D---- C:\Users\hlava\AppData\Roaming\Loxone
2023-06-21 15:29:46 ----D---- C:\ProgramData\Loxone
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 HHDNLWFH;@oem173.inf,%HelperFilt.SvcDesc%;HHD Software Network Monitor Helper Driver; C:\WINDOWS\system32\DRIVERS\hhdnethp64.sys [2022-01-14 39024]
R0 iaStorVD;@oem115.inf,%iaStorVD.ServiceName%;Intel(R) Chipset VMD RST Controller service; C:\WINDOWS\System32\drivers\iaStorVD.sys [2021-08-26 1544912]
R0 IntelPMT;@intelpmt.inf,%IntelPMT.SVCDESC%;Intel(R) Platform Monitoring Technology Service; C:\WINDOWS\System32\drivers\IntelPMT.sys [2023-04-12 91688]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2022-05-07 87392]
R1 adgnetworkwfpdrv;adgnetworkwfpdrv; C:\WINDOWS\system32\drivers\adgnetworkwfpdrv.sys [2023-02-09 88112]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2022-05-07 81920]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2022-05-07 116056]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\BASHDefs\20230717.001\BHDrvx64.sys [2023-03-05 1696736]
R1 ccSet_NGC;NGC Settings Manager; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\ccSetx64.sys [2023-06-14 198280]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2022-05-07 173424]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2022-09-10 527864]
R1 ESProtectionDriver;Malwarebytes Anti-Exploit; \??\C:\WINDOWS\system32\drivers\mbae64.sys [2023-07-19 158640]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2022-05-07 90112]
R1 HHDNLWF;@oem173.inf,%ClasFilt.SvcDesc%;HHD Software Network Monitor Filter Driver; C:\WINDOWS\system32\DRIVERS\hhdnet64.sys [2022-01-14 52848]
R1 HWiNFO_172;HWiNFO Kernel Driver (v172); \??\C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS [2023-07-02 56888]
R1 IDSVia64;IDSVia64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\IPSDefs\20230718.061\IDSvia64.sys [2023-02-21 1527816]
R1 npcap;@oem172.inf,%NPF_Desc_Standard%;Npcap Packet Driver (NPCAP); C:\WINDOWS\system32\DRIVERS\npcap.sys [2021-08-30 71736]
R2 bfs;@%systemroot%\system32\drivers\bfs.sys,-100; C:\WINDOWS\system32\drivers\bfs.sys [2023-06-14 91504]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2023-01-19 173424]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2023-07-11 565248]
R2 MBAMChameleon;MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [2023-07-19 223176]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2022-10-12 90112]
R3 AcerAirplaneModeController;@oem164.inf,%ServiceDesc%;Acer Airplane Mode Controller; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [2022-06-02 36800]
R3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2023-06-14 544768]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2023-07-11 143360]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2023-06-14 143360]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2023-04-12 159744]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2023-07-11 2088960]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2023-07-11 139264]
R3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2022-05-07 90112]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2022-05-07 99672]
R3 dptf_acpi;dptf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_a5bac3087ca5f8d5\dptf_acpi.sys [2020-08-26 76968]
R3 dptf_cpu;dptf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\dptf_cpu.sys [2020-08-26 73384]
R3 dtlitescsibus;@oem119.inf,%DisplayName%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2022-08-24 42256]
R3 dtliteusbbus;@oem35.inf,%DisplayName%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2022-08-24 63696]
R3 e2kw10x64;@oem18.inf,%EthDriver.Service.DispName%;Killer E2500/E2600 NDIS 6.40 64-bit Driver; C:\WINDOWS\System32\drivers\e2kw10x64.sys [2020-09-01 1146456]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2022-10-21 159720]
R3 esif_lf;esif_lf; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_lf.sys [2020-08-26 420008]
R3 fsfreedomewintun;@oem182.inf,%fsfreedomewintun.Name%;fsfreedomewintun; C:\WINDOWS\System32\drivers\fsfreedomewintun.sys [2023-03-07 31248]
R3 gFilterMouUsb;@oem68.inf,%gFilterMouUsb.SvcDesc%;SmartGenius Mouse Driver; C:\WINDOWS\System32\drivers\gFilterMouUsb.sys [2020-09-15 30568]
R3 gKbdfltr;@oem71.inf,%gKbdUpper.SvcDesc%;gKbd Upper Filter; C:\WINDOWS\System32\drivers\gKbdfltr.sys [2020-09-15 29576]
R3 HidEventFilter;@oem57.inf,%HidEventFilter%;Intel(R) HID Event Filter; C:\WINDOWS\System32\DriverStore\FileRepository\hideventfilter.inf_amd64_010863cba57434d0\HidEventFilter.sys [2020-09-18 86680]
R3 hvservice;@hvservice.inf,%hvservice.SvcDesc%;Microsoft Hypervisor Service Driver; C:\WINDOWS\System32\drivers\hvservice.sys [2022-10-12 91472]
R3 iaLPSS2_GPIO2_TGL;@oem21.inf,%iaLPSS2_GPIO2_TGL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_d0e63c4e3754f42f\iaLPSS2_GPIO2_TGL.sys [2020-08-12 128152]
R3 iaLPSS2_I2C_TGL;@oem91.inf,%iaLPSS2_I2C_TGL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_ab87bf17a571e523\iaLPSS2_I2C_TGL.sys [2020-08-12 197272]
R3 ibtusb;@oem117.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\System32\DriverStore\FileRepository\ibtusb.inf_amd64_723c8f13c52715bb\ibtusb.sys [2021-03-10 4887016]
R3 igfxn;igfxn; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\igdkmdn64.sys [2021-06-17 28658760]
R3 IntcAudioBus;@oem118.inf,%IntcAudioBus.SVCDESC%;Sběrnice technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcaudiobus.inf_amd64_a5bfc4a9cc7fdf5a\IntcAudioBus.sys [2022-01-26 311872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-06-29 6008928]
R3 IntcBTAu;@oem148.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro Bluetooth® Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcbtau.inf_amd64_42d4c8c359e6d3fb\IntcBTAu.sys [2022-01-26 858176]
R3 IntcDMic;@oem40.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro digitální mikrofony; C:\WINDOWS\System32\DriverStore\FileRepository\intcdmic.inf_amd64_b1529a2a6789f39e\IntcDMic.sys [2022-01-26 745536]
R3 IntcOED;@oem29.inf,%IntcOED.SVCDESC%;OED technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\IntcOED.sys [2022-01-26 1154624]
R3 IntcUSB;@oem64.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro USB Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_2cc98897d8dddf62\IntcUSB.sys [2022-01-26 882280]
R3 IntelGNA;@oem122.inf,%IntelGNA.SVCDESC%;Intel(R) GNA Scoring Accelerator service; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [2020-11-06 84880]
R3 KfeCoSvc;@oem42.inf,%RivetCoServiceName%;KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [2020-11-04 201096]
R3 MBAMFarflt;MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt11.sys [2023-07-19 233216]
R3 MBAMProtection;MBAMProtection; \??\C:\WINDOWS\system32\DRIVERS\mbam.sys [2023-07-19 77752]
R3 MBAMSwissArmy;MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [2023-07-19 239544]
R3 MBAMWebProtection;MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [2023-07-19 181984]
R3 MEIx64;@oem143.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_e9ffe3f2557dd9e9\x64\TeeDriverW10x64.sys [2020-10-26 300040]
R3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2023-06-14 98304]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-200; C:\WINDOWS\system32\drivers\msquic.sys [2023-04-12 419152]
R3 Netwtw10;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 10 64 Bit; C:\WINDOWS\System32\drivers\Netwtw10.sys [2021-03-11 5287784]
R3 nhi;@oem31.inf,%TbtBusDrv_SVCDESC%;Thunderbolt(TM) Controller; C:\WINDOWS\System32\drivers\TbtBusDrv.sys [2020-09-27 2876264]
R3 NVHDA;@oem186.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2023-06-09 121880]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvlddmkm.sys [2023-06-09 59008024]
R3 NvModuleTracker;@oem158.inf,%ServiceName%;NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [2022-07-14 45656]
R3 nvpcf;@oem185.inf,%nvpcf.SVCDESC%;NVPCF Service; C:\WINDOWS\System32\drivers\nvpcf.sys [2023-06-09 240152]
R3 nvvad_WaveExtensible;@oem183.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2022-10-14 59928]
R3 nvvhci;@oem159.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2022-07-14 60112]
S0 AppleSSD;@AppleSSD.inf,%DevDesc1%;Apple Solid State Drive Device; C:\WINDOWS\System32\drivers\AppleSSD.sys [2022-05-07 113496]
S0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys []
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2022-05-07 79184]
S0 ebdrv0;@netevbd0a.inf,%vbd_srv_desc%;QLogic Legacy Ethernet Adapter VBD; C:\WINDOWS\System32\drivers\evbd0a.sys [2022-05-07 3424104]
S0 GenPass;@genpass.inf,%GenPass.SVCDESC%;Microsoft GenPass Driver; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [2022-05-07 62800]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2022-05-07 320880]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2022-05-07 885584]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2022-05-07 187224]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2022-05-07 125280]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2022-05-07 138600]
S0 MbamElam;MbamElam; C:\WINDOWS\system32\DRIVERS\MbamElam.sys [2023-07-19 21480]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2022-05-07 81752]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2022-05-07 101224]
S0 mpi3drvi;mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [2022-05-07 90472]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2022-05-07 206160]
S0 nvmedisk;@nvmedisk.inf,%nvmedisk.SvcDesc%;Microsoft NVMe disk driver; C:\WINDOWS\System32\drivers\nvmedisk.sys [2022-05-07 91496]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2022-10-12 57344]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2023-06-14 733184]
S3 AcxHdAudio;@acxhdaudiop.inf,%Audio_Device.DeviceDesc%;ACX HD Audio Driver; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [2023-07-11 561152]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2022-05-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2022-05-07 45568]
S3 AppleKmdfFilter;@oem128.inf,%AppleKmdfFilterDisplayName%;Apple KMDF Filter Driver; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [2020-10-09 20032]
S3 AppleLowerFilter;@oem128.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [2020-10-09 35976]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2022-10-12 49152]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2023-07-11 86016]
S3 ExecutionContext;@%SystemRoot%\System32\Drivers\ExecutionContext.sys,-101; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [2022-10-12 75088]
S3 FTDIBUS;@oem175.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2021-07-08 145192]
S3 FTSER2K;@oem181.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2021-07-08 99296]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_cea150c98a1ca844\genericusbfn.sys [2022-05-07 61440]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2022-05-07 91472]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2022-10-12 139264]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2022-10-12 126976]
S3 Hsp;@hsp.inf,%Hsp.SVCDESC%;Microsoft Pluton Service; C:\WINDOWS\System32\drivers\Hsp.sys [2022-05-07 124264]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2022-05-07 61440]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2022-05-07 1854832]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2022-05-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2022-05-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2022-05-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2022-05-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2022-05-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2022-05-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2022-05-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2022-05-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2022-05-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2022-05-07 177664]
S3 iaStorAfs;@oem115.inf,%iaStorAfs.ServiceName%;iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [2021-08-26 74448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2022-05-07 559976]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2022-10-12 77824]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2022-05-07 65536]
S3 ioFakMap;@oem70.inf,%ioFakMap.SVCDESC%;MiniHid Driver Service for ioFakeDrv Interface layer; C:\WINDOWS\System32\drivers\ioFakMap.sys [2020-09-15 24664]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2022-05-07 99688]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2022-05-07 566632]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2022-05-07 99664]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2023-04-12 454656]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2022-05-07 1132392]
S3 mvusbews;@oem180.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2010-03-06 20480]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2022-05-07 147304]
S3 NDKPerf;NDKPerf Driver; C:\WINDOWS\system32\drivers\NDKPerf.sys [2022-05-07 83288]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2022-05-07 107872]
S3 Netaapl;@oem163.inf,%Netaapl.Service.DispName%;Apple Mobile Device Ethernet Service; C:\WINDOWS\System32\drivers\netaapl64.sys [2017-11-28 32352]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2023-04-12 394576]
S3 nsvst_NGC;NortonLifeLock Split Tunneling WFP Callout driver; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\nsvst.sys [2023-06-14 57120]
S3 P9Rdr;@%SystemRoot%\System32\drivers\p9rdr.sys,-100; C:\WINDOWS\System32\drivers\p9rdr.sys [2022-05-07 148816]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2022-05-07 75112]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACCSvc;ACC Service; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [2021-12-30 259232]
R2 Adguard Service;Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [2023-06-26 798936]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2023-04-03 173040]
R2 AdskLicensingService;Autodesk Desktop Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [2022-11-23 15280648]
R2 AGMService;Adobe Genuine Software Monitor Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2023-01-19 3896288]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2023-01-19 3729888]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2020-09-24 96056]
R2 Autodesk Access Service Host;Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [2023-05-21 10539808]
R2 cbdhsvc_2226bf;Uživatelská služba schránky_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPUserSvc_2226bf;Uživatelská služba platformy připojených zařízení_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 ClickToRunSvc;Microsoft Office Click-to-Run Service; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2023-07-18 11851240]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 cplspcon;Intel(R) Content Protection HDCP Service; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe [2021-06-17 365120]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DtsApo4Service;DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [2022-10-13 420536]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 esifsvc;@oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe [2020-09-20 2254776]
R2 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2023-05-29 1518928]
R2 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2022-08-24 2657616]
R2 Flixmate.UpdateService;Flixmate update service; C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe [2022-08-31 24352]
R2 FlixmateService;Flixmate service; C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe [2022-08-31 136704]
R2 Grafana;Grafana; C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe [2022-09-13 331264]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-07 127800]
R2 igccservice;Intel(R) Graphics Command Center Service; C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe [2021-06-17 87584]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe [2021-06-17 398392]
R2 IntelAudioService;Intel(R) Audio Service; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe [2022-01-26 531008]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe [2021-06-16 628616]
R2 Killer Analytics Service;@oem42.inf,%KillerAnalyticsService%;Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2020-11-04 1783992]
R2 Killer Network Service;@oem42.inf,%Killer_Service%;Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2020-11-04 2671800]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe [2021-09-02 4064384]
R2 MacriumService;Macrium Service; C:\Program Files\Macrium\Common\MacriumService.exe [2022-10-30 11072008]
R2 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [2023-07-19 9267376]
R2 NortonSecurity;Norton Security; C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe [2023-06-14 344888]
R2 nsmService;NSM Service; C:\Program Files (x86)\NetSetMan\nsmservice.exe [2017-04-24 1782976]
R2 nsWscSvc;Norton WSC Service; C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe [2023-06-14 1059176]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2022-03-15 1003128]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe [2023-06-09 1014792]
R2 PDF24;PDF24; C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
R3 BluetoothUserService_2226bf;Služba pro podporu uživatelů Bluetooth_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2022-01-26 321536]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2022-10-06 45992]
R3 Freedome Service;Freedome Service; C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe [2023-03-07 1812360]
R3 KAPSService;@oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [2020-11-04 82080]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 AdskNLM;AdskNLM; C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe [2021-04-05 1201488]
S2 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S2 Intel(R) TPM Provisioning Service;@oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe [2021-09-15 729944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 OneSyncSvc_2226bf;Hostitel synchronizace_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc_2226bf;Agent Activation Runtime_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService_2226bf;Uživatelská služba pro GameDVR a vysílání her_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService_2226bf;CaptureService_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2022-10-06 69568]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 ConsentUxUserSvc_2226bf;Uživatelská služba ConsentUX_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 CredentialEnrollmentManagerUserSvc_2226bf;CredentialEnrollmentManagerUserSvc_2226bf; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 dcsvc;@%systemroot%\system32\dcsvc,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc_2226bf;DeviceAssociationBroker_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc_2226bf;DevicePicker_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicesFlowUserSvc_2226bf;Tok zařízení_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-05-07 114688]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2022-08-24 4960120]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 EABackgroundService;EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [2023-04-17 11029096]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2022-08-27 1135648]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 EpicOnlineServices;Epic Online Services; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2022-03-03 934368]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FrameServerMonitor;@%systemroot%\system32\FrameServerMonitor.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FvSvc;NVIDIA FrameView SDK service; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [2023-01-13 1081896]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe [2023-06-24 1742616]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 iaStorAfsService;@oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service; C:\WINDOWS\System32\iaStorAfsService.exe [2021-08-26 3160784]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 Intel(R) Capability Licensing Service TCP IP Interface;@oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe [2021-09-15 785240]
S3 InventorySvc;@%SystemRoot%\system32\inventorysvc.dll,-501; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 KNDBWM;@oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [2020-11-04 82088]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService_2226bf;Služba zasílání zpráv_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\elevation_service.exe [2023-07-13 1744336]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2022-10-10 232776]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 NPSMSvc;@%SystemRoot%\system32\npsm.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 NPSMSvc_2226bf;NPSMSvc_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService;@%systemroot%\system32\p9rdrservice.dll,-102; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService_2226bf;P9RdrService_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService;@%SystemRoot%\system32\PenService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService_2226bf;PenService_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2022-05-07 241664]
-----------------EOF-----------------
.inf - open -
.inf - install -
.ini - open -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
.txt - open -
======List of files/folders created in the last 1 month======
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfh009.dat
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfh005.dat
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfc009.dat
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\perfc005.dat
2023-07-19 08:27:41 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2023-07-19 08:27:39 ----A---- C:\WINDOWS\system32\drivers\farflt11.sys
2023-07-19 08:27:38 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2023-07-19 07:16:42 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2023-07-19 07:16:42 ----A---- C:\WINDOWS\system32\drivers\MbamChameleon.sys
2023-07-19 07:16:38 ----A---- C:\WINDOWS\system32\drivers\MbamElam.sys
2023-07-19 07:16:38 ----A---- C:\WINDOWS\system32\drivers\mbae64.sys
2023-07-19 07:10:37 ----D---- C:\ProgramData\Malwarebytes
2023-07-19 07:10:10 ----D---- C:\Program Files\Malwarebytes
2023-07-19 07:07:39 ----D---- C:\AdwCleaner
2023-07-15 19:14:18 ----D---- C:\rsit
2023-07-15 19:14:18 ----D---- C:\Program Files\trend micro
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\wmp.dll
2023-07-11 23:55:16 ----A---- C:\WINDOWS\system32\ntkrla57.exe
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2023-07-11 23:55:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\HoloSHExtensions.dll
2023-07-11 23:55:07 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\msvproc.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfsvr.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2023-07-11 23:55:06 ----A---- C:\WINDOWS\system32\mfds.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drttransport.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drtprov.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\drt.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfps.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\MFPlay.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfcore.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapibase.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\fveapi.dll
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2023-07-11 23:55:05 ----A---- C:\WINDOWS\system32\browser.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\msdt.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\certreq.exe
2023-07-11 23:55:04 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\WlanMM.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2023-07-11 23:55:03 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2023-07-11 23:55:02 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2023-07-11 23:55:01 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2023-07-11 23:55:00 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\jscript9Legacy.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassvcs.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iassdo.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iashlpr.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\iasdatastore.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dswave.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmusic.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmsynth.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmstyle.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmscript.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmloader.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmime.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmcompos.dll
2023-07-11 23:54:59 ----A---- C:\WINDOWS\SYSWOW64\dmband.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\xolehlp.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcspoffln.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2023-07-11 23:54:58 ----A---- C:\WINDOWS\SYSWOW64\BioCredProv.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2023-07-11 23:54:57 ----A---- C:\WINDOWS\system32\CXHProvisioningServer.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\vmrdvcore.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\tsgqec.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\SIHClient.exe
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\rdsdwmdr.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drttransport.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drtprov.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\drt.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\CPFilters.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcLayers.dll
2023-07-11 23:54:56 ----A---- C:\WINDOWS\system32\AcGenral.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_Troubleshoot.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\rdpclip.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\mstscax.dll
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\msdt.exe
2023-07-11 23:54:55 ----A---- C:\WINDOWS\system32\certutil.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\WlanMM.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\offreg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\odbc32.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nshwfp.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\nltest.exe
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msimsg.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\msi.dll
2023-07-11 23:54:54 ----A---- C:\WINDOWS\system32\certreq.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\wshrm.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2023-07-11 23:54:53 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2023-07-11 23:54:51 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\jscript9Legacy.dll
2023-07-11 23:54:50 ----A---- C:\WINDOWS\system32\edgehtml.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\windlp.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiatrace.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiaservc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wiarpc.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\werconcpl.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\sti.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassvcs.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iassdo.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iashlpr.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\iasdatastore.dll
2023-07-11 23:54:49 ----A---- C:\WINDOWS\system32\EsclWiaDriver.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\xolehlp.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\UsbSettingsHandlers.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\mtxclu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtctm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcspoffln.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtclog.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtckrm.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\msdtc.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dswave.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmusic.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmsynth.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\dmloader.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\DisplaySwitch.exe
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computestorage.dll
2023-07-11 23:54:48 ----A---- C:\WINDOWS\system32\computecore.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatIntelligence.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\ThreatExperienceManager.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\SFAPM.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdshext.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdrsvc.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdengin2.dll
2023-07-11 23:54:47 ----A---- C:\WINDOWS\system32\sdclt.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\SYSWOW64\iprtprio.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\upnphost.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcbloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\skci.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\SecureBootEncodeUEFI.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\RDXService.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvloader.dll
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvix64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\hvax64.exe
2023-07-11 23:54:46 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\WLanConn.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\rtm.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\msaatext.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\FrameServerMonitorClient.dll
2023-07-11 23:54:45 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\runonce.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\proquota.exe
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\dmcfgutils.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovslegacy.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovs.dll
2023-07-11 23:54:44 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgentc.exe
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2023-07-11 23:54:43 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wldp.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userinit.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schedcli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\ncryptprov.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\logoncli.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\keyiso.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2023-07-11 23:54:42 ----A---- C:\WINDOWS\SYSWOW64\bcrypt.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\tdhres.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\ngccredprov.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\negoexts.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\container.dll
2023-07-11 23:54:41 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\MrmDeploy.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2023-07-11 23:54:40 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexerCore.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2023-07-11 23:54:39 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\rdpbase.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\InkObjCore.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\crypttpmeksvc.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:38 ----A---- C:\WINDOWS\SYSWOW64\aadauthhelper.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\IDStore.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdprt.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadWamExtension.dll
2023-07-11 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\windowsudk.shellcommon.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\sppc.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2023-07-11 23:54:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.FileExplorer.Common.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\twext.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2023-07-11 23:54:34 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\AuthExt.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscproxystub.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscisvif.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wscadminui.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\TpmCertResources.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SystemSettings.DataModel.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\secproc.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\profapi.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\fcon.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsound.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\dsdmo.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2023-07-11 23:54:32 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\umb.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppobjs.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppcext.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\sppc.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ServicingUAPI.dll
2023-07-11 23:54:31 ----A---- C:\WINDOWS\system32\ngctasks.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\tpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\sppsvc.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\rmttpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\immersivetpmvscmgrsvr.exe
2023-07-11 23:54:30 ----A---- C:\WINDOWS\system32\certprop.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\Windows.FileExplorer.Common.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\twext.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\shell32.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\rtm.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ntshrui.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\mprdim.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\iprtprio.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2023-07-11 23:54:29 ----A---- C:\WINDOWS\system32\AuthExt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\VideoHandlers.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Keyboard.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_IME.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_HumanPresence.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_Camera.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\nlaapi.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netshell.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\msaatext.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\FrameServerMonitorClient.dll
2023-07-11 23:54:28 ----A---- C:\WINDOWS\system32\AudioHandlers.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\WLanConn.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.ProxyStub.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\SetProxyCredential.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\NetworkIcon.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\ncsi.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2023-07-11 23:54:27 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\urlmon.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\runonce.exe
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\msIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LockController.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\lapscsp.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\laps.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\iertutil.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\edgeIso.dll
2023-07-11 23:54:26 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\proquota.exe
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profsvcext.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\profprov.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpsvc.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\gpapi.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2023-07-11 23:54:25 ----A---- C:\WINDOWS\fonts\StaticCache.dat
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\policymanager.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\omadmclient.exe
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\LogonController.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\crashdmp.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\dmcfgutils.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\cryptcatsvc.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovs.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\credprovhost.dll
2023-07-11 23:54:24 ----A---- C:\WINDOWS\system32\configmanager2.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\uDWM.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\netlogon.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dwmcore.dll
2023-07-11 23:54:23 ----A---- C:\WINDOWS\system32\dcomp.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\winresume.exe
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\cxcredprov.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\comsvcs.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2023-07-11 23:54:22 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\SRH.dll
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\osk.exe
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2023-07-11 23:54:21 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\wkscli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcutil.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\utcapi.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userinit.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\userenv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\srvcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\schedcli.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\runexehelper.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsasrv.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\lsaadt.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dtdump.exe
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagtrack.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\diagnosticdataquery.dll
2023-07-11 23:54:20 ----A---- C:\WINDOWS\system32\dab.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\wldp.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\schannel.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samsrv.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\samlib.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcss.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\RpcEpMap.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profsvc.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\profapi.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\offlinesam.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\ncryptprov.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\logoncli.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\keyiso.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\crypt32.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2023-07-11 23:54:19 ----A---- C:\WINDOWS\system32\bcrypt.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\usermgr.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\KernelBase.dll
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2023-07-11 23:54:18 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\winload.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ntdll.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\kdnet.dll
2023-07-11 23:54:17 ----A---- C:\WINDOWS\system32\ci.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\winlogon.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\http.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2023-07-11 23:54:16 ----A---- C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2023-07-11 23:54:15 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\WinREAgent.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Pen.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\ReAgentc.exe
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\QuietHours.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\NotificationController.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\InputCloudStore.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\Facilitator.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
2023-07-11 23:54:14 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.exe
2023-07-11 23:54:13 ----A---- C:\WINDOWS\system32\ShellAppRuntime.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.XamlInputViewHost.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\Taskbar.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2023-07-11 23:54:12 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wups2.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuauclt.exe
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\wuapi.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2023-07-11 23:54:11 ----A---- C:\WINDOWS\system32\AppResolver.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvcimpl.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\usosvc.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\SettingsHandlers_Devices.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2023-07-11 23:54:10 ----A---- C:\WINDOWS\system32\drivers\usbd.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\SHCore.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\EthernetMediaManager.dll
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2023-07-11 23:54:09 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\winbio.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32u.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32kfull.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\win32k.sys
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wcimage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wc_storage.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\tdhres.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\SensorService.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\daxexec.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\container.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2023-07-11 23:54:08 ----A---- C:\WINDOWS\system32\BioCredProv.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\user32.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\tquery.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\SearchIndexerCore.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\NPSM.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputService.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2023-07-11 23:54:07 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\win32kbase.sys
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssvp.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssrch.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssprxy.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssph.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\mssitlb.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\msscntrs.dll
2023-07-11 23:54:06 ----A---- C:\WINDOWS\system32\d3d11.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\rdpbase.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\InkObjCore.dll
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2023-07-11 23:54:05 ----A---- C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\doclient.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\crypttpmeksvc.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2023-07-11 23:54:04 ----A---- C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2023-07-11 23:54:03 ----A---- C:\WINDOWS\system32\aadauthhelper.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2023-07-11 23:54:02 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcrecovery.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cryptngc.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdprt.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdp.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\cdd.dll
2023-07-11 23:54:01 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\negoexts.dll
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2023-07-11 23:54:00 ----A---- C:\WINDOWS\system32\CapabilityAccessHandlers.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\WpnUserService.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnservice.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpncore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\wpnapps.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2023-07-11 23:53:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\wintrust.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\profext.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\MrmDeploy.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2023-07-11 23:53:58 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\WaaSMedicPS.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\kernel32.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\InstallService.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadWamExtension.dll
2023-07-11 23:53:57 ----A---- C:\WINDOWS\system32\aadtb.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudkservices.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\windowsudk.shellcommon.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\twinui.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\msctf.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\lsm.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\IDStore.dll
2023-07-11 23:53:56 ----A---- C:\WINDOWS\system32\drivers\volsnap.sys
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\TabSvc.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\StartTileData.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2023-07-11 23:53:55 ----A---- C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wlanapi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WiredNetworkCSP.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\WcnApi.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\TpmCertResources.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SystemSettings.DataModel.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_OneCore_PowerAndSleep.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3svc.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3msm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3mm.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\system32\dot3api.dll
2023-07-11 23:53:54 ----A---- C:\WINDOWS\explorer.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscisvif.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscapi.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wscadminui.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\wpx.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\win32spl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolsv.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\spoolss.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrintIsolationProxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\printfilterpipelineprxy.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\PrinterCleanupTask.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\localspl.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\LanguageOverlayServer.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\hspfw.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\drivers\PEAuth.sys
2023-07-11 23:53:53 ----A---- C:\WINDOWS\system32\browcli.dll
2023-07-11 23:53:53 ----A---- C:\WINDOWS\splwow64.exe
2023-07-11 23:53:52 ----A---- C:\WINDOWS\system32\RjvMDMConfig.dll
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\storufs.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2023-07-11 23:53:51 ----A---- C:\WINDOWS\system32\drivers\cmimcext.sys
2023-07-11 23:53:50 ----A---- C:\WINDOWS\system32\drivers\monitor.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2023-07-11 23:53:49 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\USBAUDIO.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\drivers\AcxHdAudio.sys
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\CloudRestoreLauncher.dll
2023-07-11 23:53:48 ----A---- C:\WINDOWS\system32\bcdedit.exe
2023-07-11 23:53:48 ----A---- C:\WINDOWS\bfsvc.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\TaskFlowDataEngine.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\SettingsHandlers_Backup.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\ManageCI.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\fcon.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\energyprov.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsound.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\dsdmo.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiosrv.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioSes.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEng.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2023-07-11 23:53:47 ----A---- C:\WINDOWS\system32\audiodg.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2023-07-11 23:51:42 ----A---- C:\WINDOWS\system32\poqexec.exe
2023-07-11 23:49:00 ----HD---- C:\$WinREAgent
2023-07-09 13:35:40 ----D---- C:\WINDOWS\%LOCALAPPDATA%
2023-07-03 10:39:13 ----D---- C:\ProgramData\Blizzard Entertainment
2023-07-03 07:26:50 ----D---- C:\ProgramData\Transmission
2023-07-03 07:21:32 ----D---- C:\Users\hlava\AppData\Roaming\ReflectionNetworkLauncher
2023-07-02 05:56:48 ----A---- C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS
2023-07-02 05:56:31 ----D---- C:\ProgramData\FPSMonitor
2023-07-02 05:56:31 ----D---- C:\Program Files (x86)\FPS Monitor
2023-06-27 14:29:22 ----D---- C:\Users\hlava\AppData\Roaming\DOGE
2023-06-25 20:20:58 ----D---- C:\ProgramData\Battle.net
======List of files/folders modified in the last 1 month======
2023-07-19 11:56:14 ----D---- C:\WINDOWS\Temp
2023-07-19 11:56:10 ----D---- C:\WINDOWS\Prefetch
2023-07-19 11:55:49 ----D---- C:\ProgramData\Adguard
2023-07-19 11:55:22 ----D---- C:\ProgramData\boost_interprocess
2023-07-19 11:55:14 ----D---- C:\ProgramData\NVIDIA
2023-07-19 11:55:07 ----D---- C:\WINDOWS\SystemTemp
2023-07-19 11:55:07 ----D---- C:\Program Files (x86)\Google
2023-07-19 11:51:49 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2023-07-19 11:49:52 ----D---- C:\WINDOWS\Minidump
2023-07-19 11:49:42 ----HD---- C:\Intel
2023-07-19 11:49:41 ----D---- C:\WINDOWS\ServiceState
2023-07-19 11:49:40 ----D---- C:\WINDOWS\system32\SleepStudy
2023-07-19 11:13:01 ----D---- C:\WINDOWS\system32\sru
2023-07-19 11:05:29 ----D---- C:\WINDOWS\System32
2023-07-19 11:05:29 ----D---- C:\WINDOWS\INF
2023-07-19 11:05:29 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2023-07-19 10:19:12 ----D---- C:\Users\hlava\AppData\Roaming\vlc
2023-07-19 10:11:25 ----D---- C:\WINDOWS\system32\Tasks
2023-07-19 09:46:28 ----D---- C:\WINDOWS\system32\catroot2
2023-07-19 09:40:39 ----D---- C:\Users\hlava\AppData\Roaming\PrusaSlicer
2023-07-19 09:26:29 ----D---- C:\Program Files (x86)\Adguard
2023-07-19 08:37:51 ----SHD---- C:\System Volume Information
2023-07-19 08:27:41 ----D---- C:\WINDOWS\system32\drivers
2023-07-19 08:27:39 ----D---- C:\WINDOWS\system32\CatRoot
2023-07-19 08:06:14 ----D---- C:\WINDOWS\AppReadiness
2023-07-19 07:20:19 ----D---- C:\WINDOWS\system32\config
2023-07-19 07:16:39 ----HD---- C:\WINDOWS\ELAMBKUP
2023-07-19 07:10:37 ----HD---- C:\ProgramData
2023-07-19 07:10:10 ----RD---- C:\Program Files
2023-07-19 07:09:48 ----RD---- C:\Program Files (x86)
2023-07-19 07:09:48 ----D---- C:\WINDOWS\SYSWOW64\drivers
2023-07-19 07:09:18 ----D---- C:\WINDOWS\SoftwareDistribution
2023-07-19 07:09:18 ----D---- C:\Windows
2023-07-19 07:05:43 ----SHD---- C:\WINDOWS\Installer
2023-07-19 07:05:40 ----D---- C:\WINDOWS\Tasks
2023-07-19 07:04:53 ----D---- C:\Program Files\Microsoft Office
2023-07-19 07:02:37 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent
2023-07-19 07:02:37 ----D---- C:\Program Files (x86)\Steam
2023-07-19 07:02:28 ----D---- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-07-19 07:02:25 ----DC---- C:\WINDOWS\Panther
2023-07-19 07:02:25 ----D---- C:\WINDOWS\debug
2023-07-18 12:53:07 ----D---- C:\WINDOWS\WinSxS
2023-07-18 12:50:05 ----RD---- C:\WINDOWS\Microsoft.NET
2023-07-18 12:46:27 ----HD---- C:\Program Files\WindowsApps
2023-07-13 04:23:47 ----D---- C:\WINDOWS\system32\LogFiles
2023-07-12 21:10:01 ----RD---- C:\WINDOWS\assembly
2023-07-12 13:56:48 ----D---- C:\WINDOWS\system32\DriverStore
2023-07-12 13:56:06 ----D---- C:\WINDOWS\UUS
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\wbem
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\setup
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SYSWOW64\migration
2023-07-12 13:56:06 ----D---- C:\WINDOWS\SysWOW64
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\en-US
2023-07-12 13:56:05 ----SD---- C:\WINDOWS\system32\cs-CZ
2023-07-12 13:56:05 ----D---- C:\WINDOWS\SystemResources
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\wbem
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Sgrm
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\setup
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\oobe
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migwiz
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\migration
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\drivers\UMDF
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\DDFs
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\Boot
2023-07-12 13:56:05 ----D---- C:\WINDOWS\system32\appraiser
2023-07-12 13:56:04 ----RSD---- C:\WINDOWS\Fonts
2023-07-12 13:56:04 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2023-07-12 13:56:04 ----D---- C:\WINDOWS\ShellComponents
2023-07-12 13:56:04 ----D---- C:\WINDOWS\bcastdvr
2023-07-12 13:56:04 ----D---- C:\WINDOWS\apppatch
2023-07-12 13:56:04 ----D---- C:\Program Files\Internet Explorer
2023-07-12 13:56:04 ----D---- C:\Program Files (x86)\Internet Explorer
2023-07-12 13:56:03 ----D---- C:\WINDOWS\system32\CodeIntegrity
2023-07-11 23:58:09 ----D---- C:\WINDOWS\CbsTemp
2023-07-11 23:54:33 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2023-07-11 23:51:07 ----HD---- C:\Recovery
2023-07-11 23:47:57 ----D---- C:\WINDOWS\system32\MRT
2023-07-11 23:41:08 ----AC---- C:\WINDOWS\system32\MRT.exe
2023-07-11 23:41:02 ----D---- C:\ProgramData\Package Cache
2023-07-11 23:40:48 ----D---- C:\Program Files\dotnet
2023-07-11 11:12:11 ----D---- C:\WINDOWS\servicing
2023-07-09 06:28:38 ----D---- C:\Users\hlava\AppData\Roaming\uTorrent Web
2023-07-08 23:54:31 ----D---- C:\WINDOWS\system32\drivers\wd
2023-07-08 23:54:26 ----D---- C:\Program Files\Windows Defender
2023-07-03 09:07:13 ----D---- C:\WINDOWS\LiveKernelReports
2023-07-02 12:29:39 ----D---- C:\Users\hlava\AppData\Roaming\Autodesk
2023-07-01 22:09:29 ----D---- C:\Users\hlava\AppData\Roaming\Kodi
2023-06-30 06:20:33 ----D---- C:\Users\hlava\AppData\Roaming\Prusa Research
2023-06-30 06:20:30 ----D---- C:\Program Files\Prusa3D
2023-06-25 22:50:13 ----D---- C:\Program Files\Common Files\AV
2023-06-25 22:18:04 ----D---- C:\WINDOWS\system32\drivers\NGCx64
2023-06-24 21:51:24 ----D---- C:\Users\hlava\AppData\Roaming\Loxone
2023-06-21 15:29:46 ----D---- C:\ProgramData\Loxone
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 HHDNLWFH;@oem173.inf,%HelperFilt.SvcDesc%;HHD Software Network Monitor Helper Driver; C:\WINDOWS\system32\DRIVERS\hhdnethp64.sys [2022-01-14 39024]
R0 iaStorVD;@oem115.inf,%iaStorVD.ServiceName%;Intel(R) Chipset VMD RST Controller service; C:\WINDOWS\System32\drivers\iaStorVD.sys [2021-08-26 1544912]
R0 IntelPMT;@intelpmt.inf,%IntelPMT.SVCDESC%;Intel(R) Platform Monitoring Technology Service; C:\WINDOWS\System32\drivers\IntelPMT.sys [2023-04-12 91688]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2022-05-07 87392]
R1 adgnetworkwfpdrv;adgnetworkwfpdrv; C:\WINDOWS\system32\drivers\adgnetworkwfpdrv.sys [2023-02-09 88112]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2022-05-07 81920]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2022-05-07 116056]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\BASHDefs\20230717.001\BHDrvx64.sys [2023-03-05 1696736]
R1 ccSet_NGC;NGC Settings Manager; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\ccSetx64.sys [2023-06-14 198280]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2022-05-07 173424]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2022-09-10 527864]
R1 ESProtectionDriver;Malwarebytes Anti-Exploit; \??\C:\WINDOWS\system32\drivers\mbae64.sys [2023-07-19 158640]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2022-05-07 90112]
R1 HHDNLWF;@oem173.inf,%ClasFilt.SvcDesc%;HHD Software Network Monitor Filter Driver; C:\WINDOWS\system32\DRIVERS\hhdnet64.sys [2022-01-14 52848]
R1 HWiNFO_172;HWiNFO Kernel Driver (v172); \??\C:\WINDOWS\system32\drivers\HWiNFO64A_172.SYS [2023-07-02 56888]
R1 IDSVia64;IDSVia64; \??\C:\Program Files\Norton Security\NortonData\22.22.9.11\Definitions\IPSDefs\20230718.061\IDSvia64.sys [2023-02-21 1527816]
R1 npcap;@oem172.inf,%NPF_Desc_Standard%;Npcap Packet Driver (NPCAP); C:\WINDOWS\system32\DRIVERS\npcap.sys [2021-08-30 71736]
R2 bfs;@%systemroot%\system32\drivers\bfs.sys,-100; C:\WINDOWS\system32\drivers\bfs.sys [2023-06-14 91504]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2023-01-19 173424]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2023-07-11 565248]
R2 MBAMChameleon;MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [2023-07-19 223176]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2022-10-12 90112]
R3 AcerAirplaneModeController;@oem164.inf,%ServiceDesc%;Acer Airplane Mode Controller; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [2022-06-02 36800]
R3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2023-06-14 544768]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2023-07-11 143360]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2023-06-14 143360]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2023-04-12 159744]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2023-07-11 2088960]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2023-07-11 139264]
R3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2022-05-07 90112]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2022-05-07 99672]
R3 dptf_acpi;dptf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_a5bac3087ca5f8d5\dptf_acpi.sys [2020-08-26 76968]
R3 dptf_cpu;dptf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\dptf_cpu.sys [2020-08-26 73384]
R3 dtlitescsibus;@oem119.inf,%DisplayName%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2022-08-24 42256]
R3 dtliteusbbus;@oem35.inf,%DisplayName%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2022-08-24 63696]
R3 e2kw10x64;@oem18.inf,%EthDriver.Service.DispName%;Killer E2500/E2600 NDIS 6.40 64-bit Driver; C:\WINDOWS\System32\drivers\e2kw10x64.sys [2020-09-01 1146456]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2022-10-21 159720]
R3 esif_lf;esif_lf; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_lf.sys [2020-08-26 420008]
R3 fsfreedomewintun;@oem182.inf,%fsfreedomewintun.Name%;fsfreedomewintun; C:\WINDOWS\System32\drivers\fsfreedomewintun.sys [2023-03-07 31248]
R3 gFilterMouUsb;@oem68.inf,%gFilterMouUsb.SvcDesc%;SmartGenius Mouse Driver; C:\WINDOWS\System32\drivers\gFilterMouUsb.sys [2020-09-15 30568]
R3 gKbdfltr;@oem71.inf,%gKbdUpper.SvcDesc%;gKbd Upper Filter; C:\WINDOWS\System32\drivers\gKbdfltr.sys [2020-09-15 29576]
R3 HidEventFilter;@oem57.inf,%HidEventFilter%;Intel(R) HID Event Filter; C:\WINDOWS\System32\DriverStore\FileRepository\hideventfilter.inf_amd64_010863cba57434d0\HidEventFilter.sys [2020-09-18 86680]
R3 hvservice;@hvservice.inf,%hvservice.SvcDesc%;Microsoft Hypervisor Service Driver; C:\WINDOWS\System32\drivers\hvservice.sys [2022-10-12 91472]
R3 iaLPSS2_GPIO2_TGL;@oem21.inf,%iaLPSS2_GPIO2_TGL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_d0e63c4e3754f42f\iaLPSS2_GPIO2_TGL.sys [2020-08-12 128152]
R3 iaLPSS2_I2C_TGL;@oem91.inf,%iaLPSS2_I2C_TGL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_ab87bf17a571e523\iaLPSS2_I2C_TGL.sys [2020-08-12 197272]
R3 ibtusb;@oem117.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\System32\DriverStore\FileRepository\ibtusb.inf_amd64_723c8f13c52715bb\ibtusb.sys [2021-03-10 4887016]
R3 igfxn;igfxn; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\igdkmdn64.sys [2021-06-17 28658760]
R3 IntcAudioBus;@oem118.inf,%IntcAudioBus.SVCDESC%;Sběrnice technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcaudiobus.inf_amd64_a5bfc4a9cc7fdf5a\IntcAudioBus.sys [2022-01-26 311872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-06-29 6008928]
R3 IntcBTAu;@oem148.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro Bluetooth® Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcbtau.inf_amd64_42d4c8c359e6d3fb\IntcBTAu.sys [2022-01-26 858176]
R3 IntcDMic;@oem40.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro digitální mikrofony; C:\WINDOWS\System32\DriverStore\FileRepository\intcdmic.inf_amd64_b1529a2a6789f39e\IntcDMic.sys [2022-01-26 745536]
R3 IntcOED;@oem29.inf,%IntcOED.SVCDESC%;OED technologie Intel® Smart Sound; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\IntcOED.sys [2022-01-26 1154624]
R3 IntcUSB;@oem64.inf,%IntcAud.SvcDesc%;Technologie Intel® Smart Sound pro USB Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_2cc98897d8dddf62\IntcUSB.sys [2022-01-26 882280]
R3 IntelGNA;@oem122.inf,%IntelGNA.SVCDESC%;Intel(R) GNA Scoring Accelerator service; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [2020-11-06 84880]
R3 KfeCoSvc;@oem42.inf,%RivetCoServiceName%;KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [2020-11-04 201096]
R3 MBAMFarflt;MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt11.sys [2023-07-19 233216]
R3 MBAMProtection;MBAMProtection; \??\C:\WINDOWS\system32\DRIVERS\mbam.sys [2023-07-19 77752]
R3 MBAMSwissArmy;MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [2023-07-19 239544]
R3 MBAMWebProtection;MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [2023-07-19 181984]
R3 MEIx64;@oem143.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_e9ffe3f2557dd9e9\x64\TeeDriverW10x64.sys [2020-10-26 300040]
R3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2023-06-14 98304]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-200; C:\WINDOWS\system32\drivers\msquic.sys [2023-04-12 419152]
R3 Netwtw10;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 10 64 Bit; C:\WINDOWS\System32\drivers\Netwtw10.sys [2021-03-11 5287784]
R3 nhi;@oem31.inf,%TbtBusDrv_SVCDESC%;Thunderbolt(TM) Controller; C:\WINDOWS\System32\drivers\TbtBusDrv.sys [2020-09-27 2876264]
R3 NVHDA;@oem186.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2023-06-09 121880]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvlddmkm.sys [2023-06-09 59008024]
R3 NvModuleTracker;@oem158.inf,%ServiceName%;NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [2022-07-14 45656]
R3 nvpcf;@oem185.inf,%nvpcf.SVCDESC%;NVPCF Service; C:\WINDOWS\System32\drivers\nvpcf.sys [2023-06-09 240152]
R3 nvvad_WaveExtensible;@oem183.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2022-10-14 59928]
R3 nvvhci;@oem159.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2022-07-14 60112]
S0 AppleSSD;@AppleSSD.inf,%DevDesc1%;Apple Solid State Drive Device; C:\WINDOWS\System32\drivers\AppleSSD.sys [2022-05-07 113496]
S0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys []
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2022-05-07 79184]
S0 ebdrv0;@netevbd0a.inf,%vbd_srv_desc%;QLogic Legacy Ethernet Adapter VBD; C:\WINDOWS\System32\drivers\evbd0a.sys [2022-05-07 3424104]
S0 GenPass;@genpass.inf,%GenPass.SVCDESC%;Microsoft GenPass Driver; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [2022-05-07 62800]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2022-05-07 320880]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2022-05-07 885584]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2022-05-07 187224]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2022-05-07 125280]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2022-05-07 138600]
S0 MbamElam;MbamElam; C:\WINDOWS\system32\DRIVERS\MbamElam.sys [2023-07-19 21480]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2022-05-07 81752]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2022-05-07 101224]
S0 mpi3drvi;mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [2022-05-07 90472]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2022-05-07 206160]
S0 nvmedisk;@nvmedisk.inf,%nvmedisk.SvcDesc%;Microsoft NVMe disk driver; C:\WINDOWS\System32\drivers\nvmedisk.sys [2022-05-07 91496]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2022-10-12 57344]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2023-06-14 733184]
S3 AcxHdAudio;@acxhdaudiop.inf,%Audio_Device.DeviceDesc%;ACX HD Audio Driver; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [2023-07-11 561152]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2022-05-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2022-05-07 45568]
S3 AppleKmdfFilter;@oem128.inf,%AppleKmdfFilterDisplayName%;Apple KMDF Filter Driver; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [2020-10-09 20032]
S3 AppleLowerFilter;@oem128.inf,%AppleLowerFilterDisplayName%;Apple Lower Filter Driver; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [2020-10-09 35976]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2022-10-12 49152]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2023-07-11 86016]
S3 ExecutionContext;@%SystemRoot%\System32\Drivers\ExecutionContext.sys,-101; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [2022-10-12 75088]
S3 FTDIBUS;@oem175.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2021-07-08 145192]
S3 FTSER2K;@oem181.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2021-07-08 99296]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_cea150c98a1ca844\genericusbfn.sys [2022-05-07 61440]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2022-05-07 91472]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2022-10-12 139264]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2022-10-12 126976]
S3 Hsp;@hsp.inf,%Hsp.SVCDESC%;Microsoft Pluton Service; C:\WINDOWS\System32\drivers\Hsp.sys [2022-05-07 124264]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2022-05-07 61440]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2022-05-07 1854832]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2022-05-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2022-05-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2022-05-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2022-05-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2022-05-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2022-05-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2022-05-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2022-05-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2022-05-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2022-05-07 177664]
S3 iaStorAfs;@oem115.inf,%iaStorAfs.ServiceName%;iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [2021-08-26 74448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2022-05-07 559976]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2022-10-12 77824]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2022-05-07 65536]
S3 ioFakMap;@oem70.inf,%ioFakMap.SVCDESC%;MiniHid Driver Service for ioFakeDrv Interface layer; C:\WINDOWS\System32\drivers\ioFakMap.sys [2020-09-15 24664]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2022-05-07 99688]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2022-05-07 566632]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2022-05-07 99664]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2023-04-12 454656]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2022-05-07 1132392]
S3 mvusbews;@oem180.inf,%mvusbews.SvcDesc%;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2010-03-06 20480]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2022-05-07 147304]
S3 NDKPerf;NDKPerf Driver; C:\WINDOWS\system32\drivers\NDKPerf.sys [2022-05-07 83288]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2022-05-07 107872]
S3 Netaapl;@oem163.inf,%Netaapl.Service.DispName%;Apple Mobile Device Ethernet Service; C:\WINDOWS\System32\drivers\netaapl64.sys [2017-11-28 32352]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2023-04-12 394576]
S3 nsvst_NGC;NortonLifeLock Split Tunneling WFP Callout driver; C:\WINDOWS\System32\drivers\NGCx64\1617050.06A\nsvst.sys [2023-06-14 57120]
S3 P9Rdr;@%SystemRoot%\System32\drivers\p9rdr.sys,-100; C:\WINDOWS\System32\drivers\p9rdr.sys [2022-05-07 148816]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2022-05-07 75112]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACCSvc;ACC Service; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [2021-12-30 259232]
R2 Adguard Service;Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [2023-06-26 798936]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2023-04-03 173040]
R2 AdskLicensingService;Autodesk Desktop Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [2022-11-23 15280648]
R2 AGMService;Adobe Genuine Software Monitor Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2023-01-19 3896288]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2023-01-19 3729888]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2020-09-24 96056]
R2 Autodesk Access Service Host;Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [2023-05-21 10539808]
R2 cbdhsvc_2226bf;Uživatelská služba schránky_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 CDPUserSvc_2226bf;Uživatelská služba platformy připojených zařízení_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 ClickToRunSvc;Microsoft Office Click-to-Run Service; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2023-07-18 11851240]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 cplspcon;Intel(R) Content Protection HDCP Service; C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9dbc143909c9c41e\IntelCpHDCPSvc.exe [2021-06-17 365120]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 DtsApo4Service;DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [2022-10-13 420536]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R2 esifsvc;@oem79.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_e3868713e3d137ef\esif_uf.exe [2020-09-20 2254776]
R2 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2023-05-29 1518928]
R2 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2022-08-24 2657616]
R2 Flixmate.UpdateService;Flixmate update service; C:\Users\public\AppData\Roaming\Flixmate\update\Flixmate.UpdateService.exe [2022-08-31 24352]
R2 FlixmateService;Flixmate service; C:\Users\public\AppData\Roaming\Flixmate\flixmate.service.exe [2022-08-31 136704]
R2 Grafana;Grafana; C:\Program Files\GrafanaLabs\svc-9.1.5.0\nssm.exe [2022-09-13 331264]
R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-07 127800]
R2 igccservice;Intel(R) Graphics Command Center Service; C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe [2021-06-17 87584]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe [2021-06-17 398392]
R2 IntelAudioService;Intel(R) Audio Service; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_0f43cda6a2474b5c\\AS\\IAS\\IntelAudioService.exe [2022-01-26 531008]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe [2021-06-16 628616]
R2 Killer Analytics Service;@oem42.inf,%KillerAnalyticsService%;Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2020-11-04 1783992]
R2 Killer Network Service;@oem42.inf,%Killer_Service%;Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2020-11-04 2671800]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe [2021-09-02 4064384]
R2 MacriumService;Macrium Service; C:\Program Files\Macrium\Common\MacriumService.exe [2022-10-30 11072008]
R2 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [2023-07-19 9267376]
R2 NortonSecurity;Norton Security; C:\Program Files\Norton Security\Engine\22.23.5.106\NortonSecurity.exe [2023-06-14 344888]
R2 nsmService;NSM Service; C:\Program Files (x86)\NetSetMan\nsmservice.exe [2017-04-24 1782976]
R2 nsWscSvc;Norton WSC Service; C:\Program Files\Norton Security\Engine\22.23.5.106\nsWscSvc.exe [2023-06-14 1059176]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2022-03-15 1003128]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\Display.NvContainer\NVDisplay.Container.exe [2023-06-09 1014792]
R2 PDF24;PDF24; C:\Program Files\PDF24\pdf24.exe [2023-05-10 613048]
R3 BluetoothUserService_2226bf;Služba pro podporu uživatelů Bluetooth_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2022-01-26 321536]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2022-10-06 45992]
R3 Freedome Service;Freedome Service; C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe [2023-03-07 1812360]
R3 KAPSService;@oem42.inf,%KAPSServiceDisplayName%;Killer Smart AP Selection Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [2020-11-04 82080]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 AdskNLM;AdskNLM; C:\Program Files (x86)\Common Files\Autodesk Shared\Network License Manager\lmgrd.exe [2021-04-05 1201488]
S2 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S2 Intel(R) TPM Provisioning Service;@oem132.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe [2021-09-15 729944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S2 OneSyncSvc_2226bf;Hostitel synchronizace_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AarSvc_2226bf;Agent Activation Runtime_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BcastDVRUserService_2226bf;Uživatelská služba pro GameDVR a vysílání her_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CaptureService_2226bf;CaptureService_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2022-10-06 69568]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 ConsentUxUserSvc_2226bf;Uživatelská služba ConsentUX_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 CredentialEnrollmentManagerUserSvc_2226bf;CredentialEnrollmentManagerUserSvc_2226bf; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2022-05-07 406336]
S3 dcsvc;@%systemroot%\system32\dcsvc,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DeviceAssociationBrokerSvc_2226bf;DeviceAssociationBroker_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicePickerUserSvc_2226bf;DevicePicker_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DevicesFlowUserSvc_2226bf;Tok zařízení_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-05-07 114688]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2022-08-24 4960120]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 EABackgroundService;EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [2023-04-17 11029096]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2022-08-27 1135648]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2021-05-21 214936]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 EpicOnlineServices;Epic Online Services; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2022-03-03 934368]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FrameServerMonitor;@%systemroot%\system32\FrameServerMonitor.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 FvSvc;NVIDIA FrameView SDK service; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [2023-01-13 1081896]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files\Google\Chrome\Application\114.0.5735.199\elevation_service.exe [2023-06-24 1742616]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2022-08-25 168632]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 iaStorAfsService;@oem115.inf,%iaStorAfsService.ServiceName%;Intel(R) Optane(TM) Memory Service; C:\WINDOWS\System32\iaStorAfsService.exe [2021-08-26 3160784]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 Intel(R) Capability Licensing Service TCP IP Interface;@oem132.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe [2021-09-15 785240]
S3 InventorySvc;@%SystemRoot%\system32\inventorysvc.dll,-501; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 KNDBWM;@oem42.inf,%KNDBWMServiceDisplayName%;Killer Dynamic Bandwidth Management; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [2020-11-04 82088]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MessagingService_2226bf;Služba zasílání zpráv_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.82\elevation_service.exe [2023-07-13 1744336]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2022-10-10 232776]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2022-05-07 79920]
S3 NPSMSvc;@%SystemRoot%\system32\npsm.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 NPSMSvc_2226bf;NPSMSvc_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService;@%systemroot%\system32\p9rdrservice.dll,-102; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 P9RdrService_2226bf;P9RdrService_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService;@%SystemRoot%\system32\PenService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 PenService_2226bf;PenService_2226bf; C:\WINDOWS\system32\svchost.exe [2022-05-07 79920]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2022-05-07 241664]
-----------------EOF-----------------
Re: Prosím o preventivní kontrolu logu
Logfile of random's system information tool 1.10 (written by random/random)
Run by hlava at 2023-07-19 11:56:12
toto ale nie je FRST
Run by hlava at 2023-07-19 11:56:12
toto ale nie je FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
Moje chyba, omlouvám se: zde již v pořádku:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-07-2023
Ran by hlava (19-07-2023 14:13:10)
Running from C:\Users\hlava\Downloads
Microsoft Windows 11 Home Version 22H2 22621.1992 (X64) (2022-10-06 08:17:00)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-370656792-1244637223-2425275819-500 - Administrator - Disabled)
agnes (S-1-5-21-370656792-1244637223-2425275819-1001 - Administrator - Enabled) => C:\Users\agnes
DefaultAccount (S-1-5-21-370656792-1244637223-2425275819-503 - Limited - Disabled)
Guest (S-1-5-21-370656792-1244637223-2425275819-501 - Limited - Enabled)
hlava (S-1-5-21-370656792-1244637223-2425275819-1002 - Administrator - Enabled) => C:\Users\hlava
WDAGUtilityAccount (S-1-5-21-370656792-1244637223-2425275819-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton 360 (Disabled - Up to date) {AECE2126-F4E7-6909-11F2-1B69D1FBCBD0}
FW: Norton 360 (Enabled) {96F5A003-BE88-6851-3AAD-B25C2F288CAB}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\uTorrent) (Version: 3.6.0.46812 - BitTorrent Inc.)
4K Video Downloader (HKLM\...\{818C221F-DE01-4CBD-89A2-FF30E9CF6FB7}) (Version: 4.21.7.5040 - Open Media LLC) Hidden
4K Video Downloader (HKLM-x32\...\{a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b}) (Version: 4.21.7.5040 - Open Media LLC)
ABBYY FineReader PDF 15 (HKLM\...\{F15000FE-0001-6400-0000-074957833700}) (Version: 15.0.4684 - ABBYY Production LLC)
Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer)
Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer)
AdGuard (HKLM-x32\...\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}) (Version: 7.13.4287.0 - Adguard Software Limited) Hidden
AdGuard (HKLM-x32\...\{aecfa4cc-d924-47f5-b449-859bcd5b361f}) (Version: 7.13.4287.0 - Adguard Software Limited)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 22.001.20169 - Adobe)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 8.2.0.18 - Adobe Inc.)
Adobe Premiere Pro 2022 (HKLM-x32\...\PPRO_22_2) (Version: 22.2 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601047}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5.1 (HKLM-x32\...\{A1264137-992D-4163-9158-FC398DD88DA4}) (Version: 2.5.4594.1 - Famatech)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\Host App Service) (Version: 0.273.4.604 - SweetLabs)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Host App Service) (Version: 0.273.4.677 - SweetLabs)
Apple Mobile Device Support (HKLM\...\{F9CEF01A-3907-4614-824F-CF5D3E4675EF}) (Version: 14.1.0.35 - Apple Inc.)
Arduino IDE 2.0.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\459fc68c-eb53-59f8-8957-9913bc627af3) (Version: 2.0.0 - Arduino SA)
AutoCAD Open in Desktop (HKLM\...\{E03EC70C-079C-4B5D-86D1-75759A46ED71}) (Version: 1.0.27.0 - Autodesk)
Autodesk App Manager (HKLM-x32\...\{8ECA94E8-BB0D-4E0C-AD18-817EA930E700}) (Version: 3.4.1 - Autodesk)
Autodesk AutoCAD 2022 - Italiano (Italian) (HKLM\...\{A7FCEC1C-74BA-3652-A9BB-9F23C304B712}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2022 Language Pack - English (HKLM\...\{756C1830-AE6A-30CB-9331-650543CDDD58}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2024 - English (HKLM\...\{CC46AD7F-5075-3702-B2BF-CFCC5AB8468B}) (Version: 24.3.61.0 - Autodesk, Inc.)
Autodesk AutoCAD v2024 (HKLM-x32\...\{6E22F178-5839-45FF-8A51-08AE632880BD}) (Version: 1.0.0 - Autodesk AutoCAD v2024)
Autodesk Fusion 360 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.16490 - Autodesk, Inc.)
Autodesk Identity Manager (HKLM\...\Autodesk Identity Manager) (Version: 1.9.18.0 - Autodesk)
Autodesk Interoperability Engine Manager (HKLM\...\{412B8C29-F1BC-3791-A0BA-490A502077FA}) (Version: 1.1.0.28 - Autodesk.com) Hidden
Autodesk Material Library 2022 (HKLM-x32\...\{A9221A68-5AD0-4215-B54F-CB5DBA4FB27C}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library 2023 (HKLM-x32\...\{8E133591-B0FD-4DB0-B60E-FB593CAF72B0}) (Version: 21.0.1.1 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2022 (HKLM-x32\...\{6256584F-B04B-41D4-8A59-44E70940C473}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2023 (HKLM-x32\...\{3B564A94-BA47-4E42-ACD6-B5C35291210B}) (Version: 21.0.1.1 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 11.18.0.0 - Autodesk, Inc.)
Blackmagic RAW Common Components (HKLM\...\{35D9A1FC-10E0-4825-B2D2-3B15EB9B2232}) (Version: 2.4.0.1 - Blackmagic Design)
Brother MFL-Pro Suite DCP-9020CDW (HKLM-x32\...\{E98A9C92-E767-475B-8BC6-8780A86DDC72}) (Version: 1.0.5.0 - Brother Industries, Ltd.)
Builder Simulator (HKLM-x32\...\Builder Simulator_is1) (Version: - RePack)
Care Center Service (HKLM\...\{AFB52E98-7597-4484-9202-58F0FD3512ED}) (Version: 4.00.3042 - Acer Incorporated)
CData Excel Add-In for SAS Xpt (HKLM-x32\...\CData Excel Add-In for SAS Xpt) (Version: 22.0.8462 - CData Software, Inc.)
Cesta kolem světa za 80 dní (HKLM-x32\...\{C5A41205-5B61-442F-943F-4A60B376FA8A}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
CEWE fotosvet (HKLM\...\CEWE fotosvet) (Version: 7.2.4 - CEWE Stiftung u Co. KGaA)
Corel Graphics - Windows Shell Extension (HKLM\...\_{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.0.293 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{98CFADA3-527D-4A92-9160-EE463FCE95A5}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Update Manager (HKLM\...\{4BAE1A4E-9E7A-4DEB-93DF-F2EB7539C3E2}) (Version: 2.16.673 - Corel corporation) Hidden
CorelDRAW Graphics Suite (HKLM\...\_{1E4B5F2C-0532-4CDA-AFCD-674E9C37521E}) (Version: 24.3.1.576 - Corel Corporation)
CorelDRAW Graphics Suite 2022 - IPM (x64) (HKLM\...\{C3AA2B13-47FD-4A79-8B12-371D41CEBA58}) (Version: 24.4 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content BR (x64) (HKLM\...\{89D5710D-E9BA-422C-9622-0AD767A4393E}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CS (x64) (HKLM\...\{EA20C1C5-9B58-4521-A6CF-B8EF05240090}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CT (x64) (HKLM\...\{A9B5D262-8F37-4FE8-8042-FB734E355760}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CZ (x64) (HKLM\...\{A096AB0F-2BFF-4374-8B8E-946B4C7A383F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content DE (x64) (HKLM\...\{979F473A-F5E9-46F1-A144-A3EB8854C7CE}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content EN (x64) (HKLM\...\{E4106E1B-D15B-4BC1-94E7-F4D8BB5E4E8F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content ES (x64) (HKLM\...\{A51F1984-32E8-4504-ADCE-6394971DC9DB}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content FR (x64) (HKLM\...\{20CE94E7-88BA-4A9D-ADB2-1C289B74615A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content IT (x64) (HKLM\...\{B765426D-57E3-4951-814D-7F8D91AEBA4A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content JP (x64) (HKLM\...\{BF0FB182-C342-4744-8BC0-E1812C50A349}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content NL (x64) (HKLM\...\{E59C483B-FB36-45C3-A981-7A7F432FBC72}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content PL (x64) (HKLM\...\{DAD765D7-6E19-4F6E-AF32-EC04741092D4}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content RU (x64) (HKLM\...\{34EDBF0A-481F-4314-AD70-5A162A7B14E1}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content SV (x64) (HKLM\...\{B74272BD-DCCD-4A35-9AAD-877172F31A97}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content TR (x64) (HKLM\...\{F636BFF2-0638-4B0E-80B0-0591240A9E07}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - Writing Tools (x64) (HKLM\...\{7DCFAD1B-69CB-4394-8EF6-E2ECECDF098C}) (Version: 24.4 - Corel Corporation) Hidden
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.0.0.1996 - Disc Soft Ltd)
DaVinci Resolve (HKLM\...\{AEA1F37D-8F18-4B1A-8B7F-1911CC4B7071}) (Version: 18.0.00014 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{7667C543-084F-47F7-BC60-175FC25E9D6F}) (Version: 2.0.1.0 - Blackmagic Design)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3026 - Acer Incorporated)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.159.0.5416 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d784aa79-3dac-45df-b52b-70303fb90b62}) (Version: 12.159.0.5416 - Electronic Arts)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 1.3 - )
ExpressVPN (HKLM-x32\...\{72B1757E-2E76-49C5-A31E-BA29DD7FA5F6}) (Version: 2.4.22135.2 - Acer)
f.lux (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Flux) (Version: 4.124 - f.lux Software LLC)
Far Cry 6 (HKLM-x32\...\Far Cry 6_is1) (Version: - )
Flixmate (HKLM\...\{E2E22B14-52E8-4DF1-ABDA-F1F492CC88C1}) (Version: 1.2.1 - Flixmate)
FoneTool (HKLM-x32\...\{AD04677C-79B8-4B7A-BB39-FEE6F138E716}_is1) (Version: 2.0.1 - AOMEI International Network Limited.)
FPS Monitor (HKLM-x32\...\FPS Monitor_is1) (Version: 1 - )
Free Rar Password Unlocker (HKLM\...\{0470B1FF-D782-4752-9BAD-CBEF36A979CB}_is1) (Version: 1.2.2 - bestx software)
F-Secure Freedome VPN 2.64.767.0 (HKLM-x32\...\F-Secure Freedome VPN_is1) (Version: 2.64.767.0 - LRepacks)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM\...\{1FB4283F-3864-3315-A54D-350512E5ECBE}) (Version: 114.0.5735.199 - Google LLC)
GrafanaEnterprise (HKLM\...\{A4BB29E8-E86C-4362-B5A4-DFA0B4AEA2B3}) (Version: 9.1.5.0 - Grafana Labs)
HHD Software Free Network Analyzer 8.45 (HKLM\...\HHD Device Monitoring Studio 5.01) (Version: 8.45.1.9934 - HHD Software, Ltd.)
Horké léto 2 (odinstalovat) (HKLM-x32\...\HL2) (Version: - )
Horké léto verze 1.0 (HKLM-x32\...\{88954A10-19CE-4D7D-86D0-A19030151499}_is1) (Version: 1.0 - Maxon)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
iCareFone 8.5.0.23 (HKLM-x32\...\{Tenorshare iCareFone}_is1) (Version: 8.5.0.23 - Tenorshare, Inc.)
iCloud Outlook (HKLM\...\{B8056148-C2ED-44EC-A3D1-93FDA8B120FC}) (Version: 13.4.0.101 - Apple Inc.)
Killer Ethernet Performance Driver Suite UWD (HKLM\...\{8D5D1E91-BBB5-4035-A8BD-90590833ACED}) (Version: 2.3.1513 - Rivet Networks)
KMS_VL_ALL_AIO (HKLM-x32\...\{21498B56-B51C-4EB6-8846-0A7A5A62C93F}) (Version: 1.0.0 - KMS_VL_ALL_AIO)
Kodi (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Kodi) (Version: 20.0.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Loxone Config (HKLM-x32\...\LoxoneConfig_is1) (Version: 14.2 - Loxone Electronics GmbH)
Macrium Reflect Free (HKLM\...\{5664B4BB-6EA2-4981-A1C1-D08B5A088867}) (Version: 8.0.6979 - Paramount Software (UK) Ltd.) Hidden
Macrium Reflect Free (HKLM\...\MacriumReflect) (Version: v8.0.6979 - Paramount Software (UK) Ltd.)
Machinarium (HKLM-x32\...\Machinarium) (Version: CZ/14.02.2010 - Amanita Design, s.r.o.)
Malwarebytes version 4.5.33.272 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.33.272 - Malwarebytes)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 6.0.20 (x64) (HKLM\...\{217B2755-3BAD-486B-9606-CCD0E6CF3BE8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.20 (x64) (HKLM\...\{76FA02FF-603F-48BB-9E3F-17ED5DB861E8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.20 (x64) (HKLM\...\{6CE8AD8C-E6D5-4BF7-91C3-7F8106A5CD93}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 3.1.32 - Shared Framework (x64) (HKLM-x32\...\{65fddc17-d55b-46b7-a750-5c179fef3d81}) (Version: 3.1.32.22566 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.32 Shared Framework (x64) (HKLM\...\{2E69E59E-17DF-3977-A405-49096F8B8432}) (Version: 3.1.32.22566 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64) (HKLM-x32\...\{ccc9b7bf-4213-41d0-80ab-e1214c456f4a}) (Version: 6.0.20.23321 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.20 Shared Framework (x64) (HKLM\...\{C34CAF5C-AAF9-3D8C-895E-D23B398383BD}) (Version: 6.0.20.23321 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.16529.20182 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{43D501A5-E5E3-46EC-8F33-9E15D2A2CBD5}) (Version: 5.70.0.0 - Microsoft Corporation)
Microsoft Visual Basic for Applications 7.1 (x64) (HKLM\...\{78E1A395-FD21-499A-91A2-6135BA6112B6}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual Basic for Applications 7.1 (x64) English (HKLM\...\{9B29A3A1-255A-44C0-BCCA-E3447A41F32A}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 (HKLM-x32\...\{d4cecf3b-b68f-4995-8840-52ea0fab646e}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31931 (HKLM-x32\...\{6ba9fb5e-8366-4cc4-bf65-25fe9819b2fc}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 (HKLM\...\{EAE242B1-0A26-485A-BFEB-0292EE9F03CB}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 (HKLM\...\{CF4C347D-954E-4543-88D2-EC17F07F466F}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31931 (HKLM-x32\...\{C2662EFF-06E6-4FD1-9D6D-FDCA91025757}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31931 (HKLM-x32\...\{AB1BDF73-7393-42CE-812D-9A90918814D5}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{9D6CE289-E12C-38BB-9999-E2377EC118B7}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{7C931D41-F302-3494-868C-320A4F4DD9F9}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM\...\{53531ED1-E480-4012-9912-BF1C67547BF3}) (Version: 48.83.63194 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM-x32\...\{8e256e2b-a36f-4f85-a4c7-37fdf661778c}) (Version: 6.0.20.32621 - Microsoft Corporation)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 106.0 (x64 en-US)) (Version: 106.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 106.0 - Mozilla)
NetSetMan 4.7.2 (HKLM-x32\...\NetSetMan_is1) (Version: 4.7.2 - NetSetMan GmbH)
NetSurveillance (HKLM-x32\...\NetSurveillance) (Version: - )
NitroSense Service (HKLM\...\{6FC78E80-6385-43D6-8A43-FA80094F1A2E}) (Version: 3.01.3024 - Acer Incorporated)
No Man's Sky (HKLM-x32\...\1446213994_is1) (Version: 4.10_Fractal_100408a - GOG.com)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.23.5.106 - NortonLifeLock Inc)
Nový Robinson (HKLM-x32\...\Nový Robinson) (Version: - )
Npcap OEM (HKLM-x32\...\NpcapInst) (Version: 1.55 - Nmap Project)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 536.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 536.23 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
OnePlus USB Drivers 1.00 (HKLM-x32\...\OnePlus USB Drivers 1.00) (Version: 1.00 - OnePlus, Inc)
PDF24 Creator 11.12.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 11.12.0 - PDF24.org)
PicPick 7.0.1 (HKLM-x32\...\PicPick_is1) (Version: 7.0.1 - RePack 9649)
Polda 2 verze 1.0 (HKLM-x32\...\{BC895280-AC1B-4A9F-BA40-8DB70971D761}_is1) (Version: 1.0 - )
PrusaSlicer 2.5.0 (HKLM\...\{F7A53CE7-528F-429F-AABB-E54ECE5FD63E}) (Version: 2.5.0 - Prusa Research) Hidden
PrusaSlicer 2.5.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\PrusaSlicer 2.5.0 2.5.0) (Version: 2.5.0 - Prusa Research)
PrusaSlicer 2.6.0 (HKLM\...\{D6310383-F2B7-4DEB-89B5-8C7448FAE3A6}) (Version: 2.6.0 - Prusa Research) Hidden
PrusaSlicer 2.6.0 (HKLM\...\PrusaSlicer 2.6.0 2.6.0) (Version: 2.6.0 - Prusa Research)
Quick Access Service (HKLM\...\{AB25551C-74EF-4BAB-9989-891517FCF9FF}) (Version: 3.00.3038 - Acer Incorporated)
RAR Password Cracker (HKLM-x32\...\RAR Password Cracker) (Version: 4.20 - dnSoft Research Group)
Raspberry Pi Imager (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Raspberry Pi Imager) (Version: 1.7.2 - Raspberry Pi Ltd)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9091.1 - Realtek Semiconductor Corp.)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2_is1) (Version: 0.0.0 - DODI-Repacks)
ReflectionNetworkLauncher 1.0.9 (HKLM\...\d0673521-1e7c-5647-8f72-b2cae5719a78) (Version: 1.0.9 - Reflection Network)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
SHAREit (HKLM-x32\...\www.ushareit.com_is1) (Version: 4.0.6.177 - SHAREit Technologies Co.Ltd)
Sherlock Holmes The Awakened (HKLM-x32\...\FLT_Sherlock_Holmes_The_Awakened) (Version: - )
Simplify3D Software (HKLM\...\Simplify3D Software 4.1.2) (Version: 4.1.2 - Simplify3D)
SketchUp Language Pack [cs] (HKLM\...\{ca0041d2-4059-4b49-733d-708944038fd1}) (Version: 22.0.354 - Název společnosti:) Hidden
SketchUp Pro 2022 (HKLM-x32\...\{c631706c-1735-11ec-9621-0242ac130015}) (Version: 22.0.354 - Trimble, Inc.)
SketchUpPro 2022 (HKLM\...\{898ed298-4bc7-f67e-2e5b-6202a980787a}) (Version: 22.0.354.126 - Název společnosti:) Hidden
SmartGenius (HKLM\...\{F96B1114-82A6-4348-8A84-8FD4E9D99F3B}_is1) (Version: 1.7.0.5 - KYE Systems Corp.)
Sons Of The Forest (HKLM-x32\...\Sons Of The Forest_is1) (Version: 0.0.0 - DODI-Repacks)
Speciální aplikace Autodesk (HKLM-x32\...\{00A2237F-C1A4-4498-8B21-24CA66D8C756}) (Version: 3.4.1 - Autodesk)
StatusMonitor (HKLM-x32\...\{D9584EB4-1D28-4BD1-8F81-6E097C0827EE}) (Version: 1.33.1.0 - Brother Industries, Ltd.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
stl-thumb (HKLM\...\{189AFC45-ECA5-450E-8CCE-64D3CB8ACC47}) (Version: 0.4.0 - UnlimitedBacon) Hidden
STL-Thumb (HKLM-x32\...\{8bbd4d67-1df3-493d-a212-bcb83b0ca994}) (Version: 0.4.0 - UnlimitedBacon)
Tormentum - Dark Sorrow (HKLM-x32\...\1995239510_is1) (Version: 1.4.1 - GOG.com)
Total Uninstall 6.27.0 (HKLM\...\Total Uninstall 6_is1) (Version: 6.27.0 - Gavrila Martau)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{AC9D2EAD-0DA0-4E0B-8672-546F5B1E6E73}) (Version: 3.0.31 - Autodesk)
Ultimaker Cura 5.1.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Ultimaker Cura 5.1.0) (Version: 5.1.0 - Ultimaker B.V.)
User Experience Improvement Program Service (HKLM\...\{323EA05D-046D-449D-9D7C-89243C957CCE}) (Version: 5.00.3012 - Acer Incorporated)
uTorrent Web (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\utweb) (Version: 1.3.0 - Rainberry, Inc.)
Ve stínu havrana (HKLM-x32\...\Ve stínu havrana_is1) (Version: - CINEMAX, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WATTconfig M (x64) (HKLM\...\WATTconfigM64_is1) (Version: - SOLAR controls s.r.o.)
WATTconfig Mx (x64) (HKLM\...\WATTconfigMx64_is1) (Version: - SOLAR controls s.r.o.)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Worms Armageddon (HKLM-x32\...\1462173886_is1) (Version: gog-2 - GOG.com)
ZPS 19 CZ (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)
Packages:
=========
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4 [2023-07-13] (Acer Incorporated)
DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2023.2.5.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
DTS:X Ultra -> C:\Program Files\WindowsApps\DTSInc.DTSXUltra_1.11.14.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-07-19] (INTEL CORP)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa [2023-05-24] (Apple Inc.) [Startup Task]
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt [2023-07-13] (Meta) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.39.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.1.60961.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corporation)
ms-resource:iCloudAppDisplayName -> C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa [2023-06-17] (Apple Inc.) [Startup Task]
ms-resource:OEMAppName -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.17.0_x64__xbfy0k16fey96 [2023-07-14] (Dropbox Inc.)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt [2023-07-14] (INTEL CORP) [Startup Task]
NitroSense_V31 -> C:\Program Files\WindowsApps\AcerIncorporated.NitroSenseV31_3.1.3024.0_x64__48frkmn4z8aw4 [2022-11-16] (Acer Incorporated)
Norton Security -> C:\Program Files\Norton Security\Engine\22.23.5.106 [2023-07-19] (NortonLifeLock Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-07-13] (NVIDIA Corp.)
O2 TV -> C:\Program Files\WindowsApps\D8378DF7.O2TVGo_20182.1.0.0_x64__tqn3m7kee4xc8 [2023-07-14] (O2 Czech Republic a.s.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2022-12-02] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0 [2023-07-11] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2327.6.0_x64__cv1g1gvanyjgm [2023-07-14] (WhatsApp Inc.) [Startup Task]
XPT (SAS transport) viewer -> C:\Program Files\WindowsApps\61617IDV.XPTSAStransportviewer_1.1.0.4_neutral__c67edy5ke3rw0 [2023-03-29] (IDV)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{169B5B8E-E315-41C7-9574-66FC7E530D10}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{21840483-38D7-1894-63D0-47625DAD0326}\InprocServer32 -> C:\Program Files (x86)\Common Files\System\ole32.dll => No File
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> c:\program files\macrium\common\reflectmonitor.exe (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{8B4929F8-076F-4AEC-AFEE-8928747B7AE3}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{9DFFEB0B-61A1-4446-B455-D348A3A61C96} -> [iCloud Drive] => C:\Users\hlava\iCloudDrive [2022-08-25 10:51]
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AA46BA8A-9825-40FD-8493-0BA3C4D5CEB5}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AF18D91C-A699-4578-ADC6-972F3BA007F0}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\hlava\AppData\Local\Autodesk\webdeploy\production\dbacedcc6dabacdc41406088a765962c5f1923ad\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2024\en-US\acadficn.dll (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2023-06-01] (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2023-06-01] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvshext.dll [2023-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetSurveillance\reg.lnk -> C:\Program Files (x86)\NetSurveillance\CMS\reg.bat ()
==================== Loaded Modules (Whitelisted) =============
2023-07-19 11:55 - 2023-07-19 11:55 - 000915456 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\4a2b5b70-b86c-472b-94b5-00142ee49626.tmp.node
2023-07-19 11:55 - 2023-07-19 11:55 - 000357888 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\79b59a64-44c1-43fe-a4b6-728c805de48d.tmp.node
2022-09-29 19:03 - 2009-02-27 16:38 - 000139264 ____R () [File not signed] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000542720 _____ () [File not signed] C:\Program Files (x86)\Browny02\BrMonitor.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000208896 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrFirmUpdateCheck.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 001859584 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonWRes.dll
2022-09-29 19:03 - 2019-07-26 09:53 - 000137728 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcAssoc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 000087552 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcDlgRc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 017974784 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcGrImg.dll
2022-09-29 19:03 - 2018-04-27 10:16 - 000090112 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcLCze.dll
2023-03-03 15:25 - 2019-07-26 09:54 - 000440832 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\Track.dll
2021-02-01 22:49 - 2021-02-01 22:49 - 000010240 _____ () [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\acrotray.cze
2022-05-22 20:57 - 2022-05-22 20:57 - 000613376 _____ () [File not signed] C:\Program Files\EqualizerAPO\EqualizerAPO.dll
2016-07-30 23:42 - 2016-07-30 23:42 - 002772692 _____ () [File not signed] C:\Program Files\EqualizerAPO\libfftw3f-3.dll
2017-04-02 19:01 - 2017-04-02 19:01 - 001748992 _____ () [File not signed] C:\Program Files\EqualizerAPO\libsndfile-1.dll
2022-09-29 19:03 - 2005-04-22 06:36 - 000143360 _____ () [File not signed] C:\WINDOWS\system32\BrSNMP64.dll
2022-07-05 06:34 - 2022-07-05 06:34 - 000021504 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2022-09-29 19:03 - 2010-09-29 17:07 - 000180224 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BroSNMP.dll
2022-09-29 19:03 - 2012-07-14 10:53 - 000087040 _____ (Brother Industries, Ltd.) [File not signed] C:\WINDOWS\system32\BrNetSti.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2017-11-01 21:58 - 2017-11-01 21:58 - 001141248 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\Adguard\SQLite.Interop.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
==================== Internet Explorer (Whitelisted) ==========
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> DefaultScope {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 14:08 - 2022-11-18 12:49 - 000000859 _____ C:\WINDOWS\system32\drivers\etc\hosts
0.0.0.0 account.zoner.com
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Acer01.jpg
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\themea\img20.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
FreedomeVPNConnection: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Ethernet: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Ethernet: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Wi-Fi: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Wi-Fi: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{82F1800D-BC0F-422D-9810-6487E56550B5}] => (Allow) LPort=54925
FirewallRules: [{1D231CCB-BE07-469B-848E-EF64FBD90392}] => (Allow) C:\Program Files (x86)\Adguard\AdguardSvc.exe (Adguard Software Limited -> Adguard Software Limited)
FirewallRules: [{4D821F65-E685-4D22-80BC-1A7E596717B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{800B6870-46B4-4840-9F42-202AE247CCC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{363C2E45-AA85-48E3-90C7-40E733A870A0}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{3310B83E-019D-4884-895F-4348203BE664}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{2AB0DBA8-AD18-466B-B4F9-827F6CE021C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{85BCFAF8-DF1A-4C72-9F62-9BD42AAB2A40}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{5420E1D4-DACE-405B-8A2A-D5BF51F04F64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{C5896AA1-65D6-45C3-A839-DE16918214D8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{61B7C7CA-C9C6-4CD6-A21A-E7AB7FD3DC4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{E4DA82F0-7096-4CBA-82F2-667734D194BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{79FC022E-1D5A-417F-A823-868F6E98AB6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{68B0A10D-49C9-431C-8D80-1A47F5ED9FE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{5EC95B83-9C2E-4A66-8118-CD2F9CD0BFB7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{8E7296B3-A729-4BBE-8769-8AA5EC9B5C3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{AF8074C6-D807-4544-A949-C356D51C8229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{EE9ECFA3-1366-40DB-8295-FBAF093254F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{7850599A-EBC5-402D-80F2-0DF90399B650}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0026C214-049B-44CC-8A8B-EEB78233F1CB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2C9EA6D8-EFDF-4801-9226-4A9AF69E4B88}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{8BFB68E3-5C82-43DE-BCDD-6ABCC0C367C4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6588F92F-5E6D-4128-B60D-5780960DE532}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{8E7D807E-CCB3-42E7-8F47-E94976DF0123}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{67ED0B34-11E7-488B-9EBA-E242B2FC5A33}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9926819C-CCF7-4264-A416-55EA3FEA667C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{BBF03738-4C1B-47F7-A5A7-6A135A3116FC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{8B57266D-682E-4DF4-AB3D-65D24610A1B3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{852C58F7-8107-4CE9-8E52-222C682917AA}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{036D4F93-6512-4388-93BD-95F7C12D6BB8}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{1F211131-6FCA-4D6E-9FD3-4823C97CD700}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{7A054D88-BA7B-462B-A144-758E92524503}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{57F18FF9-EB8E-4C30-BE97-B7F79413408D}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{B46CECC2-B10E-4AB9-AA41-DC45B9B6CA3E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3D093BC1-81A7-42E6-997E-A89469020A99}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E45C7B09-7831-4240-BB8B-8BCDE2BBF53E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C475060F-293E-4DF8-B799-1F9FA0EE8C19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{4D7695D9-F10D-4786-8C58-CC41BE76BF96}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A91F8A20-AD58-4FCA-A2A5-7FB7BD401B34}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0787E1B9-654E-417C-AB7A-A75B24EDFAA2}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{6A0788B7-7990-4556-900A-42427FAFF607}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F9AC6EF1-4FEB-4C02-B6A9-461A2E439BDC}] => (Block) C:\Program Files (x86)\iCareFone\test_airplay_manager_gui.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{DD9C7F83-AC10-4511-BE6F-AD5DCEEE7D7A}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [{11C5566F-4C63-4504-8E61-052555FBFA71}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [TCP Query User{99B3DC92-0F32-409D-9F81-1102FC42D295}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [UDP Query User{2EEB8E51-855B-4450-8E79-055F801FCE39}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [{0E7DEC62-54FD-456E-98D9-364C103D7B6A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{FB5A884A-46D3-4C76-88FC-FBDD04336DD4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{D87F179D-1306-47DE-8841-D1F339795C52}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{EBE0DECF-EA36-44BF-BB60-3FF5B8E9F09E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{988B621B-DBDC-4C98-896D-FF0965F5A21C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{0DCCF909-EAEA-468D-BE7C-D44721E9981F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A5C80051-89AD-4CFF-A46A-06D8260FB3AA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{A46C591C-9C73-4C61-A96F-2B84286F35A8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{0ECB2031-8FBE-4909-A8E7-7E5F20120EED}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{DB78A89E-3C02-4880-9A29-A2F45B0038E1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{6371206A-FCEE-4F7C-BA09-6B193D047BD3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{8D6C5653-9F14-487C-BDD2-96EAE3AE6142}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D1F53103-8124-4722-9117-BDA085411C21}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{FE716126-2EDE-4364-9E00-590E0A08087C}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{18F6A7E8-1B15-4736-89E1-EA7AFBC997AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{F50CBB40-44D5-44F9-940E-3A94087265BF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{86E4D795-252C-4F24-BA1C-F23652FCE880}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C41E0AF1-62A3-4B01-9DF8-CA80A0659584}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{186ADB7D-4126-476C-B3F0-AC2DABD88692}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C968CC53-CDDD-4E76-8D59-444874D69F67}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{6E3CDF5F-EDB1-4908-A1ED-3469A211EF3A}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{8CA52744-77C4-4D40-BAB9-C808015929DC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9310D1B8-B17A-429F-A0EF-ED026EC95338}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{09B0ED13-DADA-4C17-AF19-4052A2A69DEE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6B2A5F6C-AF19-43C6-A2E4-0D68AFE8A903}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A39EDADE-D37E-4227-A7A6-6F17451E42A8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0E8DCBA7-71A7-45C4-9C0D-FDBE02286A91}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{863F7953-9304-44A4-B0E0-7CF6A92844E7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{991303E4-9AEB-4BB7-BB06-645F89D2FD30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{55E787A2-AD04-497C-A663-98C3BC88D643}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C37FA421-DB14-4C29-9D49-366AEF9FB29D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2F3E5C4B-BAC3-4174-A52E-AE21D9D21BEB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{5307C0CE-229E-45C3-B832-16A320074BC7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{48D32C2F-4D32-4BD6-B467-A5F7895661EA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F2E3D8C9-04FD-4280-A59B-1B959889D38F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D1EDD77D-2051-45E5-819E-ED8B0D56CCE3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B029956C-D871-4379-B595-31994867DB3E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6E03F174-E10E-4E86-8F9A-AF81A53E45E6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{06FE327D-AE76-4B2B-9232-7EB4D8B7CCBF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{55167965-238F-4AEB-8679-5BDC8A7004BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C7923AB2-73A1-448B-BF32-023E46438CA9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3B3D56FB-A612-4C60-83B8-D12A94F62FE2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8853DE1F-6730-4F48-A689-F1E5FCCFE39C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F3BD9B9F-00AD-4E72-A8FD-1A3449E07031}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AFE52677-E5E0-413C-9D20-4684A1D8D6A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1F85C63D-7DB3-42FC-AF29-AC5C63405FDC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{304C506F-A975-4837-B3B7-F4C2E86CE7B1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C3996DAB-0BA0-45E7-A23E-3F87B06C1B2E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7C9702A0-2040-48DC-9FD3-DFE2F6CF5D45}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D4A88706-3727-4D67-B11C-BA61E48FA15F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D578E726-32CB-4E09-ABEE-0D726B623D71}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0934392D-078A-4A20-B599-B880E03E2695}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{4CBC2000-8360-4CA4-912D-D628217A43A0}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{BA9CF30D-4CEB-4E1D-82CE-9460294AD92E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A3627ACC-2BFF-48DA-B666-A8A6937D7AA2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EE140D1C-437C-4908-B57E-FD413908675C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{93808A46-5A43-4FED-B170-4068194E4AD4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C20E1175-71D5-4D51-9177-63C821DE81AE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{70D1E0DF-89FB-4600-BD16-15CBD6D56B3B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B99F59CF-FEE0-42E2-9114-7D4C6BE39AE2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AA9B6DAD-FA0F-46D1-AE22-7C67E48AE6EF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC76C680-DC86-496D-8696-BC6BA742331F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9B131D1C-B724-4EAA-8981-D4486A6E5E68}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E1A4F0CF-FBF3-4448-8797-8359DCCBC8B2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{47770630-51E8-42F6-B614-AA918B8076B5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F412EADE-20DA-4B4F-8DBC-58F7AB9AA901}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.82\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{266DA9C1-A7B5-4127-8E74-5388F55EE689}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A265F474-BDCD-4922-8FEF-39142D06A147}] => (Allow) C:\WINDOWS\System32\WScript.exe
==================== Restore Points =========================
11-07-2023 23:40:19 Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64)
11-07-2023 23:51:31 Instalační služba modulů systému Windows
11-07-2023 23:51:59 Instalační služba modulů systému Windows
19-07-2023 08:37:46 19.07.2023
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
System errors:
=============
Error: (07/19/2023 02:05:20 PM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:58:21 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:57:51 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2023-07-09 08:00:38
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: TrojanDownloader:VBS/SLoad.SIB!MTB
Závažnost: Vážné
Kategorie: Trojský stahovací program
Cesta: amsi:_C:\WINDOWS\TEMP\steam.vbe
Původ detekce: Neznámý
Typ detekce: Konkrétní
Zdroj detekce: AMSI
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\wscript.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-09 05:26:47
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-08 23:46:52
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-06-20 07:33:07
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 1.391.2013.0
Verze modulu: AM: 1.1.23050.3, NIS: 1.1.23050.3
Event[0]
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
CodeIntegrity:
===============
Date: 2023-07-19 14:09:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:09:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:01:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: Insyde Corp. V1.08 12/02/2021
Motherboard: TGL Scala_TLM
Processor: 11th Gen Intel(R) Core(TM) i5-11300H @ 3.10GHz
Percentage of memory in use: 46%
Total physical RAM: 16179.3 MB
Available physical RAM: 8686.46 MB
Total Virtual: 53043.3 MB
Available Virtual: 42384.54 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:952.75 GB) (Free:136.77 GB) (Model: NVMe WDC PC SN530 SDBPNPZ-1T00-1114) NTFS
Drive d: (KINGSTON SSD 2TB) (Fixed) (Total:1863 GB) (Free:479.05 GB) (Model: NVMe KINGSTON SNV2S2000G) NTFS
\\?\Volume{e7b417eb-f532-4bb0-8396-a645a0110b3b}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.1 GB) NTFS
\\?\Volume{907da3cb-1319-4595-a1f8-ead0bc123351}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32
==================== MBR & Partition Table ====================
==================== End of Addition.txt =======================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-07-2023
Ran by hlava (19-07-2023 14:13:10)
Running from C:\Users\hlava\Downloads
Microsoft Windows 11 Home Version 22H2 22621.1992 (X64) (2022-10-06 08:17:00)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-370656792-1244637223-2425275819-500 - Administrator - Disabled)
agnes (S-1-5-21-370656792-1244637223-2425275819-1001 - Administrator - Enabled) => C:\Users\agnes
DefaultAccount (S-1-5-21-370656792-1244637223-2425275819-503 - Limited - Disabled)
Guest (S-1-5-21-370656792-1244637223-2425275819-501 - Limited - Enabled)
hlava (S-1-5-21-370656792-1244637223-2425275819-1002 - Administrator - Enabled) => C:\Users\hlava
WDAGUtilityAccount (S-1-5-21-370656792-1244637223-2425275819-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton 360 (Disabled - Up to date) {AECE2126-F4E7-6909-11F2-1B69D1FBCBD0}
FW: Norton 360 (Enabled) {96F5A003-BE88-6851-3AAD-B25C2F288CAB}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\uTorrent) (Version: 3.6.0.46812 - BitTorrent Inc.)
4K Video Downloader (HKLM\...\{818C221F-DE01-4CBD-89A2-FF30E9CF6FB7}) (Version: 4.21.7.5040 - Open Media LLC) Hidden
4K Video Downloader (HKLM-x32\...\{a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b}) (Version: 4.21.7.5040 - Open Media LLC)
ABBYY FineReader PDF 15 (HKLM\...\{F15000FE-0001-6400-0000-074957833700}) (Version: 15.0.4684 - ABBYY Production LLC)
Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer)
Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer)
AdGuard (HKLM-x32\...\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}) (Version: 7.13.4287.0 - Adguard Software Limited) Hidden
AdGuard (HKLM-x32\...\{aecfa4cc-d924-47f5-b449-859bcd5b361f}) (Version: 7.13.4287.0 - Adguard Software Limited)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 22.001.20169 - Adobe)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 8.2.0.18 - Adobe Inc.)
Adobe Premiere Pro 2022 (HKLM-x32\...\PPRO_22_2) (Version: 22.2 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601047}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5.1 (HKLM-x32\...\{A1264137-992D-4163-9158-FC398DD88DA4}) (Version: 2.5.4594.1 - Famatech)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\Host App Service) (Version: 0.273.4.604 - SweetLabs)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Host App Service) (Version: 0.273.4.677 - SweetLabs)
Apple Mobile Device Support (HKLM\...\{F9CEF01A-3907-4614-824F-CF5D3E4675EF}) (Version: 14.1.0.35 - Apple Inc.)
Arduino IDE 2.0.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\459fc68c-eb53-59f8-8957-9913bc627af3) (Version: 2.0.0 - Arduino SA)
AutoCAD Open in Desktop (HKLM\...\{E03EC70C-079C-4B5D-86D1-75759A46ED71}) (Version: 1.0.27.0 - Autodesk)
Autodesk App Manager (HKLM-x32\...\{8ECA94E8-BB0D-4E0C-AD18-817EA930E700}) (Version: 3.4.1 - Autodesk)
Autodesk AutoCAD 2022 - Italiano (Italian) (HKLM\...\{A7FCEC1C-74BA-3652-A9BB-9F23C304B712}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2022 Language Pack - English (HKLM\...\{756C1830-AE6A-30CB-9331-650543CDDD58}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2024 - English (HKLM\...\{CC46AD7F-5075-3702-B2BF-CFCC5AB8468B}) (Version: 24.3.61.0 - Autodesk, Inc.)
Autodesk AutoCAD v2024 (HKLM-x32\...\{6E22F178-5839-45FF-8A51-08AE632880BD}) (Version: 1.0.0 - Autodesk AutoCAD v2024)
Autodesk Fusion 360 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.16490 - Autodesk, Inc.)
Autodesk Identity Manager (HKLM\...\Autodesk Identity Manager) (Version: 1.9.18.0 - Autodesk)
Autodesk Interoperability Engine Manager (HKLM\...\{412B8C29-F1BC-3791-A0BA-490A502077FA}) (Version: 1.1.0.28 - Autodesk.com) Hidden
Autodesk Material Library 2022 (HKLM-x32\...\{A9221A68-5AD0-4215-B54F-CB5DBA4FB27C}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library 2023 (HKLM-x32\...\{8E133591-B0FD-4DB0-B60E-FB593CAF72B0}) (Version: 21.0.1.1 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2022 (HKLM-x32\...\{6256584F-B04B-41D4-8A59-44E70940C473}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2023 (HKLM-x32\...\{3B564A94-BA47-4E42-ACD6-B5C35291210B}) (Version: 21.0.1.1 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 11.18.0.0 - Autodesk, Inc.)
Blackmagic RAW Common Components (HKLM\...\{35D9A1FC-10E0-4825-B2D2-3B15EB9B2232}) (Version: 2.4.0.1 - Blackmagic Design)
Brother MFL-Pro Suite DCP-9020CDW (HKLM-x32\...\{E98A9C92-E767-475B-8BC6-8780A86DDC72}) (Version: 1.0.5.0 - Brother Industries, Ltd.)
Builder Simulator (HKLM-x32\...\Builder Simulator_is1) (Version: - RePack)
Care Center Service (HKLM\...\{AFB52E98-7597-4484-9202-58F0FD3512ED}) (Version: 4.00.3042 - Acer Incorporated)
CData Excel Add-In for SAS Xpt (HKLM-x32\...\CData Excel Add-In for SAS Xpt) (Version: 22.0.8462 - CData Software, Inc.)
Cesta kolem světa za 80 dní (HKLM-x32\...\{C5A41205-5B61-442F-943F-4A60B376FA8A}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
CEWE fotosvet (HKLM\...\CEWE fotosvet) (Version: 7.2.4 - CEWE Stiftung u Co. KGaA)
Corel Graphics - Windows Shell Extension (HKLM\...\_{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.0.293 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{98CFADA3-527D-4A92-9160-EE463FCE95A5}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Update Manager (HKLM\...\{4BAE1A4E-9E7A-4DEB-93DF-F2EB7539C3E2}) (Version: 2.16.673 - Corel corporation) Hidden
CorelDRAW Graphics Suite (HKLM\...\_{1E4B5F2C-0532-4CDA-AFCD-674E9C37521E}) (Version: 24.3.1.576 - Corel Corporation)
CorelDRAW Graphics Suite 2022 - IPM (x64) (HKLM\...\{C3AA2B13-47FD-4A79-8B12-371D41CEBA58}) (Version: 24.4 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content BR (x64) (HKLM\...\{89D5710D-E9BA-422C-9622-0AD767A4393E}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CS (x64) (HKLM\...\{EA20C1C5-9B58-4521-A6CF-B8EF05240090}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CT (x64) (HKLM\...\{A9B5D262-8F37-4FE8-8042-FB734E355760}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CZ (x64) (HKLM\...\{A096AB0F-2BFF-4374-8B8E-946B4C7A383F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content DE (x64) (HKLM\...\{979F473A-F5E9-46F1-A144-A3EB8854C7CE}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content EN (x64) (HKLM\...\{E4106E1B-D15B-4BC1-94E7-F4D8BB5E4E8F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content ES (x64) (HKLM\...\{A51F1984-32E8-4504-ADCE-6394971DC9DB}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content FR (x64) (HKLM\...\{20CE94E7-88BA-4A9D-ADB2-1C289B74615A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content IT (x64) (HKLM\...\{B765426D-57E3-4951-814D-7F8D91AEBA4A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content JP (x64) (HKLM\...\{BF0FB182-C342-4744-8BC0-E1812C50A349}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content NL (x64) (HKLM\...\{E59C483B-FB36-45C3-A981-7A7F432FBC72}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content PL (x64) (HKLM\...\{DAD765D7-6E19-4F6E-AF32-EC04741092D4}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content RU (x64) (HKLM\...\{34EDBF0A-481F-4314-AD70-5A162A7B14E1}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content SV (x64) (HKLM\...\{B74272BD-DCCD-4A35-9AAD-877172F31A97}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content TR (x64) (HKLM\...\{F636BFF2-0638-4B0E-80B0-0591240A9E07}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - Writing Tools (x64) (HKLM\...\{7DCFAD1B-69CB-4394-8EF6-E2ECECDF098C}) (Version: 24.4 - Corel Corporation) Hidden
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.0.0.1996 - Disc Soft Ltd)
DaVinci Resolve (HKLM\...\{AEA1F37D-8F18-4B1A-8B7F-1911CC4B7071}) (Version: 18.0.00014 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{7667C543-084F-47F7-BC60-175FC25E9D6F}) (Version: 2.0.1.0 - Blackmagic Design)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3026 - Acer Incorporated)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.159.0.5416 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d784aa79-3dac-45df-b52b-70303fb90b62}) (Version: 12.159.0.5416 - Electronic Arts)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 1.3 - )
ExpressVPN (HKLM-x32\...\{72B1757E-2E76-49C5-A31E-BA29DD7FA5F6}) (Version: 2.4.22135.2 - Acer)
f.lux (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Flux) (Version: 4.124 - f.lux Software LLC)
Far Cry 6 (HKLM-x32\...\Far Cry 6_is1) (Version: - )
Flixmate (HKLM\...\{E2E22B14-52E8-4DF1-ABDA-F1F492CC88C1}) (Version: 1.2.1 - Flixmate)
FoneTool (HKLM-x32\...\{AD04677C-79B8-4B7A-BB39-FEE6F138E716}_is1) (Version: 2.0.1 - AOMEI International Network Limited.)
FPS Monitor (HKLM-x32\...\FPS Monitor_is1) (Version: 1 - )
Free Rar Password Unlocker (HKLM\...\{0470B1FF-D782-4752-9BAD-CBEF36A979CB}_is1) (Version: 1.2.2 - bestx software)
F-Secure Freedome VPN 2.64.767.0 (HKLM-x32\...\F-Secure Freedome VPN_is1) (Version: 2.64.767.0 - LRepacks)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM\...\{1FB4283F-3864-3315-A54D-350512E5ECBE}) (Version: 114.0.5735.199 - Google LLC)
GrafanaEnterprise (HKLM\...\{A4BB29E8-E86C-4362-B5A4-DFA0B4AEA2B3}) (Version: 9.1.5.0 - Grafana Labs)
HHD Software Free Network Analyzer 8.45 (HKLM\...\HHD Device Monitoring Studio 5.01) (Version: 8.45.1.9934 - HHD Software, Ltd.)
Horké léto 2 (odinstalovat) (HKLM-x32\...\HL2) (Version: - )
Horké léto verze 1.0 (HKLM-x32\...\{88954A10-19CE-4D7D-86D0-A19030151499}_is1) (Version: 1.0 - Maxon)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
iCareFone 8.5.0.23 (HKLM-x32\...\{Tenorshare iCareFone}_is1) (Version: 8.5.0.23 - Tenorshare, Inc.)
iCloud Outlook (HKLM\...\{B8056148-C2ED-44EC-A3D1-93FDA8B120FC}) (Version: 13.4.0.101 - Apple Inc.)
Killer Ethernet Performance Driver Suite UWD (HKLM\...\{8D5D1E91-BBB5-4035-A8BD-90590833ACED}) (Version: 2.3.1513 - Rivet Networks)
KMS_VL_ALL_AIO (HKLM-x32\...\{21498B56-B51C-4EB6-8846-0A7A5A62C93F}) (Version: 1.0.0 - KMS_VL_ALL_AIO)
Kodi (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Kodi) (Version: 20.0.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Loxone Config (HKLM-x32\...\LoxoneConfig_is1) (Version: 14.2 - Loxone Electronics GmbH)
Macrium Reflect Free (HKLM\...\{5664B4BB-6EA2-4981-A1C1-D08B5A088867}) (Version: 8.0.6979 - Paramount Software (UK) Ltd.) Hidden
Macrium Reflect Free (HKLM\...\MacriumReflect) (Version: v8.0.6979 - Paramount Software (UK) Ltd.)
Machinarium (HKLM-x32\...\Machinarium) (Version: CZ/14.02.2010 - Amanita Design, s.r.o.)
Malwarebytes version 4.5.33.272 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.33.272 - Malwarebytes)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 6.0.20 (x64) (HKLM\...\{217B2755-3BAD-486B-9606-CCD0E6CF3BE8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.20 (x64) (HKLM\...\{76FA02FF-603F-48BB-9E3F-17ED5DB861E8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.20 (x64) (HKLM\...\{6CE8AD8C-E6D5-4BF7-91C3-7F8106A5CD93}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 3.1.32 - Shared Framework (x64) (HKLM-x32\...\{65fddc17-d55b-46b7-a750-5c179fef3d81}) (Version: 3.1.32.22566 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.32 Shared Framework (x64) (HKLM\...\{2E69E59E-17DF-3977-A405-49096F8B8432}) (Version: 3.1.32.22566 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64) (HKLM-x32\...\{ccc9b7bf-4213-41d0-80ab-e1214c456f4a}) (Version: 6.0.20.23321 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.20 Shared Framework (x64) (HKLM\...\{C34CAF5C-AAF9-3D8C-895E-D23B398383BD}) (Version: 6.0.20.23321 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.16529.20182 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{43D501A5-E5E3-46EC-8F33-9E15D2A2CBD5}) (Version: 5.70.0.0 - Microsoft Corporation)
Microsoft Visual Basic for Applications 7.1 (x64) (HKLM\...\{78E1A395-FD21-499A-91A2-6135BA6112B6}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual Basic for Applications 7.1 (x64) English (HKLM\...\{9B29A3A1-255A-44C0-BCCA-E3447A41F32A}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 (HKLM-x32\...\{d4cecf3b-b68f-4995-8840-52ea0fab646e}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31931 (HKLM-x32\...\{6ba9fb5e-8366-4cc4-bf65-25fe9819b2fc}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 (HKLM\...\{EAE242B1-0A26-485A-BFEB-0292EE9F03CB}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 (HKLM\...\{CF4C347D-954E-4543-88D2-EC17F07F466F}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31931 (HKLM-x32\...\{C2662EFF-06E6-4FD1-9D6D-FDCA91025757}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31931 (HKLM-x32\...\{AB1BDF73-7393-42CE-812D-9A90918814D5}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{9D6CE289-E12C-38BB-9999-E2377EC118B7}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{7C931D41-F302-3494-868C-320A4F4DD9F9}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM\...\{53531ED1-E480-4012-9912-BF1C67547BF3}) (Version: 48.83.63194 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM-x32\...\{8e256e2b-a36f-4f85-a4c7-37fdf661778c}) (Version: 6.0.20.32621 - Microsoft Corporation)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 106.0 (x64 en-US)) (Version: 106.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 106.0 - Mozilla)
NetSetMan 4.7.2 (HKLM-x32\...\NetSetMan_is1) (Version: 4.7.2 - NetSetMan GmbH)
NetSurveillance (HKLM-x32\...\NetSurveillance) (Version: - )
NitroSense Service (HKLM\...\{6FC78E80-6385-43D6-8A43-FA80094F1A2E}) (Version: 3.01.3024 - Acer Incorporated)
No Man's Sky (HKLM-x32\...\1446213994_is1) (Version: 4.10_Fractal_100408a - GOG.com)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.23.5.106 - NortonLifeLock Inc)
Nový Robinson (HKLM-x32\...\Nový Robinson) (Version: - )
Npcap OEM (HKLM-x32\...\NpcapInst) (Version: 1.55 - Nmap Project)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 536.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 536.23 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
OnePlus USB Drivers 1.00 (HKLM-x32\...\OnePlus USB Drivers 1.00) (Version: 1.00 - OnePlus, Inc)
PDF24 Creator 11.12.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 11.12.0 - PDF24.org)
PicPick 7.0.1 (HKLM-x32\...\PicPick_is1) (Version: 7.0.1 - RePack 9649)
Polda 2 verze 1.0 (HKLM-x32\...\{BC895280-AC1B-4A9F-BA40-8DB70971D761}_is1) (Version: 1.0 - )
PrusaSlicer 2.5.0 (HKLM\...\{F7A53CE7-528F-429F-AABB-E54ECE5FD63E}) (Version: 2.5.0 - Prusa Research) Hidden
PrusaSlicer 2.5.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\PrusaSlicer 2.5.0 2.5.0) (Version: 2.5.0 - Prusa Research)
PrusaSlicer 2.6.0 (HKLM\...\{D6310383-F2B7-4DEB-89B5-8C7448FAE3A6}) (Version: 2.6.0 - Prusa Research) Hidden
PrusaSlicer 2.6.0 (HKLM\...\PrusaSlicer 2.6.0 2.6.0) (Version: 2.6.0 - Prusa Research)
Quick Access Service (HKLM\...\{AB25551C-74EF-4BAB-9989-891517FCF9FF}) (Version: 3.00.3038 - Acer Incorporated)
RAR Password Cracker (HKLM-x32\...\RAR Password Cracker) (Version: 4.20 - dnSoft Research Group)
Raspberry Pi Imager (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Raspberry Pi Imager) (Version: 1.7.2 - Raspberry Pi Ltd)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9091.1 - Realtek Semiconductor Corp.)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2_is1) (Version: 0.0.0 - DODI-Repacks)
ReflectionNetworkLauncher 1.0.9 (HKLM\...\d0673521-1e7c-5647-8f72-b2cae5719a78) (Version: 1.0.9 - Reflection Network)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
SHAREit (HKLM-x32\...\www.ushareit.com_is1) (Version: 4.0.6.177 - SHAREit Technologies Co.Ltd)
Sherlock Holmes The Awakened (HKLM-x32\...\FLT_Sherlock_Holmes_The_Awakened) (Version: - )
Simplify3D Software (HKLM\...\Simplify3D Software 4.1.2) (Version: 4.1.2 - Simplify3D)
SketchUp Language Pack [cs] (HKLM\...\{ca0041d2-4059-4b49-733d-708944038fd1}) (Version: 22.0.354 - Název společnosti:) Hidden
SketchUp Pro 2022 (HKLM-x32\...\{c631706c-1735-11ec-9621-0242ac130015}) (Version: 22.0.354 - Trimble, Inc.)
SketchUpPro 2022 (HKLM\...\{898ed298-4bc7-f67e-2e5b-6202a980787a}) (Version: 22.0.354.126 - Název společnosti:) Hidden
SmartGenius (HKLM\...\{F96B1114-82A6-4348-8A84-8FD4E9D99F3B}_is1) (Version: 1.7.0.5 - KYE Systems Corp.)
Sons Of The Forest (HKLM-x32\...\Sons Of The Forest_is1) (Version: 0.0.0 - DODI-Repacks)
Speciální aplikace Autodesk (HKLM-x32\...\{00A2237F-C1A4-4498-8B21-24CA66D8C756}) (Version: 3.4.1 - Autodesk)
StatusMonitor (HKLM-x32\...\{D9584EB4-1D28-4BD1-8F81-6E097C0827EE}) (Version: 1.33.1.0 - Brother Industries, Ltd.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
stl-thumb (HKLM\...\{189AFC45-ECA5-450E-8CCE-64D3CB8ACC47}) (Version: 0.4.0 - UnlimitedBacon) Hidden
STL-Thumb (HKLM-x32\...\{8bbd4d67-1df3-493d-a212-bcb83b0ca994}) (Version: 0.4.0 - UnlimitedBacon)
Tormentum - Dark Sorrow (HKLM-x32\...\1995239510_is1) (Version: 1.4.1 - GOG.com)
Total Uninstall 6.27.0 (HKLM\...\Total Uninstall 6_is1) (Version: 6.27.0 - Gavrila Martau)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{AC9D2EAD-0DA0-4E0B-8672-546F5B1E6E73}) (Version: 3.0.31 - Autodesk)
Ultimaker Cura 5.1.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Ultimaker Cura 5.1.0) (Version: 5.1.0 - Ultimaker B.V.)
User Experience Improvement Program Service (HKLM\...\{323EA05D-046D-449D-9D7C-89243C957CCE}) (Version: 5.00.3012 - Acer Incorporated)
uTorrent Web (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\utweb) (Version: 1.3.0 - Rainberry, Inc.)
Ve stínu havrana (HKLM-x32\...\Ve stínu havrana_is1) (Version: - CINEMAX, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WATTconfig M (x64) (HKLM\...\WATTconfigM64_is1) (Version: - SOLAR controls s.r.o.)
WATTconfig Mx (x64) (HKLM\...\WATTconfigMx64_is1) (Version: - SOLAR controls s.r.o.)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Worms Armageddon (HKLM-x32\...\1462173886_is1) (Version: gog-2 - GOG.com)
ZPS 19 CZ (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)
Packages:
=========
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4 [2023-07-13] (Acer Incorporated)
DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2023.2.5.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
DTS:X Ultra -> C:\Program Files\WindowsApps\DTSInc.DTSXUltra_1.11.14.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-07-19] (INTEL CORP)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa [2023-05-24] (Apple Inc.) [Startup Task]
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt [2023-07-13] (Meta) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.39.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.1.60961.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corporation)
ms-resource:iCloudAppDisplayName -> C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa [2023-06-17] (Apple Inc.) [Startup Task]
ms-resource:OEMAppName -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.17.0_x64__xbfy0k16fey96 [2023-07-14] (Dropbox Inc.)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt [2023-07-14] (INTEL CORP) [Startup Task]
NitroSense_V31 -> C:\Program Files\WindowsApps\AcerIncorporated.NitroSenseV31_3.1.3024.0_x64__48frkmn4z8aw4 [2022-11-16] (Acer Incorporated)
Norton Security -> C:\Program Files\Norton Security\Engine\22.23.5.106 [2023-07-19] (NortonLifeLock Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-07-13] (NVIDIA Corp.)
O2 TV -> C:\Program Files\WindowsApps\D8378DF7.O2TVGo_20182.1.0.0_x64__tqn3m7kee4xc8 [2023-07-14] (O2 Czech Republic a.s.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2022-12-02] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0 [2023-07-11] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2327.6.0_x64__cv1g1gvanyjgm [2023-07-14] (WhatsApp Inc.) [Startup Task]
XPT (SAS transport) viewer -> C:\Program Files\WindowsApps\61617IDV.XPTSAStransportviewer_1.1.0.4_neutral__c67edy5ke3rw0 [2023-03-29] (IDV)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{169B5B8E-E315-41C7-9574-66FC7E530D10}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{21840483-38D7-1894-63D0-47625DAD0326}\InprocServer32 -> C:\Program Files (x86)\Common Files\System\ole32.dll => No File
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> c:\program files\macrium\common\reflectmonitor.exe (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{8B4929F8-076F-4AEC-AFEE-8928747B7AE3}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{9DFFEB0B-61A1-4446-B455-D348A3A61C96} -> [iCloud Drive] => C:\Users\hlava\iCloudDrive [2022-08-25 10:51]
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AA46BA8A-9825-40FD-8493-0BA3C4D5CEB5}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AF18D91C-A699-4578-ADC6-972F3BA007F0}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\hlava\AppData\Local\Autodesk\webdeploy\production\dbacedcc6dabacdc41406088a765962c5f1923ad\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2024\en-US\acadficn.dll (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2023-06-01] (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2023-06-01] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvshext.dll [2023-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetSurveillance\reg.lnk -> C:\Program Files (x86)\NetSurveillance\CMS\reg.bat ()
==================== Loaded Modules (Whitelisted) =============
2023-07-19 11:55 - 2023-07-19 11:55 - 000915456 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\4a2b5b70-b86c-472b-94b5-00142ee49626.tmp.node
2023-07-19 11:55 - 2023-07-19 11:55 - 000357888 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\79b59a64-44c1-43fe-a4b6-728c805de48d.tmp.node
2022-09-29 19:03 - 2009-02-27 16:38 - 000139264 ____R () [File not signed] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000542720 _____ () [File not signed] C:\Program Files (x86)\Browny02\BrMonitor.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000208896 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrFirmUpdateCheck.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 001859584 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonWRes.dll
2022-09-29 19:03 - 2019-07-26 09:53 - 000137728 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcAssoc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 000087552 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcDlgRc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 017974784 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcGrImg.dll
2022-09-29 19:03 - 2018-04-27 10:16 - 000090112 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcLCze.dll
2023-03-03 15:25 - 2019-07-26 09:54 - 000440832 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\Track.dll
2021-02-01 22:49 - 2021-02-01 22:49 - 000010240 _____ () [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\acrotray.cze
2022-05-22 20:57 - 2022-05-22 20:57 - 000613376 _____ () [File not signed] C:\Program Files\EqualizerAPO\EqualizerAPO.dll
2016-07-30 23:42 - 2016-07-30 23:42 - 002772692 _____ () [File not signed] C:\Program Files\EqualizerAPO\libfftw3f-3.dll
2017-04-02 19:01 - 2017-04-02 19:01 - 001748992 _____ () [File not signed] C:\Program Files\EqualizerAPO\libsndfile-1.dll
2022-09-29 19:03 - 2005-04-22 06:36 - 000143360 _____ () [File not signed] C:\WINDOWS\system32\BrSNMP64.dll
2022-07-05 06:34 - 2022-07-05 06:34 - 000021504 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2022-09-29 19:03 - 2010-09-29 17:07 - 000180224 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BroSNMP.dll
2022-09-29 19:03 - 2012-07-14 10:53 - 000087040 _____ (Brother Industries, Ltd.) [File not signed] C:\WINDOWS\system32\BrNetSti.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2017-11-01 21:58 - 2017-11-01 21:58 - 001141248 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\Adguard\SQLite.Interop.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
==================== Internet Explorer (Whitelisted) ==========
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> DefaultScope {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 14:08 - 2022-11-18 12:49 - 000000859 _____ C:\WINDOWS\system32\drivers\etc\hosts
0.0.0.0 account.zoner.com
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Acer01.jpg
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\themea\img20.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
FreedomeVPNConnection: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Ethernet: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Ethernet: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Wi-Fi: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Wi-Fi: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{82F1800D-BC0F-422D-9810-6487E56550B5}] => (Allow) LPort=54925
FirewallRules: [{1D231CCB-BE07-469B-848E-EF64FBD90392}] => (Allow) C:\Program Files (x86)\Adguard\AdguardSvc.exe (Adguard Software Limited -> Adguard Software Limited)
FirewallRules: [{4D821F65-E685-4D22-80BC-1A7E596717B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{800B6870-46B4-4840-9F42-202AE247CCC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{363C2E45-AA85-48E3-90C7-40E733A870A0}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{3310B83E-019D-4884-895F-4348203BE664}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{2AB0DBA8-AD18-466B-B4F9-827F6CE021C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{85BCFAF8-DF1A-4C72-9F62-9BD42AAB2A40}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{5420E1D4-DACE-405B-8A2A-D5BF51F04F64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{C5896AA1-65D6-45C3-A839-DE16918214D8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{61B7C7CA-C9C6-4CD6-A21A-E7AB7FD3DC4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{E4DA82F0-7096-4CBA-82F2-667734D194BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{79FC022E-1D5A-417F-A823-868F6E98AB6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{68B0A10D-49C9-431C-8D80-1A47F5ED9FE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{5EC95B83-9C2E-4A66-8118-CD2F9CD0BFB7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{8E7296B3-A729-4BBE-8769-8AA5EC9B5C3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{AF8074C6-D807-4544-A949-C356D51C8229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{EE9ECFA3-1366-40DB-8295-FBAF093254F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{7850599A-EBC5-402D-80F2-0DF90399B650}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0026C214-049B-44CC-8A8B-EEB78233F1CB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2C9EA6D8-EFDF-4801-9226-4A9AF69E4B88}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{8BFB68E3-5C82-43DE-BCDD-6ABCC0C367C4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6588F92F-5E6D-4128-B60D-5780960DE532}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{8E7D807E-CCB3-42E7-8F47-E94976DF0123}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{67ED0B34-11E7-488B-9EBA-E242B2FC5A33}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9926819C-CCF7-4264-A416-55EA3FEA667C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{BBF03738-4C1B-47F7-A5A7-6A135A3116FC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{8B57266D-682E-4DF4-AB3D-65D24610A1B3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{852C58F7-8107-4CE9-8E52-222C682917AA}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{036D4F93-6512-4388-93BD-95F7C12D6BB8}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{1F211131-6FCA-4D6E-9FD3-4823C97CD700}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{7A054D88-BA7B-462B-A144-758E92524503}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{57F18FF9-EB8E-4C30-BE97-B7F79413408D}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{B46CECC2-B10E-4AB9-AA41-DC45B9B6CA3E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3D093BC1-81A7-42E6-997E-A89469020A99}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E45C7B09-7831-4240-BB8B-8BCDE2BBF53E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C475060F-293E-4DF8-B799-1F9FA0EE8C19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{4D7695D9-F10D-4786-8C58-CC41BE76BF96}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A91F8A20-AD58-4FCA-A2A5-7FB7BD401B34}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0787E1B9-654E-417C-AB7A-A75B24EDFAA2}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{6A0788B7-7990-4556-900A-42427FAFF607}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F9AC6EF1-4FEB-4C02-B6A9-461A2E439BDC}] => (Block) C:\Program Files (x86)\iCareFone\test_airplay_manager_gui.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{DD9C7F83-AC10-4511-BE6F-AD5DCEEE7D7A}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [{11C5566F-4C63-4504-8E61-052555FBFA71}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [TCP Query User{99B3DC92-0F32-409D-9F81-1102FC42D295}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [UDP Query User{2EEB8E51-855B-4450-8E79-055F801FCE39}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [{0E7DEC62-54FD-456E-98D9-364C103D7B6A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{FB5A884A-46D3-4C76-88FC-FBDD04336DD4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{D87F179D-1306-47DE-8841-D1F339795C52}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{EBE0DECF-EA36-44BF-BB60-3FF5B8E9F09E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{988B621B-DBDC-4C98-896D-FF0965F5A21C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{0DCCF909-EAEA-468D-BE7C-D44721E9981F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A5C80051-89AD-4CFF-A46A-06D8260FB3AA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{A46C591C-9C73-4C61-A96F-2B84286F35A8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{0ECB2031-8FBE-4909-A8E7-7E5F20120EED}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{DB78A89E-3C02-4880-9A29-A2F45B0038E1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{6371206A-FCEE-4F7C-BA09-6B193D047BD3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{8D6C5653-9F14-487C-BDD2-96EAE3AE6142}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D1F53103-8124-4722-9117-BDA085411C21}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{FE716126-2EDE-4364-9E00-590E0A08087C}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{18F6A7E8-1B15-4736-89E1-EA7AFBC997AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{F50CBB40-44D5-44F9-940E-3A94087265BF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{86E4D795-252C-4F24-BA1C-F23652FCE880}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C41E0AF1-62A3-4B01-9DF8-CA80A0659584}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{186ADB7D-4126-476C-B3F0-AC2DABD88692}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C968CC53-CDDD-4E76-8D59-444874D69F67}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{6E3CDF5F-EDB1-4908-A1ED-3469A211EF3A}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{8CA52744-77C4-4D40-BAB9-C808015929DC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9310D1B8-B17A-429F-A0EF-ED026EC95338}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{09B0ED13-DADA-4C17-AF19-4052A2A69DEE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6B2A5F6C-AF19-43C6-A2E4-0D68AFE8A903}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A39EDADE-D37E-4227-A7A6-6F17451E42A8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0E8DCBA7-71A7-45C4-9C0D-FDBE02286A91}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{863F7953-9304-44A4-B0E0-7CF6A92844E7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{991303E4-9AEB-4BB7-BB06-645F89D2FD30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{55E787A2-AD04-497C-A663-98C3BC88D643}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C37FA421-DB14-4C29-9D49-366AEF9FB29D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2F3E5C4B-BAC3-4174-A52E-AE21D9D21BEB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{5307C0CE-229E-45C3-B832-16A320074BC7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{48D32C2F-4D32-4BD6-B467-A5F7895661EA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F2E3D8C9-04FD-4280-A59B-1B959889D38F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D1EDD77D-2051-45E5-819E-ED8B0D56CCE3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B029956C-D871-4379-B595-31994867DB3E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6E03F174-E10E-4E86-8F9A-AF81A53E45E6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{06FE327D-AE76-4B2B-9232-7EB4D8B7CCBF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{55167965-238F-4AEB-8679-5BDC8A7004BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C7923AB2-73A1-448B-BF32-023E46438CA9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3B3D56FB-A612-4C60-83B8-D12A94F62FE2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8853DE1F-6730-4F48-A689-F1E5FCCFE39C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F3BD9B9F-00AD-4E72-A8FD-1A3449E07031}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AFE52677-E5E0-413C-9D20-4684A1D8D6A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1F85C63D-7DB3-42FC-AF29-AC5C63405FDC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{304C506F-A975-4837-B3B7-F4C2E86CE7B1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C3996DAB-0BA0-45E7-A23E-3F87B06C1B2E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7C9702A0-2040-48DC-9FD3-DFE2F6CF5D45}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D4A88706-3727-4D67-B11C-BA61E48FA15F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D578E726-32CB-4E09-ABEE-0D726B623D71}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0934392D-078A-4A20-B599-B880E03E2695}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{4CBC2000-8360-4CA4-912D-D628217A43A0}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{BA9CF30D-4CEB-4E1D-82CE-9460294AD92E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A3627ACC-2BFF-48DA-B666-A8A6937D7AA2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EE140D1C-437C-4908-B57E-FD413908675C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{93808A46-5A43-4FED-B170-4068194E4AD4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C20E1175-71D5-4D51-9177-63C821DE81AE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{70D1E0DF-89FB-4600-BD16-15CBD6D56B3B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B99F59CF-FEE0-42E2-9114-7D4C6BE39AE2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AA9B6DAD-FA0F-46D1-AE22-7C67E48AE6EF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC76C680-DC86-496D-8696-BC6BA742331F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9B131D1C-B724-4EAA-8981-D4486A6E5E68}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E1A4F0CF-FBF3-4448-8797-8359DCCBC8B2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{47770630-51E8-42F6-B614-AA918B8076B5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F412EADE-20DA-4B4F-8DBC-58F7AB9AA901}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.82\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{266DA9C1-A7B5-4127-8E74-5388F55EE689}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A265F474-BDCD-4922-8FEF-39142D06A147}] => (Allow) C:\WINDOWS\System32\WScript.exe
==================== Restore Points =========================
11-07-2023 23:40:19 Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64)
11-07-2023 23:51:31 Instalační služba modulů systému Windows
11-07-2023 23:51:59 Instalační služba modulů systému Windows
19-07-2023 08:37:46 19.07.2023
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
System errors:
=============
Error: (07/19/2023 02:05:20 PM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:58:21 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:57:51 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2023-07-09 08:00:38
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: TrojanDownloader:VBS/SLoad.SIB!MTB
Závažnost: Vážné
Kategorie: Trojský stahovací program
Cesta: amsi:_C:\WINDOWS\TEMP\steam.vbe
Původ detekce: Neznámý
Typ detekce: Konkrétní
Zdroj detekce: AMSI
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\wscript.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-09 05:26:47
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-08 23:46:52
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-06-20 07:33:07
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 1.391.2013.0
Verze modulu: AM: 1.1.23050.3, NIS: 1.1.23050.3
Event[0]
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
CodeIntegrity:
===============
Date: 2023-07-19 14:09:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:09:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:01:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: Insyde Corp. V1.08 12/02/2021
Motherboard: TGL Scala_TLM
Processor: 11th Gen Intel(R) Core(TM) i5-11300H @ 3.10GHz
Percentage of memory in use: 46%
Total physical RAM: 16179.3 MB
Available physical RAM: 8686.46 MB
Total Virtual: 53043.3 MB
Available Virtual: 42384.54 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:952.75 GB) (Free:136.77 GB) (Model: NVMe WDC PC SN530 SDBPNPZ-1T00-1114) NTFS
Drive d: (KINGSTON SSD 2TB) (Fixed) (Total:1863 GB) (Free:479.05 GB) (Model: NVMe KINGSTON SNV2S2000G) NTFS
\\?\Volume{e7b417eb-f532-4bb0-8396-a645a0110b3b}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.1 GB) NTFS
\\?\Volume{907da3cb-1319-4595-a1f8-ead0bc123351}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32
==================== MBR & Partition Table ====================
==================== End of Addition.txt =======================
-
- Návštěvník
- Příspěvky: 175
- Registrován: 23 pro 2008 00:30
Re: Prosím o preventivní kontrolu logu
Moje chyba, omlouvám se: zde již v pořádku:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-07-2023
Ran by hlava (19-07-2023 14:13:10)
Running from C:\Users\hlava\Downloads
Microsoft Windows 11 Home Version 22H2 22621.1992 (X64) (2022-10-06 08:17:00)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-370656792-1244637223-2425275819-500 - Administrator - Disabled)
agnes (S-1-5-21-370656792-1244637223-2425275819-1001 - Administrator - Enabled) => C:\Users\agnes
DefaultAccount (S-1-5-21-370656792-1244637223-2425275819-503 - Limited - Disabled)
Guest (S-1-5-21-370656792-1244637223-2425275819-501 - Limited - Enabled)
hlava (S-1-5-21-370656792-1244637223-2425275819-1002 - Administrator - Enabled) => C:\Users\hlava
WDAGUtilityAccount (S-1-5-21-370656792-1244637223-2425275819-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton 360 (Disabled - Up to date) {AECE2126-F4E7-6909-11F2-1B69D1FBCBD0}
FW: Norton 360 (Enabled) {96F5A003-BE88-6851-3AAD-B25C2F288CAB}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\uTorrent) (Version: 3.6.0.46812 - BitTorrent Inc.)
4K Video Downloader (HKLM\...\{818C221F-DE01-4CBD-89A2-FF30E9CF6FB7}) (Version: 4.21.7.5040 - Open Media LLC) Hidden
4K Video Downloader (HKLM-x32\...\{a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b}) (Version: 4.21.7.5040 - Open Media LLC)
ABBYY FineReader PDF 15 (HKLM\...\{F15000FE-0001-6400-0000-074957833700}) (Version: 15.0.4684 - ABBYY Production LLC)
Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer)
Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer)
AdGuard (HKLM-x32\...\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}) (Version: 7.13.4287.0 - Adguard Software Limited) Hidden
AdGuard (HKLM-x32\...\{aecfa4cc-d924-47f5-b449-859bcd5b361f}) (Version: 7.13.4287.0 - Adguard Software Limited)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 22.001.20169 - Adobe)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 8.2.0.18 - Adobe Inc.)
Adobe Premiere Pro 2022 (HKLM-x32\...\PPRO_22_2) (Version: 22.2 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601047}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5.1 (HKLM-x32\...\{A1264137-992D-4163-9158-FC398DD88DA4}) (Version: 2.5.4594.1 - Famatech)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\Host App Service) (Version: 0.273.4.604 - SweetLabs)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Host App Service) (Version: 0.273.4.677 - SweetLabs)
Apple Mobile Device Support (HKLM\...\{F9CEF01A-3907-4614-824F-CF5D3E4675EF}) (Version: 14.1.0.35 - Apple Inc.)
Arduino IDE 2.0.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\459fc68c-eb53-59f8-8957-9913bc627af3) (Version: 2.0.0 - Arduino SA)
AutoCAD Open in Desktop (HKLM\...\{E03EC70C-079C-4B5D-86D1-75759A46ED71}) (Version: 1.0.27.0 - Autodesk)
Autodesk App Manager (HKLM-x32\...\{8ECA94E8-BB0D-4E0C-AD18-817EA930E700}) (Version: 3.4.1 - Autodesk)
Autodesk AutoCAD 2022 - Italiano (Italian) (HKLM\...\{A7FCEC1C-74BA-3652-A9BB-9F23C304B712}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2022 Language Pack - English (HKLM\...\{756C1830-AE6A-30CB-9331-650543CDDD58}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2024 - English (HKLM\...\{CC46AD7F-5075-3702-B2BF-CFCC5AB8468B}) (Version: 24.3.61.0 - Autodesk, Inc.)
Autodesk AutoCAD v2024 (HKLM-x32\...\{6E22F178-5839-45FF-8A51-08AE632880BD}) (Version: 1.0.0 - Autodesk AutoCAD v2024)
Autodesk Fusion 360 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.16490 - Autodesk, Inc.)
Autodesk Identity Manager (HKLM\...\Autodesk Identity Manager) (Version: 1.9.18.0 - Autodesk)
Autodesk Interoperability Engine Manager (HKLM\...\{412B8C29-F1BC-3791-A0BA-490A502077FA}) (Version: 1.1.0.28 - Autodesk.com) Hidden
Autodesk Material Library 2022 (HKLM-x32\...\{A9221A68-5AD0-4215-B54F-CB5DBA4FB27C}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library 2023 (HKLM-x32\...\{8E133591-B0FD-4DB0-B60E-FB593CAF72B0}) (Version: 21.0.1.1 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2022 (HKLM-x32\...\{6256584F-B04B-41D4-8A59-44E70940C473}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2023 (HKLM-x32\...\{3B564A94-BA47-4E42-ACD6-B5C35291210B}) (Version: 21.0.1.1 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 11.18.0.0 - Autodesk, Inc.)
Blackmagic RAW Common Components (HKLM\...\{35D9A1FC-10E0-4825-B2D2-3B15EB9B2232}) (Version: 2.4.0.1 - Blackmagic Design)
Brother MFL-Pro Suite DCP-9020CDW (HKLM-x32\...\{E98A9C92-E767-475B-8BC6-8780A86DDC72}) (Version: 1.0.5.0 - Brother Industries, Ltd.)
Builder Simulator (HKLM-x32\...\Builder Simulator_is1) (Version: - RePack)
Care Center Service (HKLM\...\{AFB52E98-7597-4484-9202-58F0FD3512ED}) (Version: 4.00.3042 - Acer Incorporated)
CData Excel Add-In for SAS Xpt (HKLM-x32\...\CData Excel Add-In for SAS Xpt) (Version: 22.0.8462 - CData Software, Inc.)
Cesta kolem světa za 80 dní (HKLM-x32\...\{C5A41205-5B61-442F-943F-4A60B376FA8A}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
CEWE fotosvet (HKLM\...\CEWE fotosvet) (Version: 7.2.4 - CEWE Stiftung u Co. KGaA)
Corel Graphics - Windows Shell Extension (HKLM\...\_{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.0.293 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{98CFADA3-527D-4A92-9160-EE463FCE95A5}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Update Manager (HKLM\...\{4BAE1A4E-9E7A-4DEB-93DF-F2EB7539C3E2}) (Version: 2.16.673 - Corel corporation) Hidden
CorelDRAW Graphics Suite (HKLM\...\_{1E4B5F2C-0532-4CDA-AFCD-674E9C37521E}) (Version: 24.3.1.576 - Corel Corporation)
CorelDRAW Graphics Suite 2022 - IPM (x64) (HKLM\...\{C3AA2B13-47FD-4A79-8B12-371D41CEBA58}) (Version: 24.4 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content BR (x64) (HKLM\...\{89D5710D-E9BA-422C-9622-0AD767A4393E}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CS (x64) (HKLM\...\{EA20C1C5-9B58-4521-A6CF-B8EF05240090}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CT (x64) (HKLM\...\{A9B5D262-8F37-4FE8-8042-FB734E355760}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CZ (x64) (HKLM\...\{A096AB0F-2BFF-4374-8B8E-946B4C7A383F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content DE (x64) (HKLM\...\{979F473A-F5E9-46F1-A144-A3EB8854C7CE}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content EN (x64) (HKLM\...\{E4106E1B-D15B-4BC1-94E7-F4D8BB5E4E8F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content ES (x64) (HKLM\...\{A51F1984-32E8-4504-ADCE-6394971DC9DB}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content FR (x64) (HKLM\...\{20CE94E7-88BA-4A9D-ADB2-1C289B74615A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content IT (x64) (HKLM\...\{B765426D-57E3-4951-814D-7F8D91AEBA4A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content JP (x64) (HKLM\...\{BF0FB182-C342-4744-8BC0-E1812C50A349}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content NL (x64) (HKLM\...\{E59C483B-FB36-45C3-A981-7A7F432FBC72}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content PL (x64) (HKLM\...\{DAD765D7-6E19-4F6E-AF32-EC04741092D4}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content RU (x64) (HKLM\...\{34EDBF0A-481F-4314-AD70-5A162A7B14E1}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content SV (x64) (HKLM\...\{B74272BD-DCCD-4A35-9AAD-877172F31A97}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content TR (x64) (HKLM\...\{F636BFF2-0638-4B0E-80B0-0591240A9E07}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - Writing Tools (x64) (HKLM\...\{7DCFAD1B-69CB-4394-8EF6-E2ECECDF098C}) (Version: 24.4 - Corel Corporation) Hidden
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.0.0.1996 - Disc Soft Ltd)
DaVinci Resolve (HKLM\...\{AEA1F37D-8F18-4B1A-8B7F-1911CC4B7071}) (Version: 18.0.00014 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{7667C543-084F-47F7-BC60-175FC25E9D6F}) (Version: 2.0.1.0 - Blackmagic Design)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3026 - Acer Incorporated)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.159.0.5416 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d784aa79-3dac-45df-b52b-70303fb90b62}) (Version: 12.159.0.5416 - Electronic Arts)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 1.3 - )
ExpressVPN (HKLM-x32\...\{72B1757E-2E76-49C5-A31E-BA29DD7FA5F6}) (Version: 2.4.22135.2 - Acer)
f.lux (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Flux) (Version: 4.124 - f.lux Software LLC)
Far Cry 6 (HKLM-x32\...\Far Cry 6_is1) (Version: - )
Flixmate (HKLM\...\{E2E22B14-52E8-4DF1-ABDA-F1F492CC88C1}) (Version: 1.2.1 - Flixmate)
FoneTool (HKLM-x32\...\{AD04677C-79B8-4B7A-BB39-FEE6F138E716}_is1) (Version: 2.0.1 - AOMEI International Network Limited.)
FPS Monitor (HKLM-x32\...\FPS Monitor_is1) (Version: 1 - )
Free Rar Password Unlocker (HKLM\...\{0470B1FF-D782-4752-9BAD-CBEF36A979CB}_is1) (Version: 1.2.2 - bestx software)
F-Secure Freedome VPN 2.64.767.0 (HKLM-x32\...\F-Secure Freedome VPN_is1) (Version: 2.64.767.0 - LRepacks)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM\...\{1FB4283F-3864-3315-A54D-350512E5ECBE}) (Version: 114.0.5735.199 - Google LLC)
GrafanaEnterprise (HKLM\...\{A4BB29E8-E86C-4362-B5A4-DFA0B4AEA2B3}) (Version: 9.1.5.0 - Grafana Labs)
HHD Software Free Network Analyzer 8.45 (HKLM\...\HHD Device Monitoring Studio 5.01) (Version: 8.45.1.9934 - HHD Software, Ltd.)
Horké léto 2 (odinstalovat) (HKLM-x32\...\HL2) (Version: - )
Horké léto verze 1.0 (HKLM-x32\...\{88954A10-19CE-4D7D-86D0-A19030151499}_is1) (Version: 1.0 - Maxon)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
iCareFone 8.5.0.23 (HKLM-x32\...\{Tenorshare iCareFone}_is1) (Version: 8.5.0.23 - Tenorshare, Inc.)
iCloud Outlook (HKLM\...\{B8056148-C2ED-44EC-A3D1-93FDA8B120FC}) (Version: 13.4.0.101 - Apple Inc.)
Killer Ethernet Performance Driver Suite UWD (HKLM\...\{8D5D1E91-BBB5-4035-A8BD-90590833ACED}) (Version: 2.3.1513 - Rivet Networks)
KMS_VL_ALL_AIO (HKLM-x32\...\{21498B56-B51C-4EB6-8846-0A7A5A62C93F}) (Version: 1.0.0 - KMS_VL_ALL_AIO)
Kodi (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Kodi) (Version: 20.0.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Loxone Config (HKLM-x32\...\LoxoneConfig_is1) (Version: 14.2 - Loxone Electronics GmbH)
Macrium Reflect Free (HKLM\...\{5664B4BB-6EA2-4981-A1C1-D08B5A088867}) (Version: 8.0.6979 - Paramount Software (UK) Ltd.) Hidden
Macrium Reflect Free (HKLM\...\MacriumReflect) (Version: v8.0.6979 - Paramount Software (UK) Ltd.)
Machinarium (HKLM-x32\...\Machinarium) (Version: CZ/14.02.2010 - Amanita Design, s.r.o.)
Malwarebytes version 4.5.33.272 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.33.272 - Malwarebytes)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 6.0.20 (x64) (HKLM\...\{217B2755-3BAD-486B-9606-CCD0E6CF3BE8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.20 (x64) (HKLM\...\{76FA02FF-603F-48BB-9E3F-17ED5DB861E8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.20 (x64) (HKLM\...\{6CE8AD8C-E6D5-4BF7-91C3-7F8106A5CD93}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 3.1.32 - Shared Framework (x64) (HKLM-x32\...\{65fddc17-d55b-46b7-a750-5c179fef3d81}) (Version: 3.1.32.22566 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.32 Shared Framework (x64) (HKLM\...\{2E69E59E-17DF-3977-A405-49096F8B8432}) (Version: 3.1.32.22566 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64) (HKLM-x32\...\{ccc9b7bf-4213-41d0-80ab-e1214c456f4a}) (Version: 6.0.20.23321 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.20 Shared Framework (x64) (HKLM\...\{C34CAF5C-AAF9-3D8C-895E-D23B398383BD}) (Version: 6.0.20.23321 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.16529.20182 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{43D501A5-E5E3-46EC-8F33-9E15D2A2CBD5}) (Version: 5.70.0.0 - Microsoft Corporation)
Microsoft Visual Basic for Applications 7.1 (x64) (HKLM\...\{78E1A395-FD21-499A-91A2-6135BA6112B6}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual Basic for Applications 7.1 (x64) English (HKLM\...\{9B29A3A1-255A-44C0-BCCA-E3447A41F32A}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 (HKLM-x32\...\{d4cecf3b-b68f-4995-8840-52ea0fab646e}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31931 (HKLM-x32\...\{6ba9fb5e-8366-4cc4-bf65-25fe9819b2fc}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 (HKLM\...\{EAE242B1-0A26-485A-BFEB-0292EE9F03CB}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 (HKLM\...\{CF4C347D-954E-4543-88D2-EC17F07F466F}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31931 (HKLM-x32\...\{C2662EFF-06E6-4FD1-9D6D-FDCA91025757}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31931 (HKLM-x32\...\{AB1BDF73-7393-42CE-812D-9A90918814D5}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{9D6CE289-E12C-38BB-9999-E2377EC118B7}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{7C931D41-F302-3494-868C-320A4F4DD9F9}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM\...\{53531ED1-E480-4012-9912-BF1C67547BF3}) (Version: 48.83.63194 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM-x32\...\{8e256e2b-a36f-4f85-a4c7-37fdf661778c}) (Version: 6.0.20.32621 - Microsoft Corporation)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 106.0 (x64 en-US)) (Version: 106.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 106.0 - Mozilla)
NetSetMan 4.7.2 (HKLM-x32\...\NetSetMan_is1) (Version: 4.7.2 - NetSetMan GmbH)
NetSurveillance (HKLM-x32\...\NetSurveillance) (Version: - )
NitroSense Service (HKLM\...\{6FC78E80-6385-43D6-8A43-FA80094F1A2E}) (Version: 3.01.3024 - Acer Incorporated)
No Man's Sky (HKLM-x32\...\1446213994_is1) (Version: 4.10_Fractal_100408a - GOG.com)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.23.5.106 - NortonLifeLock Inc)
Nový Robinson (HKLM-x32\...\Nový Robinson) (Version: - )
Npcap OEM (HKLM-x32\...\NpcapInst) (Version: 1.55 - Nmap Project)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 536.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 536.23 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
OnePlus USB Drivers 1.00 (HKLM-x32\...\OnePlus USB Drivers 1.00) (Version: 1.00 - OnePlus, Inc)
PDF24 Creator 11.12.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 11.12.0 - PDF24.org)
PicPick 7.0.1 (HKLM-x32\...\PicPick_is1) (Version: 7.0.1 - RePack 9649)
Polda 2 verze 1.0 (HKLM-x32\...\{BC895280-AC1B-4A9F-BA40-8DB70971D761}_is1) (Version: 1.0 - )
PrusaSlicer 2.5.0 (HKLM\...\{F7A53CE7-528F-429F-AABB-E54ECE5FD63E}) (Version: 2.5.0 - Prusa Research) Hidden
PrusaSlicer 2.5.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\PrusaSlicer 2.5.0 2.5.0) (Version: 2.5.0 - Prusa Research)
PrusaSlicer 2.6.0 (HKLM\...\{D6310383-F2B7-4DEB-89B5-8C7448FAE3A6}) (Version: 2.6.0 - Prusa Research) Hidden
PrusaSlicer 2.6.0 (HKLM\...\PrusaSlicer 2.6.0 2.6.0) (Version: 2.6.0 - Prusa Research)
Quick Access Service (HKLM\...\{AB25551C-74EF-4BAB-9989-891517FCF9FF}) (Version: 3.00.3038 - Acer Incorporated)
RAR Password Cracker (HKLM-x32\...\RAR Password Cracker) (Version: 4.20 - dnSoft Research Group)
Raspberry Pi Imager (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Raspberry Pi Imager) (Version: 1.7.2 - Raspberry Pi Ltd)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9091.1 - Realtek Semiconductor Corp.)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2_is1) (Version: 0.0.0 - DODI-Repacks)
ReflectionNetworkLauncher 1.0.9 (HKLM\...\d0673521-1e7c-5647-8f72-b2cae5719a78) (Version: 1.0.9 - Reflection Network)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
SHAREit (HKLM-x32\...\www.ushareit.com_is1) (Version: 4.0.6.177 - SHAREit Technologies Co.Ltd)
Sherlock Holmes The Awakened (HKLM-x32\...\FLT_Sherlock_Holmes_The_Awakened) (Version: - )
Simplify3D Software (HKLM\...\Simplify3D Software 4.1.2) (Version: 4.1.2 - Simplify3D)
SketchUp Language Pack [cs] (HKLM\...\{ca0041d2-4059-4b49-733d-708944038fd1}) (Version: 22.0.354 - Název společnosti:) Hidden
SketchUp Pro 2022 (HKLM-x32\...\{c631706c-1735-11ec-9621-0242ac130015}) (Version: 22.0.354 - Trimble, Inc.)
SketchUpPro 2022 (HKLM\...\{898ed298-4bc7-f67e-2e5b-6202a980787a}) (Version: 22.0.354.126 - Název společnosti:) Hidden
SmartGenius (HKLM\...\{F96B1114-82A6-4348-8A84-8FD4E9D99F3B}_is1) (Version: 1.7.0.5 - KYE Systems Corp.)
Sons Of The Forest (HKLM-x32\...\Sons Of The Forest_is1) (Version: 0.0.0 - DODI-Repacks)
Speciální aplikace Autodesk (HKLM-x32\...\{00A2237F-C1A4-4498-8B21-24CA66D8C756}) (Version: 3.4.1 - Autodesk)
StatusMonitor (HKLM-x32\...\{D9584EB4-1D28-4BD1-8F81-6E097C0827EE}) (Version: 1.33.1.0 - Brother Industries, Ltd.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
stl-thumb (HKLM\...\{189AFC45-ECA5-450E-8CCE-64D3CB8ACC47}) (Version: 0.4.0 - UnlimitedBacon) Hidden
STL-Thumb (HKLM-x32\...\{8bbd4d67-1df3-493d-a212-bcb83b0ca994}) (Version: 0.4.0 - UnlimitedBacon)
Tormentum - Dark Sorrow (HKLM-x32\...\1995239510_is1) (Version: 1.4.1 - GOG.com)
Total Uninstall 6.27.0 (HKLM\...\Total Uninstall 6_is1) (Version: 6.27.0 - Gavrila Martau)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{AC9D2EAD-0DA0-4E0B-8672-546F5B1E6E73}) (Version: 3.0.31 - Autodesk)
Ultimaker Cura 5.1.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Ultimaker Cura 5.1.0) (Version: 5.1.0 - Ultimaker B.V.)
User Experience Improvement Program Service (HKLM\...\{323EA05D-046D-449D-9D7C-89243C957CCE}) (Version: 5.00.3012 - Acer Incorporated)
uTorrent Web (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\utweb) (Version: 1.3.0 - Rainberry, Inc.)
Ve stínu havrana (HKLM-x32\...\Ve stínu havrana_is1) (Version: - CINEMAX, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WATTconfig M (x64) (HKLM\...\WATTconfigM64_is1) (Version: - SOLAR controls s.r.o.)
WATTconfig Mx (x64) (HKLM\...\WATTconfigMx64_is1) (Version: - SOLAR controls s.r.o.)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Worms Armageddon (HKLM-x32\...\1462173886_is1) (Version: gog-2 - GOG.com)
ZPS 19 CZ (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)
Packages:
=========
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4 [2023-07-13] (Acer Incorporated)
DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2023.2.5.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
DTS:X Ultra -> C:\Program Files\WindowsApps\DTSInc.DTSXUltra_1.11.14.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-07-19] (INTEL CORP)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa [2023-05-24] (Apple Inc.) [Startup Task]
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt [2023-07-13] (Meta) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.39.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.1.60961.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corporation)
ms-resource:iCloudAppDisplayName -> C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa [2023-06-17] (Apple Inc.) [Startup Task]
ms-resource:OEMAppName -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.17.0_x64__xbfy0k16fey96 [2023-07-14] (Dropbox Inc.)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt [2023-07-14] (INTEL CORP) [Startup Task]
NitroSense_V31 -> C:\Program Files\WindowsApps\AcerIncorporated.NitroSenseV31_3.1.3024.0_x64__48frkmn4z8aw4 [2022-11-16] (Acer Incorporated)
Norton Security -> C:\Program Files\Norton Security\Engine\22.23.5.106 [2023-07-19] (NortonLifeLock Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-07-13] (NVIDIA Corp.)
O2 TV -> C:\Program Files\WindowsApps\D8378DF7.O2TVGo_20182.1.0.0_x64__tqn3m7kee4xc8 [2023-07-14] (O2 Czech Republic a.s.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2022-12-02] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0 [2023-07-11] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2327.6.0_x64__cv1g1gvanyjgm [2023-07-14] (WhatsApp Inc.) [Startup Task]
XPT (SAS transport) viewer -> C:\Program Files\WindowsApps\61617IDV.XPTSAStransportviewer_1.1.0.4_neutral__c67edy5ke3rw0 [2023-03-29] (IDV)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{169B5B8E-E315-41C7-9574-66FC7E530D10}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{21840483-38D7-1894-63D0-47625DAD0326}\InprocServer32 -> C:\Program Files (x86)\Common Files\System\ole32.dll => No File
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> c:\program files\macrium\common\reflectmonitor.exe (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{8B4929F8-076F-4AEC-AFEE-8928747B7AE3}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{9DFFEB0B-61A1-4446-B455-D348A3A61C96} -> [iCloud Drive] => C:\Users\hlava\iCloudDrive [2022-08-25 10:51]
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AA46BA8A-9825-40FD-8493-0BA3C4D5CEB5}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AF18D91C-A699-4578-ADC6-972F3BA007F0}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\hlava\AppData\Local\Autodesk\webdeploy\production\dbacedcc6dabacdc41406088a765962c5f1923ad\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2024\en-US\acadficn.dll (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2023-06-01] (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2023-06-01] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvshext.dll [2023-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetSurveillance\reg.lnk -> C:\Program Files (x86)\NetSurveillance\CMS\reg.bat ()
==================== Loaded Modules (Whitelisted) =============
2023-07-19 11:55 - 2023-07-19 11:55 - 000915456 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\4a2b5b70-b86c-472b-94b5-00142ee49626.tmp.node
2023-07-19 11:55 - 2023-07-19 11:55 - 000357888 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\79b59a64-44c1-43fe-a4b6-728c805de48d.tmp.node
2022-09-29 19:03 - 2009-02-27 16:38 - 000139264 ____R () [File not signed] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000542720 _____ () [File not signed] C:\Program Files (x86)\Browny02\BrMonitor.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000208896 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrFirmUpdateCheck.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 001859584 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonWRes.dll
2022-09-29 19:03 - 2019-07-26 09:53 - 000137728 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcAssoc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 000087552 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcDlgRc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 017974784 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcGrImg.dll
2022-09-29 19:03 - 2018-04-27 10:16 - 000090112 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcLCze.dll
2023-03-03 15:25 - 2019-07-26 09:54 - 000440832 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\Track.dll
2021-02-01 22:49 - 2021-02-01 22:49 - 000010240 _____ () [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\acrotray.cze
2022-05-22 20:57 - 2022-05-22 20:57 - 000613376 _____ () [File not signed] C:\Program Files\EqualizerAPO\EqualizerAPO.dll
2016-07-30 23:42 - 2016-07-30 23:42 - 002772692 _____ () [File not signed] C:\Program Files\EqualizerAPO\libfftw3f-3.dll
2017-04-02 19:01 - 2017-04-02 19:01 - 001748992 _____ () [File not signed] C:\Program Files\EqualizerAPO\libsndfile-1.dll
2022-09-29 19:03 - 2005-04-22 06:36 - 000143360 _____ () [File not signed] C:\WINDOWS\system32\BrSNMP64.dll
2022-07-05 06:34 - 2022-07-05 06:34 - 000021504 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2022-09-29 19:03 - 2010-09-29 17:07 - 000180224 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BroSNMP.dll
2022-09-29 19:03 - 2012-07-14 10:53 - 000087040 _____ (Brother Industries, Ltd.) [File not signed] C:\WINDOWS\system32\BrNetSti.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2017-11-01 21:58 - 2017-11-01 21:58 - 001141248 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\Adguard\SQLite.Interop.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
==================== Internet Explorer (Whitelisted) ==========
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> DefaultScope {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 14:08 - 2022-11-18 12:49 - 000000859 _____ C:\WINDOWS\system32\drivers\etc\hosts
0.0.0.0 account.zoner.com
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Acer01.jpg
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\themea\img20.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
FreedomeVPNConnection: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Ethernet: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Ethernet: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Wi-Fi: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Wi-Fi: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{82F1800D-BC0F-422D-9810-6487E56550B5}] => (Allow) LPort=54925
FirewallRules: [{1D231CCB-BE07-469B-848E-EF64FBD90392}] => (Allow) C:\Program Files (x86)\Adguard\AdguardSvc.exe (Adguard Software Limited -> Adguard Software Limited)
FirewallRules: [{4D821F65-E685-4D22-80BC-1A7E596717B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{800B6870-46B4-4840-9F42-202AE247CCC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{363C2E45-AA85-48E3-90C7-40E733A870A0}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{3310B83E-019D-4884-895F-4348203BE664}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{2AB0DBA8-AD18-466B-B4F9-827F6CE021C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{85BCFAF8-DF1A-4C72-9F62-9BD42AAB2A40}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{5420E1D4-DACE-405B-8A2A-D5BF51F04F64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{C5896AA1-65D6-45C3-A839-DE16918214D8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{61B7C7CA-C9C6-4CD6-A21A-E7AB7FD3DC4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{E4DA82F0-7096-4CBA-82F2-667734D194BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{79FC022E-1D5A-417F-A823-868F6E98AB6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{68B0A10D-49C9-431C-8D80-1A47F5ED9FE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{5EC95B83-9C2E-4A66-8118-CD2F9CD0BFB7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{8E7296B3-A729-4BBE-8769-8AA5EC9B5C3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{AF8074C6-D807-4544-A949-C356D51C8229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{EE9ECFA3-1366-40DB-8295-FBAF093254F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{7850599A-EBC5-402D-80F2-0DF90399B650}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0026C214-049B-44CC-8A8B-EEB78233F1CB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2C9EA6D8-EFDF-4801-9226-4A9AF69E4B88}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{8BFB68E3-5C82-43DE-BCDD-6ABCC0C367C4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6588F92F-5E6D-4128-B60D-5780960DE532}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{8E7D807E-CCB3-42E7-8F47-E94976DF0123}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{67ED0B34-11E7-488B-9EBA-E242B2FC5A33}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9926819C-CCF7-4264-A416-55EA3FEA667C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{BBF03738-4C1B-47F7-A5A7-6A135A3116FC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{8B57266D-682E-4DF4-AB3D-65D24610A1B3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{852C58F7-8107-4CE9-8E52-222C682917AA}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{036D4F93-6512-4388-93BD-95F7C12D6BB8}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{1F211131-6FCA-4D6E-9FD3-4823C97CD700}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{7A054D88-BA7B-462B-A144-758E92524503}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{57F18FF9-EB8E-4C30-BE97-B7F79413408D}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{B46CECC2-B10E-4AB9-AA41-DC45B9B6CA3E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3D093BC1-81A7-42E6-997E-A89469020A99}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E45C7B09-7831-4240-BB8B-8BCDE2BBF53E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C475060F-293E-4DF8-B799-1F9FA0EE8C19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{4D7695D9-F10D-4786-8C58-CC41BE76BF96}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A91F8A20-AD58-4FCA-A2A5-7FB7BD401B34}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0787E1B9-654E-417C-AB7A-A75B24EDFAA2}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{6A0788B7-7990-4556-900A-42427FAFF607}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F9AC6EF1-4FEB-4C02-B6A9-461A2E439BDC}] => (Block) C:\Program Files (x86)\iCareFone\test_airplay_manager_gui.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{DD9C7F83-AC10-4511-BE6F-AD5DCEEE7D7A}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [{11C5566F-4C63-4504-8E61-052555FBFA71}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [TCP Query User{99B3DC92-0F32-409D-9F81-1102FC42D295}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [UDP Query User{2EEB8E51-855B-4450-8E79-055F801FCE39}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [{0E7DEC62-54FD-456E-98D9-364C103D7B6A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{FB5A884A-46D3-4C76-88FC-FBDD04336DD4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{D87F179D-1306-47DE-8841-D1F339795C52}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{EBE0DECF-EA36-44BF-BB60-3FF5B8E9F09E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{988B621B-DBDC-4C98-896D-FF0965F5A21C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{0DCCF909-EAEA-468D-BE7C-D44721E9981F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A5C80051-89AD-4CFF-A46A-06D8260FB3AA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{A46C591C-9C73-4C61-A96F-2B84286F35A8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{0ECB2031-8FBE-4909-A8E7-7E5F20120EED}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{DB78A89E-3C02-4880-9A29-A2F45B0038E1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{6371206A-FCEE-4F7C-BA09-6B193D047BD3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{8D6C5653-9F14-487C-BDD2-96EAE3AE6142}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D1F53103-8124-4722-9117-BDA085411C21}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{FE716126-2EDE-4364-9E00-590E0A08087C}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{18F6A7E8-1B15-4736-89E1-EA7AFBC997AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{F50CBB40-44D5-44F9-940E-3A94087265BF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{86E4D795-252C-4F24-BA1C-F23652FCE880}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C41E0AF1-62A3-4B01-9DF8-CA80A0659584}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{186ADB7D-4126-476C-B3F0-AC2DABD88692}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C968CC53-CDDD-4E76-8D59-444874D69F67}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{6E3CDF5F-EDB1-4908-A1ED-3469A211EF3A}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{8CA52744-77C4-4D40-BAB9-C808015929DC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9310D1B8-B17A-429F-A0EF-ED026EC95338}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{09B0ED13-DADA-4C17-AF19-4052A2A69DEE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6B2A5F6C-AF19-43C6-A2E4-0D68AFE8A903}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A39EDADE-D37E-4227-A7A6-6F17451E42A8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0E8DCBA7-71A7-45C4-9C0D-FDBE02286A91}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{863F7953-9304-44A4-B0E0-7CF6A92844E7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{991303E4-9AEB-4BB7-BB06-645F89D2FD30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{55E787A2-AD04-497C-A663-98C3BC88D643}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C37FA421-DB14-4C29-9D49-366AEF9FB29D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2F3E5C4B-BAC3-4174-A52E-AE21D9D21BEB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{5307C0CE-229E-45C3-B832-16A320074BC7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{48D32C2F-4D32-4BD6-B467-A5F7895661EA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F2E3D8C9-04FD-4280-A59B-1B959889D38F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D1EDD77D-2051-45E5-819E-ED8B0D56CCE3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B029956C-D871-4379-B595-31994867DB3E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6E03F174-E10E-4E86-8F9A-AF81A53E45E6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{06FE327D-AE76-4B2B-9232-7EB4D8B7CCBF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{55167965-238F-4AEB-8679-5BDC8A7004BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C7923AB2-73A1-448B-BF32-023E46438CA9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3B3D56FB-A612-4C60-83B8-D12A94F62FE2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8853DE1F-6730-4F48-A689-F1E5FCCFE39C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F3BD9B9F-00AD-4E72-A8FD-1A3449E07031}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AFE52677-E5E0-413C-9D20-4684A1D8D6A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1F85C63D-7DB3-42FC-AF29-AC5C63405FDC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{304C506F-A975-4837-B3B7-F4C2E86CE7B1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C3996DAB-0BA0-45E7-A23E-3F87B06C1B2E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7C9702A0-2040-48DC-9FD3-DFE2F6CF5D45}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D4A88706-3727-4D67-B11C-BA61E48FA15F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D578E726-32CB-4E09-ABEE-0D726B623D71}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0934392D-078A-4A20-B599-B880E03E2695}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{4CBC2000-8360-4CA4-912D-D628217A43A0}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{BA9CF30D-4CEB-4E1D-82CE-9460294AD92E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A3627ACC-2BFF-48DA-B666-A8A6937D7AA2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EE140D1C-437C-4908-B57E-FD413908675C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{93808A46-5A43-4FED-B170-4068194E4AD4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C20E1175-71D5-4D51-9177-63C821DE81AE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{70D1E0DF-89FB-4600-BD16-15CBD6D56B3B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B99F59CF-FEE0-42E2-9114-7D4C6BE39AE2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AA9B6DAD-FA0F-46D1-AE22-7C67E48AE6EF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC76C680-DC86-496D-8696-BC6BA742331F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9B131D1C-B724-4EAA-8981-D4486A6E5E68}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E1A4F0CF-FBF3-4448-8797-8359DCCBC8B2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{47770630-51E8-42F6-B614-AA918B8076B5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F412EADE-20DA-4B4F-8DBC-58F7AB9AA901}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.82\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{266DA9C1-A7B5-4127-8E74-5388F55EE689}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A265F474-BDCD-4922-8FEF-39142D06A147}] => (Allow) C:\WINDOWS\System32\WScript.exe
==================== Restore Points =========================
11-07-2023 23:40:19 Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64)
11-07-2023 23:51:31 Instalační služba modulů systému Windows
11-07-2023 23:51:59 Instalační služba modulů systému Windows
19-07-2023 08:37:46 19.07.2023
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
System errors:
=============
Error: (07/19/2023 02:05:20 PM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:58:21 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:57:51 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2023-07-09 08:00:38
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: TrojanDownloader:VBS/SLoad.SIB!MTB
Závažnost: Vážné
Kategorie: Trojský stahovací program
Cesta: amsi:_C:\WINDOWS\TEMP\steam.vbe
Původ detekce: Neznámý
Typ detekce: Konkrétní
Zdroj detekce: AMSI
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\wscript.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-09 05:26:47
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-08 23:46:52
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-06-20 07:33:07
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 1.391.2013.0
Verze modulu: AM: 1.1.23050.3, NIS: 1.1.23050.3
Event[0]
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
CodeIntegrity:
===============
Date: 2023-07-19 14:09:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:09:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:01:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: Insyde Corp. V1.08 12/02/2021
Motherboard: TGL Scala_TLM
Processor: 11th Gen Intel(R) Core(TM) i5-11300H @ 3.10GHz
Percentage of memory in use: 46%
Total physical RAM: 16179.3 MB
Available physical RAM: 8686.46 MB
Total Virtual: 53043.3 MB
Available Virtual: 42384.54 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:952.75 GB) (Free:136.77 GB) (Model: NVMe WDC PC SN530 SDBPNPZ-1T00-1114) NTFS
Drive d: (KINGSTON SSD 2TB) (Fixed) (Total:1863 GB) (Free:479.05 GB) (Model: NVMe KINGSTON SNV2S2000G) NTFS
\\?\Volume{e7b417eb-f532-4bb0-8396-a645a0110b3b}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.1 GB) NTFS
\\?\Volume{907da3cb-1319-4595-a1f8-ead0bc123351}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32
==================== MBR & Partition Table ====================
==================== End of Addition.txt =======================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-07-2023
Ran by hlava (19-07-2023 14:13:10)
Running from C:\Users\hlava\Downloads
Microsoft Windows 11 Home Version 22H2 22621.1992 (X64) (2022-10-06 08:17:00)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-370656792-1244637223-2425275819-500 - Administrator - Disabled)
agnes (S-1-5-21-370656792-1244637223-2425275819-1001 - Administrator - Enabled) => C:\Users\agnes
DefaultAccount (S-1-5-21-370656792-1244637223-2425275819-503 - Limited - Disabled)
Guest (S-1-5-21-370656792-1244637223-2425275819-501 - Limited - Enabled)
hlava (S-1-5-21-370656792-1244637223-2425275819-1002 - Administrator - Enabled) => C:\Users\hlava
WDAGUtilityAccount (S-1-5-21-370656792-1244637223-2425275819-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton 360 (Disabled - Up to date) {AECE2126-F4E7-6909-11F2-1B69D1FBCBD0}
FW: Norton 360 (Enabled) {96F5A003-BE88-6851-3AAD-B25C2F288CAB}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\uTorrent) (Version: 3.6.0.46812 - BitTorrent Inc.)
4K Video Downloader (HKLM\...\{818C221F-DE01-4CBD-89A2-FF30E9CF6FB7}) (Version: 4.21.7.5040 - Open Media LLC) Hidden
4K Video Downloader (HKLM-x32\...\{a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b}) (Version: 4.21.7.5040 - Open Media LLC)
ABBYY FineReader PDF 15 (HKLM\...\{F15000FE-0001-6400-0000-074957833700}) (Version: 15.0.4684 - ABBYY Production LLC)
Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer)
Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer)
AdGuard (HKLM-x32\...\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}) (Version: 7.13.4287.0 - Adguard Software Limited) Hidden
AdGuard (HKLM-x32\...\{aecfa4cc-d924-47f5-b449-859bcd5b361f}) (Version: 7.13.4287.0 - Adguard Software Limited)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 22.001.20169 - Adobe)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 8.2.0.18 - Adobe Inc.)
Adobe Premiere Pro 2022 (HKLM-x32\...\PPRO_22_2) (Version: 22.2 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601047}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5.1 (HKLM-x32\...\{A1264137-992D-4163-9158-FC398DD88DA4}) (Version: 2.5.4594.1 - Famatech)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\Host App Service) (Version: 0.273.4.604 - SweetLabs)
App Explorer (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Host App Service) (Version: 0.273.4.677 - SweetLabs)
Apple Mobile Device Support (HKLM\...\{F9CEF01A-3907-4614-824F-CF5D3E4675EF}) (Version: 14.1.0.35 - Apple Inc.)
Arduino IDE 2.0.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\459fc68c-eb53-59f8-8957-9913bc627af3) (Version: 2.0.0 - Arduino SA)
AutoCAD Open in Desktop (HKLM\...\{E03EC70C-079C-4B5D-86D1-75759A46ED71}) (Version: 1.0.27.0 - Autodesk)
Autodesk App Manager (HKLM-x32\...\{8ECA94E8-BB0D-4E0C-AD18-817EA930E700}) (Version: 3.4.1 - Autodesk)
Autodesk AutoCAD 2022 - Italiano (Italian) (HKLM\...\{A7FCEC1C-74BA-3652-A9BB-9F23C304B712}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2022 Language Pack - English (HKLM\...\{756C1830-AE6A-30CB-9331-650543CDDD58}) (Version: 24.1.51.0 - Autodesk, Inc.)
Autodesk AutoCAD 2024 - English (HKLM\...\{CC46AD7F-5075-3702-B2BF-CFCC5AB8468B}) (Version: 24.3.61.0 - Autodesk, Inc.)
Autodesk AutoCAD v2024 (HKLM-x32\...\{6E22F178-5839-45FF-8A51-08AE632880BD}) (Version: 1.0.0 - Autodesk AutoCAD v2024)
Autodesk Fusion 360 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.16490 - Autodesk, Inc.)
Autodesk Identity Manager (HKLM\...\Autodesk Identity Manager) (Version: 1.9.18.0 - Autodesk)
Autodesk Interoperability Engine Manager (HKLM\...\{412B8C29-F1BC-3791-A0BA-490A502077FA}) (Version: 1.1.0.28 - Autodesk.com) Hidden
Autodesk Material Library 2022 (HKLM-x32\...\{A9221A68-5AD0-4215-B54F-CB5DBA4FB27C}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library 2023 (HKLM-x32\...\{8E133591-B0FD-4DB0-B60E-FB593CAF72B0}) (Version: 21.0.1.1 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2022 (HKLM-x32\...\{6256584F-B04B-41D4-8A59-44E70940C473}) (Version: 20.3.7.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2023 (HKLM-x32\...\{3B564A94-BA47-4E42-ACD6-B5C35291210B}) (Version: 21.0.1.1 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 11.18.0.0 - Autodesk, Inc.)
Blackmagic RAW Common Components (HKLM\...\{35D9A1FC-10E0-4825-B2D2-3B15EB9B2232}) (Version: 2.4.0.1 - Blackmagic Design)
Brother MFL-Pro Suite DCP-9020CDW (HKLM-x32\...\{E98A9C92-E767-475B-8BC6-8780A86DDC72}) (Version: 1.0.5.0 - Brother Industries, Ltd.)
Builder Simulator (HKLM-x32\...\Builder Simulator_is1) (Version: - RePack)
Care Center Service (HKLM\...\{AFB52E98-7597-4484-9202-58F0FD3512ED}) (Version: 4.00.3042 - Acer Incorporated)
CData Excel Add-In for SAS Xpt (HKLM-x32\...\CData Excel Add-In for SAS Xpt) (Version: 22.0.8462 - CData Software, Inc.)
Cesta kolem světa za 80 dní (HKLM-x32\...\{C5A41205-5B61-442F-943F-4A60B376FA8A}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
CEWE fotosvet (HKLM\...\CEWE fotosvet) (Version: 7.2.4 - CEWE Stiftung u Co. KGaA)
Corel Graphics - Windows Shell Extension (HKLM\...\_{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.0.293 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{76E381CE-5AD1-4A02-9CF4-B407B1BE9BE0}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 32 Bit Keys (HKLM\...\{98CFADA3-527D-4A92-9160-EE463FCE95A5}) (Version: 24.0.293 - Corel Corporation) Hidden
Corel Update Manager (HKLM\...\{4BAE1A4E-9E7A-4DEB-93DF-F2EB7539C3E2}) (Version: 2.16.673 - Corel corporation) Hidden
CorelDRAW Graphics Suite (HKLM\...\_{1E4B5F2C-0532-4CDA-AFCD-674E9C37521E}) (Version: 24.3.1.576 - Corel Corporation)
CorelDRAW Graphics Suite 2022 - IPM (x64) (HKLM\...\{C3AA2B13-47FD-4A79-8B12-371D41CEBA58}) (Version: 24.4 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content BR (x64) (HKLM\...\{89D5710D-E9BA-422C-9622-0AD767A4393E}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CS (x64) (HKLM\...\{EA20C1C5-9B58-4521-A6CF-B8EF05240090}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CT (x64) (HKLM\...\{A9B5D262-8F37-4FE8-8042-FB734E355760}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content CZ (x64) (HKLM\...\{A096AB0F-2BFF-4374-8B8E-946B4C7A383F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content DE (x64) (HKLM\...\{979F473A-F5E9-46F1-A144-A3EB8854C7CE}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content EN (x64) (HKLM\...\{E4106E1B-D15B-4BC1-94E7-F4D8BB5E4E8F}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content ES (x64) (HKLM\...\{A51F1984-32E8-4504-ADCE-6394971DC9DB}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content FR (x64) (HKLM\...\{20CE94E7-88BA-4A9D-ADB2-1C289B74615A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content IT (x64) (HKLM\...\{B765426D-57E3-4951-814D-7F8D91AEBA4A}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content JP (x64) (HKLM\...\{BF0FB182-C342-4744-8BC0-E1812C50A349}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content NL (x64) (HKLM\...\{E59C483B-FB36-45C3-A981-7A7F432FBC72}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content PL (x64) (HKLM\...\{DAD765D7-6E19-4F6E-AF32-EC04741092D4}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content RU (x64) (HKLM\...\{34EDBF0A-481F-4314-AD70-5A162A7B14E1}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content SV (x64) (HKLM\...\{B74272BD-DCCD-4A35-9AAD-877172F31A97}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - IPM Content TR (x64) (HKLM\...\{F636BFF2-0638-4B0E-80B0-0591240A9E07}) (Version: 24.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2022 - Writing Tools (x64) (HKLM\...\{7DCFAD1B-69CB-4394-8EF6-E2ECECDF098C}) (Version: 24.4 - Corel Corporation) Hidden
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.0.0.1996 - Disc Soft Ltd)
DaVinci Resolve (HKLM\...\{AEA1F37D-8F18-4B1A-8B7F-1911CC4B7071}) (Version: 18.0.00014 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{7667C543-084F-47F7-BC60-175FC25E9D6F}) (Version: 2.0.1.0 - Blackmagic Design)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3026 - Acer Incorporated)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.159.0.5416 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d784aa79-3dac-45df-b52b-70303fb90b62}) (Version: 12.159.0.5416 - Electronic Arts)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 1.3 - )
ExpressVPN (HKLM-x32\...\{72B1757E-2E76-49C5-A31E-BA29DD7FA5F6}) (Version: 2.4.22135.2 - Acer)
f.lux (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Flux) (Version: 4.124 - f.lux Software LLC)
Far Cry 6 (HKLM-x32\...\Far Cry 6_is1) (Version: - )
Flixmate (HKLM\...\{E2E22B14-52E8-4DF1-ABDA-F1F492CC88C1}) (Version: 1.2.1 - Flixmate)
FoneTool (HKLM-x32\...\{AD04677C-79B8-4B7A-BB39-FEE6F138E716}_is1) (Version: 2.0.1 - AOMEI International Network Limited.)
FPS Monitor (HKLM-x32\...\FPS Monitor_is1) (Version: 1 - )
Free Rar Password Unlocker (HKLM\...\{0470B1FF-D782-4752-9BAD-CBEF36A979CB}_is1) (Version: 1.2.2 - bestx software)
F-Secure Freedome VPN 2.64.767.0 (HKLM-x32\...\F-Secure Freedome VPN_is1) (Version: 2.64.767.0 - LRepacks)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM\...\{1FB4283F-3864-3315-A54D-350512E5ECBE}) (Version: 114.0.5735.199 - Google LLC)
GrafanaEnterprise (HKLM\...\{A4BB29E8-E86C-4362-B5A4-DFA0B4AEA2B3}) (Version: 9.1.5.0 - Grafana Labs)
HHD Software Free Network Analyzer 8.45 (HKLM\...\HHD Device Monitoring Studio 5.01) (Version: 8.45.1.9934 - HHD Software, Ltd.)
Horké léto 2 (odinstalovat) (HKLM-x32\...\HL2) (Version: - )
Horké léto verze 1.0 (HKLM-x32\...\{88954A10-19CE-4D7D-86D0-A19030151499}_is1) (Version: 1.0 - Maxon)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
iCareFone 8.5.0.23 (HKLM-x32\...\{Tenorshare iCareFone}_is1) (Version: 8.5.0.23 - Tenorshare, Inc.)
iCloud Outlook (HKLM\...\{B8056148-C2ED-44EC-A3D1-93FDA8B120FC}) (Version: 13.4.0.101 - Apple Inc.)
Killer Ethernet Performance Driver Suite UWD (HKLM\...\{8D5D1E91-BBB5-4035-A8BD-90590833ACED}) (Version: 2.3.1513 - Rivet Networks)
KMS_VL_ALL_AIO (HKLM-x32\...\{21498B56-B51C-4EB6-8846-0A7A5A62C93F}) (Version: 1.0.0 - KMS_VL_ALL_AIO)
Kodi (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Kodi) (Version: 20.0.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Loxone Config (HKLM-x32\...\LoxoneConfig_is1) (Version: 14.2 - Loxone Electronics GmbH)
Macrium Reflect Free (HKLM\...\{5664B4BB-6EA2-4981-A1C1-D08B5A088867}) (Version: 8.0.6979 - Paramount Software (UK) Ltd.) Hidden
Macrium Reflect Free (HKLM\...\MacriumReflect) (Version: v8.0.6979 - Paramount Software (UK) Ltd.)
Machinarium (HKLM-x32\...\Machinarium) (Version: CZ/14.02.2010 - Amanita Design, s.r.o.)
Malwarebytes version 4.5.33.272 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.33.272 - Malwarebytes)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 6.0.20 (x64) (HKLM\...\{217B2755-3BAD-486B-9606-CCD0E6CF3BE8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.20 (x64) (HKLM\...\{76FA02FF-603F-48BB-9E3F-17ED5DB861E8}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.20 (x64) (HKLM\...\{6CE8AD8C-E6D5-4BF7-91C3-7F8106A5CD93}) (Version: 48.83.63169 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 3.1.32 - Shared Framework (x64) (HKLM-x32\...\{65fddc17-d55b-46b7-a750-5c179fef3d81}) (Version: 3.1.32.22566 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.32 Shared Framework (x64) (HKLM\...\{2E69E59E-17DF-3977-A405-49096F8B8432}) (Version: 3.1.32.22566 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64) (HKLM-x32\...\{ccc9b7bf-4213-41d0-80ab-e1214c456f4a}) (Version: 6.0.20.23321 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.20 Shared Framework (x64) (HKLM\...\{C34CAF5C-AAF9-3D8C-895E-D23B398383BD}) (Version: 6.0.20.23321 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.82 - Microsoft Corporation)
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.16529.20182 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{43D501A5-E5E3-46EC-8F33-9E15D2A2CBD5}) (Version: 5.70.0.0 - Microsoft Corporation)
Microsoft Visual Basic for Applications 7.1 (x64) (HKLM\...\{78E1A395-FD21-499A-91A2-6135BA6112B6}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual Basic for Applications 7.1 (x64) English (HKLM\...\{9B29A3A1-255A-44C0-BCCA-E3447A41F32A}) (Version: 7.1.11.18 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 (HKLM-x32\...\{d4cecf3b-b68f-4995-8840-52ea0fab646e}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.34.31931 (HKLM-x32\...\{6ba9fb5e-8366-4cc4-bf65-25fe9819b2fc}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 (HKLM\...\{EAE242B1-0A26-485A-BFEB-0292EE9F03CB}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 (HKLM\...\{CF4C347D-954E-4543-88D2-EC17F07F466F}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31931 (HKLM-x32\...\{C2662EFF-06E6-4FD1-9D6D-FDCA91025757}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31931 (HKLM-x32\...\{AB1BDF73-7393-42CE-812D-9A90918814D5}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 x64 Hosting Support (HKLM\...\{9D6CE289-E12C-38BB-9999-E2377EC118B7}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2019 x86 Hosting Support (HKLM-x32\...\{7C931D41-F302-3494-868C-320A4F4DD9F9}) (Version: 16.0.28801 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM\...\{53531ED1-E480-4012-9912-BF1C67547BF3}) (Version: 48.83.63194 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.20 (x64) (HKLM-x32\...\{8e256e2b-a36f-4f85-a4c7-37fdf661778c}) (Version: 6.0.20.32621 - Microsoft Corporation)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 106.0 (x64 en-US)) (Version: 106.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 106.0 - Mozilla)
NetSetMan 4.7.2 (HKLM-x32\...\NetSetMan_is1) (Version: 4.7.2 - NetSetMan GmbH)
NetSurveillance (HKLM-x32\...\NetSurveillance) (Version: - )
NitroSense Service (HKLM\...\{6FC78E80-6385-43D6-8A43-FA80094F1A2E}) (Version: 3.01.3024 - Acer Incorporated)
No Man's Sky (HKLM-x32\...\1446213994_is1) (Version: 4.10_Fractal_100408a - GOG.com)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.23.5.106 - NortonLifeLock Inc)
Nový Robinson (HKLM-x32\...\Nový Robinson) (Version: - )
Npcap OEM (HKLM-x32\...\NpcapInst) (Version: 1.55 - Nmap Project)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 536.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 536.23 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
OnePlus USB Drivers 1.00 (HKLM-x32\...\OnePlus USB Drivers 1.00) (Version: 1.00 - OnePlus, Inc)
PDF24 Creator 11.12.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 11.12.0 - PDF24.org)
PicPick 7.0.1 (HKLM-x32\...\PicPick_is1) (Version: 7.0.1 - RePack 9649)
Polda 2 verze 1.0 (HKLM-x32\...\{BC895280-AC1B-4A9F-BA40-8DB70971D761}_is1) (Version: 1.0 - )
PrusaSlicer 2.5.0 (HKLM\...\{F7A53CE7-528F-429F-AABB-E54ECE5FD63E}) (Version: 2.5.0 - Prusa Research) Hidden
PrusaSlicer 2.5.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\PrusaSlicer 2.5.0 2.5.0) (Version: 2.5.0 - Prusa Research)
PrusaSlicer 2.6.0 (HKLM\...\{D6310383-F2B7-4DEB-89B5-8C7448FAE3A6}) (Version: 2.6.0 - Prusa Research) Hidden
PrusaSlicer 2.6.0 (HKLM\...\PrusaSlicer 2.6.0 2.6.0) (Version: 2.6.0 - Prusa Research)
Quick Access Service (HKLM\...\{AB25551C-74EF-4BAB-9989-891517FCF9FF}) (Version: 3.00.3038 - Acer Incorporated)
RAR Password Cracker (HKLM-x32\...\RAR Password Cracker) (Version: 4.20 - dnSoft Research Group)
Raspberry Pi Imager (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Raspberry Pi Imager) (Version: 1.7.2 - Raspberry Pi Ltd)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9091.1 - Realtek Semiconductor Corp.)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2_is1) (Version: 0.0.0 - DODI-Repacks)
ReflectionNetworkLauncher 1.0.9 (HKLM\...\d0673521-1e7c-5647-8f72-b2cae5719a78) (Version: 1.0.9 - Reflection Network)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1001\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
Seznam Software (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
SHAREit (HKLM-x32\...\www.ushareit.com_is1) (Version: 4.0.6.177 - SHAREit Technologies Co.Ltd)
Sherlock Holmes The Awakened (HKLM-x32\...\FLT_Sherlock_Holmes_The_Awakened) (Version: - )
Simplify3D Software (HKLM\...\Simplify3D Software 4.1.2) (Version: 4.1.2 - Simplify3D)
SketchUp Language Pack [cs] (HKLM\...\{ca0041d2-4059-4b49-733d-708944038fd1}) (Version: 22.0.354 - Název společnosti:) Hidden
SketchUp Pro 2022 (HKLM-x32\...\{c631706c-1735-11ec-9621-0242ac130015}) (Version: 22.0.354 - Trimble, Inc.)
SketchUpPro 2022 (HKLM\...\{898ed298-4bc7-f67e-2e5b-6202a980787a}) (Version: 22.0.354.126 - Název společnosti:) Hidden
SmartGenius (HKLM\...\{F96B1114-82A6-4348-8A84-8FD4E9D99F3B}_is1) (Version: 1.7.0.5 - KYE Systems Corp.)
Sons Of The Forest (HKLM-x32\...\Sons Of The Forest_is1) (Version: 0.0.0 - DODI-Repacks)
Speciální aplikace Autodesk (HKLM-x32\...\{00A2237F-C1A4-4498-8B21-24CA66D8C756}) (Version: 3.4.1 - Autodesk)
StatusMonitor (HKLM-x32\...\{D9584EB4-1D28-4BD1-8F81-6E097C0827EE}) (Version: 1.33.1.0 - Brother Industries, Ltd.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
stl-thumb (HKLM\...\{189AFC45-ECA5-450E-8CCE-64D3CB8ACC47}) (Version: 0.4.0 - UnlimitedBacon) Hidden
STL-Thumb (HKLM-x32\...\{8bbd4d67-1df3-493d-a212-bcb83b0ca994}) (Version: 0.4.0 - UnlimitedBacon)
Tormentum - Dark Sorrow (HKLM-x32\...\1995239510_is1) (Version: 1.4.1 - GOG.com)
Total Uninstall 6.27.0 (HKLM\...\Total Uninstall 6_is1) (Version: 6.27.0 - Gavrila Martau)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{AC9D2EAD-0DA0-4E0B-8672-546F5B1E6E73}) (Version: 3.0.31 - Autodesk)
Ultimaker Cura 5.1.0 (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\Ultimaker Cura 5.1.0) (Version: 5.1.0 - Ultimaker B.V.)
User Experience Improvement Program Service (HKLM\...\{323EA05D-046D-449D-9D7C-89243C957CCE}) (Version: 5.00.3012 - Acer Incorporated)
uTorrent Web (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\utweb) (Version: 1.3.0 - Rainberry, Inc.)
Ve stínu havrana (HKLM-x32\...\Ve stínu havrana_is1) (Version: - CINEMAX, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WATTconfig M (x64) (HKLM\...\WATTconfigM64_is1) (Version: - SOLAR controls s.r.o.)
WATTconfig Mx (x64) (HKLM\...\WATTconfigMx64_is1) (Version: - SOLAR controls s.r.o.)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Worms Armageddon (HKLM-x32\...\1462173886_is1) (Version: gog-2 - GOG.com)
ZPS 19 CZ (HKU\S-1-5-21-370656792-1244637223-2425275819-1002\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)
Packages:
=========
Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4 [2023-07-13] (Acer Incorporated)
DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2023.2.5.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
DTS:X Ultra -> C:\Program Files\WindowsApps\DTSInc.DTSXUltra_1.11.14.0_x64__t5j2fzbtdg37r [2023-07-14] (DTS, Inc.)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-07-19] (INTEL CORP)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa [2023-05-24] (Apple Inc.) [Startup Task]
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_1900.9.106.0_x64__8xx8rvfyw5nnt [2023-07-13] (Meta) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.39.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.1.60961.0_x64__8wekyb3d8bbwe [2023-07-13] (Microsoft Corporation)
ms-resource:iCloudAppDisplayName -> C:\Program Files\WindowsApps\AppleInc.iCloud_14.1.108.0_x64__nzyj5cx40ttqa [2023-06-17] (Apple Inc.) [Startup Task]
ms-resource:OEMAppName -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.17.0_x64__xbfy0k16fey96 [2023-07-14] (Dropbox Inc.)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt [2023-07-14] (INTEL CORP) [Startup Task]
NitroSense_V31 -> C:\Program Files\WindowsApps\AcerIncorporated.NitroSenseV31_3.1.3024.0_x64__48frkmn4z8aw4 [2022-11-16] (Acer Incorporated)
Norton Security -> C:\Program Files\Norton Security\Engine\22.23.5.106 [2023-07-19] (NortonLifeLock Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-07-13] (NVIDIA Corp.)
O2 TV -> C:\Program Files\WindowsApps\D8378DF7.O2TVGo_20182.1.0.0_x64__tqn3m7kee4xc8 [2023-07-14] (O2 Czech Republic a.s.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2022-12-02] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0 [2023-07-11] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2327.6.0_x64__cv1g1gvanyjgm [2023-07-14] (WhatsApp Inc.) [Startup Task]
XPT (SAS transport) viewer -> C:\Program Files\WindowsApps\61617IDV.XPTSAStransportviewer_1.1.0.4_neutral__c67edy5ke3rw0 [2023-03-29] (IDV)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{169B5B8E-E315-41C7-9574-66FC7E530D10}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{21840483-38D7-1894-63D0-47625DAD0326}\InprocServer32 -> C:\Program Files (x86)\Common Files\System\ole32.dll => No File
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> c:\program files\macrium\common\reflectmonitor.exe (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{8B4929F8-076F-4AEC-AFEE-8928747B7AE3}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{9DFFEB0B-61A1-4446-B455-D348A3A61C96} -> [iCloud Drive] => C:\Users\hlava\iCloudDrive [2022-08-25 10:51]
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AA46BA8A-9825-40FD-8493-0BA3C4D5CEB5}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{AF18D91C-A699-4578-ADC6-972F3BA007F0}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2024\acad.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\hlava\AppData\Local\Autodesk\webdeploy\production\dbacedcc6dabacdc41406088a765962c5f1923ad\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-370656792-1244637223-2425275819-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2024\en-US\acadficn.dll (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2023-06-01] (Autodesk, Inc. -> Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2023-06-01] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2022-10-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2022-08-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_7f99dc46d04e93fd\nvshext.dll [2023-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.23.5.106\buShell.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [FineReader15ContextMenu] -> {53339754-4DD1-438B-8D24-0D0730F1A591} => C:\Program Files (x86)\ABBYY FineReader 15\x64\FRIntegration.x64.dll [2020-09-09] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-07-19] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.23.5.106\NavShExt.dll [2023-06-14] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetSurveillance\reg.lnk -> C:\Program Files (x86)\NetSurveillance\CMS\reg.bat ()
==================== Loaded Modules (Whitelisted) =============
2023-07-19 11:55 - 2023-07-19 11:55 - 000915456 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\4a2b5b70-b86c-472b-94b5-00142ee49626.tmp.node
2023-07-19 11:55 - 2023-07-19 11:55 - 000357888 _____ () [File not signed] \\?\C:\Users\hlava\AppData\Local\Temp\79b59a64-44c1-43fe-a4b6-728c805de48d.tmp.node
2022-09-29 19:03 - 2009-02-27 16:38 - 000139264 ____R () [File not signed] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000542720 _____ () [File not signed] C:\Program Files (x86)\Browny02\BrMonitor.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 000208896 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrFirmUpdateCheck.dll
2022-01-26 20:00 - 2022-01-26 20:00 - 001859584 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonWRes.dll
2022-09-29 19:03 - 2019-07-26 09:53 - 000137728 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcAssoc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 000087552 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcDlgRc.dll
2022-09-29 19:03 - 2017-08-18 12:23 - 017974784 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcGrImg.dll
2022-09-29 19:03 - 2018-04-27 10:16 - 000090112 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcLCze.dll
2023-03-03 15:25 - 2019-07-26 09:54 - 000440832 _____ () [File not signed] C:\Program Files (x86)\ControlCenter4\Track.dll
2021-02-01 22:49 - 2021-02-01 22:49 - 000010240 _____ () [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\acrotray.cze
2022-05-22 20:57 - 2022-05-22 20:57 - 000613376 _____ () [File not signed] C:\Program Files\EqualizerAPO\EqualizerAPO.dll
2016-07-30 23:42 - 2016-07-30 23:42 - 002772692 _____ () [File not signed] C:\Program Files\EqualizerAPO\libfftw3f-3.dll
2017-04-02 19:01 - 2017-04-02 19:01 - 001748992 _____ () [File not signed] C:\Program Files\EqualizerAPO\libsndfile-1.dll
2022-09-29 19:03 - 2005-04-22 06:36 - 000143360 _____ () [File not signed] C:\WINDOWS\system32\BrSNMP64.dll
2022-07-05 06:34 - 2022-07-05 06:34 - 000021504 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2022-09-29 19:03 - 2010-09-29 17:07 - 000180224 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BroSNMP.dll
2022-09-29 19:03 - 2012-07-14 10:53 - 000087040 _____ (Brother Industries, Ltd.) [File not signed] C:\WINDOWS\system32\BrNetSti.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-11-14 19:33 - 2022-11-14 19:33 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2017-11-01 21:58 - 2017-11-01 21:58 - 001141248 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files (x86)\Adguard\SQLite.Interop.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1"
==================== Internet Explorer (Whitelisted) ==========
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> DefaultScope {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
SearchScopes: HKU\S-1-5-21-370656792-1244637223-2425275819-1002 -> {F2A28ED1-F11A-4F0B-BC26-D3CC7AC3A322} URL =
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-07-05] (Adobe Inc. -> Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-07-01] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 14:08 - 2022-11-18 12:49 - 000000859 _____ C:\WINDOWS\system32\drivers\etc\hosts
0.0.0.0 account.zoner.com
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-370656792-1244637223-2425275819-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Acer01.jpg
HKU\S-1-5-21-370656792-1244637223-2425275819-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\themea\img20.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
FreedomeVPNConnection: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Ethernet: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Ethernet: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Wi-Fi: HHD Software Network Monitor Filter Driver -> hhd_net (enabled)
Wi-Fi: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{82F1800D-BC0F-422D-9810-6487E56550B5}] => (Allow) LPort=54925
FirewallRules: [{1D231CCB-BE07-469B-848E-EF64FBD90392}] => (Allow) C:\Program Files (x86)\Adguard\AdguardSvc.exe (Adguard Software Limited -> Adguard Software Limited)
FirewallRules: [{4D821F65-E685-4D22-80BC-1A7E596717B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{800B6870-46B4-4840-9F42-202AE247CCC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polda 7\Polda7.exe () [File not signed]
FirewallRules: [{363C2E45-AA85-48E3-90C7-40E733A870A0}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{3310B83E-019D-4884-895F-4348203BE664}] => (Allow) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe (SHAREit Technologies Co.Ltd -> SHAREit Technologies Co.Ltd)
FirewallRules: [{2AB0DBA8-AD18-466B-B4F9-827F6CE021C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{85BCFAF8-DF1A-4C72-9F62-9BD42AAB2A40}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{5420E1D4-DACE-405B-8A2A-D5BF51F04F64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{C5896AA1-65D6-45C3-A839-DE16918214D8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{61B7C7CA-C9C6-4CD6-A21A-E7AB7FD3DC4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{E4DA82F0-7096-4CBA-82F2-667734D194BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aledorn Demo\Aledorn.exe () [File not signed]
FirewallRules: [{79FC022E-1D5A-417F-A823-868F6E98AB6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{68B0A10D-49C9-431C-8D80-1A47F5ED9FE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe (Gaijin Network Ltd -> Gaijin)
FirewallRules: [{5EC95B83-9C2E-4A66-8118-CD2F9CD0BFB7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{8E7296B3-A729-4BBE-8769-8AA5EC9B5C3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe (Gaijin Network Ltd -> Gaijin Entertainment)
FirewallRules: [{AF8074C6-D807-4544-A949-C356D51C8229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{EE9ECFA3-1366-40DB-8295-FBAF093254F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{7850599A-EBC5-402D-80F2-0DF90399B650}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0026C214-049B-44CC-8A8B-EEB78233F1CB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2C9EA6D8-EFDF-4801-9226-4A9AF69E4B88}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{8BFB68E3-5C82-43DE-BCDD-6ABCC0C367C4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6588F92F-5E6D-4128-B60D-5780960DE532}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{8E7D807E-CCB3-42E7-8F47-E94976DF0123}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{67ED0B34-11E7-488B-9EBA-E242B2FC5A33}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9926819C-CCF7-4264-A416-55EA3FEA667C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{BBF03738-4C1B-47F7-A5A7-6A135A3116FC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{8B57266D-682E-4DF4-AB3D-65D24610A1B3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{852C58F7-8107-4CE9-8E52-222C682917AA}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{036D4F93-6512-4388-93BD-95F7C12D6BB8}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{1F211131-6FCA-4D6E-9FD3-4823C97CD700}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{7A054D88-BA7B-462B-A144-758E92524503}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{57F18FF9-EB8E-4C30-BE97-B7F79413408D}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{B46CECC2-B10E-4AB9-AA41-DC45B9B6CA3E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3D093BC1-81A7-42E6-997E-A89469020A99}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E45C7B09-7831-4240-BB8B-8BCDE2BBF53E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C475060F-293E-4DF8-B799-1F9FA0EE8C19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{4D7695D9-F10D-4786-8C58-CC41BE76BF96}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A91F8A20-AD58-4FCA-A2A5-7FB7BD401B34}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22273.905.1632.1008_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0787E1B9-654E-417C-AB7A-A75B24EDFAA2}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{6A0788B7-7990-4556-900A-42427FAFF607}] => (Allow) C:\Program Files (x86)\iCareFone\iCareFone.exe (Tenorshare Co., Ltd. -> Tenorshare)
FirewallRules: [{F9AC6EF1-4FEB-4C02-B6A9-461A2E439BDC}] => (Block) C:\Program Files (x86)\iCareFone\test_airplay_manager_gui.exe (Tenorshare Co., Ltd. -> )
FirewallRules: [{DD9C7F83-AC10-4511-BE6F-AD5DCEEE7D7A}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [{11C5566F-4C63-4504-8E61-052555FBFA71}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> )
FirewallRules: [TCP Query User{99B3DC92-0F32-409D-9F81-1102FC42D295}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [UDP Query User{2EEB8E51-855B-4450-8E79-055F801FCE39}D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe] => (Allow) D:\aplikace\jahoda\altf42\altf42\altf42\binaries\win64\altf42-win64-shipping.exe (PUMPKIM) [File not signed]
FirewallRules: [{0E7DEC62-54FD-456E-98D9-364C103D7B6A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{FB5A884A-46D3-4C76-88FC-FBDD04336DD4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{D87F179D-1306-47DE-8841-D1F339795C52}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{EBE0DECF-EA36-44BF-BB60-3FF5B8E9F09E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{988B621B-DBDC-4C98-896D-FF0965F5A21C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{0DCCF909-EAEA-468D-BE7C-D44721E9981F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A5C80051-89AD-4CFF-A46A-06D8260FB3AA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{A46C591C-9C73-4C61-A96F-2B84286F35A8}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{0ECB2031-8FBE-4909-A8E7-7E5F20120EED}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{DB78A89E-3C02-4880-9A29-A2F45B0038E1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{6371206A-FCEE-4F7C-BA09-6B193D047BD3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{8D6C5653-9F14-487C-BDD2-96EAE3AE6142}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D1F53103-8124-4722-9117-BDA085411C21}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{FE716126-2EDE-4364-9E00-590E0A08087C}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12129.4.57066.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{18F6A7E8-1B15-4736-89E1-EA7AFBC997AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{F50CBB40-44D5-44F9-940E-3A94087265BF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{86E4D795-252C-4F24-BA1C-F23652FCE880}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{C41E0AF1-62A3-4B01-9DF8-CA80A0659584}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{186ADB7D-4126-476C-B3F0-AC2DABD88692}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C968CC53-CDDD-4E76-8D59-444874D69F67}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{6E3CDF5F-EDB1-4908-A1ED-3469A211EF3A}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{8CA52744-77C4-4D40-BAB9-C808015929DC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9310D1B8-B17A-429F-A0EF-ED026EC95338}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{09B0ED13-DADA-4C17-AF19-4052A2A69DEE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6B2A5F6C-AF19-43C6-A2E4-0D68AFE8A903}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A39EDADE-D37E-4227-A7A6-6F17451E42A8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0E8DCBA7-71A7-45C4-9C0D-FDBE02286A91}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{863F7953-9304-44A4-B0E0-7CF6A92844E7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{991303E4-9AEB-4BB7-BB06-645F89D2FD30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{55E787A2-AD04-497C-A663-98C3BC88D643}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C37FA421-DB14-4C29-9D49-366AEF9FB29D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2F3E5C4B-BAC3-4174-A52E-AE21D9D21BEB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{5307C0CE-229E-45C3-B832-16A320074BC7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{48D32C2F-4D32-4BD6-B467-A5F7895661EA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F2E3D8C9-04FD-4280-A59B-1B959889D38F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D1EDD77D-2051-45E5-819E-ED8B0D56CCE3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B029956C-D871-4379-B595-31994867DB3E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6E03F174-E10E-4E86-8F9A-AF81A53E45E6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{06FE327D-AE76-4B2B-9232-7EB4D8B7CCBF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{55167965-238F-4AEB-8679-5BDC8A7004BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C7923AB2-73A1-448B-BF32-023E46438CA9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3B3D56FB-A612-4C60-83B8-D12A94F62FE2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8853DE1F-6730-4F48-A689-F1E5FCCFE39C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F3BD9B9F-00AD-4E72-A8FD-1A3449E07031}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AFE52677-E5E0-413C-9D20-4684A1D8D6A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1F85C63D-7DB3-42FC-AF29-AC5C63405FDC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{304C506F-A975-4837-B3B7-F4C2E86CE7B1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.215.828.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C3996DAB-0BA0-45E7-A23E-3F87B06C1B2E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7C9702A0-2040-48DC-9FD3-DFE2F6CF5D45}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D4A88706-3727-4D67-B11C-BA61E48FA15F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D578E726-32CB-4E09-ABEE-0D726B623D71}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0934392D-078A-4A20-B599-B880E03E2695}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{4CBC2000-8360-4CA4-912D-D628217A43A0}] => (Allow) D:\SteamLibrary\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{BA9CF30D-4CEB-4E1D-82CE-9460294AD92E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A3627ACC-2BFF-48DA-B666-A8A6937D7AA2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EE140D1C-437C-4908-B57E-FD413908675C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{93808A46-5A43-4FED-B170-4068194E4AD4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C20E1175-71D5-4D51-9177-63C821DE81AE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{70D1E0DF-89FB-4600-BD16-15CBD6D56B3B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B99F59CF-FEE0-42E2-9114-7D4C6BE39AE2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AA9B6DAD-FA0F-46D1-AE22-7C67E48AE6EF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC76C680-DC86-496D-8696-BC6BA742331F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9B131D1C-B724-4EAA-8981-D4486A6E5E68}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E1A4F0CF-FBF3-4448-8797-8359DCCBC8B2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{47770630-51E8-42F6-B614-AA918B8076B5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F412EADE-20DA-4B4F-8DBC-58F7AB9AA901}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.82\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{266DA9C1-A7B5-4127-8E74-5388F55EE689}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A265F474-BDCD-4922-8FEF-39142D06A147}] => (Allow) C:\WINDOWS\System32\WScript.exe
==================== Restore Points =========================
11-07-2023 23:40:19 Microsoft ASP.NET Core 6.0.20 - Shared Framework (x64)
11-07-2023 23:51:31 Instalační služba modulů systému Windows
11-07-2023 23:51:59 Instalační služba modulů systému Windows
19-07-2023 08:37:46 19.07.2023
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
System errors:
=============
Error: (07/19/2023 02:05:20 PM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:58:21 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} se v daném časovém limitu neregistroval u služby DCOM.
Error: (07/19/2023 11:57:51 AM) (Source: DCOM) (EventID: 10010) (User: ACER-ASPIRE)
Description: Server {E83487DE-B958-4F64-85CC-41FD42536F90} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2023-07-09 08:00:38
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: TrojanDownloader:VBS/SLoad.SIB!MTB
Závažnost: Vážné
Kategorie: Trojský stahovací program
Cesta: amsi:_C:\WINDOWS\TEMP\steam.vbe
Původ detekce: Neznámý
Typ detekce: Konkrétní
Zdroj detekce: AMSI
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\wscript.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-09 05:26:47
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-07-08 23:46:52
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk; file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe; regkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; runkey:_HKCU@S-1-5-21-370656792-1244637223-2425275819-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\\utweb; startup:_c:\users\hlava\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 0.0.0.0
Verze modulu: AM: 1.1.23050.3, NIS: 0.0.0.0
Date: 2023-06-20 07:33:07
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUATorrent:Win32/uTorrent
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\hlava\AppData\Roaming\uTorrent Web\utweb.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
Verze bezpečnostních informací: AV: 1.391.2013.0, AS: 1.391.2013.0, NIS: 1.391.2013.0
Verze modulu: AM: 1.1.23050.3, NIS: 1.1.23050.3
Event[0]
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
Date: 2023-07-09 06:26:40
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.391.3998.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23050.3
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.
CodeIntegrity:
===============
Date: 2023-07-19 14:09:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:09:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Windows signing level requirements.
Date: 2023-07-19 14:01:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.23.5.106\symamsi.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: Insyde Corp. V1.08 12/02/2021
Motherboard: TGL Scala_TLM
Processor: 11th Gen Intel(R) Core(TM) i5-11300H @ 3.10GHz
Percentage of memory in use: 46%
Total physical RAM: 16179.3 MB
Available physical RAM: 8686.46 MB
Total Virtual: 53043.3 MB
Available Virtual: 42384.54 MB
==================== Drives ================================
Drive c: (Acer) (Fixed) (Total:952.75 GB) (Free:136.77 GB) (Model: NVMe WDC PC SN530 SDBPNPZ-1T00-1114) NTFS
Drive d: (KINGSTON SSD 2TB) (Fixed) (Total:1863 GB) (Free:479.05 GB) (Model: NVMe KINGSTON SNV2S2000G) NTFS
\\?\Volume{e7b417eb-f532-4bb0-8396-a645a0110b3b}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.1 GB) NTFS
\\?\Volume{907da3cb-1319-4595-a1f8-ead0bc123351}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32
==================== MBR & Partition Table ====================
==================== End of Addition.txt =======================