Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-11-2019
Ran by TRNX (administrator) on ZAM (LENOVO 80RU) (23-11-2019 23:26:51)
Running from C:\Users\TRNX\Desktop
Loaded Profiles: TRNX (Available Profiles: TRNX)
Platform: Windows 10 Home Version 1909 18363.476 (X64) Language: Čeština (Česko)
Default browser: "C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe" -- "%1"
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_90a8017a1be3979f\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_90a8017a1be3979f\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_90a8017a1be3979f\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_90a8017a1be3979f\IntelCpHeciSvc.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe
(Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TEFINCOM S.A. -> ) C:\Program Files (x86)\NordVPN\nordvpn-service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-22] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-01-22] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-01-22] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-01-22] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [180736 2019-10-03] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [GXT-161 Gaming Mouse] => C:\GXT-161 Gaming Mouse\GXT-161 Gaming Mouse.exe [4940800 2018-04-19] (Trust International BV) [File not signed]
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => %LOCALAPPDATA%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
HKLM-x32\...\Run: [TeamsMachineUninstallerProgramData] => %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
HKU\S-1-5-21-3585252576-2888146472-1999856015-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-08-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3585252576-2888146472-1999856015-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [71464072 2019-10-23] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3585252576-2888146472-1999856015-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3503856 2019-10-25] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-3585252576-2888146472-1999856015-1001\...\Run: [Chromium] => c:\users\trnx\appdata\local\chromium\application\chrome.exe [4186112 2017-10-10] (The Chromium Authors) [File not signed]
HKU\S-1-5-21-3585252576-2888146472-1999856015-1001\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe [1988240 2019-11-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3503856 2019-10-25] (Razer USA Ltd. -> Razer Inc.)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {09618514-3364-4910-AF69-C2F5E292CFDF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26042680 2019-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {15E402D1-B308-4448-B45E-A4BAF515BF28} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [659520 2019-11-04] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {26C8A8E4-D32A-41F6-9858-B977B3E34170} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6054808 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {3F2CF486-32D0-4514-8AFD-90109EAF9FBC} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {455C0D4B-9125-4A1C-9A15-F935B33C5A7D} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2147128 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {5C64A663-5C95-44F7-A1A7-69DADBF46EF7} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe
Task: {91BB02B9-19DE-4BBF-BD33-D711CD8C629E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26042680 2019-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {933B99BE-6D92-4FED-9F4B-D667882C8560} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6054808 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {9ABF3870-7AD0-451C-B94E-8917A9DB2A77} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {9C5EB961-A7FE-4854-945D-93D722BACB55} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [129272 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {A0203662-3F96-4410-ACC5-5552D7A9F6F0} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1094448 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {A1A3ED19-2A32-49EF-884E-7194EEE39FD7} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {AD190B4D-113B-4362-95E9-0218A6EA76FB} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [129272 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {AD25C4AA-209F-49D5-958D-35456EB00112} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2147128 2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {B807AAB9-C8E2-4A36-8DF6-0D48C557B460} - System32\Tasks\AdobeAAMUpdater-1.0-ZAM-TRNX => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0645ba68-9249-4f1e-aa1e-ee1c82db7efa}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f7917336-ded6-422b-9255-17b9df4dc804}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-3585252576-2888146472-1999856015-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\ssv.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\jp2ssv.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-11-22] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: r5o3k1db.default
FF ProfilePath: C:\Users\TRNX\AppData\Roaming\Mozilla\Firefox\Profiles\r5o3k1db.default [2019-11-09]
FF ProfilePath: C:\Users\TRNX\AppData\Roaming\Mozilla\Firefox\Profiles\wl55kovi.default-release [2019-11-23]
FF NewTab: Mozilla\Firefox\Profiles\wl55kovi.default-release -> about:newtab
FF Extension: (AdBlocker Ultimate) - C:\Users\TRNX\AppData\Roaming\Mozilla\Firefox\Profiles\wl55kovi.default-release\Extensions\adblockultimate@adblockultimate.net.xpi [2019-08-26]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-11-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2019-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [159368 2019-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11156336 2019-11-04] (Microsoft Corporation -> Microsoft Corporation)
R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [176640 2015-09-22] () [File not signed]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-08-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2243136 2019-10-03] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2243136 2019-10-03] (ESET, spol. s r.o. -> ESET)
R2 ibtsiva; C:\Windows\system32\ibtsiva.exe [529912 2019-05-15] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [9586824 2019-10-23] (Logitech Inc -> Logitech, Inc.)
R2 nordvpn-service; C:\Program Files (x86)\NordVPN\nordvpn-service.exe [218576 2019-08-09] (TEFINCOM S.A. -> )
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2019-07-03] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [287472 2019-10-22] (Razer USA Ltd. -> Razer Inc.)
S3 Rockstar Service; D:\Program Files\Rockstar Games\Launcher\RockstarService.exe [471696 2019-09-18] (Rockstar Games, Inc. -> Rockstar Games)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532864 2019-07-11] (Razer USA Ltd. -> Razer Inc.)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [267328 2017-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S2 AdobeARMservice; "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" [X]
S2 AGMService; "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe" [X]
S2 AGSService; "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 amsdk; C:\Windows\system32\drivers\amsdk.sys [232792 2019-11-23] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [135520 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2019-08-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [59360 2019-08-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [149944 2019-10-03] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [103264 2019-10-03] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2019-09-30] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [189512 2019-10-03] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [50712 2019-10-03] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [77184 2019-10-03] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [114136 2019-10-03] (ESET, spol. s r.o. -> ESET)
S3 FocusriteUSB; C:\Windows\System32\drivers\FocusriteUSB.sys [122928 2019-05-09] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBSwRoot; C:\Windows\System32\drivers\FocusriteUSBSwRoot.sys [100792 2019-05-09] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB_AUDIO; C:\Windows\system32\drivers\FocusriteUSBAudio.sys [63200 2019-05-09] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [257016 2019-05-15] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\28228\driver_cpu_temperature\logi_core_temp.sys [25448 2019-10-23] (Logitech Inc. -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [38136 2019-08-29] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [20624 2019-08-29] (WDKTestCert sqa,131523902232810150 -> Logitech, Inc.)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66808 2019-08-29] (Logitech Inc -> Logitech)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7708160 2019-03-19] (Microsoft Windows -> Intel Corporation)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_fddd8f6e89d0291c\nvlddmkm.sys [22749640 2019-11-08] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3128600 2016-09-09] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 rtux64w10; C:\Windows\System32\drivers\rtux64w10.sys [411648 2019-03-19] (Microsoft Windows -> Realtek Corporation )
S3 RzCommon; C:\Windows\System32\drivers\RzCommon.sys [49032 2019-01-16] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_021e; C:\Windows\System32\drivers\RzDev_021e.sys [51688 2018-04-22] (Razer USA Ltd. -> Razer Inc)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [72768 2017-05-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 sshid; C:\Windows\System32\drivers\sshid.sys [47824 2019-08-02] (SteelSeries ApS -> SteelSeries ApS)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166752 2019-07-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [44896 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Project)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S4 nvvhci; \SystemRoot\System32\drivers\nvvhci.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-11-23 23:26 - 2019-11-23 23:27 - 000025399 _____ C:\Users\TRNX\Desktop\FRST.txt
2019-11-23 23:26 - 2019-11-23 23:27 - 000000000 ____D C:\FRST
2019-11-23 23:25 - 2019-11-23 23:25 - 000000000 ____D C:\temp
2019-11-23 23:23 - 2019-11-23 23:23 - 000000000 ____D C:\Users\TRNX\Desktop\backups
2019-11-23 23:22 - 2019-11-23 23:22 - 002262016 _____ (Farbar) C:\Users\TRNX\Desktop\FRST64.exe
2019-11-23 23:21 - 2019-11-23 23:21 - 000204496 _____ (Malwarebytes) C:\Users\TRNX\Desktop\startuplite-setup-1.07.exe
2019-11-23 21:30 - 2019-11-23 23:27 - 000067606 _____ C:\Windows\ZAM.krnl.trace
2019-11-23 21:30 - 2019-11-23 21:33 - 000000000 ____D C:\Users\TRNX\AppData\Local\AMSDK
2019-11-23 21:30 - 2019-11-23 21:30 - 000232792 _____ (Copyright 2018.) C:\Windows\system32\Drivers\amsdk.sys
2019-11-23 21:30 - 2019-11-23 21:30 - 000003532 _____ C:\Windows\system32\Tasks\AMHelper
2019-11-23 21:30 - 2019-11-23 21:30 - 000001333 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2019-11-23 21:30 - 2019-11-23 21:30 - 000000000 ____D C:\Users\TRNX\AppData\Local\Zemana
2019-11-23 21:30 - 2019-11-23 21:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2019-11-23 21:30 - 2019-11-23 21:30 - 000000000 ____D C:\Program Files (x86)\Zemana
2019-11-23 21:29 - 2019-11-23 23:25 - 000000000 ____D C:\Users\TRNX\AppData\Roaming\LGHUB
2019-11-23 21:28 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2019-11-23 21:11 - 2019-11-23 21:25 - 000000000 ____D C:\zoek_backup
2019-11-23 19:59 - 2019-11-23 20:00 - 035545049 _____ C:\Users\TRNX\Desktop\TRNX - 05_07_19_TrapBeat.flac
2019-11-23 19:10 - 2019-11-23 19:31 - 000000000 ____D C:\Users\TRNX\AppData\Roaming\Acrylic Wi-Fi Home
2019-11-23 18:44 - 2019-11-23 18:44 - 000002775 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2019-11-23 18:44 - 2019-11-23 18:44 - 000000000 ____D C:\ProgramData\Sophos
2019-11-23 18:44 - 2019-11-23 18:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2019-11-23 18:44 - 2019-11-23 18:44 - 000000000 ____D C:\Program Files (x86)\Sophos
2019-11-23 17:11 - 2019-11-23 17:11 - 000000220 _____ C:\Users\TRNX\Desktop\The Ultimate DOOM.url
2019-11-22 23:24 - 2019-11-22 23:25 - 000388608 _____ (Trend Micro Inc.) C:\Users\TRNX\Desktop\HijackThis.exe
2019-11-22 16:27 - 2019-11-22 16:27 - 772786425 _____ C:\Windows\MEMORY.DMP
2019-11-22 16:27 - 2019-11-22 16:27 - 001559652 _____ C:\Windows\Minidump\112219-8859-01.dmp
2019-11-21 21:15 - 2019-11-21 21:15 - 000000000 ___HD C:\OneDriveTemp
2019-11-21 21:10 - 2019-11-21 21:10 - 000000000 ____D C:\Users\TRNX\AppData\Local\OneDrive
2019-11-21 20:26 - 2019-11-21 20:26 - 000002511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000002483 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000002476 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000002409 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000002405 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-11-21 20:26 - 2019-11-21 20:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-11-21 20:26 - 2019-11-21 20:26 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2019-11-21 19:33 - 2019-11-22 23:28 - 000000000 ____D C:\Program Files\Microsoft Office
2019-11-21 19:33 - 2019-11-21 19:33 - 000000000 ____D C:\Program Files\Microsoft Office 15
2019-11-17 20:24 - 2019-11-17 20:24 - 000000000 ____D C:\Users\TRNX\AppData\Local\NVIDIA
2019-11-16 22:45 - 2019-11-17 00:14 - 000000000 ____D C:\Users\TRNX\AppData\Local\NFS Underground 2
2019-11-16 22:43 - 2019-11-16 22:50 - 000001126 _____ C:\Users\Public\Desktop\Need for Speed Underground 2.lnk
2019-11-16 22:43 - 2019-11-16 22:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
2019-11-16 21:29 - 2019-11-16 21:29 - 000000632 _____ C:\Windows\Q3ta.INI
2019-11-16 17:31 - 2007-04-04 18:54 - 000107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2019-11-16 17:31 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2019-11-16 17:31 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2019-11-16 17:19 - 2019-11-16 17:31 - 000000000 ____D C:\Windows\SysWOW64\directx
2019-11-16 17:18 - 2019-10-09 13:19 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2019-11-16 17:17 - 2019-11-08 11:08 - 001073872 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2019-11-16 17:17 - 2019-11-08 11:08 - 001073872 _____ C:\Windows\system32\vulkan-1.dll
2019-11-16 17:17 - 2019-11-08 11:08 - 000931536 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-16 17:17 - 2019-11-08 11:08 - 000931536 _____ C:\Windows\SysWOW64\vulkan-1.dll
2019-11-16 17:17 - 2019-11-08 11:08 - 000848592 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-16 17:17 - 2019-11-08 11:08 - 000848592 _____ C:\Windows\system32\vulkaninfo.exe
2019-11-16 17:17 - 2019-11-08 11:08 - 000706256 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-16 17:17 - 2019-11-08 11:08 - 000706256 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2019-11-16 17:17 - 2019-11-08 11:08 - 000449792 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2019-11-16 17:17 - 2019-11-08 11:08 - 000352704 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2019-11-16 17:17 - 2019-11-08 11:07 - 011841968 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2019-11-16 17:17 - 2019-11-08 11:07 - 010167216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 017458432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 005381552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 004717568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 002074240 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001734256 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6444120.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001568880 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001492696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6444120.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001482184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001370088 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001145056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 001066056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 000813000 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 000685792 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 000677280 _____ C:\Windows\system32\nvofapi64.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 000659544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 000556672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2019-11-16 17:17 - 2019-11-08 11:06 - 000544728 _____ C:\Windows\SysWOW64\nvofapi.dll
2019-11-16 17:17 - 2019-11-08 11:05 - 040510200 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2019-11-16 17:17 - 2019-11-08 11:05 - 035379672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2019-11-16 17:17 - 2019-11-08 11:05 - 015026944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2019-11-16 17:17 - 2019-11-08 11:02 - 004219656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2019-11-16 16:10 - 2019-11-16 16:10 - 000000787 _____ C:\Users\TRNX\Desktop\GXT-161 Gaming Mouse.lnk
2019-11-16 16:10 - 2019-11-16 16:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GXT-161 Gaming Mouse
2019-11-16 16:10 - 2019-11-16 16:10 - 000000000 ____D C:\GXT-161 Gaming Mouse
2019-11-16 00:30 - 2019-11-16 00:30 - 034095228 _____ C:\Users\TRNX\Desktop\TRNX - 13_11_19_NiceMelody.flac
2019-11-15 23:59 - 2019-11-15 23:59 - 000000000 ____D C:\Users\TRNX\AppData\Roaming\MAGIX Computer Products Intl. Co
2019-11-15 08:49 - 2019-11-15 08:49 - 025901056 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 022627840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 019849216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 018020352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 014816256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 008011264 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 007754240 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 007195648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 007015936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 006521768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 006232576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 006082808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 005943296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 005914112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 005763848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 005501952 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 005112320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 004578816 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 004307968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 004150272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 004129408 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 003967920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 003752960 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 003742544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 003487232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002956472 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002800640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-11-15 08:49 - 2019-11-15 08:49 - 002586816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002562048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002399232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 002258848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001916984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001866272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001691648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001664688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001610752 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001413864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001399096 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 001348096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001283072 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001189376 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001154656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001098712 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001072952 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 001059840 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 001017680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 001007616 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000892696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000842752 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000832000 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000822072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000774456 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000768528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000768488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000700416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BTAGService.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000689664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000679152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000673664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000669696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000669352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000632320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000516544 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000496640 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.FileExplorer.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000477184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000453632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000452920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000429568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000415544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000404904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000382976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000380944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000380928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcLayers.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000375720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000358400 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2019-11-15 08:49 - 2019-11-15 08:49 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\AcLayers.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000251512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000249856 _____ (Gracenote, Inc.) C:\Windows\SysWOW64\gnsdk_fp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-11-15 08:49 - 2019-11-15 08:49 - 000219136 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000214528 _____ (Microsoft Corporation) C:\Windows\system32\DiagSvc.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000193800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-11-15 08:49 - 2019-11-15 08:49 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredui.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000157184 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SpatialAudioLicenseSrv.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000136536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\omadmapi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwbase.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2019-11-15 08:49 - 2019-11-15 08:49 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\WinHvPlatform.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000122880 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Utilman.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000093496 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000089568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcXtrnal.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000084488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2019-11-15 08:49 - 2019-11-15 08:49 - 000084488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-11-15 08:49 - 2019-11-15 08:49 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2019-11-15 08:49 - 2019-11-15 08:49 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000074240 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000073024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2019-11-15 08:49 - 2019-11-15 08:49 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AtBroker.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000061240 _____ (Microsoft Corporation) C:\Windows\system32\hvhostsvc.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\reg.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2019-11-15 08:49 - 2019-11-15 08:49 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\posetup.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000021304 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000015360 _____ (Microsoft Corporation) C:\Windows\system32\AcXtrnal.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDJPN.DLL
2019-11-15 08:49 - 2019-11-15 08:49 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbd106.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2019-11-15 08:49 - 2019-11-15 08:49 - 000005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2019-11-15 08:49 - 2019-11-15 08:49 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2019-11-15 08:49 - 2019-11-15 08:49 - 000002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 017787904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 009928208 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-11-15 08:48 - 2019-11-15 08:48 - 007904152 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 007849424 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 007600448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 007278592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 007262456 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 006435840 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 006227104 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 006166016 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 005890048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AI.MachineLearning.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 004615616 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2019-11-15 08:48 - 2019-11-15 08:48 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 004047360 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 004005888 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003791360 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003728384 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-11-15 08:48 - 2019-11-15 08:48 - 003703296 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003591208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-11-15 08:48 - 2019-11-15 08:48 - 003387392 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003371928 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003105792 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 003084800 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002988344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2019-11-15 08:48 - 2019-11-15 08:48 - 002871848 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2019-11-15 08:48 - 2019-11-15 08:48 - 002870784 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002772272 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002763016 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002716672 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-11-15 08:48 - 2019-11-15 08:48 - 002703872 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002698768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2019-11-15 08:48 - 2019-11-15 08:48 - 002284032 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002126112 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2019-11-15 08:48 - 2019-11-15 08:48 - 002120704 _____ (Microsoft Corporation) C:\Windows\system32\WpcDesktopMonSvc.dll