Премини към съдържанието

Препоръчан отговор


когато пусна компютъра му няма нищо и след време започват да зареждат неща излизат икони на десктопа и засича.В мозилата и гугъл хром се запазва главна страница (www.searchinme.com).Също като се пусне компютъра това QQime.exe се появява в Task Manager-а и от там го спирам при всяко пускане.

не разполагам с диск за операционната система

FRTS файла:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-05-2017
Ran by Nikola (administrator) on NIKOLA-PC (27-05-2017 14:54:42)
Running from C:\Users\Nikola\Desktop
Loaded Profiles: Nikola (Available Profiles: Nikola)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: "C:\Program Files (x86)\Firefox\Firefox.exe" -osint -url "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfwsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
() C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(AVAST Software) C:\Users\Nikola\AppData\Local\background_fault\aswRD.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
() C:\Program Files\Intel\SUR\QUEENCREEK\esrv.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-10-27] (Qualcomm®Atheros®)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27793888 2017-05-05] (Skype Technologies S.A.)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-04-26] (Valve Corporation)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [background_fault] => C:\Users\Nikola\AppData\Local\background_fault\aswRD.exe [1419576 2017-04-06] (AVAST Software) <===== ATTENTION
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\MountPoints2: {63ea2b4f-24f4-11e7-b756-9b1a3fe8ef5d} - F:\SETUP.EXE
HKLM\...\Providers\jtse0wmv: C:\Program Files (x86)\Prifashnerqagh Helper\local64spl.dll [313344 2017-04-19] ()
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [170360 2017-05-02] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [148016 2017-05-02] (NVIDIA Corporation)
IFEO\GoogleUpdate.exe: [Debugger] 324095823984.exe
IFEO\GoogleUpdaterService.exe: [Debugger] 8736459873644.exe
ShellExecuteHooks: No Name - {E591EECC-233E-11E7-88A1-64006A5CFC23} - C:\Users\Nikola\AppData\Roaming\Zanigh\Sterzoingtujation.dll -> No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 212.25.58.2 212.25.58.8
Tcpip\..\Interfaces\{BC2E77EF-8CF6-4816-BC32-184009B53D70}: [DhcpNameServer] 212.25.58.2 212.25.58.8

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.ourluckysites.com/?type=hp&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.ourluckysites.com/?type=hp&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.ourluckysites.com/?type=hp&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.ourluckysites.com/?type=hp&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.ourluckysites.com/?type=hp&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.ourluckysites.com/?type=hp&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1277645323-528265092-1560178641-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1277645323-528265092-1560178641-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.ourluckysites.com/search/?type=ds&ts=1493115657&z=6cccbbcc8aad678277b24bcg8z9t7ccg2gaweq6w1b&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: 7m3k2im5.default
FF ProfilePath: C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\naweriweentcofise\Profiles\7m3k2im5.default\Profiles\7m3k2im5.default [not found]
FF ProfilePath: C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default [2017-05-27]
FF Homepage: Mozilla\Firefox\Profiles\7m3k2im5.default -> hxxp://www.ourluckysites.com/?type=hp&ts=1495019600&z=1ca1fc2987e8f3ef26f0c1agfz6t0w6e3g8t1w0tft&from=che0812&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH
FF Extension: (Firefox OnBoard) - C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\Extensions\@onboard-v2 [2017-05-05]
FF Extension: (uBlock Origin) - C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\Extensions\uBlock0@raymondhill.net.xpi [2017-05-05]
FF Extension: (Adblock Plus) - C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-05-08]
FF ProfilePath: C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default [2017-05-27]
FF Homepage: Firefox\Firefox\Profiles\7m3k2im5.default -> hxxp://www.searchinme.com/
FF Extension: (SimilarWeb) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\Extensions\@DA3566E2-F709-11E5-8E87-A604BC8E7F8B.xpi [2017-05-09] [not signed]
FF Extension: (HSearch) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\Extensions\@E97YHOMI-FU8L-IM23-VUT9-RVDZT7M8XL8H.xpi [2017-04-21] [not signed]
FF Extension: (FF Adr) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\Extensions\@H99KV4DO-UCCF-9PFO-9ZLK-8RRP4FVOKD9O.xpi [2017-05-09] [not signed]
FF Extension: (Firefox OnBoard) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\Extensions\@onboard-v2 [2017-05-09]
FF Extension: (uBlock Origin) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\Extensions\uBlock0@raymondhill.net.xpi [2017-05-15]
FF Extension: (Adblock Plus) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-05-26]
FF Extension: (Disable TLS Certificate Transparency) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\features\{b2c7083c-4014-43a7-933c-2e7a30eb055f}\disable-cert-transparency@mozilla.org.xpi [2017-04-18]
FF Extension: (Disable Prefetch) - C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\features\{b2c7083c-4014-43a7-933c-2e7a30eb055f}\disable-prefetch@mozilla.org.xpi [2017-04-18]
FF SearchPlugin: C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\searchplugins\startsearch.xml [2017-05-09]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-27] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-27] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Firefox\Firefox.exe

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-10-27] (Windows (R) Win 7 DDK provider) [File not signed]
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [1002552 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfwsa.exe [1824184 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5334432 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [729048 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 BIT; C:\ProgramData\BIT\BIT.dll [1812992 2017-05-26] (TODO: <公司名>) [File not signed] <==== ATTENTION
R2 CSHMDR; C:\Users\Nikola\AppData\Local\CSHMDR\Snare.dll [900096 2017-05-22] (IntertSect Alliance Pty Ltd) [File not signed] <==== ATTENTION
U2 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] ()
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344184 2017-01-24] (Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-05-03] (NVIDIA Corporation)
R2 snare; C:\Users\Nikola\AppData\Local\snare\Snare.dll [898048 2017-05-25] (IntertSect Alliance Pty Ltd) [File not signed] <==== ATTENTION
R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [157456 2017-03-07] ()
R2 terana; C:\Users\Nikola\AppData\Local\terana\terana.dll [908288 2017-05-26] (IntertSect Alliance Pty Ltd) [File not signed] <==== ATTENTION
S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] ()
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WinSAPSvc; C:\Users\Nikola\AppData\Roaming\WinSAPSvc\WinSAP.dll [1887232 2017-05-26] (TODO:  <公司名>) [File not signed] <==== ATTENTION

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [73992 2016-10-23] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313088 2017-02-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [298240 2016-11-30] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [253184 2017-04-11] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-10-27] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2017-04-19] (Disc Soft Ltd)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-05-03] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-05-03] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [59448 2017-04-20] (NVIDIA Corporation)
S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2016-10-18] ()
S1 iSafeKrnlMon; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [X] <==== ATTENTION
U0 Partizan; system32\drivers\Partizan.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-05-27 14:54 - 2017-05-27 14:55 - 00019113 _____ C:\Users\Nikola\Desktop\FRST.txt
2017-05-27 14:44 - 2017-05-27 14:54 - 00000000 ____D C:\FRST
2017-05-27 14:43 - 2017-05-27 14:43 - 02429952 _____ (Farbar) C:\Users\Nikola\Desktop\FRST64.exe
2017-05-26 13:43 - 2017-05-26 13:43 - 00000000 ____D C:\Users\Nikola\AppData\Local\terana
2017-05-25 17:42 - 2017-05-25 17:42 - 00000000 ____D C:\Users\Nikola\AppData\LocalLow\KMPlayer
2017-05-25 11:26 - 2017-05-26 13:39 - 00000000 ____D C:\Program Files (x86)\{3DB0175D-38AA-44E0-8376-BDB6DB15C5A1}
2017-05-25 11:26 - 2017-05-25 11:26 - 00000000 ____D C:\Cosusp
2017-05-24 15:39 - 2017-05-24 16:17 - 00000000 ____D C:\Users\Nikola\Desktop\asdasd
2017-05-24 13:53 - 2017-05-25 11:14 - 00000000 ____D C:\Program Files (x86)\{FE995DF2-5F1D-404A-BAB6-45AFCC56729E}
2017-05-23 14:17 - 2017-05-24 09:52 - 00000000 ____D C:\Program Files (x86)\{5B0DB57B-51D4-4011-B1C6-B50ED4B84258}
2017-05-23 14:17 - 2017-05-23 14:17 - 00000000 ____D C:\Jopetiondipas
2017-05-22 18:53 - 2017-05-23 14:07 - 00000000 ____D C:\Program Files (x86)\{DF4A18EE-62DD-4BAC-83EB-26B8CE8F908F}
2017-05-22 18:53 - 2017-05-22 18:53 - 00000000 ____D C:\Program Files\79qotswx
2017-05-22 14:52 - 2017-05-23 14:07 - 00000000 ____D C:\Program Files (x86)\{37DB9FCF-D7B2-4022-85CB-F7F8FC6BDDF9}
2017-05-22 14:51 - 2017-05-22 14:51 - 00000000 ____D C:\Program Files\9ebwin1j
2017-05-22 10:51 - 2017-05-23 14:07 - 00000000 ____D C:\Program Files (x86)\{F5EB70C9-3A5F-4F14-B277-6B75E1A766D9}
2017-05-22 10:38 - 2017-05-22 10:50 - 00000000 ____D C:\Program Files (x86)\{777BB9AA-B320-4BA9-95D7-8DF6FEBFEC11}
2017-05-21 00:15 - 2017-05-21 00:15 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Macromedia
2017-05-21 00:15 - 2017-05-21 00:15 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Adobe
2017-05-21 00:15 - 2017-05-21 00:15 - 00000000 ____D C:\Users\Nikola\AppData\Local\Macromedia
2017-05-21 00:12 - 2017-05-21 00:12 - 00082164 _____ C:\Users\Nikola\Desktop\Zeitgeist Moving Forward (2011) DVDRip XviD-P2P.rar
2017-05-20 23:28 - 2017-05-20 23:28 - 00000000 ____D C:\Users\Nikola\AppData\LocalLow\uTorrent
2017-05-20 22:21 - 2017-05-20 22:21 - 00037138 _____ C:\Users\Nikola\Desktop\The.Fate.of.the.Furious.2017.576p.HDRip.x264.AAC-OzZY1.rar
2017-05-20 22:07 - 2017-05-27 14:14 - 00803320 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-05-20 22:07 - 2017-05-27 14:14 - 00144888 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-20 22:07 - 2017-05-27 14:14 - 00004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-05-20 22:07 - 2017-05-27 14:14 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-05-20 22:07 - 2017-05-27 14:14 - 00000000 ____D C:\Windows\system32\Macromed
2017-05-20 22:06 - 2017-05-27 14:14 - 00000000 ____D C:\Users\Nikola\AppData\Local\Adobe
2017-05-19 21:19 - 2017-05-19 21:19 - 00000000 ____D C:\Program Files\w618ptk5
2017-05-19 21:19 - 2017-05-19 21:19 - 00000000 ____D C:\Program Files (x86)\{3A5D3F39-D543-4823-81B2-EC1FE2B01AF2}
2017-05-19 14:16 - 2017-05-26 13:43 - 00000000 ____D C:\Program Files\MK
2017-05-19 14:16 - 2017-05-20 09:10 - 00000000 ____D C:\Program Files (x86)\{D803F3B3-713D-4A6A-9795-83E2F588FC68}
2017-05-19 10:19 - 2017-05-27 14:14 - 00000000 ____D C:\Users\Nikola\AppData\LocalLow\Mozilla
2017-05-19 10:17 - 2017-05-19 10:17 - 00000000 ____D C:\Users\Nikola\AppData\Local\BMExplorer
2017-05-19 10:16 - 2017-05-19 10:16 - 00000000 ____D C:\Users\Nikola\Documents\Bluetooth Folder
2017-05-19 10:16 - 2017-05-19 10:16 - 00000000 ____D C:\Program Files\Common Files\AV
2017-05-18 18:36 - 2017-05-22 18:53 - 00000000 ____D C:\Users\Nikola\AppData\Local\CSHMDR
2017-05-18 18:36 - 2017-05-19 10:16 - 00000000 ____D C:\Program Files (x86)\{A4E0DBF7-4385-4767-8B72-A7A082ACD12E}
2017-05-18 18:36 - 2017-05-18 18:36 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\go00001
2017-05-18 18:36 - 2017-05-18 18:36 - 00000000 ____D C:\Reimward
2017-05-17 18:09 - 2017-05-17 18:09 - 00000000 ____D C:\Program Files (x86)\{10531AA0-E11F-4B1B-87A2-7B6E28059C96}
2017-05-17 18:08 - 2017-05-17 18:08 - 00000000 ____D C:\Program Files\t9dlfshk
2017-05-17 17:52 - 2017-05-17 17:52 - 00000000 ____D C:\Users\Nikola\Documents\League of Legends
2017-05-17 14:08 - 2017-05-17 14:08 - 00000000 ____D C:\Users\Nikola\AppData\Local\CEF
2017-05-17 14:07 - 2017-05-19 10:16 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Atheros
2017-05-17 14:07 - 2017-05-17 14:07 - 00000000 ____D C:\Program Files (x86)\{B6073E2B-A8CC-4420-940F-4A57D5A84069}
2017-05-16 14:16 - 2017-05-26 13:40 - 00000000 ____D C:\Users\Nikola\AppData\Local\CWASRE
2017-05-16 14:14 - 2017-05-16 14:14 - 00000000 ____D C:\Terward
2017-05-14 15:18 - 2017-05-22 10:42 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\BSplayer
2017-05-14 15:18 - 2017-05-14 15:18 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\BSplayer Pro
2017-05-14 15:18 - 2017-05-14 15:18 - 00000000 ____D C:\Program Files (x86)\Webteh
2017-05-12 16:14 - 2017-05-12 16:14 - 00000000 ____D C:\Program Files (x86)\{26D94659-9D28-420F-BD81-D090FF430B8F}
2017-05-12 14:48 - 2017-05-12 14:48 - 00003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-12 14:47 - 2017-05-03 23:21 - 00175736 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-05-12 14:47 - 2017-05-03 23:21 - 00143480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-05-12 14:47 - 2017-05-03 23:21 - 00048248 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2017-05-11 14:07 - 2017-05-11 14:07 - 00000000 _____ C:\Windows\SysWOW64\3333333
2017-05-11 14:06 - 2017-05-11 14:06 - 00000000 _____ C:\Windows\SysWOW64\1111111
2017-05-11 14:06 - 2017-05-11 14:06 - 00000000 _____ C:\Windows\SysWOW64\11
2017-05-11 14:06 - 2017-05-11 14:06 - 00000000 _____ C:\Windows\SysWOW64\00
2017-05-11 13:39 - 2017-05-26 13:40 - 00000000 ____D C:\Users\Nikola\AppData\Local\NPASRE
2017-05-11 13:39 - 2017-05-11 13:39 - 00000000 ____D C:\Reerdition
2017-05-11 13:39 - 2017-05-11 13:39 - 00000000 ____D C:\Program Files (x86)\{351F1D18-6EC3-499E-8A6B-318E90A0700D}
2017-05-10 18:04 - 2017-05-10 18:04 - 00000000 ____D C:\Program Files (x86)\{AC016B5E-206E-4300-9E54-31480AFAA4A1}
2017-05-10 14:20 - 2017-04-28 04:14 - 05547240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-05-10 14:20 - 2017-04-28 04:14 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-05-10 14:20 - 2017-04-28 04:14 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-05-10 14:20 - 2017-04-28 04:14 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-05-10 14:20 - 2017-04-28 04:14 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-05-10 14:20 - 2017-04-28 04:11 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:36 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-05-10 14:20 - 2017-04-28 03:36 - 03945192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-05-10 14:20 - 2017-04-28 03:34 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:19 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-05-10 14:20 - 2017-04-28 03:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-05-10 14:20 - 2017-04-28 03:19 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-05-10 14:20 - 2017-04-28 03:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-05-10 14:20 - 2017-04-28 03:15 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-05-10 14:20 - 2017-04-28 03:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-05-10 14:20 - 2017-04-28 03:12 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-05-10 14:20 - 2017-04-28 03:11 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-05-10 14:20 - 2017-04-28 03:11 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-05-10 14:20 - 2017-04-28 03:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-05-10 14:20 - 2017-04-28 03:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-05-10 14:20 - 2017-04-28 03:10 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-05-10 14:20 - 2017-04-28 03:08 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-05-10 14:20 - 2017-04-28 03:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-05-10 14:20 - 2017-04-28 03:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-05-10 14:20 - 2017-04-28 03:08 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-05-10 14:20 - 2017-04-28 03:07 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-10 14:20 - 2017-04-26 17:59 - 03220992 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-05-10 14:20 - 2017-04-21 18:34 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2017-05-10 14:20 - 2017-04-21 18:15 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2017-05-10 14:20 - 2017-04-20 03:00 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-05-10 14:20 - 2017-04-20 02:16 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 02065408 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00876544 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2017-05-10 14:20 - 2017-04-17 18:12 - 01417728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2017-05-10 14:20 - 2017-04-17 18:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2017-05-10 14:20 - 2017-04-17 18:12 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2017-05-10 14:20 - 2017-04-17 17:54 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2017-05-10 14:20 - 2017-04-16 12:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-05-10 14:20 - 2017-04-16 12:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-05-10 14:20 - 2017-04-16 11:57 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-05-10 14:20 - 2017-04-16 11:55 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-05-10 14:20 - 2017-04-16 11:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-05-10 14:20 - 2017-04-16 11:54 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-05-10 14:20 - 2017-04-16 11:54 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-05-10 14:20 - 2017-04-16 11:51 - 02899456 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-05-10 14:20 - 2017-04-16 11:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-05-10 14:20 - 2017-04-16 11:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-05-10 14:20 - 2017-04-16 11:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-05-10 14:20 - 2017-04-16 11:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-05-10 14:20 - 2017-04-16 11:37 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-05-10 14:20 - 2017-04-16 11:36 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-05-10 14:20 - 2017-04-16 11:36 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-05-10 14:20 - 2017-04-16 11:35 - 25741312 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-05-10 14:20 - 2017-04-16 11:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-10 14:20 - 2017-04-16 11:21 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-05-10 14:20 - 2017-04-16 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-05-10 14:20 - 2017-04-16 11:18 - 05977600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-05-10 14:20 - 2017-04-16 11:11 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-10 14:20 - 2017-04-16 11:10 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-05-10 14:20 - 2017-04-16 11:09 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-05-10 14:20 - 2017-04-16 11:04 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-05-10 14:20 - 2017-04-16 11:03 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-05-10 14:20 - 2017-04-16 11:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-05-10 14:20 - 2017-04-16 11:01 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-05-10 14:20 - 2017-04-16 11:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-05-10 14:20 - 2017-04-16 11:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-05-10 14:20 - 2017-04-16 11:00 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-05-10 14:20 - 2017-04-16 11:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-05-10 14:20 - 2017-04-16 10:57 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-05-10 14:20 - 2017-04-16 10:53 - 02290176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-05-10 14:20 - 2017-04-16 10:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-05-10 14:20 - 2017-04-16 10:52 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-05-10 14:20 - 2017-04-16 10:49 - 20278272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-05-10 14:20 - 2017-04-16 10:48 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-05-10 14:20 - 2017-04-16 10:47 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-05-10 14:20 - 2017-04-16 10:47 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-05-10 14:20 - 2017-04-16 10:46 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-05-10 14:20 - 2017-04-16 10:43 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-05-10 14:20 - 2017-04-16 10:40 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-05-10 14:20 - 2017-04-16 10:40 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-05-10 14:20 - 2017-04-16 10:37 - 02132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-05-10 14:20 - 2017-04-16 10:37 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-05-10 14:20 - 2017-04-16 10:35 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-05-10 14:20 - 2017-04-16 10:30 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-05-10 14:20 - 2017-04-16 10:29 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2017-05-10 14:20 - 2017-04-16 10:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-05-10 14:20 - 2017-04-16 10:25 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-05-10 14:20 - 2017-04-16 10:24 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-05-10 14:20 - 2017-04-16 10:22 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-05-10 14:20 - 2017-04-16 10:20 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-05-10 14:20 - 2017-04-16 10:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-05-10 14:20 - 2017-04-16 10:10 - 15250944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-05-10 14:20 - 2017-04-16 10:10 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-05-10 14:20 - 2017-04-16 10:08 - 04548608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-05-10 14:20 - 2017-04-16 10:08 - 02057216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-05-10 14:20 - 2017-04-16 10:08 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-05-10 14:20 - 2017-04-16 10:04 - 03241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-05-10 14:20 - 2017-04-16 09:53 - 13661184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-05-10 14:20 - 2017-04-16 09:50 - 01544704 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-05-10 14:20 - 2017-04-16 09:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-05-10 14:20 - 2017-04-16 09:37 - 02767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-05-10 14:20 - 2017-04-16 09:34 - 01314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-05-10 14:20 - 2017-04-16 09:34 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 01483776 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2017-05-10 14:20 - 2017-04-12 18:26 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2017-05-10 14:20 - 2017-04-12 18:25 - 01176064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2017-05-10 14:20 - 2017-04-12 18:25 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2017-05-10 14:20 - 2017-04-12 18:25 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2017-05-10 14:20 - 2017-04-07 18:34 - 00986856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-05-10 14:20 - 2017-04-07 18:34 - 00265448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-05-10 14:20 - 2017-04-07 18:30 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-05-10 14:20 - 2017-04-07 18:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2017-05-10 14:20 - 2017-04-07 18:22 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-05-10 14:20 - 2017-04-05 17:55 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-05-10 14:20 - 2017-04-05 17:55 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-05-10 14:20 - 2017-04-05 17:55 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-05-10 14:20 - 2017-04-04 18:34 - 01895656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-05-10 14:20 - 2017-04-04 18:34 - 00377576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2017-05-10 14:20 - 2017-04-04 18:34 - 00287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2017-05-10 14:20 - 2017-04-04 17:53 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2017-05-10 14:20 - 2017-04-04 17:53 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-05-10 14:20 - 2017-03-10 19:32 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2017-05-10 14:20 - 2017-03-10 19:32 - 00300544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2017-05-10 14:20 - 2017-03-10 19:20 - 01508352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2017-05-10 14:20 - 2017-03-10 19:20 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2017-05-10 14:20 - 2017-03-10 18:57 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2017-05-10 14:20 - 2017-03-10 18:55 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2017-05-10 14:20 - 2017-03-10 18:55 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2017-05-10 14:20 - 2017-03-09 19:34 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-05-10 14:20 - 2017-03-09 19:19 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-05-10 14:03 - 2017-05-10 14:03 - 00000000 ____D C:\Program Files (x86)\{5D99A23C-122C-4D42-AB91-769AC3A8412C}
2017-05-09 18:30 - 2017-05-09 18:36 - 00000000 ____D C:\Users\Nikola\AppData\Local\ElevatedDiagnostics
2017-05-09 16:24 - 2017-05-27 09:43 - 00000000 ____D C:\Program Files (x86)\Firefox
2017-05-09 16:23 - 2017-05-24 15:53 - 00000000 _____ C:\Windows\SysWOW64\1111
2017-05-09 14:33 - 2017-05-09 14:33 - 00000000 ____D C:\Reaqapytegupy
2017-05-08 23:00 - 2017-05-08 23:00 - 00000000 ____D C:\Program Files\w2noaz4p
2017-05-08 23:00 - 2017-05-08 23:00 - 00000000 ____D C:\Program Files (x86)\{E544189C-D91D-4F8E-9806-B742F46A3766}
2017-05-08 21:12 - 2017-05-08 21:17 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Winamp
2017-05-08 21:12 - 2017-05-08 21:12 - 00000979 _____ C:\Users\Public\Desktop\Winamp.lnk
2017-05-08 21:12 - 2017-05-08 21:12 - 00000000 ____D C:\Program Files (x86)\Winamp
2017-05-08 18:59 - 2017-05-08 18:59 - 00000000 ____D C:\Program Files (x86)\{525BDD8F-6E82-42C3-81A5-7146AA96B684}
2017-05-06 12:58 - 2017-05-24 10:07 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2017-05-05 19:26 - 2017-05-05 19:26 - 00000000 ____D C:\Windows\SysWOW64\NV
2017-05-05 19:26 - 2017-05-05 19:26 - 00000000 ____D C:\Windows\system32\NV
2017-05-05 19:24 - 2017-05-05 19:24 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-05-05 19:24 - 2017-03-11 00:17 - 00536864 _____ C:\Windows\system32\vulkan-1.dll
2017-05-05 19:24 - 2017-03-11 00:17 - 00525600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-05-05 19:24 - 2017-03-11 00:17 - 00254240 _____ C:\Windows\system32\vulkaninfo.exe
2017-05-05 19:24 - 2017-03-11 00:17 - 00233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-05-05 19:23 - 2017-05-01 23:51 - 06437312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 02479552 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 01762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00548800 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00069752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-05-05 19:23 - 2017-04-26 00:11 - 07944687 _____ C:\Windows\system32\nvcoproc.bin
2017-05-05 19:21 - 2017-05-02 01:32 - 40201848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 35348600 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 35281528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 28592760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 20063696 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 17423240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 16434624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 14270072 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2017-05-05 19:21 - 2017-05-02 01:32 - 13401256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 11056456 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 11024384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 10547624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 09245560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 09014792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 08805416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 04075936 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 03592312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 03432896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 03012032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 01988032 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438205.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438205.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 01053816 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00991168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00960960 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00911992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00688968 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00609728 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00577728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00507504 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00499136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00491024 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00426128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00406736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00170360 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00153368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00131720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00042897 _____ C:\Windows\system32\nvinfo.pb
2017-05-05 19:21 - 2017-05-02 01:32 - 00038336 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2017-05-05 19:21 - 2017-05-02 01:32 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2017-05-05 19:21 - 2017-05-02 01:32 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2017-05-05 19:09 - 2017-05-03 18:41 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2017-05-05 18:45 - 2017-05-05 18:47 - 00000000 ____D C:\Users\Nikola\AppData\Local\NVIDIA
2017-05-05 18:43 - 2017-05-05 18:45 - 00000000 ____D C:\Users\Nikola\AppData\Local\NVIDIA Corporation
2017-05-05 18:39 - 2017-05-12 14:48 - 00001412 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-05-05 18:38 - 2017-05-12 14:48 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:38 - 2017-05-12 14:48 - 00003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:38 - 2017-05-03 23:21 - 01893496 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 01755256 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 01477240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 01317496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 00121464 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2017-05-05 18:37 - 2017-05-12 14:47 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-03 22:28 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2017-05-05 18:34 - 2017-04-20 04:57 - 00059448 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-05-05 17:04 - 2017-05-05 17:04 - 00000000 ____D C:\Windows\psgo
2017-05-05 13:53 - 2017-05-09 16:25 - 00001930 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-05-05 13:53 - 2017-05-07 13:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-05-05 13:53 - 2017-05-06 22:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-05-05 13:52 - 2017-05-05 13:52 - 00179832 _____ (Mozilla) C:\Users\Nikola\Downloads\Firefox Installer.exe
2017-05-05 13:34 - 2017-05-05 13:34 - 00000355 _____ C:\Users\Nikola\Desktop\Computer - Shortcut.lnk
2017-05-05 13:32 - 2017-05-05 14:13 - 00000000 ____D C:\Program Files (x86)\UnHackMe
2017-05-05 13:32 - 2017-05-05 13:49 - 00000000 ____D C:\Users\Nikola\Documents\RegRun2
2017-05-05 13:32 - 2017-05-05 13:32 - 00000002 RSHOT C:\Windows\winstart.bat
2017-05-05 13:32 - 2017-05-05 13:32 - 00000002 RSHOT C:\Windows\SysWOW64\CONFIG.NT
2017-05-05 13:32 - 2017-05-05 13:32 - 00000002 RSHOT C:\Windows\SysWOW64\AUTOEXEC.NT
2017-05-05 13:28 - 2017-05-05 13:30 - 18656117 _____ C:\Users\Nikola\Downloads\unhackme.zip
2017-05-05 13:11 - 2017-05-19 10:18 - 00000000 ____D C:\Users\Nikola\AppData\Local\WANARE
2017-05-05 11:00 - 2017-05-05 11:00 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\AVG
2017-05-05 10:59 - 2017-05-06 13:05 - 00000936 _____ C:\Users\Public\Desktop\AVG Protection.lnk
2017-05-05 10:58 - 2017-05-05 10:58 - 00000000 ___HD C:\$AVG
2017-05-05 10:57 - 2017-05-05 10:57 - 00000000 ____D C:\Users\Nikola\AppData\Local\MFAData
2017-05-05 10:53 - 2017-05-05 10:57 - 00000000 ____D C:\Program Files (x86)\AVG
2017-05-05 10:52 - 2017-05-06 13:03 - 00000000 ____D C:\Users\Nikola\AppData\Local\Avg
2017-05-05 10:52 - 2017-05-05 10:57 - 00000000 ____D C:\Users\Nikola\AppData\Local\AvgSetupLog
2017-05-04 21:46 - 2017-05-04 21:46 - 00000136 _____ C:\Users\Nikola\Desktop\Spider Solitaire - Shortcut.lnk
2017-05-04 21:44 - 2017-05-04 21:44 - 00000000 ____D C:\Program Files\8lhrdwbv
2017-05-04 15:59 - 2017-05-21 21:26 - 00000000 ____D C:\Windows\system32\appmgmt
2017-05-04 13:36 - 2017-05-27 14:53 - 00000000 ____D C:\Users\Nikola\AppData\Local\background_fault
2017-05-04 13:36 - 2017-05-17 14:06 - 00000000 ____D C:\Users\Nikola\AppData\Local\SANARE
2017-05-04 13:35 - 2017-05-04 13:35 - 00000000 ____D C:\Program Files (x86)\{32AB01D9-ACD6-4A3F-8A9D-6D1C406FA4A2}
2017-05-03 18:17 - 2017-05-12 15:02 - 00000000 ____D C:\Users\Nikola\Desktop\kola
2017-05-03 14:20 - 2017-05-03 14:20 - 00002068 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-03 07:23 - 2017-05-03 07:23 - 00000622 _____ C:\Users\Nikola\Desktop\Solitaire - Shortcut.lnk
2017-05-02 21:26 - 2017-05-02 21:26 - 00000000 ____D C:\Program Files\p3erxciv
2017-05-02 15:10 - 2017-05-02 15:17 - 00000000 ____D C:\Users\Nikola\AppData\Local\Google
2017-05-02 15:10 - 2017-05-02 15:10 - 00000000 ____D C:\Users\Nikola\AppData\Local\Boxbob
2017-05-02 14:26 - 2017-05-02 14:26 - 00000000 ____D C:\Program Files (x86)\{BB4DF102-33D7-44DC-8E5A-62FB67D3A6A9}
2017-04-28 13:53 - 2017-04-28 13:53 - 00000000 ____D C:\NVIDIA
2017-04-28 13:19 - 2017-04-28 13:48 - 396903680 _____ (NVIDIA Corporation) C:\Users\Nikola\Desktop\381.89-notebook-win8-win7-64bit-international-whql.exe
2017-04-28 13:17 - 2017-04-28 13:17 - 00000017 _____ C:\Users\Nikola\AppData\Local\resmon.resmoncfg
2017-04-28 13:00 - 2017-04-28 13:00 - 00000000 ____D C:\Program Files (x86)\{BC9BCDF6-4CB6-4E6B-9063-65E091E5B576}
2017-04-28 12:58 - 2017-04-28 12:58 - 00000000 ____D C:\Program Files (x86)\{DC593EB0-3CAF-410D-9B7C-0887A24B902C}
2017-04-27 21:29 - 2017-04-27 21:29 - 00000000 ____D C:\Program Files\l0t9qt4c
2017-04-27 21:29 - 2017-04-27 21:29 - 00000000 ____D C:\Program Files (x86)\{1918FB81-D03B-43D8-A62D-8DC490729152}
2017-04-27 17:28 - 2017-04-27 17:28 - 00000000 ____D C:\Program Files\x5idyw9o
2017-04-27 17:28 - 2017-04-27 17:28 - 00000000 ____D C:\Program Files (x86)\{74EFC18B-1A21-4E0C-AAAF-4C7FEDD35918}
2017-04-27 13:34 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2017-04-27 13:34 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2017-04-27 13:34 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2017-04-27 13:34 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2017-04-27 13:34 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2017-04-27 13:34 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2017-04-27 13:34 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2017-04-27 13:34 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2017-04-27 13:34 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2017-04-27 13:34 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2017-04-27 13:34 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2017-04-27 13:34 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2017-04-27 13:34 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2017-04-27 13:34 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2017-04-27 13:34 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2017-04-27 13:34 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2017-04-27 13:34 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2017-04-27 13:34 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2017-04-27 13:34 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2017-04-27 13:34 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2017-04-27 13:34 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2017-04-27 13:34 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2017-04-27 13:34 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2017-04-27 13:34 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2017-04-27 13:34 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2017-04-27 13:34 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2017-04-27 13:34 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2017-04-27 13:34 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2017-04-27 13:34 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2017-04-27 13:34 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2017-04-27 13:34 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2017-04-27 13:34 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2017-04-27 13:34 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2017-04-27 13:34 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2017-04-27 13:34 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2017-04-27 13:34 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2017-04-27 13:34 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2017-04-27 13:34 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2017-04-27 13:34 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2017-04-27 13:34 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2017-04-27 13:34 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2017-04-27 13:34 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2017-04-27 13:34 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2017-04-27 13:34 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2017-04-27 13:34 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2017-04-27 13:34 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2017-04-27 13:34 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2017-04-27 13:34 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2017-04-27 13:34 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2017-04-27 13:34 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2017-04-27 13:34 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2017-04-27 13:34 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2017-04-27 13:34 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2017-04-27 13:34 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2017-04-27 13:34 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2017-04-27 13:34 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2017-04-27 13:34 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2017-04-27 13:34 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2017-04-27 13:34 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2017-04-27 13:34 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2017-04-27 13:34 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2017-04-27 13:34 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2017-04-27 13:34 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2017-04-27 13:34 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2017-04-27 13:34 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2017-04-27 13:34 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2017-04-27 13:34 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2017-04-27 13:34 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2017-04-27 13:34 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2017-04-27 13:34 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2017-04-27 13:34 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2017-04-27 13:34 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2017-04-27 13:34 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2017-04-27 13:34 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2017-04-27 13:34 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2017-04-27 13:34 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2017-04-27 13:34 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2017-04-27 13:34 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2017-04-27 13:34 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2017-04-27 13:34 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2017-04-27 13:34 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2017-04-27 13:34 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2017-04-27 13:34 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2017-04-27 13:34 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2017-04-27 13:34 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2017-04-27 13:34 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2017-04-27 13:34 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2017-04-27 13:34 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2017-04-27 13:34 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2017-04-27 13:34 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2017-04-27 13:34 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2017-04-27 13:34 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2017-04-27 13:34 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2017-04-27 13:34 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2017-04-27 13:34 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2017-04-27 13:34 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2017-04-27 13:34 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2017-04-27 13:34 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2017-04-27 13:34 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2017-04-27 13:34 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2017-04-27 13:34 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2017-04-27 13:34 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2017-04-27 13:34 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2017-04-27 13:34 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2017-04-27 13:34 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2017-04-27 13:34 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2017-04-27 13:34 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2017-04-27 13:34 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2017-04-27 13:34 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2017-04-27 13:34 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2017-04-27 13:34 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2017-04-27 13:34 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2017-04-27 13:34 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2017-04-27 13:34 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2017-04-27 13:34 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2017-04-27 13:34 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2017-04-27 13:34 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2017-04-27 13:34 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2017-04-27 13:34 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2017-04-27 13:34 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2017-04-27 13:34 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2017-04-27 13:34 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2017-04-27 13:34 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2017-04-27 13:34 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2017-04-27 13:34 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2017-04-27 13:34 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2017-04-27 13:33 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2017-04-27 13:33 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2017-04-27 13:33 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2017-04-27 13:33 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2017-04-27 13:33 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2017-04-27 13:33 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2017-04-27 13:33 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2017-04-27 13:33 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2017-04-27 13:33 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2017-04-27 13:33 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2017-04-27 13:33 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2017-04-27 13:33 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2017-04-27 13:33 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2017-04-27 13:33 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2017-04-27 13:33 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2017-04-27 13:33 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2017-04-27 13:33 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2017-04-27 13:33 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2017-04-27 13:33 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2017-04-27 13:33 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2017-04-27 13:33 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2017-04-27 13:33 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-05-27 14:55 - 2017-04-16 23:43 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Skype
2017-05-27 14:54 - 2017-04-17 17:53 - 00000000 ____D C:\Program Files (x86)\Steam
2017-05-27 14:53 - 2017-04-16 22:56 - 00000000 __SHD C:\Users\Nikola\IntelGraphicsProfiles
2017-05-27 14:52 - 2009-07-14 08:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-05-27 10:23 - 2009-07-14 07:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-05-27 10:23 - 2009-07-14 07:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-05-26 13:43 - 2017-04-20 13:36 - 00003598 _____ C:\Windows\System32\Tasks\Milimili
2017-05-26 13:43 - 2017-04-20 13:36 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\WinSAPSvc
2017-05-26 13:43 - 2017-04-17 11:04 - 00000000 ____D C:\Users\Nikola\AppData\Local\CrashDumps
2017-05-25 17:42 - 2017-04-22 20:42 - 00000000 ____D C:\KMPlayer
2017-05-25 13:29 - 2017-04-21 13:26 - 00000000 _____ C:\Users\Public\Documents\temp.dat
2017-05-25 13:29 - 2017-04-21 13:26 - 00000000 _____ C:\Users\Public\Documents\report.dat
2017-05-25 13:28 - 2017-04-20 13:36 - 00000000 ____D C:\Users\Nikola\AppData\Local\SNARE
2017-05-25 11:17 - 2017-04-18 16:23 - 00109280 _____ C:\Users\Nikola\AppData\Local\GDIPFONTCACHEV1.DAT
2017-05-24 13:52 - 2017-04-21 13:25 - 00000000 ____D C:\Program Files\mrcmzud0
2017-05-22 10:50 - 2009-07-14 07:45 - 00408800 _____ C:\Windows\system32\FNTCACHE.DAT
2017-05-21 00:28 - 2017-04-19 20:40 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\uTorrent
2017-05-17 14:10 - 2017-04-16 23:42 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-05-17 14:10 - 2017-04-16 21:23 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Mozilla
2017-05-17 14:08 - 2017-04-16 21:37 - 00000000 ____D C:\Intel
2017-05-13 13:20 - 2017-04-20 13:36 - 00000000 ____D C:\Program Files (x86)\MIO
2017-05-12 16:49 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\rescache
2017-05-12 15:00 - 2009-07-14 08:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2017-05-12 15:00 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\inf
2017-05-12 14:59 - 2009-07-14 06:20 - 00000000 __RHD C:\Users\Public\Libraries
2017-05-12 14:48 - 2017-04-16 22:06 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-05-12 14:48 - 2017-04-16 22:04 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-05-11 13:27 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2017-05-09 18:36 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\system32\NDF
2017-05-09 14:24 - 2009-07-14 08:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2017-05-06 12:49 - 2017-04-16 21:23 - 00000000 ____D C:\Users\Nikola\AppData\Local\Mozilla
2017-05-05 21:02 - 2017-04-19 20:58 - 00000000 ____D C:\Program Files (x86)\Lerjudom
2017-05-05 19:23 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\Help
2017-05-05 17:04 - 2017-04-21 13:31 - 00003506 _____ C:\Windows\System32\Tasks\Windows-PG
2017-05-05 16:58 - 2017-04-26 14:30 - 00000000 ____D C:\Insist
2017-05-04 00:56 - 2017-04-17 14:28 - 00000000 ___RD C:\Users\Nikola\Desktop\driveri

==================== Files in the root of some directories =======

2017-04-16 21:54 - 2017-04-16 21:55 - 0023325 _____ () C:\Users\Nikola\AppData\Local\HWVendorDetection.log
2017-04-28 13:17 - 2017-04-28 13:17 - 0000017 _____ () C:\Users\Nikola\AppData\Local\resmon.resmoncfg

Files to move or delete:
====================
C:\Users\Nikola\AppData\Local\background_fault\aswRD.exe


Some files in TEMP:
====================
2010-03-16 17:12 - 2010-03-16 17:12 - 0174440 ____R (Microsoft Corporation) C:\Users\Nikola\AppData\Local\Temp\ose00000.exe
2017-04-16 23:38 - 2017-04-16 23:39 - 14456872 _____ (Microsoft Corporation) C:\Users\Nikola\AppData\Local\Temp\vc_redist.x86.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-05-24 10:29

==================== End of FRST.txt ============================

Addition.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравейте и добре дошли в нашия подраздел..! :)

Вашата система е заразена ..В момента анализирам генерираните дневници и по късно ще напиша инструкции за по нататъшно действие..!

Преди да започнем, моля, прочетете и искрено се надявам да следвате тези важни насоки, така че нещата да преминат  плавно и безпроблемно.

  • Инструкциите които ще Ви  давам, ще са само за вашия компютър и само за вашата система! Използването на тези инструкции на друг компютър могат да доведат до увреждане на този компютър и евентуално да го направи неизползваем !
  • Моля да следвате инструкциите ми в реда в който ги давам.
  • Трябва да имате права на администратор за този компютър,инструментите които ще използваме се стартират единствено от името на администратор.
  • Не стартирайте никакви други инструменти за премахване на зловреден софтуер, освен ако не сте инструктирани!
  • Не инсталирайте  софтуер (или хардуер) по време на процеса на почистване,както и не сваляйте или сканирай те с нищо  вашата система, защото към нея се  добавят повече елементи.Това прави анализа по-труден.
  • Вашите програми за сигурност могат да дават предупреждения за някои от инструментите които използваме.  Бъдете сигурни, всички връзки които давам за изтегляне на инструментите както и самите те, са безопасни.
  •  Моля,по възможност да отговаряте в темата  докато не ви потвърдя че тя е  " Чиста !"
  • Липсата на симптоми не означава, че всичко е чисто.

Моля, имайте предвид, че премахването на зловреден софтуер е непредвидим процес.. Аз ще се погрижа да ви  предложа начини на действие, които не могат да повредят вашия компютър. Въпреки това, за мен е невъзможно да  предвидя всички взаимодействия, които могат да се случат между софтуера на компютъра ви и инструментите които ще използваме , за да ви изчистим от инфекции, и в някои случаи аз не мога да  гарантирам целостта на вашата система. Възможно е, да възникнат ситуации, в които единственото решение е системата ви да се  форматира и да се преинсталира операционната система.Поради тази причина аз ви съветвам  да направите резервно копие на всички ваши лични файлове и папки, преди да започнем с почистването.

 

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Моля, проверете  на  VirusTotal файловете в карето по долу и публикувайте линк за всеки от тях с  резултатите в следващия си пост.

Цитат

C:\Program Files (x86)\Prifashnerqagh Helper\local64spl.dll

C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe


C:\Program Files (x86)\Lerjudom\xanermuy.exe

C:\Program Files\Intel\SUR\QUEENCREEK\task.vbs

 

 

Сканиране с TDSSKiller
 
kaspersky.gif  Моля, изтеглете последната версия на TDSSKiller оттук и я запазете на вашия декстоп (задължително).
 
 

  • Кликнете на TDSSKiller.exe за да стартирате приложението
  • Натиснете бутона Start Scan.
  •  Не използвайте компютъра по време на сканирането
  •  Ако сканирането завърши с нищо не е намерено, щракнете върху Затвори, за да излезете.
  • Проверката не би трябвало да отмене повече от 2 минути.
  • Ако подозрителен обект бъде засечен, действието по подразбиране ще бъде Skip, кликнете върху Continue.
  • Ако зловредни обекти бъдат намерени, тогава от падащото меню ще имате три възможности.
    Бъдете сигурни, че избраното действие е Cure и натиснете върху Continue > Рестартирайте за да бъде завършена поправката.

    Забележка: Ако Cure бутона не е наличен от възможностите, тогава моля изберете Skip бутона, не избирайте Delete освен ако не сте инструктирани затова.

Лог файл ще бъде създаден в свободната директория на дял C: . Потърсете за лог с името "TDSSKiller.[Version]_[Date]_[Time]_log.txt" и копирайте съдържанието му в следващия си пост.
 

 

aA7bkRO.png Сканиране с aswMBR
 
 
1QYkxTZ.jpg Моля, изтеглете aswMBR и го запазете на вашия десктоп.
 
 

  • Кликнете  на  върху файла aswMBR.exe за да го стартирате.
  • Изчакайте да изтегли дефинициите на avast!
  • Изберете Scan бутона, за да започне проверката.
  • Когато проверката завърши, натиснете бутона save log, запазете съдържанието на лог файла на десктопа и публикувайте съдържанието му в следващия си коментар.

 

pfNZP4A.png  Дневници

В следващия си отговор, моля да включите следните дневници:

  • TDSSKiller.[Version]_[Date]_[Time]_log
  • Лог файл aswMBR

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Резултати от VirusTotal

https://www.virustotal.com/en/file/c172046b924653530f6b7808200bac0e534ebdb66be204a979041b0f09283a18/analysis/1495901481/

https://www.virustotal.com/en/file/c57cc52ee39e8fb21dc82799a0171b2295ccc75f51fe33f075425a89d7ada06a/analysis/1495901645/

https://www.virustotal.com/en/file/e8a8b93d6e6ec4e75a972e5f7eeb9a45365ca1e206e6c37996b2bf013e6e5887/analysis/1495901732/

https://www.virustotal.com/en/file/c67c45355a33fa8b0a07bc5883ae93d1f0af7c43a1a66d337b55837848025258/analysis/1495901888/

 

Резултат от TDSSKiller

19:21:28.0572 0x0c1c  TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02
19:21:30.0617 0x0c1c  ============================================================
19:21:30.0617 0x0c1c  Current date / time: 2017/05/27 19:21:30.0617
19:21:30.0617 0x0c1c  SystemInfo:
19:21:30.0617 0x0c1c  
19:21:30.0617 0x0c1c  OS Version: 6.1.7601 ServicePack: 1.0
19:21:30.0617 0x0c1c  Product type: Workstation
19:21:30.0617 0x0c1c  ComputerName: NIKOLA-PC
19:21:30.0617 0x0c1c  UserName: Nikola
19:21:30.0617 0x0c1c  Windows directory: C:\Windows
19:21:30.0617 0x0c1c  System windows directory: C:\Windows
19:21:30.0617 0x0c1c  Running under WOW64
19:21:30.0617 0x0c1c  Processor architecture: Intel x64
19:21:30.0617 0x0c1c  Number of processors: 4
19:21:30.0617 0x0c1c  Page size: 0x1000
19:21:30.0617 0x0c1c  Boot type: Normal boot
19:21:30.0617 0x0c1c  CodeIntegrityOptions = 0x00000001
19:21:30.0617 0x0c1c  ============================================================
19:21:32.0532 0x0c1c  KLMD registered as C:\Windows\system32\drivers\27598674.sys
19:21:32.0532 0x0c1c  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23796, osProperties = 0x1
19:21:32.0700 0x0c1c  System UUID: {698B52F3-125C-77E7-58C7-F693C0540D13}
19:21:33.0097 0x0c1c  Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:21:33.0100 0x0c1c  ============================================================
19:21:33.0100 0x0c1c  \Device\Harddisk0\DR0:
19:21:33.0101 0x0c1c  MBR partitions:
19:21:33.0101 0x0c1c  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:21:33.0101 0x0c1c  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1866E000
19:21:33.0101 0x0c1c  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x186A0800, BlocksNum 0x5C065800
19:21:33.0101 0x0c1c  ============================================================
19:21:33.0144 0x0c1c  C: <-> \Device\Harddisk0\DR0\Partition2
19:21:33.0178 0x0c1c  D: <-> \Device\Harddisk0\DR0\Partition3
19:21:33.0178 0x0c1c  ============================================================
19:21:33.0178 0x0c1c  Initialize success
19:21:33.0178 0x0c1c  ============================================================
19:21:36.0065 0x0ecc  ============================================================
19:21:36.0065 0x0ecc  Scan started
19:21:36.0065 0x0ecc  Mode: Manual;
19:21:36.0065 0x0ecc  ============================================================
19:21:36.0065 0x0ecc  KSN ping started
19:21:36.0166 0x0ecc  KSN ping finished: true
19:21:37.0469 0x0ecc  ================ Scan system memory ========================
19:21:37.0469 0x0ecc  System memory - ok
19:21:37.0470 0x0ecc  ================ Scan services =============================
19:21:37.0604 0x0ecc  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
19:21:37.0619 0x0ecc  1394ohci - ok
19:21:37.0664 0x0ecc  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
19:21:37.0673 0x0ecc  ACPI - ok
19:21:37.0698 0x0ecc  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
19:21:37.0699 0x0ecc  AcpiPmi - ok
19:21:37.0798 0x0ecc  [ E6A1D864EC90F4397DF5AB2633B34DD4, 05F1B7291EBDD9CA1D74649C0DAFCBE5F2CF93E92C5CA16A8AC10B6DF83101A0 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
19:21:37.0805 0x0ecc  AdobeFlashPlayerUpdateSvc - ok
19:21:37.0861 0x0ecc  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
19:21:37.0873 0x0ecc  adp94xx - ok
19:21:37.0902 0x0ecc  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
19:21:37.0909 0x0ecc  adpahci - ok
19:21:37.0929 0x0ecc  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
19:21:37.0933 0x0ecc  adpu320 - ok
19:21:37.0958 0x0ecc  [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
19:21:37.0960 0x0ecc  AeLookupSvc - ok
19:21:37.0995 0x0ecc  [ 0DC2A9882540DEA4A55B08785E09D8FC, 69B15724B0034F9915AACE109A6C596D6AF2DA350FC18C9A0CD98C81CB7EDEE3 ] AFD             C:\Windows\system32\drivers\afd.sys
19:21:38.0005 0x0ecc  AFD - ok
19:21:38.0047 0x0ecc  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
19:21:38.0049 0x0ecc  agp440 - ok
19:21:38.0076 0x0ecc  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
19:21:38.0078 0x0ecc  ALG - ok
19:21:38.0100 0x0ecc  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
19:21:38.0101 0x0ecc  aliide - ok
19:21:38.0116 0x0ecc  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
19:21:38.0117 0x0ecc  amdide - ok
19:21:38.0137 0x0ecc  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
19:21:38.0139 0x0ecc  AmdK8 - ok
19:21:38.0143 0x0ecc  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
19:21:38.0145 0x0ecc  AmdPPM - ok
19:21:38.0190 0x0ecc  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
19:21:38.0192 0x0ecc  amdsata - ok
19:21:38.0213 0x0ecc  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
19:21:38.0218 0x0ecc  amdsbs - ok
19:21:38.0247 0x0ecc  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
19:21:38.0248 0x0ecc  amdxata - ok
19:21:38.0284 0x0ecc  [ 00D77B30CA9CB1D7793AC952549331A0, 73EF665E1C70B8E66C879203291B28736C928AC5621C8FF79F5CA21DD2E9E159 ] AppID           C:\Windows\system32\drivers\appid.sys
19:21:38.0285 0x0ecc  AppID - ok
19:21:38.0303 0x0ecc  [ 3756F12C129CE5292D633FCD1F7D467E, 0889514E2D6EEC929434BF570BD9B4C26D5715F65A762F1B9F5A2DFFA305018B ] AppIDSvc        C:\Windows\System32\appidsvc.dll
19:21:38.0304 0x0ecc  AppIDSvc - ok
19:21:38.0326 0x0ecc  [ DE23E052E557580674785CDF45B613F3, A955ADC6CC7D816BA7CE1065F911E7A3295A1908C22BE0A3C506C38CFEE8DE0D ] Appinfo         C:\Windows\System32\appinfo.dll
19:21:38.0327 0x0ecc  Appinfo - ok
19:21:38.0370 0x0ecc  [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt         C:\Windows\System32\appmgmts.dll
19:21:38.0373 0x0ecc  AppMgmt - ok
19:21:38.0408 0x0ecc  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
19:21:38.0409 0x0ecc  arc - ok
19:21:38.0427 0x0ecc  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
19:21:38.0429 0x0ecc  arcsas - ok
19:21:38.0526 0x0ecc  [ 49C65599344CCADFD085709745761ED4, F8797F59B752A7F4BD66596DCE178BD993C73B6091A5CE7C9EFA1B557AA950E9 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
19:21:38.0530 0x0ecc  aspnet_state - ok
19:21:38.0580 0x0ecc  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
19:21:38.0581 0x0ecc  AsyncMac - ok
19:21:38.0591 0x0ecc  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
19:21:38.0591 0x0ecc  atapi - ok
19:21:38.0618 0x0ecc  [ 65DD42A358451920A703EEEC1AB4995B, 7690EFB12E928ECF3D3D3155F7D1F7A8FEEE742212ABE5319166EA8DB5601884 ] AthBTPort       C:\Windows\system32\DRIVERS\btath_flt.sys
19:21:38.0620 0x0ecc  AthBTPort - ok
19:21:38.0696 0x0ecc  [ C40795B365D156D395C1A519E73C2D48, AD258EC37516ED92B8FB54BDD99E3172A853000B835B2BF4DC541AD6FC3B625A ] AtherosSvc      C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
19:21:38.0702 0x0ecc  AtherosSvc - ok
19:21:38.0828 0x0ecc  [ CE34A30421C55C0C1EB1CD3EAA908CBD, 1FE5BECCC2EDFF7149134A83CCEEC9DB97BC177486F1552581494AF2B01852F8 ] athr            C:\Windows\system32\DRIVERS\athrx.sys
19:21:38.0900 0x0ecc  athr - ok
19:21:38.0952 0x0ecc  [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
19:21:38.0963 0x0ecc  AudioEndpointBuilder - ok
19:21:38.0985 0x0ecc  [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
19:21:38.0997 0x0ecc  AudioSrv - ok
19:21:39.0106 0x0ecc  [ 998B0EBD7DBF8DDD349ACA0A6D0DF3A9, 9ECE8069F2162C75E834D5F5A27406F9C25DAD2A97308E40F7FC2644EDAAFC95 ] AvgAMPS         C:\Program Files (x86)\AVG\Av\avgamps.exe
19:21:39.0129 0x0ecc  AvgAMPS - ok
19:21:39.0161 0x0ecc  [ EBE91430DEC70E1F81D1C48B31160CAE, DFFF9663D797D7E289EEB5591ACFED49454FAEB9840CBCB319B60043CD989550 ] Avgdiska        C:\Windows\system32\DRIVERS\avgdiska.sys
19:21:39.0164 0x0ecc  Avgdiska - ok
19:21:39.0201 0x0ecc  [ 55640D6FF96EF756C7A03A04973AFAF2, 78A8295DBE85B6C277491F08001AFA8E9F336ED83504CFC7AF49BB20E41EED5F ] Avgfwfd         C:\Windows\system32\DRIVERS\avgfwd6a.sys
19:21:39.0203 0x0ecc  Avgfwfd - ok
19:21:39.0265 0x0ecc  [ 9B78FE508A00ED957BB16CC13E078C14, 2DADEAC7888F850A09B70B468409E38D901D5D5F849AB721B45C3BD6BBB80F7B ] avgfws          C:\Program Files (x86)\AVG\Av\avgfwsa.exe
19:21:39.0296 0x0ecc  avgfws - ok
19:21:39.0466 0x0ecc  [ 90679DCC3A78BF241EAADE95EBB0D658, C0EB7735822B417C681DF3D5A0992ABA449AD0EC9FB58341C14CA15522DE5CC6 ] AVGIDSAgent     C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
19:21:39.0558 0x0ecc  AVGIDSAgent - ok
19:21:39.0580 0x0ecc  [ 88F8D02443D3C853C4177BC59C4CD41F, 2F902FBC75A33D6D060A5D46FF60BC7C29F980175A5EE680B9AC6C196844E81F ] AVGIDSDriver    C:\Windows\system32\DRIVERS\avgidsdrivera.sys
19:21:39.0585 0x0ecc  AVGIDSDriver - ok
19:21:39.0603 0x0ecc  [ D4CCC55958DC87A0F7EF8A809BE5D656, D2CA777B31B894C5C5AC1D8CE088138DE3A69CB342B647649546EA2987F8D20B ] AVGIDSHA        C:\Windows\system32\DRIVERS\avgidsha.sys
19:21:39.0607 0x0ecc  AVGIDSHA - ok
19:21:39.0631 0x0ecc  [ 1DABB9FB732FD97B63C03AC8C3637E8C, 4CC8EE8F7E7677223068E86C32B6AEFE19628A92522E6C395FD3ABF42895DD22 ] Avgldx64        C:\Windows\system32\DRIVERS\avgldx64.sys
19:21:39.0636 0x0ecc  Avgldx64 - ok
19:21:39.0671 0x0ecc  [ 301E95F388C93D3C73EE35E3693C6A97, 512BA2905EDCC900B12037701A120EE527A14894BF562610F3CF57A65D20FCD5 ] Avgloga         C:\Windows\system32\DRIVERS\avgloga.sys
19:21:39.0678 0x0ecc  Avgloga - ok
19:21:39.0689 0x0ecc  [ DC956DB525491AD66C0F578CFEAE046C, B6676B5A539D20023B2D6100A3C067DC6F8D715CC5EE4843C0E1D65FF7CCE6A7 ] Avgmfx64        C:\Windows\system32\DRIVERS\avgmfx64.sys
19:21:39.0693 0x0ecc  Avgmfx64 - ok
19:21:39.0705 0x0ecc  [ 2A0D6982D0492BF6266E64F25C23EAE8, 7400F85784C0658B4DF6C7424E3ACDCF421D8293D247E80D6AEE14FA91EBFBDC ] Avgrkx64        C:\Windows\system32\DRIVERS\avgrkx64.sys
19:21:39.0706 0x0ecc  Avgrkx64 - ok
19:21:39.0780 0x0ecc  [ 77886F050DE9D0296B4BA7D7AD13A0BA, 132DADE478A11207984AF96A7049C872AFB02E46A5B4149050D3BC1A96F995ED ] avgsvc          C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
19:21:39.0800 0x0ecc  avgsvc - ok
19:21:39.0837 0x0ecc  [ 62106EC9E7AE887CC4A627206E082296, 3947A8A74C60D5E2709277A80D45B78DA07F3CDC01A8C260BD230EEFDAB145AB ] Avgtdia         C:\Windows\system32\DRIVERS\avgtdia.sys
19:21:39.0842 0x0ecc  Avgtdia - ok
19:21:39.0853 0x0ecc  [ 1EEB894456B375A486950D343F6DB81F, C5D6EBAC49A4AABE360EE2FA791628C164608FAF5CF37049368CE061D8ABFC10 ] avguniva        C:\Windows\system32\DRIVERS\avguniva.sys
19:21:39.0854 0x0ecc  avguniva - ok
19:21:39.0880 0x0ecc  [ 79A962F245248836117D1BA1F3E8E63B, CBA7DF2A4181D578A93F1863BFC068B24A9093949CD96EA2B78539B97BC17293 ] avgwd           C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
19:21:39.0893 0x0ecc  avgwd - ok
19:21:39.0941 0x0ecc  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
19:21:39.0946 0x0ecc  AxInstSV - ok
19:21:40.0006 0x0ecc  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
19:21:40.0020 0x0ecc  b06bdrv - ok
19:21:40.0065 0x0ecc  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
19:21:40.0070 0x0ecc  b57nd60a - ok
19:21:40.0097 0x0ecc  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
19:21:40.0099 0x0ecc  BDESVC - ok
19:21:40.0113 0x0ecc  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
19:21:40.0113 0x0ecc  Beep - ok
19:21:40.0161 0x0ecc  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
19:21:40.0173 0x0ecc  BFE - ok
19:21:40.0295 0x0ecc  [ 7D9DE9C1D2404CEC16EED9AF578A1507, 20ED5673D46D56DC8BDB56C31875501864C016D6A3BD4E52130BA71889CF927F ] BIT             C:\ProgramData\BIT\BIT.dll
19:21:40.0325 0x0ecc  BIT - ok
19:21:40.0367 0x0ecc  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
19:21:40.0382 0x0ecc  BITS - ok
19:21:40.0392 0x0ecc  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
19:21:40.0393 0x0ecc  blbdrive - ok
19:21:40.0420 0x0ecc  [ ABA3984C822E4D3F889699912D85D6C5, 2251FA135CC290DA13DAE4743F393C7CC9E6A737C054707CB8D72C369D1FFACB ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
19:21:40.0422 0x0ecc  bowser - ok
19:21:40.0440 0x0ecc  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
19:21:40.0441 0x0ecc  BrFiltLo - ok
19:21:40.0443 0x0ecc  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
19:21:40.0444 0x0ecc  BrFiltUp - ok
19:21:40.0480 0x0ecc  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
19:21:40.0483 0x0ecc  Browser - ok
19:21:40.0504 0x0ecc  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
19:21:40.0511 0x0ecc  Brserid - ok
19:21:40.0529 0x0ecc  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
19:21:40.0530 0x0ecc  BrSerWdm - ok
19:21:40.0536 0x0ecc  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
19:21:40.0537 0x0ecc  BrUsbMdm - ok
19:21:40.0540 0x0ecc  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
19:21:40.0541 0x0ecc  BrUsbSer - ok
19:21:40.0574 0x0ecc  [ 5F16F8A6923280BB76D0D16C6AA24F69, 0EAD3D5FD24A813547F7DA2DDF1503C5F5EB638F1602ED4FB812A1063F889EB4 ] BTATH_A2DP      C:\Windows\system32\drivers\btath_a2dp.sys
19:21:40.0581 0x0ecc  BTATH_A2DP - ok
19:21:40.0601 0x0ecc  [ 4C94E7449A56B6F09E3690433A0AFFA2, 6C5CE10EEF229FD109071B57462C8AB24CD6785A9CA11DD3EC265A61778552F0 ] btath_avdt      C:\Windows\system32\drivers\btath_avdt.sys
19:21:40.0604 0x0ecc  btath_avdt - ok
19:21:40.0634 0x0ecc  [ AF7DEA6A0E93AF8517A310D189B656BE, 008FE5102EE6B73A8D9AFC2B0E563C6A3567167380FCEDC538278240D2AE1FD4 ] BTATH_BUS       C:\Windows\system32\DRIVERS\btath_bus.sys
19:21:40.0635 0x0ecc  BTATH_BUS - ok
19:21:40.0650 0x0ecc  [ 785C38070043BEEE9E9D591DE4067244, 1C8D15B8A9E80A2799E7094C4AE111FEA9FBC6EAA4A61B13EFE59314C9794949 ] BTATH_LWFLT     C:\Windows\system32\DRIVERS\btath_lwflt.sys
19:21:40.0652 0x0ecc  BTATH_LWFLT - ok
19:21:40.0699 0x0ecc  [ 859A116D748FBA603AF94C251DC5CF97, D64061721BE01F86386C4B0168B166C6AD076630B2229036E1D368D877389D46 ] BTATH_RCP       C:\Windows\system32\DRIVERS\btath_rcp.sys
19:21:40.0702 0x0ecc  BTATH_RCP - ok
19:21:40.0756 0x0ecc  [ E43D704EBB2A16769ADFD29980999EDD, 6265C01368BB805993CC512C7191C65A112BA53C29FF9E5D83072D6C79BBFC9A ] BtFilter        C:\Windows\system32\DRIVERS\btfilter.sys
19:21:40.0774 0x0ecc  BtFilter - ok
19:21:40.0792 0x0ecc  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\Windows\system32\DRIVERS\BthEnum.sys
19:21:40.0793 0x0ecc  BthEnum - ok
19:21:40.0805 0x0ecc  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
19:21:40.0807 0x0ecc  BTHMODEM - ok
19:21:40.0832 0x0ecc  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
19:21:40.0835 0x0ecc  BthPan - ok
19:21:40.0865 0x0ecc  [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT         C:\Windows\system32\Drivers\BTHport.sys
19:21:40.0876 0x0ecc  BTHPORT - ok
19:21:40.0893 0x0ecc  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
19:21:40.0895 0x0ecc  bthserv - ok
19:21:40.0911 0x0ecc  [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB          C:\Windows\system32\Drivers\BTHUSB.sys
19:21:40.0913 0x0ecc  BTHUSB - ok
19:21:40.0937 0x0ecc  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
19:21:40.0939 0x0ecc  cdfs - ok
19:21:40.0976 0x0ecc  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
19:21:40.0980 0x0ecc  cdrom - ok
19:21:41.0019 0x0ecc  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
19:21:41.0021 0x0ecc  CertPropSvc - ok
19:21:41.0034 0x0ecc  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
19:21:41.0035 0x0ecc  circlass - ok
19:21:41.0071 0x0ecc  [ 3D67C27DD17B254D7915FA16A5AE3573, 5B3A6C6A7F940C06362775DAF13CEADA37C7AA84A509458A57C23B4369970A90 ] CLFS            C:\Windows\system32\CLFS.sys
19:21:41.0079 0x0ecc  CLFS - ok
19:21:41.0132 0x0ecc  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
19:21:41.0136 0x0ecc  clr_optimization_v2.0.50727_32 - ok
19:21:41.0177 0x0ecc  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
19:21:41.0182 0x0ecc  clr_optimization_v2.0.50727_64 - ok
19:21:41.0259 0x0ecc  [ BD2AE15EFB47E5215B4D0C59EA00C91A, E2A3FB8B606E55E843958B93EE6A5FDCE6FB4AAA6BEFD2F030BAA91ED4B5B013 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
19:21:41.0268 0x0ecc  clr_optimization_v4.0.30319_32 - ok
19:21:41.0282 0x0ecc  [ 30EAABE7A3B1081B6F5DDE4A1C0305D2, 14C1D9931D32A069B6E90B47476FEC3978818D040A23BE939F04DC0A5D978509 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
19:21:41.0285 0x0ecc  clr_optimization_v4.0.30319_64 - ok
19:21:41.0309 0x0ecc  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
19:21:41.0310 0x0ecc  CmBatt - ok
19:21:41.0328 0x0ecc  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
19:21:41.0329 0x0ecc  cmdide - ok
19:21:41.0363 0x0ecc  [ A98CED39AD91B445E2E442A9BD67E8B4, B4189DEEF1C0EE22AE983119047B1A40FFDD8F3E163DFFABD7C2706231B0B1B0 ] CNG             C:\Windows\system32\Drivers\cng.sys
19:21:41.0373 0x0ecc  CNG - ok
19:21:41.0383 0x0ecc  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
19:21:41.0383 0x0ecc  Compbatt - ok
19:21:41.0403 0x0ecc  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
19:21:41.0404 0x0ecc  CompositeBus - ok
19:21:41.0413 0x0ecc  COMSysApp - ok
19:21:41.0494 0x0ecc  [ 789204E8ADF6ED08F566131D9A6929E0, 2C62E5AC132EA98B7EBBDDC6AE9972EEE8A3FD5A7F120B569F2CC6F517F87DC6 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
19:21:41.0508 0x0ecc  cphs - ok
19:21:41.0525 0x0ecc  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
19:21:41.0527 0x0ecc  crcdisk - ok
19:21:41.0555 0x0ecc  [ 48FEDBE324F1EA9417BA1D62AE863011, 2C3D84F0842237A3BF2838DDB4126807977EB36588FA669B1E6671077584EF18 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
19:21:41.0561 0x0ecc  CryptSvc - ok
19:21:41.0599 0x0ecc  [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC             C:\Windows\system32\drivers\csc.sys
19:21:41.0621 0x0ecc  CSC - ok
19:21:41.0653 0x0ecc  [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService      C:\Windows\System32\cscsvc.dll
19:21:41.0686 0x0ecc  CscService - ok
19:21:41.0843 0x0ecc  [ 8E65F6E05455F598D5BEF927C08F8D0E, B189FD2A461BC198DE10F0241BFD4276A9652EDDD4746B70DB5E7FC424FF8818 ] CSHMDR          C:\Users\Nikola\AppData\Local\CSHMDR\Snare.dll
19:21:41.0869 0x0ecc  CSHMDR - ok
19:21:41.0901 0x0ecc  [ 5E9F8D029D9B03110D835CBFC058068B, 038FDF99C643C8102026BA26A75899A56E91AD0C239DF71AA5443FD35C718C78 ] DcomLaunch      C:\Windows\system32\rpcss.dll
19:21:41.0910 0x0ecc  DcomLaunch - ok
19:21:41.0937 0x0ecc  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
19:21:41.0943 0x0ecc  defragsvc - ok
19:21:41.0967 0x0ecc  [ 9B38580063D281A99E68EF5813022A5F, D91676B0E0A8E2A090E3E5DD340ABCFC20AE0F55B4C82869D6CFB34239BD27DA ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
19:21:41.0970 0x0ecc  DfsC - ok
19:21:42.0001 0x0ecc  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
19:21:42.0008 0x0ecc  Dhcp - ok
19:21:42.0075 0x0ecc  [ EE9954237F15BE4DD9304D12E4D305ED, F295C9BAF20F0E669B673AFCC16B4969EE31B6A3808980DAB93D9B0F167DA3C0 ] DiagTrack       C:\Windows\system32\diagtrack.dll
19:21:42.0131 0x0ecc  DiagTrack - ok
19:21:42.0196 0x0ecc  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
19:21:42.0197 0x0ecc  discache - ok
19:21:42.0220 0x0ecc  [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk            C:\Windows\system32\drivers\disk.sys
19:21:42.0222 0x0ecc  Disk - ok
19:21:42.0251 0x0ecc  [ 5DB085A8A6600BE6401F2B24EECB5415, 5FC5C7C1B4DB7BF6EFD0992E91DB41FD047E90D1ABA0B8F868CB72557F88FB13 ] dmvsc           C:\Windows\system32\drivers\dmvsc.sys
19:21:42.0253 0x0ecc  dmvsc - ok
19:21:42.0281 0x0ecc  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
19:21:42.0285 0x0ecc  Dnscache - ok
19:21:42.0313 0x0ecc  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
19:21:42.0319 0x0ecc  dot3svc - ok
19:21:42.0338 0x0ecc  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
19:21:42.0342 0x0ecc  DPS - ok
19:21:42.0363 0x0ecc  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
19:21:42.0364 0x0ecc  drmkaud - ok
19:21:42.0397 0x0ecc  [ 33F90B202E9DD9B7D489EB59310FDC34, 6ECF6669433E090E9CF6B1875AF18D2C06F8CDB3901D58BF89C3E2202574ABBD ] dtsoftbus01     C:\Windows\system32\DRIVERS\dtsoftbus01.sys
19:21:42.0403 0x0ecc  dtsoftbus01 - ok
19:21:42.0451 0x0ecc  [ 30545EF2A1E3EF79450AED5DF80F5884, A7109F481680237481E28C17088D7608EB39C49513BD0AF3F1E9E63E17F250C1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
19:21:42.0484 0x0ecc  DXGKrnl - ok
19:21:42.0525 0x0ecc  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
19:21:42.0528 0x0ecc  EapHost - ok
19:21:42.0639 0x0ecc  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
19:21:42.0730 0x0ecc  ebdrv - ok
19:21:42.0772 0x0ecc  [ 7404CDF0B904C6B8AA36C1D167D9F286, 3194BF2EC8078E1EE5FAC0F1C35463629DB106B84D309052F47D0DD39595287E ] EFS             C:\Windows\System32\lsass.exe
19:21:42.0774 0x0ecc  EFS - ok
19:21:42.0842 0x0ecc  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
19:21:42.0876 0x0ecc  ehRecvr - ok
19:21:42.0889 0x0ecc  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
19:21:42.0893 0x0ecc  ehSched - ok
19:21:42.0936 0x0ecc  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
19:21:42.0957 0x0ecc  elxstor - ok
19:21:42.0971 0x0ecc  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
19:21:42.0972 0x0ecc  ErrDev - ok
19:21:43.0054 0x0ecc  [ A7E5EFF955B119D187E51EA6190E842B, C57CC52EE39E8FB21DC82799A0171B2295CCC75F51FE33F075425A89D7ADA06A ] ESRV_SVC_QUEENCREEK C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe
19:21:43.0068 0x0ecc  ESRV_SVC_QUEENCREEK - ok
19:21:43.0098 0x0ecc  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
19:21:43.0107 0x0ecc  EventSystem - ok
19:21:43.0132 0x0ecc  [ 7E45F8B117419ABA3BB26579F6E70324, 03FE86519860153E1BE571F10ACC9BA58FFB5A661C5C3EBDF3B77973BCD96C84 ] exfat           C:\Windows\system32\drivers\exfat.sys
19:21:43.0136 0x0ecc  exfat - ok
19:21:43.0154 0x0ecc  [ 6EDFA237D25433C03F42FBFDB16BDD24, A30F89A40F7AFC475D3C2D3591FB9AFC06AE3FEBC915FDCB24ED77946FBA4E2C ] fastfat         C:\Windows\system32\drivers\fastfat.sys
19:21:43.0158 0x0ecc  fastfat - ok
19:21:43.0203 0x0ecc  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
19:21:43.0225 0x0ecc  Fax - ok
19:21:43.0241 0x0ecc  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
19:21:43.0242 0x0ecc  fdc - ok
19:21:43.0270 0x0ecc  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
19:21:43.0271 0x0ecc  fdPHost - ok
19:21:43.0280 0x0ecc  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
19:21:43.0281 0x0ecc  FDResPub - ok
19:21:43.0302 0x0ecc  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
19:21:43.0304 0x0ecc  FileInfo - ok
19:21:43.0315 0x0ecc  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
19:21:43.0316 0x0ecc  Filetrace - ok
19:21:43.0326 0x0ecc  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
19:21:43.0327 0x0ecc  flpydisk - ok
19:21:43.0347 0x0ecc  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
19:21:43.0353 0x0ecc  FltMgr - ok
19:21:43.0400 0x0ecc  [ CF0108CBA6D1860563BA20E3D74C6646, 737B5E89A858D7E3AEC8BF660AA4FCC56501A69468EA143531286016AF7C0B33 ] FontCache       C:\Windows\system32\FntCache.dll
19:21:43.0434 0x0ecc  FontCache - ok
19:21:43.0473 0x0ecc  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
19:21:43.0475 0x0ecc  FontCache3.0.0.0 - ok
19:21:43.0488 0x0ecc  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
19:21:43.0489 0x0ecc  FsDepends - ok
19:21:43.0523 0x0ecc  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
19:21:43.0524 0x0ecc  Fs_Rec - ok
19:21:43.0557 0x0ecc  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
19:21:43.0561 0x0ecc  fvevol - ok
19:21:43.0585 0x0ecc  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
19:21:43.0587 0x0ecc  gagp30kx - ok
19:21:43.0623 0x0ecc  [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc           C:\Windows\System32\gpsvc.dll
19:21:43.0657 0x0ecc  gpsvc - ok
19:21:43.0668 0x0ecc  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
19:21:43.0669 0x0ecc  hcw85cir - ok
19:21:43.0712 0x0ecc  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
19:21:43.0719 0x0ecc  HdAudAddService - ok
19:21:43.0736 0x0ecc  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
19:21:43.0739 0x0ecc  HDAudBus - ok
19:21:43.0747 0x0ecc  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
19:21:43.0748 0x0ecc  HidBatt - ok
19:21:43.0753 0x0ecc  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
19:21:43.0756 0x0ecc  HidBth - ok
19:21:43.0764 0x0ecc  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
19:21:43.0766 0x0ecc  HidIr - ok
19:21:43.0791 0x0ecc  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\system32\hidserv.dll
19:21:43.0792 0x0ecc  hidserv - ok
19:21:43.0814 0x0ecc  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
19:21:43.0815 0x0ecc  HidUsb - ok
19:21:43.0842 0x0ecc  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
19:21:43.0845 0x0ecc  hkmsvc - ok
19:21:43.0867 0x0ecc  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
19:21:43.0872 0x0ecc  HomeGroupListener - ok
19:21:43.0897 0x0ecc  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
19:21:43.0902 0x0ecc  HomeGroupProvider - ok
19:21:43.0923 0x0ecc  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
19:21:43.0925 0x0ecc  HpSAMD - ok
19:21:43.0974 0x0ecc  [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
19:21:43.0997 0x0ecc  HTTP - ok
19:21:44.0042 0x0ecc  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
19:21:44.0042 0x0ecc  hwpolicy - ok
19:21:44.0063 0x0ecc  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
19:21:44.0066 0x0ecc  i8042prt - ok
19:21:44.0120 0x0ecc  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
19:21:44.0129 0x0ecc  iaStorV - ok
19:21:44.0199 0x0ecc  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
19:21:44.0223 0x0ecc  idsvc - ok
19:21:44.0253 0x0ecc  IEEtwCollectorService - ok
19:21:44.0400 0x0ecc  [ DB612DDA2E9643F8C759E68DAE07F2D4, 500CDCAE2D29A8AFFF812BDAC5784E7805A7D9CD59ACB9F9450B2F9BE40C85BD ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
19:21:44.0537 0x0ecc  igfx - ok
19:21:44.0563 0x0ecc  [ 6DB3990341B9CE345B22731D009DB377, 4BA793F3DE636635FA340FA1C42751DBFC042C40236701CBC6D70EEC213E52E2 ] igfxCUIService1.0.0.0 C:\Windows\system32\igfxCUIService.exe
19:21:44.0571 0x0ecc  igfxCUIService1.0.0.0 - ok
19:21:44.0610 0x0ecc  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
19:21:44.0611 0x0ecc  iirsp - ok
19:21:44.0654 0x0ecc  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
19:21:44.0687 0x0ecc  IKEEXT - ok
19:21:44.0751 0x0ecc  [ 9D01DDF5EA8494BBCBB73FF385E35D35, C575DC65275BEA8558A855C7DC6CFA84BD7F48D24BB0C522084E89DDC5CB02A7 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
19:21:44.0760 0x0ecc  IntcDAud - ok
19:21:44.0770 0x0ecc  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
19:21:44.0771 0x0ecc  intelide - ok
19:21:44.0803 0x0ecc  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
19:21:44.0804 0x0ecc  intelppm - ok
19:21:44.0831 0x0ecc  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
19:21:44.0834 0x0ecc  IPBusEnum - ok
19:21:44.0848 0x0ecc  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:21:44.0851 0x0ecc  IpFilterDriver - ok
19:21:44.0893 0x0ecc  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
19:21:44.0904 0x0ecc  iphlpsvc - ok
19:21:44.0921 0x0ecc  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
19:21:44.0923 0x0ecc  IPMIDRV - ok
19:21:44.0941 0x0ecc  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
19:21:44.0944 0x0ecc  IPNAT - ok
19:21:44.0969 0x0ecc  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
19:21:44.0970 0x0ecc  IRENUM - ok
19:21:45.0016 0x0ecc  iSafeKrnlMon - ok
19:21:45.0031 0x0ecc  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
19:21:45.0032 0x0ecc  isapnp - ok
19:21:45.0056 0x0ecc  [ D931D7309DEB2317035B07C9F9E6B0BD, 13AD84172ED8C6153F8A98499C01733B74E48464CE07D099508E38D409913ED3 ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
19:21:45.0063 0x0ecc  iScsiPrt - ok
19:21:45.0085 0x0ecc  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
19:21:45.0086 0x0ecc  kbdclass - ok
19:21:45.0109 0x0ecc  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
19:21:45.0110 0x0ecc  kbdhid - ok
19:21:45.0119 0x0ecc  [ 7404CDF0B904C6B8AA36C1D167D9F286, 3194BF2EC8078E1EE5FAC0F1C35463629DB106B84D309052F47D0DD39595287E ] KeyIso          C:\Windows\system32\lsass.exe
19:21:45.0120 0x0ecc  KeyIso - ok
19:21:45.0145 0x0ecc  [ 15682ED7B70B186C9C2BE6CA423D8E74, 02C6D35271D01925A2D9069589D75F7341988B8AFC1AC0A43401A5C63A959E37 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
19:21:45.0147 0x0ecc  KSecDD - ok
19:21:45.0160 0x0ecc  [ 945F4DA63A76EB2725C070BF3A86B5A5, EB778A52FCD2FCF98CFC0E7363F25B4CCE778C79E7308DF47C3D1AC92A791ED0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
19:21:45.0163 0x0ecc  KSecPkg - ok
19:21:45.0200 0x0ecc  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
19:21:45.0201 0x0ecc  ksthunk - ok
19:21:45.0223 0x0ecc  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
19:21:45.0231 0x0ecc  KtmRm - ok
19:21:45.0279 0x0ecc  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\system32\srvsvc.dll
19:21:45.0285 0x0ecc  LanmanServer - ok
19:21:45.0297 0x0ecc  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
19:21:45.0301 0x0ecc  LanmanWorkstation - ok
19:21:45.0331 0x0ecc  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
19:21:45.0333 0x0ecc  lltdio - ok
19:21:45.0356 0x0ecc  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
19:21:45.0363 0x0ecc  lltdsvc - ok
19:21:45.0392 0x0ecc  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
19:21:45.0394 0x0ecc  lmhosts - ok
19:21:45.0410 0x0ecc  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
19:21:45.0413 0x0ecc  LSI_FC - ok
19:21:45.0438 0x0ecc  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
19:21:45.0440 0x0ecc  LSI_SAS - ok
19:21:45.0453 0x0ecc  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
19:21:45.0454 0x0ecc  LSI_SAS2 - ok
19:21:45.0468 0x0ecc  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
19:21:45.0471 0x0ecc  LSI_SCSI - ok
19:21:45.0488 0x0ecc  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
19:21:45.0491 0x0ecc  luafv - ok
19:21:45.0516 0x0ecc  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
19:21:45.0519 0x0ecc  Mcx2Svc - ok
19:21:45.0538 0x0ecc  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
19:21:45.0539 0x0ecc  megasas - ok
19:21:45.0565 0x0ecc  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
19:21:45.0572 0x0ecc  MegaSR - ok
19:21:45.0603 0x0ecc  [ 2BB3EAE2EA641515D4B205CAB29E1624, D3F18EE393EB1B0F919484281269A3C55A092D023E62C59D74CB63A55612024B ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
19:21:45.0605 0x0ecc  MEIx64 - ok
19:21:45.0644 0x0ecc  Microsoft SharePoint Workspace Audit Service - ok
19:21:45.0657 0x0ecc  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
19:21:45.0659 0x0ecc  MMCSS - ok
19:21:45.0672 0x0ecc  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
19:21:45.0673 0x0ecc  Modem - ok
19:21:45.0703 0x0ecc  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
19:21:45.0704 0x0ecc  monitor - ok
19:21:45.0713 0x0ecc  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
19:21:45.0714 0x0ecc  mouclass - ok
19:21:45.0726 0x0ecc  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
19:21:45.0727 0x0ecc  mouhid - ok
19:21:45.0755 0x0ecc  [ 8ADB5445B29941CB41AF2846FD5C93C7, 689582430FE29EC0845B1DB841D3CC49D5D09DE264586E3999EEFE616986D12B ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
19:21:45.0757 0x0ecc  mountmgr - ok
19:21:45.0799 0x0ecc  [ 260DB638038D0D9ACCBFCA9F2BF9B692, 68B9454D1E10A5A710AA3F823C7EAF2E8F3DDF5534262AC289BF454FC829B0B7 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
19:21:45.0803 0x0ecc  MozillaMaintenance - ok
19:21:45.0825 0x0ecc  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
19:21:45.0828 0x0ecc  mpio - ok
19:21:45.0844 0x0ecc  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
19:21:45.0846 0x0ecc  mpsdrv - ok
19:21:45.0885 0x0ecc  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
19:21:45.0908 0x0ecc  MpsSvc - ok
19:21:46.0009 0x0ecc  [ 98DB1790F0A584E0A2528B92B052417F, 9AA04CA73AFE599810CD233B9CEC212E16D44DCEDF5C7D0181C7257F498068B5 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
19:21:46.0016 0x0ecc  MRxDAV - ok
19:21:46.0166 0x0ecc  [ 054F780A442DB96F9FE10501B35E75CA, 72DF4BCEB6E14745CBEBF29B1F2882EC05C2952CED233E038105721494C984A4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
19:21:46.0173 0x0ecc  mrxsmb - ok
19:21:46.0201 0x0ecc  [ A1EAC982807B3179DD92235B6B709C0A, 8AD2652391B40D94E0FC4C9132630A7122679EF05B67328E4467043A45CD2737 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:21:46.0208 0x0ecc  mrxsmb10 - ok
19:21:46.0230 0x0ecc  [ E6B504F163094F2DB84F7D34A893FA00, 389413D7A4188DE226FD5ED996355C93BC90B7F460E31F5991B8714CE701CCC8 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:21:46.0233 0x0ecc  mrxsmb20 - ok
19:21:46.0256 0x0ecc  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
19:21:46.0257 0x0ecc  msahci - ok
19:21:46.0270 0x0ecc  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
19:21:46.0273 0x0ecc  msdsm - ok
19:21:46.0291 0x0ecc  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
19:21:46.0295 0x0ecc  MSDTC - ok
19:21:46.0310 0x0ecc  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
19:21:46.0311 0x0ecc  Msfs - ok
19:21:46.0326 0x0ecc  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
19:21:46.0327 0x0ecc  mshidkmdf - ok
19:21:46.0343 0x0ecc  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
19:21:46.0344 0x0ecc  msisadrv - ok
19:21:46.0370 0x0ecc  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
19:21:46.0375 0x0ecc  MSiSCSI - ok
19:21:46.0378 0x0ecc  msiserver - ok
19:21:46.0405 0x0ecc  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
19:21:46.0405 0x0ecc  MSKSSRV - ok
19:21:46.0427 0x0ecc  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
19:21:46.0427 0x0ecc  MSPCLOCK - ok
19:21:46.0433 0x0ecc  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
19:21:46.0434 0x0ecc  MSPQM - ok
19:21:46.0457 0x0ecc  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
19:21:46.0464 0x0ecc  MsRPC - ok
19:21:46.0477 0x0ecc  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
19:21:46.0478 0x0ecc  mssmbios - ok
19:21:46.0491 0x0ecc  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
19:21:46.0492 0x0ecc  MSTEE - ok
19:21:46.0510 0x0ecc  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
19:21:46.0511 0x0ecc  MTConfig - ok
19:21:46.0520 0x0ecc  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
19:21:46.0522 0x0ecc  Mup - ok
19:21:46.0560 0x0ecc  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
19:21:46.0571 0x0ecc  napagent - ok
19:21:46.0609 0x0ecc  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
19:21:46.0617 0x0ecc  NativeWifiP - ok
19:21:46.0659 0x0ecc  [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS            C:\Windows\system32\drivers\ndis.sys
19:21:46.0693 0x0ecc  NDIS - ok
19:21:46.0707 0x0ecc  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
19:21:46.0708 0x0ecc  NdisCap - ok
19:21:46.0726 0x0ecc  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
19:21:46.0727 0x0ecc  NdisTapi - ok
19:21:46.0739 0x0ecc  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
19:21:46.0740 0x0ecc  Ndisuio - ok
19:21:46.0752 0x0ecc  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
19:21:46.0755 0x0ecc  NdisWan - ok
19:21:46.0763 0x0ecc  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
19:21:46.0764 0x0ecc  NDProxy - ok
19:21:46.0774 0x0ecc  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
19:21:46.0775 0x0ecc  NetBIOS - ok
19:21:46.0800 0x0ecc  [ E47D571FEC2C76E867935109AB2A770C, F349D25890B6F476B106FD75BFB081DB737CA9B224D95E44927942FFF2DF82CD ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
19:21:46.0806 0x0ecc  NetBT - ok
19:21:46.0812 0x0ecc  [ 7404CDF0B904C6B8AA36C1D167D9F286, 3194BF2EC8078E1EE5FAC0F1C35463629DB106B84D309052F47D0DD39595287E ] Netlogon        C:\Windows\system32\lsass.exe
19:21:46.0814 0x0ecc  Netlogon - ok
19:21:46.0842 0x0ecc  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
19:21:46.0851 0x0ecc  Netman - ok
19:21:46.0900 0x0ecc  [ 2635C2A431F5F04DFFE23C2678BBA410, D6F6973B57D2ED4DC4BF097CBBECFDA3045CED2C7E970CF7E127961F196893BD ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:21:46.0907 0x0ecc  NetMsmqActivator - ok
19:21:46.0922 0x0ecc  [ 2635C2A431F5F04DFFE23C2678BBA410, D6F6973B57D2ED4DC4BF097CBBECFDA3045CED2C7E970CF7E127961F196893BD ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:21:46.0926 0x0ecc  NetPipeActivator - ok
19:21:46.0954 0x0ecc  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
19:21:46.0971 0x0ecc  netprofm - ok
19:21:46.0978 0x0ecc  [ 2635C2A431F5F04DFFE23C2678BBA410, D6F6973B57D2ED4DC4BF097CBBECFDA3045CED2C7E970CF7E127961F196893BD ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:21:46.0981 0x0ecc  NetTcpActivator - ok
19:21:46.0987 0x0ecc  [ 2635C2A431F5F04DFFE23C2678BBA410, D6F6973B57D2ED4DC4BF097CBBECFDA3045CED2C7E970CF7E127961F196893BD ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
19:21:46.0990 0x0ecc  NetTcpPortSharing - ok
19:21:47.0032 0x0ecc  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
19:21:47.0033 0x0ecc  nfrd960 - ok
19:21:47.0051 0x0ecc  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
19:21:47.0058 0x0ecc  NlaSvc - ok
19:21:47.0071 0x0ecc  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
19:21:47.0072 0x0ecc  Npfs - ok
19:21:47.0104 0x0ecc  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
19:21:47.0106 0x0ecc  nsi - ok
19:21:47.0118 0x0ecc  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
19:21:47.0119 0x0ecc  nsiproxy - ok
19:21:47.0186 0x0ecc  [ 47B2D0B31BDC3EBE6090228E2BA3764D, 984A4B38300954164BCBF57EC1A09C18B53779E60A26E9618B50E26016735787 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
19:21:47.0244 0x0ecc  Ntfs - ok
19:21:47.0256 0x0ecc  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
19:21:47.0257 0x0ecc  Null - ok
19:21:47.0338 0x0ecc  [ 176372CCCD2A3B36224D0490A24FDCD5, 214C2BE782CF060069070C292CD18084DFFC26A2F26DB94847EFFFEC5B190905 ] NvContainerLocalSystem C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
19:21:47.0348 0x0ecc  NvContainerLocalSystem - ok
19:21:47.0360 0x0ecc  [ 176372CCCD2A3B36224D0490A24FDCD5, 214C2BE782CF060069070C292CD18084DFFC26A2F26DB94847EFFFEC5B190905 ] NvContainerNetworkService C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
19:21:47.0369 0x0ecc  NvContainerNetworkService - ok
19:21:47.0814 0x0ecc  [ 20BD2AAAE6BDF544F0F7840D3D89AF1B, 180182C7B422D6B54014A9629EAE18260D45E4A3891503C234A65CAA2DBCCDC7 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
19:21:48.0215 0x0ecc  nvlddmkm - ok
19:21:48.0273 0x0ecc  [ ADC33F7DDC14E9DB3CB2872714F82A3A, C280177CDB7AB19DB236E38704DC92A1DA0702286B713D9736B834635678CF48 ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
19:21:48.0274 0x0ecc  nvpciflt - ok
19:21:48.0302 0x0ecc  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
19:21:48.0305 0x0ecc  nvraid - ok
19:21:48.0327 0x0ecc  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
19:21:48.0330 0x0ecc  nvstor - ok
19:21:48.0376 0x0ecc  [ 4942EC595A4A10F94BB060CB2DFE83BD, 2FDBA6AFFCA0E85D840AFD149762CE82C95861C370469DF8A5C5B5F213CD9488 ] NvStreamKms     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
19:21:48.0378 0x0ecc  NvStreamKms - ok
19:21:48.0476 0x0ecc  [ 0CB5B4866F6A7EAE332E256D151C8190, 2A9CFFD46C2972DDC16C3C34DD3A17B47C6D4145485E4A28365AD3797576424C ] NvTelemetryContainer C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
19:21:48.0502 0x0ecc  NvTelemetryContainer - ok
19:21:48.0517 0x0ecc  [ F489CE4A8456F9EB0F0C5532E2FD7549, 145D8A8EBF5120C735FBCDCA6593AB29088E2AB77130749E3727CB1434C9ABEA ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
19:21:48.0519 0x0ecc  nvvad_WaveExtensible - ok
19:21:48.0548 0x0ecc  [ AECE653E7B9583938B1CF74B5B831CE3, 8A5D2228C25CEFB411BC4D7556A862FC2FCF47C15C5F77FC09102070E0869DDF ] nvvhci          C:\Windows\system32\DRIVERS\nvvhci.sys
19:21:48.0550 0x0ecc  nvvhci - ok
19:21:48.0573 0x0ecc  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
19:21:48.0577 0x0ecc  nv_agp - ok
19:21:48.0590 0x0ecc  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
19:21:48.0592 0x0ecc  ohci1394 - ok
19:21:48.0628 0x0ecc  [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64           C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
19:21:48.0632 0x0ecc  ose64 - ok
19:21:48.0805 0x0ecc  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
19:21:48.0952 0x0ecc  osppsvc - ok
19:21:48.0987 0x0ecc  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
19:21:48.0995 0x0ecc  p2pimsvc - ok
19:21:49.0025 0x0ecc  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
19:21:49.0035 0x0ecc  p2psvc - ok
19:21:49.0059 0x0ecc  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
19:21:49.0061 0x0ecc  Parport - ok
19:21:49.0068 0x0ecc  Partizan - ok
19:21:49.0083 0x0ecc  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
19:21:49.0085 0x0ecc  partmgr - ok
19:21:49.0106 0x0ecc  [ 3CD83692C43D87088E85E3C916146FFB, 9E812535E8FBA045FDA30F68E9EB2031132C37721D542A2DC9D4C33E2B137FCF ] PcaSvc          C:\Windows\System32\pcasvc.dll
19:21:49.0111 0x0ecc  PcaSvc - ok
19:21:49.0124 0x0ecc  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
19:21:49.0128 0x0ecc  pci - ok
19:21:49.0138 0x0ecc  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
19:21:49.0138 0x0ecc  pciide - ok
19:21:49.0159 0x0ecc  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
19:21:49.0164 0x0ecc  pcmcia - ok
19:21:49.0174 0x0ecc  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
19:21:49.0175 0x0ecc  pcw - ok
19:21:49.0204 0x0ecc  [ EA4D67448BE493D543F1730D6CD04694, 24717C5E41B7CA522F3330EF2228B6685E710A5259396E9887A1C1E7A413F8CA ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
19:21:49.0225 0x0ecc  PEAUTH - ok
19:21:49.0278 0x0ecc  [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
19:21:49.0323 0x0ecc  PeerDistSvc - ok
19:21:49.0388 0x0ecc  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
19:21:49.0389 0x0ecc  PerfHost - ok
19:21:49.0448 0x0ecc  [ BC5F8C5C7ACCD0B884FCB8B67616F537, 5C99E9D7E7095CED52B1F5F4A569E54F124602C573DD2B25731E0D57FDA22A27 ] pla             C:\Windows\system32\pla.dll
19:21:49.0493 0x0ecc  pla - ok
19:21:49.0534 0x0ecc  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
19:21:49.0544 0x0ecc  PlugPlay - ok
19:21:49.0563 0x0ecc  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
19:21:49.0565 0x0ecc  PNRPAutoReg - ok
19:21:49.0585 0x0ecc  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
19:21:49.0591 0x0ecc  PNRPsvc - ok
19:21:49.0623 0x0ecc  [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
19:21:49.0633 0x0ecc  PolicyAgent - ok
19:21:49.0658 0x0ecc  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
19:21:49.0662 0x0ecc  Power - ok
19:21:49.0702 0x0ecc  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
19:21:49.0705 0x0ecc  PptpMiniport - ok
19:21:49.0718 0x0ecc  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
19:21:49.0720 0x0ecc  Processor - ok
19:21:49.0747 0x0ecc  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
19:21:49.0752 0x0ecc  ProfSvc - ok
19:21:49.0768 0x0ecc  [ 7404CDF0B904C6B8AA36C1D167D9F286, 3194BF2EC8078E1EE5FAC0F1C35463629DB106B84D309052F47D0DD39595287E ] ProtectedStorage C:\Windows\system32\lsass.exe
19:21:49.0769 0x0ecc  ProtectedStorage - ok
19:21:49.0786 0x0ecc  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
19:21:49.0789 0x0ecc  Psched - ok
19:21:49.0838 0x0ecc  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
19:21:49.0895 0x0ecc  ql2300 - ok
19:21:49.0924 0x0ecc  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
19:21:49.0926 0x0ecc  ql40xx - ok
19:21:49.0959 0x0ecc  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
19:21:49.0965 0x0ecc  QWAVE - ok
19:21:49.0973 0x0ecc  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
19:21:49.0974 0x0ecc  QWAVEdrv - ok
19:21:49.0991 0x0ecc  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
19:21:49.0992 0x0ecc  RasAcd - ok
19:21:50.0024 0x0ecc  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
19:21:50.0025 0x0ecc  RasAgileVpn - ok
19:21:50.0046 0x0ecc  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
19:21:50.0049 0x0ecc  RasAuto - ok
19:21:50.0065 0x0ecc  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
19:21:50.0068 0x0ecc  Rasl2tp - ok
19:21:50.0086 0x0ecc  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
19:21:50.0094 0x0ecc  RasMan - ok
19:21:50.0122 0x0ecc  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
19:21:50.0124 0x0ecc  RasPppoe - ok
19:21:50.0132 0x0ecc  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
19:21:50.0135 0x0ecc  RasSstp - ok
19:21:50.0157 0x0ecc  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
19:21:50.0165 0x0ecc  rdbss - ok
19:21:50.0177 0x0ecc  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
19:21:50.0178 0x0ecc  rdpbus - ok
19:21:50.0189 0x0ecc  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
19:21:50.0189 0x0ecc  RDPCDD - ok
19:21:50.0217 0x0ecc  [ 1B6163C503398B23FF8B939C67747683, 339A5AA7970FF34FAAB213B655860C5B0DEC5F983A4A11A088017D849F320ACE ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
19:21:50.0220 0x0ecc  RDPDR - ok
19:21:50.0237 0x0ecc  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
19:21:50.0238 0x0ecc  RDPENCDD - ok
19:21:50.0248 0x0ecc  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
19:21:50.0249 0x0ecc  RDPREFMP - ok
19:21:50.0268 0x0ecc  [ 065F79543D7999EC28B687F87E96B803, 6B235C422DCA79ABF0D051C066B2866643333F7ADB7AF914F6EEAC448AA59AAF ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
19:21:50.0269 0x0ecc  RdpVideoMiniport - ok
19:21:50.0302 0x0ecc  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
19:21:50.0307 0x0ecc  RDPWD - ok
19:21:50.0341 0x0ecc  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
19:21:50.0344 0x0ecc  rdyboost - ok
19:21:50.0365 0x0ecc  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
19:21:50.0368 0x0ecc  RemoteAccess - ok
19:21:50.0395 0x0ecc  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
19:21:50.0399 0x0ecc  RemoteRegistry - ok
19:21:50.0436 0x0ecc  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
19:21:50.0439 0x0ecc  RFCOMM - ok
19:21:50.0455 0x0ecc  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
19:21:50.0457 0x0ecc  RpcEptMapper - ok
19:21:50.0479 0x0ecc  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
19:21:50.0480 0x0ecc  RpcLocator - ok
19:21:50.0513 0x0ecc  [ 5E9F8D029D9B03110D835CBFC058068B, 038FDF99C643C8102026BA26A75899A56E91AD0C239DF71AA5443FD35C718C78 ] RpcSs           C:\Windows\system32\rpcss.dll
19:21:50.0523 0x0ecc  RpcSs - ok
19:21:50.0542 0x0ecc  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
19:21:50.0566 0x0ecc  rspndr - ok
19:21:50.0607 0x0ecc  [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
19:21:50.0663 0x0ecc  s3cap - ok
19:21:50.0687 0x0ecc  [ 7404CDF0B904C6B8AA36C1D167D9F286, 3194BF2EC8078E1EE5FAC0F1C35463629DB106B84D309052F47D0DD39595287E ] SamSs           C:\Windows\system32\lsass.exe
19:21:50.0689 0x0ecc  SamSs - ok
19:21:50.0705 0x0ecc  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
19:21:50.0802 0x0ecc  sbp2port - ok
19:21:50.0828 0x0ecc  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
19:21:50.0835 0x0ecc  SCardSvr - ok
19:21:50.0846 0x0ecc  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
19:21:50.0847 0x0ecc  scfilter - ok
19:21:50.0904 0x0ecc  [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule        C:\Windows\system32\schedsvc.dll
19:21:50.0943 0x0ecc  Schedule - ok
19:21:50.0960 0x0ecc  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
19:21:50.0962 0x0ecc  SCPolicySvc - ok
19:21:50.0981 0x0ecc  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
19:21:50.0986 0x0ecc  SDRSVC - ok
19:21:51.0020 0x0ecc  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
19:21:51.0021 0x0ecc  secdrv - ok
19:21:51.0044 0x0ecc  [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon        C:\Windows\system32\seclogon.dll
19:21:51.0046 0x0ecc  seclogon - ok
19:21:51.0061 0x0ecc  [ 07F83829E7429E60298440CD1E601A6A, 9F1229CD8DD9092C27A01F5D56E3C0D59C2BB9F0139ABF042E56F343637FDA33 ] semav6msr64     C:\Windows\system32\drivers\semav6msr64.sys
19:21:51.0062 0x0ecc  semav6msr64 - ok
19:21:51.0084 0x0ecc  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
19:21:51.0087 0x0ecc  SENS - ok
19:21:51.0097 0x0ecc  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
19:21:51.0099 0x0ecc  SensrSvc - ok
19:21:51.0125 0x0ecc  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
19:21:51.0126 0x0ecc  Serenum - ok
19:21:51.0141 0x0ecc  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
19:21:51.0144 0x0ecc  Serial - ok
19:21:51.0157 0x0ecc  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
19:21:51.0158 0x0ecc  sermouse - ok
19:21:51.0171 0x0ecc  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
19:21:51.0175 0x0ecc  SessionEnv - ok
19:21:51.0178 0x0ecc  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
19:21:51.0179 0x0ecc  sffdisk - ok
19:21:51.0182 0x0ecc  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
19:21:51.0183 0x0ecc  sffp_mmc - ok
19:21:51.0187 0x0ecc  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
19:21:51.0188 0x0ecc  sffp_sd - ok
19:21:51.0191 0x0ecc  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
19:21:51.0192 0x0ecc  sfloppy - ok
19:21:51.0219 0x0ecc  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
19:21:51.0227 0x0ecc  SharedAccess - ok
19:21:51.0248 0x0ecc  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
19:21:51.0256 0x0ecc  ShellHWDetection - ok
19:21:51.0264 0x0ecc  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
19:21:51.0265 0x0ecc  SiSRaid2 - ok
19:21:51.0282 0x0ecc  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
19:21:51.0284 0x0ecc  SiSRaid4 - ok
19:21:51.0343 0x0ecc  [ 18614592402298F32EBE75B85AA98F6A, 94E914CF70006F272D1155ABCCF000691742EA6F81CA46FCADFEA1CA257B72C9 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
19:21:51.0368 0x0ecc  SkypeUpdate - ok
19:21:51.0382 0x0ecc  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
19:21:51.0384 0x0ecc  Smb - ok
19:21:51.0547 0x0ecc  [ 7AE6153D68FEB8F2C768E4AF27BDCCE3, B53AF9A7D3B6515BA3CC3B4F7683B5A092A18312B22A5CAAE052BFE998211089 ] snare           C:\Users\Nikola\AppData\Local\snare\Snare.dll
19:21:51.0587 0x0ecc  snare - ok
19:21:51.0633 0x0ecc  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
19:21:51.0635 0x0ecc  SNMPTRAP - ok
19:21:51.0655 0x0ecc  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
19:21:51.0656 0x0ecc  spldr - ok
19:21:51.0683 0x0ecc  [ B96C17B5DC1424D56EEA3A99E97428CD, AF0A85066A7983878DC1C663811CE61C6CA1912DC956184F878B7B82DB93C651 ] Spooler         C:\Windows\System32\spoolsv.exe
19:21:51.0707 0x0ecc  Spooler - ok
19:21:51.0828 0x0ecc  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
19:21:51.0924 0x0ecc  sppsvc - ok
19:21:51.0939 0x0ecc  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
19:21:51.0942 0x0ecc  sppuinotify - ok
19:21:51.0979 0x0ecc  [ 546C81F238F084A393EC54114741A0A8, AA223A2A8E8503CBDB0CE6A70620B372E0591070F9FF7D8532A93B54EF7B7E51 ] srv             C:\Windows\system32\DRIVERS\srv.sys
19:21:51.0988 0x0ecc  srv - ok
19:21:52.0005 0x0ecc  [ 431D2B06E8F93EAEC53E8FA37FCFF2F1, 4CB94D250E9D2646FCE7284D4D3CED1BB02E4D79AD33A414D16EF794195868CA ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
19:21:52.0016 0x0ecc  srv2 - ok
19:21:52.0081 0x0ecc  [ 42EDAB3E3E8E25C7093674936C2DB4BD, B2D5E006B748F24F0FF2CEFFC3D056F3D50E8A818BDFF4231C87C022A25F44ED ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
19:21:52.0088 0x0ecc  srvnet - ok
19:21:52.0143 0x0ecc  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
19:21:52.0154 0x0ecc  SSDPSRV - ok
19:21:52.0172 0x0ecc  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
19:21:52.0176 0x0ecc  SstpSvc - ok
19:21:52.0344 0x0ecc  [ C8DC0C34715627ABF7A265ED27D1F75A, 5B8B9AC65D7458A8C6C868107E0BE3F9B1A1A5117FC69FDC260BAA9F1BDD0008 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
19:21:52.0376 0x0ecc  Steam Client Service - ok
19:21:52.0405 0x0ecc  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
19:21:52.0405 0x0ecc  stexstor - ok
19:21:52.0450 0x0ecc  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
19:21:52.0471 0x0ecc  stisvc - ok
19:21:52.0500 0x0ecc  [ 7785DC213270D2FC066538DAF94087E7, F09CB2895241719CA5147B2EE9F7ECBD0303AFFB5CD896F06D4D29BAAAFC207B ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
19:21:52.0502 0x0ecc  storflt - ok
19:21:52.0511 0x0ecc  [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc         C:\Windows\system32\drivers\storvsc.sys
19:21:52.0512 0x0ecc  storvsc - ok
19:21:52.0529 0x0ecc  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
19:21:52.0530 0x0ecc  swenum - ok
19:21:52.0584 0x0ecc  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
19:21:52.0627 0x0ecc  swprv - ok
19:21:52.0672 0x0ecc  [ C3A39C4079305480972D29C44B868C78, 8F1BB75C743256F905EAEDE744B6082C53774C49126875FB4E4FBA30F5478B17 ] Synth3dVsc      C:\Windows\system32\drivers\synth3dvsc.sys
19:21:52.0675 0x0ecc  Synth3dVsc - ok
19:21:52.0765 0x0ecc  [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain         C:\Windows\system32\sysmain.dll
19:21:52.0822 0x0ecc  SysMain - ok
19:21:52.0907 0x0ecc  [ 9D7AED87C79A329BF04275719ADEA0F0, 2324FEDC8DA9248D6D2A493327F7C6A2BB95149BA31EC07AA20399FFFBF2D5FF ] SystemUsageReportSvc_QUEENCREEK C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
19:21:52.0917 0x0ecc  SystemUsageReportSvc_QUEENCREEK - ok
19:21:52.0972 0x0ecc  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
19:21:52.0976 0x0ecc  TabletInputService - ok
19:21:52.0997 0x0ecc  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
19:21:53.0005 0x0ecc  TapiSrv - ok
19:21:53.0104 0x0ecc  [ 351A21ED3971ADD558956FF3EB0F6FED, 44C3A5452F120E9D29FB9840E811CF0C1D7D8F675ED1B2E501C746A4CC0BF8A7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
19:21:53.0158 0x0ecc  Tcpip - ok
19:21:53.0270 0x0ecc  [ 351A21ED3971ADD558956FF3EB0F6FED, 44C3A5452F120E9D29FB9840E811CF0C1D7D8F675ED1B2E501C746A4CC0BF8A7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
19:21:53.0302 0x0ecc  TCPIP6 - ok
19:21:53.0367 0x0ecc  [ 7FE5586314EE7D6AA8483264A089E5AF, 4E3EA68713A45C22F1B9A1AA125E15D06D0C5E637B815537431ADFB6D7563879 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
19:21:53.0369 0x0ecc  tcpipreg - ok
19:21:53.0496 0x0ecc  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
19:21:53.0498 0x0ecc  TDPIPE - ok
19:21:53.0525 0x0ecc  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
19:21:53.0527 0x0ecc  TDTCP - ok
19:21:53.0550 0x0ecc  [ EC75A942C32F7F405659D86156DCE4C5, 01EA22B0F8ADD1674E3DE785F5ABC3C0F0DAE42E69CD9EEADDDCDDD4C652CBFD ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
19:21:53.0555 0x0ecc  tdx - ok
19:21:53.0642 0x0ecc  [ 0A2B05B9C1F413510F6C036C260264FC, CBEAF6F05B7FE2F03B5FEE43A1E26A2BB58F01B944806CBBC3DA5970C0710D09 ] terana          C:\Users\Nikola\AppData\Local\terana\terana.dll
19:21:53.0667 0x0ecc  terana - ok
19:21:53.0698 0x0ecc  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
19:21:53.0700 0x0ecc  TermDD - ok
19:21:53.0724 0x0ecc  [ 2B5BDFF688EC9871D7EC5837833374E9, BD6C629FA2938987ABF95B790B20F0B7D4D023D5013E575F343A802D6213074E ] terminpt        C:\Windows\system32\drivers\terminpt.sys
19:21:53.0725 0x0ecc  terminpt - ok
19:21:53.0758 0x0ecc  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
19:21:53.0782 0x0ecc  TermService - ok
19:21:53.0808 0x0ecc  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
19:21:53.0810 0x0ecc  Themes - ok
19:21:53.0826 0x0ecc  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
19:21:53.0828 0x0ecc  THREADORDER - ok
19:21:53.0849 0x0ecc  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
19:21:53.0853 0x0ecc  TrkWks - ok
19:21:53.0901 0x0ecc  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
19:21:53.0905 0x0ecc  TrustedInstaller - ok
19:21:53.0928 0x0ecc  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
19:21:53.0929 0x0ecc  tssecsrv - ok
19:21:53.0953 0x0ecc  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
19:21:53.0954 0x0ecc  TsUsbFlt - ok
19:21:53.0972 0x0ecc  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
19:21:53.0974 0x0ecc  TsUsbGD - ok
19:21:53.0988 0x0ecc  [ E1748D04AE40118B62BC18AC86032192, A954B141D1B27272C771D14F3B40C7CC1F572DD72559F2C96182EFBE2B095FDE ] tsusbhub        C:\Windows\system32\drivers\tsusbhub.sys
19:21:53.0991 0x0ecc  tsusbhub - ok
19:21:54.0013 0x0ecc  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
19:21:54.0016 0x0ecc  tunnel - ok
19:21:54.0021 0x0ecc  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
19:21:54.0022 0x0ecc  uagp35 - ok
19:21:54.0187 0x0ecc  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
19:21:54.0226 0x0ecc  udfs - ok
19:21:54.0246 0x0ecc  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
19:21:54.0249 0x0ecc  UI0Detect - ok
19:21:54.0272 0x0ecc  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
19:21:54.0274 0x0ecc  uliagpkx - ok
19:21:54.0283 0x0ecc  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
19:21:54.0285 0x0ecc  umbus - ok
19:21:54.0300 0x0ecc  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
19:21:54.0301 0x0ecc  UmPass - ok
19:21:54.0325 0x0ecc  [ A293DCD756D04D8492A750D03B9A297C, 203600ED0B7F8BA4C6D6F4ED810F4DF5AB70928B06EC4131C5D8ADF628444ED1 ] UmRdpService    C:\Windows\System32\umrdp.dll
19:21:54.0333 0x0ecc  UmRdpService - ok
19:21:54.0367 0x0ecc  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
19:21:54.0378 0x0ecc  upnphost - ok
19:21:54.0404 0x0ecc  [ 28B81917A195B67617AF7DCF4DFE5736, 40A4D2AAE1BDE5ABA8708ED150396E913C566ECD5CDA40D6C6DB256F1B9FD4A9 ] usbccgp         C:\Windows\system32\drivers\usbccgp.sys
19:21:54.0406 0x0ecc  usbccgp - ok
19:21:54.0432 0x0ecc  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
19:21:54.0434 0x0ecc  usbcir - ok
19:21:54.0461 0x0ecc  [ B626F048318DAE65A3317F0592BE592C, 284D8FFE1D35F852EFDA182A72288AC3A10D6ED825FE2CC5812497D3FE291AF1 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
19:21:54.0463 0x0ecc  usbehci - ok
19:21:54.0489 0x0ecc  [ 390109E8E05BA00375DCB1ED64DC60AF, B8628502590B423BEFB6F7C8C69FAD0667AD0746FF6B444EE02016E8E1052B78 ] usbhub          C:\Windows\system32\drivers\usbhub.sys
19:21:54.0496 0x0ecc  usbhub - ok
19:21:54.0510 0x0ecc  [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F, 4317C2DEDC639527B53864BAEC46CBE022D298C0503E29E1072DD1C851D92BFC ] usbohci         C:\Windows\system32\drivers\usbohci.sys
19:21:54.0511 0x0ecc  usbohci - ok
19:21:54.0526 0x0ecc  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\drivers\usbprint.sys
19:21:54.0527 0x0ecc  usbprint - ok
19:21:54.0549 0x0ecc  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:21:54.0552 0x0ecc  USBSTOR - ok
19:21:54.0564 0x0ecc  [ CFEAAF96E666E3DCBD8F6DFF516784AE, 006218A3DB5851790CC0A7F3DCD7B3AF82F624DA679296DE507AFD36C5468317 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
19:21:54.0565 0x0ecc  usbuhci - ok
19:21:54.0591 0x0ecc  [ 454800C2BC7F3927CE030141EE4F4C50, 10901E62DAA70657C499AD590DECCCA6E46FDDF4A193B2F19279E1B8ED7B1E44 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
19:21:54.0595 0x0ecc  usbvideo - ok
19:21:54.0665 0x0ecc  [ A7E5EFF955B119D187E51EA6190E842B, C57CC52EE39E8FB21DC82799A0171B2295CCC75F51FE33F075425A89D7ADA06A ] USER_ESRV_SVC_QUEENCREEK C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe
19:21:54.0679 0x0ecc  USER_ESRV_SVC_QUEENCREEK - ok
19:21:54.0715 0x0ecc  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
19:21:54.0717 0x0ecc  UxSms - ok
19:21:54.0738 0x0ecc  [ 7404CDF0B904C6B8AA36C1D167D9F286, 3194BF2EC8078E1EE5FAC0F1C35463629DB106B84D309052F47D0DD39595287E ] VaultSvc        C:\Windows\system32\lsass.exe
19:21:54.0739 0x0ecc  VaultSvc - ok
19:21:54.0758 0x0ecc  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
19:21:54.0759 0x0ecc  vdrvroot - ok
19:21:54.0782 0x0ecc  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
19:21:54.0794 0x0ecc  vds - ok
19:21:54.0807 0x0ecc  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
19:21:54.0808 0x0ecc  vga - ok
19:21:54.0820 0x0ecc  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
19:21:54.0821 0x0ecc  VgaSave - ok
19:21:54.0823 0x0ecc  VGPU - ok
19:21:54.0843 0x0ecc  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
19:21:54.0848 0x0ecc  vhdmp - ok
19:21:54.0860 0x0ecc  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
19:21:54.0861 0x0ecc  viaide - ok
19:21:54.0882 0x0ecc  [ 86EA3E79AE350FEA5331A1303054005F, 7E7D6027EB41E591633C7383A5D29A3BA8ECFC08C177D2BCF741EE27686B1691 ] vmbus           C:\Windows\system32\drivers\vmbus.sys
19:21:54.0887 0x0ecc  vmbus - ok
19:21:54.0903 0x0ecc  [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
19:21:54.0904 0x0ecc  VMBusHID - ok
19:21:54.0917 0x0ecc  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
19:21:54.0919 0x0ecc  volmgr - ok
19:21:54.0943 0x0ecc  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
19:21:54.0950 0x0ecc  volmgrx - ok
19:21:55.0007 0x0ecc  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
19:21:55.0013 0x0ecc  volsnap - ok
19:21:55.0036 0x0ecc  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
19:21:55.0040 0x0ecc  vsmraid - ok
19:21:55.0140 0x0ecc  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
19:21:55.0213 0x0ecc  VSS - ok
19:21:55.0232 0x0ecc  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
19:21:55.0233 0x0ecc  vwifibus - ok
19:21:55.0257 0x0ecc  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
19:21:55.0259 0x0ecc  vwififlt - ok
19:21:55.0275 0x0ecc  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
19:21:55.0284 0x0ecc  W32Time - ok
19:21:55.0306 0x0ecc  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
19:21:55.0307 0x0ecc  WacomPen - ok
19:21:55.0338 0x0ecc  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
19:21:55.0340 0x0ecc  WANARP - ok
19:21:55.0344 0x0ecc  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
19:21:55.0345 0x0ecc  Wanarpv6 - ok
19:21:55.0414 0x0ecc  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
19:21:55.0442 0x0ecc  WatAdminSvc - ok
19:21:55.0724 0x0ecc  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
19:21:55.0753 0x0ecc  wbengine - ok
19:21:55.0790 0x0ecc  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
19:21:55.0796 0x0ecc  WbioSrvc - ok
19:21:55.0812 0x0ecc  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
19:21:55.0821 0x0ecc  wcncsvc - ok
19:21:55.0841 0x0ecc  [ BC00873272B3771CCDA38336AF2B4D4B, 3E412DEC5F172B4C5FD5C227CD790EE56B90A00A8B538704E8F973D230BE2289 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
19:21:55.0843 0x0ecc  WcsPlugInService - ok
19:21:55.0860 0x0ecc  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
19:21:55.0861 0x0ecc  Wd - ok
19:21:55.0901 0x0ecc  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
19:21:55.0925 0x0ecc  Wdf01000 - ok
19:21:55.0950 0x0ecc  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
19:21:55.0954 0x0ecc  WdiServiceHost - ok
19:21:55.0958 0x0ecc  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
19:21:55.0961 0x0ecc  WdiSystemHost - ok
19:21:55.0987 0x0ecc  [ EE841B6D1F2B9508D3ABAE52AC05A94F, F1AE981FCDBFC4672A4EABABD41382E93762EFC2EDAD96E75530E7ACA5AF1FD8 ] WebClient       C:\Windows\System32\webclnt.dll
19:21:55.0994 0x0ecc  WebClient - ok
19:21:56.0012 0x0ecc  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
19:21:56.0019 0x0ecc  Wecsvc - ok
19:21:56.0029 0x0ecc  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
19:21:56.0032 0x0ecc  wercplsupport - ok
19:21:56.0053 0x0ecc  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
19:21:56.0056 0x0ecc  WerSvc - ok
19:21:56.0071 0x0ecc  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
19:21:56.0072 0x0ecc  WfpLwf - ok
19:21:56.0091 0x0ecc  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
19:21:56.0092 0x0ecc  WIMMount - ok
19:21:56.0116 0x0ecc  WinDefend - ok
19:21:56.0128 0x0ecc  WinHttpAutoProxySvc - ok
19:21:56.0181 0x0ecc  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
19:21:56.0186 0x0ecc  Winmgmt - ok
19:21:56.0267 0x0ecc  [ EBDA1B0F15CB9B2CBCC6C94824E4E054, C51314F7D611E4903DA00EFA8EB99365414436324D256083CE0B5A8E055E8E06 ] WinRM           C:\Windows\system32\WsmSvc.dll
19:21:56.0331 0x0ecc  WinRM - ok
19:21:56.0481 0x0ecc  [ 00771CA033576EE7E2F1742600C48FFA, A155E6373E5562A662303357C70D0E316A42E31800C2CDB9B531FA1149E121EA ] WinSAPSvc       C:\Users\Nikola\AppData\Roaming\WinSAPSvc\WinSAP.dll
19:21:56.0514 0x0ecc  WinSAPSvc - ok
19:21:56.0579 0x0ecc  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
19:21:56.0581 0x0ecc  WinUsb - ok
19:21:56.0617 0x0ecc  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
19:21:56.0651 0x0ecc  Wlansvc - ok
19:21:56.0663 0x0ecc  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
19:21:56.0663 0x0ecc  WmiAcpi - ok
19:21:56.0691 0x0ecc  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
19:21:56.0697 0x0ecc  wmiApSrv - ok
19:21:56.0724 0x0ecc  WMPNetworkSvc - ok
19:21:56.0747 0x0ecc  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
19:21:56.0749 0x0ecc  WPCSvc - ok
19:21:56.0763 0x0ecc  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
19:21:56.0767 0x0ecc  WPDBusEnum - ok
19:21:56.0789 0x0ecc  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
19:21:56.0790 0x0ecc  ws2ifsl - ok
19:21:56.0805 0x0ecc  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\System32\wscsvc.dll
19:21:56.0809 0x0ecc  wscsvc - ok
19:21:56.0812 0x0ecc  WSearch - ok
19:21:56.0917 0x0ecc  [ F24A345C584EC2EFC49F9F375EBDA2A5, 85FBB211CA2320363B5503E06AC23C6A89007D3777D696DF6D7ADB2369965ECD ] wuauserv        C:\Windows\system32\wuaueng.dll
19:21:56.0991 0x0ecc  wuauserv - ok
19:21:57.0024 0x0ecc  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
19:21:57.0026 0x0ecc  WudfPf - ok
19:21:57.0059 0x0ecc  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
19:21:57.0063 0x0ecc  WUDFRd - ok
19:21:57.0083 0x0ecc  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
19:21:57.0086 0x0ecc  wudfsvc - ok
19:21:57.0102 0x0ecc  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
19:21:57.0109 0x0ecc  WwanSvc - ok
19:21:57.0115 0x0ecc  ================ Scan global ===============================
19:21:57.0135 0x0ecc  [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll
19:21:57.0159 0x0ecc  [ C635B3578DBAFB1E03497C0D2F2418A5, 697454B3EC86078F0C37C258BDEDA8E2798BB574B0C11E652D4A0141E827174C ] C:\Windows\system32\winsrv.dll
19:21:57.0171 0x0ecc  [ C635B3578DBAFB1E03497C0D2F2418A5, 697454B3EC86078F0C37C258BDEDA8E2798BB574B0C11E652D4A0141E827174C ] C:\Windows\system32\winsrv.dll
19:21:57.0192 0x0ecc  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
19:21:57.0220 0x0ecc  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
19:21:57.0228 0x0ecc  [ Global ] - ok
19:21:57.0228 0x0ecc  ================ Scan MBR ==================================
19:21:57.0241 0x0ecc  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
19:21:57.0656 0x0ecc  \Device\Harddisk0\DR0 - ok
19:21:57.0657 0x0ecc  ================ Scan VBR ==================================
19:21:57.0658 0x0ecc  [ D060A1AF59DD7F20ED32BA7E9957A720 ] \Device\Harddisk0\DR0\Partition1
19:21:57.0659 0x0ecc  \Device\Harddisk0\DR0\Partition1 - ok
19:21:57.0661 0x0ecc  [ C3FDA69C36122D5158AED6DD37FDFD12 ] \Device\Harddisk0\DR0\Partition2
19:21:57.0662 0x0ecc  \Device\Harddisk0\DR0\Partition2 - ok
19:21:57.0664 0x0ecc  [ E846170AEA2C97F7D7323A3D15106EA6 ] \Device\Harddisk0\DR0\Partition3
19:21:57.0666 0x0ecc  \Device\Harddisk0\DR0\Partition3 - ok
19:21:57.0666 0x0ecc  ================ Scan generic autorun ======================
19:21:57.0702 0x0ecc  [ 39CF316EB5842AE27CC0D3CC4E2840DE, BC4D4ED926F988B7B70CC87B7EC92D148DA6BC39C5C514751F1B0CA69D0F9081 ] C:\Program Files\Microsoft Office\Office14\BCSSync.exe
19:21:57.0704 0x0ecc  BCSSync - ok
19:21:57.0721 0x0ecc  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
19:21:57.0723 0x0ecc  ShadowPlay - ok
19:21:57.0771 0x0ecc  [ 09EB6FF675B6B4D343679F340AAC1B6A, FDCEDC5DD58FE951EF454D0DE44723551060E2000DA688973536A29036654BD2 ] C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe
19:21:57.0776 0x0ecc  AvgUi - ok
19:21:57.0783 0x0ecc  [ 09EB6FF675B6B4D343679F340AAC1B6A, FDCEDC5DD58FE951EF454D0DE44723551060E2000DA688973536A29036654BD2 ] C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe
19:21:57.0787 0x0ecc  AVG_UI - ok
19:21:57.0858 0x0ecc  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
19:21:57.0892 0x0ecc  Sidebar - ok
19:21:57.0916 0x0ecc  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
19:21:57.0918 0x0ecc  mctadmin - ok
19:21:57.0945 0x0ecc  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
19:21:57.0964 0x0ecc  Sidebar - ok
19:21:57.0969 0x0ecc  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
19:21:57.0971 0x0ecc  mctadmin - ok
19:21:57.0994 0x0ecc  Skype - ok
19:21:58.0125 0x0ecc  [ 3F218819210022E0D585957FB155D4A3, A2F27FCB349BAE82B4A4475F3C26E5D57D0EC07C22228F35CFFE3ABBFBA2EEF8 ] C:\Program Files (x86)\Steam\steam.exe
19:21:58.0174 0x0ecc  Steam - ok
19:21:58.0303 0x0ecc  [ F73154E180105822A5F9B755BA933737, 1CD775B6CE3736A70EC5FC7A6B77A2FEDA70D59B49A66046CC20B341005501D9 ] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
19:21:58.0397 0x0ecc  DAEMON Tools Lite - ok
19:21:58.0481 0x0ecc  [ D3DA11612530D639FDF8912C1800B60A, 598675FE0B69F878B75644D752696CFD7983C076DF3D82BF1A1D77FB36B71B5C ] C:\Users\Nikola\AppData\Local\background_fault\aswRD.exe
19:21:58.0525 0x0ecc  background_fault - ok
19:21:58.0527 0x0ecc  Waiting for KSN requests completion. In queue: 116
19:21:59.0615 0x0ecc  AV detected via SS2: AVG Internet Security, C:\Program Files (x86)\AVG\Av\avgwsc.exe ( 16.151.0.8013 ), 0x40000 ( disabled : updated )
19:21:59.0620 0x0ecc  FW detected via SS2: AVG Internet Security, C:\Program Files (x86)\AVG\Av\avgwsc.exe ( 16.151.0.8013 ), 0x40010 ( disabled )
19:21:59.0628 0x0ecc  Win FW state via NFP2: enabled ( trusted )
19:21:59.0762 0x0ecc  ============================================================
19:21:59.0762 0x0ecc  Scan finished
19:21:59.0762 0x0ecc  ============================================================
19:21:59.0776 0x0728  Detected object count: 0
19:21:59.0776 0x0728  Actual detected object count: 0
19:22:17.0675 0x19bc  Deinitialize success

Резултат от aswMBR

aswMBR version 1.0.1.2252 Copyright(c) 2014 AVAST Software
Run date: 2017-05-27 19:45:52
-----------------------------
19:45:52.864    OS Version: Windows x64 6.1.7601 Service Pack 1
19:45:52.864    Number of processors: 4 586 0x3C03
19:45:52.874    ComputerName: NIKOLA-PC  UserName: Nikola
19:45:54.094    Initialize success
19:45:54.094    VM: initialized successfully
19:45:54.094    VM: Intel CPU supported
19:45:55.294    VM: supported disk I/O ataport.SYS
19:52:18.345    AVAST engine defs: 17030301
19:52:55.235    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-1
19:52:55.245    Disk 0 Vendor: WDC_WD10JPVX-22JC3T0 01.01A01 Size: 953869MB BusType: 11
19:52:55.385    VM: Disk 0 MBR read successfully
19:52:55.395    Disk 0 MBR scan
19:52:55.435    Disk 0 Windows 7 default MBR code
19:52:55.445    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
19:52:55.465    Disk 0 Boot: NTFS     code=2
19:52:55.485    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       199900 MB offset 206848
19:52:55.505    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       753867 MB offset 409602048
19:52:55.615    Disk 0 scanning C:\Windows\system32\drivers
19:53:05.405    Service scanning
19:53:39.165    Modules scanning
19:53:39.175    Disk 0 trace - called modules:
19:53:39.185    ntoskrnl.exe CLASSPNP.SYS disk.sys ataport.SYS PCIIDEX.SYS hal.dll msahci.sys
19:53:39.205    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800508d060]
19:53:39.205    3 CLASSPNP.SYS[fffff880018f843f] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP1T0L0-1[0xfffffa8004dfb060]
19:53:40.055    AVAST engine scan C:\Windows
19:53:41.555    AVAST engine scan C:\Windows\system32
19:56:25.135    AVAST engine scan C:\Windows\system32\drivers
19:56:36.595    AVAST engine scan C:\Users\Nikola
20:02:17.981    AVAST engine scan C:\ProgramData
20:03:02.542    Disk 0 statistics 6361202/0/22 @ 7,81 MB/s
20:03:02.549    Scan finished successfully
20:03:29.083    Disk 0 MBR has been saved successfully to "C:\Users\Nikola\Desktop\MBR.dat"
20:03:29.087    The log file has been saved successfully to "C:\Users\Nikola\Desktop\aswMBR.txt"

 

 

 

 

aswMBR.txt

TDSSKiller.3.1.0.15_27.05.2017_19.21.28_log.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Фикс с Farbar Recovery Scan Tool

icon13.gif Изтеглете прикачения файл  fixlist.txt  и го запазете там, където сте свалили FRST.exe
Стартирайте отново FRST.exe и натиснете бутона Fix веднъж и изчакайте.

Press%20the%20FIX%20button_zpsdd5zi3mt.p


Ще се създаде нов лог файла FixLog.txt. Прикачете съдържанието му в следващия си коментар.
 
ЗАБЕЛЕЖКА: Този скрипт е написан специално за този потребител,и за тази конкретна машина. Изпълнението на фикса, на друг компютър може да доведе до увреждане на  операционната ви система

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • FixLog.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

До тук добре..! :) Продължаваме..:

 

GfiJrQ9.png Malwarebytes Anti-Malware (MBAM)

Моля, изтеглете Malwarebytes Anti-Malware 2.2.0.1024 Final и я запазете на вашия десктоп.

  • Стартирайте файла mbam-setup-bc.хххх-х.х.х.хххх.exe и следвайте указанията за да инсталирате програмата.
  • След като инсталацията приключи се уверете че сте сложили отметка пред:
  • Launch Malwarebytes Anti-Malware
  • Отметката активираща пробния 14 дневен период също е маркиран по-подразбиране. Ако не желаете да тествате защитата в реално време на програмата през следващите 14 дни тогава премахнете отметката. Т.е. премахнете първата отметка:

DkgJ7Zr.png

  • Натиснете бутона Finish.
  • Отидете до табът Settings > Detection and Protection > и под категориятаDetection Options включете опцията "Scan for rootkits".
  • Отидете до табът Scan, сложете радио-бутона пред Threat Scan и след това натиснете бутона Scan Now >> . Ако е намерена актуализация тогава натиснете бутона Update Now.
  • Ще започне проверка за зловреден софтуер.
  • При някои инфекции можете да видите съобщението:
  • "Could not load DDA driver"
  • Натиснете "Yes" на това съобщение за да позволите драйвера да се зареди след рестарт.
  • Разрешете на компютъра да се рестартира и след това продължете с останалите инструкции.
  • След като проверката приключи натиснете бутона Apply Actions.
  • Изчакайте да се появи прозореца подканващ ви да рестартирате и след това натиснете бутона Yes.
  • След рестарта, когато се появи десктопа MBAM ще се зареди още веднъж.
  • Отидете то табът History > Application Logs.

65ZBqkR.jpg

  • Отворете рапорта с последната дата и час и натиснете бутона "Copy to Clipboard"
  • Сега вече поставете съдържанието на лог файла с клавишната комбинацияCtrl + V и го публикувайте в следващия си коментар.

 

BY4dvz9.png Сканиране с AdwCleaner

 
Моля, изтеглете и стартирайте програмата Malwarebytes AdwCleaner (by Xplode):

  • Затворете всички стартирани програми и браузъри
  • Кликнете два пъти върху adwcleaner.exe за да стартирате инструмента.
  • Натиснете OK, за да потвърдите, че всички стартирани програми ще бъдат затворени.
  • Маркирайте A49sxPr.pngScan (провери).
  • След завършване, кликнете на 6cyn5v5.pngLogfile (дневник).Ще се отвори прозорец в който се намира дневника (AdwCleaner [S0] .txt).Кликнете два пъти върх реда и ще се отвори съдържанието на дневника.Публикувайте го в следващия си пост
  • Върнете се към основния прозорец на AdwCleaner .маркирайте MqHawIb.pngClean (Почисти)
  • Следвайте указанията и разрешете на компютъра да се рестартира.
  • След рестарта ще се отвори дневник AdwCleaner[C0].txt . Моля копирайте съдържанието на лог файла в следващия си пост.

 

E3feWj5.png  Сканиране с Junkware Removal Tool
 
Моля, изтеглете Junkware Removal Tool (by Thisisu ) и запазете на вашия десктоп.

  • Спрете временно работата на защитните програми.
  • Стартирайте инструмента JRT.exe
  • Ще се отвори ДОС прозорец. Натиснете което и да е копче от клавиатурата.
  • Затворете излишните приложения и всички браузъри и изчакайте проверката да завърши.
  • Ще се появи лог файл (който можете да намерите и ръчно на десктопа с името JRT.txt).
  • Моля копирайте съдържанието на лог файла в следващия си пост.

 

.и последно...свежа проверка с..:

Сканиране с Farbar Recovery Scan

  • Моля изтеглете icon1337953436.pngFarbar Recovery Scan Tool (според версията на Windows изберете 32 битовата или 64 битовата версия) и го запазете надесктопа.
  • Стартирайте файла FRST.exe (или FRST64.exe)
  • Програмата ще се стартира. Натиснете YES за да се съгласите с лицензионното споразумение.
  • Натиснете бутона YClYkft.jpg.
  • Изчакайте търпеливо проверката да приключи.
  • Ще се създадат два лог файла с името - FRST.txt и Addition.txt надесктопа.
  • Копирайте съдържанието на файла FRST.txt в следващия си пост.Прикачете Addition.txt в коментар си (погледнете опцията Прикачване на файлове, когато публикувате мнение).

 

 Дневници
 
В следващия си отговор, моля да включите (като копирате целите съдържания ) следните дневници:

  • Дневник от Malwarebytes Anti -Malware
  • AdwCleaner.txt
  • JRT.txt
  • FRST.txt (копирате цялото съдържание)
  • Addition.txt (прикачате..) 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Malwarebytes Anti -Malware:

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 28.5.2017 г.
Scan Time: 13:34 ч.
Logfile:
Administrator: Yes

Version: 2.2.0.1024
Malware Database: v2017.05.28.03
Rootkit Database: v2017.05.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Nikola

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 253082
Time Elapsed: 14 min, 46 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 18
Adware.Elex, HKLM\SOFTWARE\ecb`nl, Quarantined, [7d06928be1c8b383cc795780b1500ef2],
Adware.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{94272577-1E26-4046-9F17-DA6718DF4F33}, Quarantined, [53302eef8425e254cda4345711f0936d],
Adware.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Windows-PG, Quarantined, [9ce7021bd1d80a2ccd3edbafa25fe719],
Adware.Ghokswa, HKLM\SOFTWARE\WOW6432NODE\Boxbob, Quarantined, [5f24f627ffaa56e06e333b115fa2d22e],
Adware.Elex, HKLM\SOFTWARE\WOW6432NODE\ecb`nl, Quarantined, [85feaf6ea5040b2b133229ae936e0ff1],
Adware.Elex.SHHKRST, HKLM\SOFTWARE\WOW6432NODE\initialpage123Software, Quarantined, [820132eb2089cd69055ff82f03fe0bf5],
PUP.Optional.StartPage.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\ourluckysitesSoftware, Quarantined, [e2a157c6961339fdec172c045aa7c739],
Adware.Elex, HKLM\SOFTWARE\WOW6432NODE\{84416237-6490-494D-9AD6-4994DD978971}, Quarantined, [96ed6bb289208aac75360a50a160619f],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\CSHMDR, Quarantined, [3350998458519c9a3e2d7c6be41dc53b],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\CWASRE, Quarantined, [e99a49d4ebbe96a01f30df0217eae41c],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\NPASRE, Quarantined, [cab933eaf4b5c175ea52845618e9817f],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\SANARE, Quarantined, [5132f627a30667cf03b3349ce41d40c0],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\SNAREA, Quarantined, [156e6cb15455c2745fc0e6f108f9f30d],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\VNASRE, Quarantined, [94ef2df0edbc1026e150428f53ae01ff],
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WANARE, Quarantined, [4e359489624756e0c8a070db5ea2a25e],
Adware.Elex, HKU\.DEFAULT\SOFTWARE\ecb`nl, Quarantined, [4d3663bacadfb1857e400aca06fb649c],
Adware.Elex, HKU\S-1-5-18\SOFTWARE\ecb`nl, Quarantined, [e79ce23bb4f554e2d4b09c3bde232dd3],
Adware.Ghokswa, HKU\S-1-5-21-1277645323-528265092-1560178641-1000\SOFTWARE\Boxbob, Quarantined, [4c3718050f9ad660b8084002c14021df],

Registry Values: 3
Adware.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{94272577-1E26-4046-9F17-DA6718DF4F33}|Path, \Windows-PG, Quarantined, [53302eef8425e254cda4345711f0936d]
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{63192A30-1BD6-4B67-850C-D7B501F33B8A}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files (x86)\MIO\loader\wdcxwd10jpvx-22jc3t0_wd-wxa1a54mnlhhmnlhh.dat|Name=QQLive下载器wdcxwd10jpvx-22jc3t0_wd-wxa1a54mnlhhmnlhh.dat|, Quarantined, [6d167ca1d3d640f63b3312d541c0718f]
Adware.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{427A6584-E9B5-40E1-89BC-EBCCAC3F00AD}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files (x86)\MIO\loader\wdcxwd10jpvx-22jc3t0_wd-wxa1a54mnlhhmnlhh.dat|Name=QQLive下载器wdcxwd10jpvx-22jc3t0_wd-wxa1a54mnlhhmnlhh.dat|, Quarantined, [2d569885e4c5ab8b28463aadaf52c838]

Registry Data: 0
(No malicious items detected)

Folders: 217
Adware.Elex.Generic, C:\Program Files (x86)\Prifashnerqagh Helper, Quarantined, [5b28fe1f88211125bcccec8da957718f],
Adware.Elex, C:\Program Files (x86)\MIO\loader, Quarantined, [85fe4dd0a702b77fe78dd6c9778a2ad6],
Adware.Elex, C:\Program Files (x86)\MIO, Quarantined, [85fe4dd0a702b77fe78dd6c9778a2ad6],
Adware.Elex, C:\Users\Nikola\AppData\Local\SNARE, Quarantined, [abd830ed3b6ea096bf052baf34cdf20e],
Adware.Elex, C:\Windows\Update\psgo, Quarantined, [aad91c01367395a1156ba143a65bb848],
Adware.Elex, C:\Windows\psgo, Quarantined, [572cd7464366191dbfc68a5a04fd9c64],
Adware.Elex, C:\Reimward, Quarantined, [b5ced34ac3e6082e28011c0044bcaf51],
Adware.Elex, C:\Users\Nikola\AppData\Local\WANARE, Quarantined, [bac92bf2cedbbf77a1cdb1a09868d828],
Adware.Elex, C:\Jopetiondipas, Quarantined, [5d26ec31cfda9a9ca0ec4dff81804ab6],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\Dictionaries, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\VisualElements, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_metadata, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_metadata, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Crashpad, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\databases, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji\1.0.16_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\css, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\bg, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ca, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\cs, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\da, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\de, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\el, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\en, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\en_GB, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\es, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\es_419, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\et, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\fi, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\fil, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\fr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\hi, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\hr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\hu, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\id, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\it, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ja, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ko, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\lt, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\lv, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\nb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\nl, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\pl, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\pt_BR, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\pt_PT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ro, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ru, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sk, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sl, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sv, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\th, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\tr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\uk, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\vi, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\zh_CN, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\zh_TW, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_metadata, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cloud_route_details, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\iw, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\am, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ar, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\bg, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\bn, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ca, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\cs, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\da, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\de, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\el, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\en, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\es, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\et, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fi, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fil, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\gu, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\hi, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\hr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\hu, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\id, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\it, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ja, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\kn, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ko, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\lt, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\lv, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ml, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\mr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ms, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\nb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\nl, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pl, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pt, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pt_BR, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pt_PT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ro, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ru, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sk, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sl, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sv, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sw, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ta, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\te, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\th, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\tr, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\uk, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\vi, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\zh, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\zh_TW, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_metadata, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\KVYRWZXG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\flvplayer.viastream.viasat.tv, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\#flvplayer.viastream.viasat.tv, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\#radiofresh.bg, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\#zynga1-a.akamaihd.net, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\radiofresh.bg, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\zynga1-a.akamaihd.net, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\zynga1-a.akamaihd.net\##6C77349503ACEEC2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Platform Notifications, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\ScriptCache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\ScriptCache\index-dir, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def\GPUCache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\GPUCache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB\https_www.facebook.com_0.indexeddb.leveldb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIcons, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIconsOld, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\_metadata, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\_platform_specific, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\_platform_specific\all, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\FileTypePolicies, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\FileTypePolicies\11, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\OriginTrials, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\PepperFlash, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\PepperFlash\25.0.0.171, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwiftShader, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.105.0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.106.0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Elex, C:\Users\Nikola\AppData\Roaming\WinSAPSvc, Quarantined, [196af12c387140f640d9d296d130639d],
Adware.Elex, C:\Reaqapytegupy, Quarantined, [c0c39885e6c32b0b1491903c0cf56997],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\7m3k2im5.default, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\SANARE, Quarantined, [b7cc011c8128a195a1e402d57889669a],
Adware.Elex, C:\Reerdition, Quarantined, [30536db00d9c8aac7e609c3efb0607f9],
Adware.Elex, C:\Users\Nikola\AppData\Local\CWASRE, Quarantined, [94ef48d5c9e046f05b28d809c839b050],
Adware.Elex, C:\Terward, Quarantined, [4a39120b4d5c2c0a5232c71a5ea3fb05],
Adware.Elex, C:\Users\Nikola\AppData\Local\NPASRE, Quarantined, [810274a9b1f8ac8ae81ae3006b964bb5],
Adware.Elex, C:\Users\Nikola\AppData\Local\CSHMDR, Quarantined, [f1925dc04c5d0c2a682ba44356abfc04],
PUP.Optional.ChromeADR.Generic, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0, Quarantined, [7112dd4073365fd704307c9aa9586e92],
PUP.Optional.ChromeADR.Generic, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\js, Quarantined, [7112dd4073365fd704307c9aa9586e92],
PUP.Optional.ChromeADR.Generic, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip, Quarantined, [7112dd4073365fd704307c9aa9586e92],

Files: 1343
FraudTool.YAC, C:\WINDOWS\SYSTEM32\drivers\iSafeKrnlBoot.sys, Delete-on-Reboot, [fab2eba07369bf3c6db33469b5b36fcb],
FraudTool.YAC, C:\WINDOWS\SYSTEM32\drivers\iSafeNetFilter.sys, Delete-on-Reboot, [9fb02fba90f6af59537a30c3db9777c8],
Adware.Elex.Generic, C:\Program Files (x86)\Lerjudom\libvlc.dll, Quarantined, [2d5621fc48617fb7147afabc50b1659b],
Adware.Elex, C:\Windows\Installer\2def8.msi, Quarantined, [7b0856c785243402f68dad05b64bb947],
PUP.Optional.Elex, C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\extensions\@DA3566E2-F709-11E5-8E87-A604BC8E7F8B.xpi, Quarantined, [e69d0e0fc9e0c76f46cd271f6997a65a],
PUP.Optional.Elex, C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\extensions\@E97YHOMI-FU8L-IM23-VUT9-RVDZT7M8XL8H.xpi, Quarantined, [ed96c65762474de99182c3839b65db25],
PUP.Optional.Elex, C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\extensions\@H99KV4DO-UCCF-9PFO-9ZLK-8RRP4FVOKD9O.xpi, Quarantined, [6b1852cb3e6ba98d29ea1b2b12ee639d],
Adware.Elex.Generic, C:\Program Files (x86)\Prifashnerqagh Helper\local64spl.dll.ini, Quarantined, [5b28fe1f88211125bcccec8da957718f],
Adware.Elex, C:\Windows\System32\Tasks\Windows-PG, Quarantined, [483b5dc0e2c76dc9ba3c7f0a40c145bb],
Adware.Elex, C:\Program Files (x86)\MIO\loader\wdcxwd10jpvx-22jc3t0_wd-wxa1a54mnlhhmnlhh.dat, Quarantined, [85fe4dd0a702b77fe78dd6c9778a2ad6],
Adware.Elex, C:\Program Files (x86)\MIO\MIO.exe, Quarantined, [85fe4dd0a702b77fe78dd6c9778a2ad6],
Adware.Elex, C:\Users\Nikola\AppData\Local\SNARE\Snarer.dll, Quarantined, [abd830ed3b6ea096bf052baf34cdf20e],
Adware.Elex, C:\Windows\Update\psgo\psgo.ps1, Quarantined, [aad91c01367395a1156ba143a65bb848],
Adware.Elex, C:\Windows\psgo\psgo.ps1, Quarantined, [572cd7464366191dbfc68a5a04fd9c64],
Adware.Elex, C:\Reimward\Cuwolenuosy.jjj, Quarantined, [b5ced34ac3e6082e28011c0044bcaf51],
Adware.Elex, C:\Jopetiondipas\Aramory.lqe, Quarantined, [5d26ec31cfda9a9ca0ec4dff81804ab6],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\eventlog_provider.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\57.0.2987.98.manifest, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome.exe, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome_100_percent.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome_200_percent.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome_child.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome_elf.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\chrome_watcher.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\d3dcompiler_47.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\debug.log, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\Extensions, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\icudtl.dat, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\libegl.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\libglesv2.dll, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\natives_blob.bin, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\old_resources.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\resources.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\snapshot_blob.bin, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\Dictionaries\en-US-7-1.bdic, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\hi.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\am.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ar.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\bg.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\bn.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ca.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\cs.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\da.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\de.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\el.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\en-GB.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\en-US.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\es-419.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\es.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\et.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\fa.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\fi.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\fil.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\fr.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\gu.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\he.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\hr.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\hu.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\id.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\it.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ja.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\kn.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ko.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\lt.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\lv.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ml.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\mr.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ms.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\nb.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\nl.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\pl.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\pt-BR.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\pt-PT.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ro.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ru.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\sk.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\sl.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\sr.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\sv.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\sw.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\ta.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\te.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\th.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\tr.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\uk.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\vi.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\zh-CN.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\locales\zh-TW.pak, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\VisualElements\logo.png, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Program Files (x86)\Boxbob\Application\VisualElements\smalllogo.png, Quarantined, [b4cf978627826acce9a06103f50cec14],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Certificate Revocation Lists, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\First Run, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Local State, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_metadata\verified_contents.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\ac3b9aed7fa9674757159e6d7d575672f9d98100941e9bdeffeca1313b75782d.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\03019df3fd85a69a8ebd1facc6da9ba73e469774fe77f579fc5a08b8328c1d6b.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\293c519654c83965baaa50fc5807d4b76fbf587a2972dca4c30cf4e54547f478.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\34bb6ad6c3df9c03eea8a499ff7891486c9d5e5cac92d01f7bfd1bce19db48ef.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\41b2dc2e89e63ce4af1ba7bb29bf68c6dee6f9f1cc047e30dffae3b3ba259263.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\5614069a2fd7c2ecd3f5e1bd44b23ec74676b9bc99115cc0ef949855d689d0dd.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\68f698f81f6482be3a8ceeb9281d4cfc71515d6793d444d10a67acbb4f4ffbc4.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\7461b4a09cfb3d41d75159575b2e7649a445a8d27709b0cc564a6482b7eb41a3.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\a4b90990b418581487bb13a2cc67700a3c359804f91bdfb8e377cd0ec80ddc10.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\a577ac9ced7548dd8f025b67a241089df86e0f476ec203c2ecbedb185f282638.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\bbd9dfbc1f8a71b593942397aa927b473857950aab52e81a909664368e1ed185.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\bc78e1dfc5f63c684649334da10fa15f0979692009c081b4f3f6917f3ed9b8a5.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\cdb5179b7fc1c046feea31136a3f8f002e6182faf8896fecc8b2f5b5ab604900.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\ddeb1d2b7a0d4fa6208b81ad8168707e2e8e9d01d55c888d3d11c4cdb6ecbecc.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\e0127629e90496564e3d0147984498aa48f8adb16600eb7902a1ef9909906273.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\397\_platform_specific\all\sths\ee4bbdb775ce60bae142691fabe19e66a30f7e5fb072d88300c47b897aa8fdcb.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_metadata\verified_contents.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\ac3b9aed7fa9674757159e6d7d575672f9d98100941e9bdeffeca1313b75782d.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\03019df3fd85a69a8ebd1facc6da9ba73e469774fe77f579fc5a08b8328c1d6b.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\293c519654c83965baaa50fc5807d4b76fbf587a2972dca4c30cf4e54547f478.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\34bb6ad6c3df9c03eea8a499ff7891486c9d5e5cac92d01f7bfd1bce19db48ef.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\41b2dc2e89e63ce4af1ba7bb29bf68c6dee6f9f1cc047e30dffae3b3ba259263.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\5614069a2fd7c2ecd3f5e1bd44b23ec74676b9bc99115cc0ef949855d689d0dd.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\68f698f81f6482be3a8ceeb9281d4cfc71515d6793d444d10a67acbb4f4ffbc4.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\7461b4a09cfb3d41d75159575b2e7649a445a8d27709b0cc564a6482b7eb41a3.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\a4b90990b418581487bb13a2cc67700a3c359804f91bdfb8e377cd0ec80ddc10.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\a577ac9ced7548dd8f025b67a241089df86e0f476ec203c2ecbedb185f282638.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\bbd9dfbc1f8a71b593942397aa927b473857950aab52e81a909664368e1ed185.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\bc78e1dfc5f63c684649334da10fa15f0979692009c081b4f3f6917f3ed9b8a5.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\cdb5179b7fc1c046feea31136a3f8f002e6182faf8896fecc8b2f5b5ab604900.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\ddeb1d2b7a0d4fa6208b81ad8168707e2e8e9d01d55c888d3d11c4cdb6ecbecc.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\e0127629e90496564e3d0147984498aa48f8adb16600eb7902a1ef9909906273.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\CertificateTransparency\398\_platform_specific\all\sths\ee4bbdb775ce60bae142691fabe19e66a30f7e5fb072d88300c47b897aa8fdcb.sth, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Secure Preferences, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cookies, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cookies-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Current Session, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Current Tabs, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Favicons, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Favicons-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Network Action Predictor, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Network Action Predictor-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Network Persistent State, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Origin Bound Certs, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Origin Bound Certs-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Preferences, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\previews_opt_out.db, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\previews_opt_out.db-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\QuotaManager, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\QuotaManager-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\README, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Shortcuts, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Shortcuts-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Top Sites, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Top Sites-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\TransportSecurity, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Visited Links, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Web Data, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Web Data-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Google Profile.ico, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\History, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\History Provider Cache, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\History-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Last Session, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Last Tabs, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Login Data, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Login Data-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00019a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\data_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\data_1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\data_2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\data_3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000003, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000004, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000005, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000006, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000008, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000009, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00000a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00000b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00000c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00000d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00000e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00000f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000011, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000013, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000014, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000017, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000018, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000019, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00001a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00001b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00001c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00001d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00001e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00001f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000020, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000021, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000022, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000023, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000024, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000025, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000027, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000028, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000029, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00002a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00002b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00002c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00002d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00002f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000033, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000034, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000035, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000036, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000037, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000038, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000039, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00003a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00003b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00003d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00003e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00003f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000040, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000042, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000044, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000045, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000046, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000049, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00004c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00004d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00004f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000050, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000052, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000054, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000055, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000058, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000059, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00005a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00005c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00005e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00005f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000060, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000061, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000062, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000066, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00006a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00006d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00006e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000072, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000073, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000074, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000075, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000079, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00007b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00007c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00007f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000081, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000082, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000083, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000088, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00008a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00008c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00008d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00008e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000090, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000091, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000092, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000095, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000097, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000098, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000099, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00009d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00009f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000a0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000010, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000026, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00003c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00005b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000080, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000a1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ba, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ce, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00010a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00011f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000133, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000148, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00015b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000171, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000185, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000a2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000a4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000a6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000a9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000aa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ac, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000b9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000bb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000bc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000bd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000be, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000bf, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000c8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ca, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000cb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000cc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000cd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000cf, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000d9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000da, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000db, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000dc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000dd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000de, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000df, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000e9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ea, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000eb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ec, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ed, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ee, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ef, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000f9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000fa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000fb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000fc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000fd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000fe, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0000ff, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000100, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000101, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000102, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000103, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000104, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000105, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000106, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000107, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000108, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000109, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00010b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00010c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00010d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00010e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000110, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000112, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000113, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000114, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000115, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000116, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000117, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000118, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00011a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00011b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00011c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00011d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00011e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000120, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000121, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000122, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000123, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000124, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000125, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000126, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000127, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000128, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000129, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00012a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00012b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00012c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00012d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00012e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00012f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000130, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000131, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000132, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000134, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000135, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000136, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000137, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000138, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000139, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00013a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00013b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00013c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00013d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00013e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00013f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000140, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000141, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000142, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000143, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000144, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000147, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000149, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00014a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00014b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00014c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00014d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00014e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00014f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000150, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000151, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000152, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000153, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000154, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000155, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000156, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000157, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000158, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000159, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00015a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00015d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00015e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00015f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000160, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000161, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000162, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000164, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000166, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000167, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000168, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000169, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00016a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00016b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00016c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00016d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00016e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00016f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000170, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000172, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000173, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000174, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000175, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000177, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000178, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000179, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00017a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00017b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00017c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00017d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00017e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00017f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000180, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000181, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000182, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000183, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000184, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000186, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000187, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000188, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000189, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00018a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00018b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00018c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00018d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00018e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00018f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000190, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000191, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000192, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000193, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000195, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000196, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000197, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000199, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00019b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00019c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00019d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00019e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001a9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001aa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ab, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ac, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ad, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001af, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001b9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ba, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001bb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001bc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001bd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001be, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001bf, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ca, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001cb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001cc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001cd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ce, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001cf, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001da, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001db, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001dc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001dd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001de, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001e0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001e3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001e4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001e5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ea, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001eb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ec, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ed, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ee, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001f9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001fa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001fb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001fc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001fd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001fe, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ff, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000200, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000201, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000202, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000204, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000205, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000206, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000207, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000208, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000209, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00020a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00020b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00020c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00020d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00020e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00020f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000210, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000211, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000212, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000213, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000214, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000215, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000216, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000218, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000219, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00021a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00021b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00021c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00021d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00021e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00021f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000220, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000221, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000222, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000223, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000224, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000225, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000226, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000227, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000228, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000229, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00022a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00022c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00022d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00022e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00022f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000230, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000231, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000232, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000233, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000234, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000235, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000237, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000238, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000239, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00023a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00023b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00023c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00023d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00023e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000240, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000241, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000242, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000244, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000245, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000246, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000247, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000248, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000249, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00024a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00024b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00024c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00024d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00024e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00024f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000250, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000251, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000252, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000254, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000255, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000256, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000257, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000258, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000259, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00025a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00025b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00025d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00025e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00025f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000260, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000261, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000262, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000263, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000264, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000265, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000266, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000268, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000269, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00026a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00026b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00026c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00026d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00026e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00026f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000270, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000271, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000272, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000273, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000274, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000275, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000276, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000277, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000278, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000279, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00027a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00027c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00027d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00027e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00027f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000280, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000281, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000282, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000283, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000284, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000285, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000286, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000287, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000288, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000289, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00028a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00028b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00028c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00028d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00028e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000290, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000291, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000292, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000293, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000294, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000295, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000296, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000297, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000298, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000299, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00029a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00029b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00029c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00029d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00029e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00029f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002aa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ab, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ac, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ad, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ae, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002af, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ba, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002bc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002bd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002be, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002bf, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002c9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ca, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002cc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002cd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ce, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002cf, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002d9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002da, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002db, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002dc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002dd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002de, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002e9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ea, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002eb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ec, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ed, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ee, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ef, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f4, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f5, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f6, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f9, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002fa, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002fb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002fc, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002fd, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002fe, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002ff, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000300, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000301, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000302, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000303, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000304, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000305, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000306, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000308, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000309, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00030a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00030b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00030c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00030d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00030e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00030f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000310, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000311, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000312, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000313, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000314, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000315, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000316, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000318, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000319, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00031a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ae, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001c2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001d8, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0001ef, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000203, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000217, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00022b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00023f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000253, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000267, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00027b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00028f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002a3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002b7, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002cb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002df, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_0002f3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000307, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00031c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000331, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00034a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00031e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00031f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000320, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000321, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000322, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000323, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000324, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000325, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000326, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000327, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000328, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00032c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00032d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00032e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00032f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000330, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000332, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000334, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000335, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000336, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000337, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000338, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000339, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00033a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00033b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00033c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00033d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00033e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00033f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000340, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000341, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000342, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000343, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000344, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000349, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00034c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00034d, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00034e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00034f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000350, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000351, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000352, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000353, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000357, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000358, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000359, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00035a, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00035b, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00035c, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00035e, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_00035f, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000360, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000361, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000362, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000363, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000364, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\f_000366, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Cache\index, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\databases\Databases.db, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\databases\Databases.db-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension Rules\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extension State\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji\1.0.16_0\background.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji\1.0.16_0\devtools.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji\1.0.16_0\devtools.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji\1.0.16_0\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\ekbmlhopnonkbfompbndcifmljkljhji\1.0.16_0\sha256.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\js\background.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\js\content.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\craw_background.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\craw_window.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\css\craw_window.css, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\html\craw_window.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\flapper.gif, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\icon_128.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\icon_16.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\topbar_floating_button.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\topbar_floating_button_close.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\topbar_floating_button_hover.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\topbar_floating_button_maximize.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\images\topbar_floating_button_pressed.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\bg\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ca\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\cs\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\da\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\de\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\el\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\en\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\en_GB\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\es\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\es_419\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\et\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\fi\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\fil\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\fr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\hi\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\hr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\hu\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\id\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\it\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ja\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ko\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\lt\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\lv\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\nb\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\nl\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\pl\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\pt_BR\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\pt_PT\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ro\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\ru\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sk\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sl\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\sv\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\th\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\tr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\uk\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\vi\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\zh_CN\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_locales\zh_TW\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.2_0\_metadata\verified_contents.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\feedback.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\angular.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\background_script.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_game_sender.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_route_details.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_route_details.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_sender.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\common.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\feedback.css, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\feedback_script.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\material_css_min.css, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\mirroring_cast_streaming.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\mirroring_common.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\mirroring_hangouts.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\mirroring_webrtc.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\cast_app.css, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\cast_app.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\cast_app_redirect.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\chromecast_logo_grey.png, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\devices.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\index.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\offers.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cast_setup\setup.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cloud_route_details\view.html, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\cloud_route_details\view.js, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\iw\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\am\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ar\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\bg\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\bn\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ca\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\cs\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\da\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\de\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\el\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\en\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\es\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\et\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fa\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fi\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fil\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\fr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\gu\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\hi\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\hr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\hu\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\id\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\it\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ja\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\kn\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ko\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\lt\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\lv\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ml\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\mr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ms\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\nb\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\nl\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pl\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pt\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pt_BR\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\pt_PT\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ro\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ru\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sk\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sl\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sv\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\sw\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\ta\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\te\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\th\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\tr\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\uk\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\vi\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\zh\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_locales\zh_TW\messages.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_metadata\computed_hashes.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5717.116.0.4_0\_metadata\verified_contents.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\flvplayer.viastream.viasat.tv\com.conviva.livePass.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\settings.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\#flvplayer.viastream.viasat.tv\settings.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\#radiofresh.bg\settings.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\macromedia.com\support\flashplayer\sys\#zynga1-a.akamaihd.net\settings.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\radiofresh.bg\com.jeroenwijerin.players.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\KDD4Z99L\zynga1-a.akamaihd.net\zynga_poker.sol, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Platform Notifications\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Platform Notifications\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Platform Notifications\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Platform Notifications\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Platform Notifications\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\Database\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\ScriptCache\index, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Service Worker\ScriptCache\index-dir\the-real-index, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\000005.ldb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\000014.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\000016.ldb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Session Storage\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def\GPUCache\data_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def\GPUCache\data_1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def\GPUCache\data_2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def\GPUCache\data_3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Storage\ext\chrome-signin\def\GPUCache\index, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\GPUCache\data_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\GPUCache\data_1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\GPUCache\data_2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\GPUCache\data_3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\GPUCache\index, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB\https_www.facebook.com_0.indexeddb.leveldb\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB\https_www.facebook.com_0.indexeddb.leveldb\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB\https_www.facebook.com_0.indexeddb.leveldb\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB\https_www.facebook.com_0.indexeddb.leveldb\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\IndexedDB\https_www.facebook.com_0.indexeddb.leveldb\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIcons\A31C.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIcons\A31D.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIcons\A31E.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIcons\A31F.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIcons\A320.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIconsOld\147B.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIconsOld\147C.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIconsOld\147D.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\JumpListIconsOld\147E.tmp, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\ekbmlhopnonkbfompbndcifmljkljhji\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\jiclpkloooednkohecgoedlhbiobhgip\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome\000003.log, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome\CURRENT, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome\LOCK, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome\LOG, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome\LOG.old, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Extension Settings\nkeimhogjdpnpccoofpliimaahmaaome\MANIFEST-000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_ekbmlhopnonkbfompbndcifmljkljhji_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_ekbmlhopnonkbfompbndcifmljkljhji_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_jiclpkloooednkohecgoedlhbiobhgip_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_jiclpkloooednkohecgoedlhbiobhgip_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_nkeimhogjdpnpccoofpliimaahmaaome_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_nkeimhogjdpnpccoofpliimaahmaaome_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_pkedcjkdefgpdelpbcmbmeomcjbeemfm_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\chrome-extension_pkedcjkdefgpdelpbcmbmeomcjbeemfm_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_howtoremove.guide_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_howtoremove.guide_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_www.google.bg_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_www.google.bg_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_www.mozilla.org_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_www.mozilla.org_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_cdn.playstatic.mtgx.tv_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_cdn.playstatic.mtgx.tv_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_cjs.linkbolic.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_cjs.linkbolic.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_greatis.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_greatis.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_info.greatis.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_info.greatis.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_play.novatv.bg_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_play.novatv.bg_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_www.luckystarting.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\http_www.luckystarting.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_disqus.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_disqus.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_facebook2.poker.zynga.com_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_facebook2.poker.zynga.com_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_g8h3k5e4.ssl.hwcdn.net_0.localstorage, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Local Storage\https_g8h3k5e4.ssl.hwcdn.net_0.localstorage-journal, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\_metadata\verified_contents.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\EVWhitelist\7\_platform_specific\all\ev_hashes_whitelist.bin, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\FileTypePolicies\11\download_file_types.pb, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\FileTypePolicies\11\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\FileTypePolicies\11\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\PepperFlash\25.0.0.171\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\PepperFlash\25.0.0.171\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\PepperFlash\25.0.0.171\pepflashplayer.dll, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\data_0, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\data_1, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\data_2, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\data_3, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\f_000001, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\f_000002, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\ShaderCache\GPUCache\index, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.105.0\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.105.0\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.105.0\software_reporter_tool.exe, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.106.0\manifest.fingerprint, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.106.0\manifest.json, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Ghokswa, C:\Users\Nikola\AppData\Local\Boxbob\User Data\SwReporter\19.106.0\software_reporter_tool.exe, Quarantined, [780b50cdffaa4cea7430323281806898],
Adware.Elex, C:\Reaqapytegupy\Qerzerph.gwc, Quarantined, [c0c39885e6c32b0b1491903c0cf56997],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\7za.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\7za.exe, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\bf.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\bf.old, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\ccv_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\cef.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\cef_100_percent.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\cef_200_percent.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\cef_extensions.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\cfsa_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\cfs_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\chrome_elf.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\d3dcompiler_43.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\d3dcompiler_47.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\debug.log, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\devtools_resources.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\exec.cfg, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\fcv_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\freebl3.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\icudtl.dat, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\icv_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\libcef.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\libEGL.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\libGLESv2.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\mozglue.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\natives_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\nss3.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\nssdbm3.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\QQIme.exe, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\QQImeRegSkin.cfg, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\QQImeRegSkin.exe, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\snapshot_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\softokn3.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\sqlite3.dll, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\t, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\wb_blob.bin, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\7m3k2im5.default\Cookies, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\7m3k2im5.default\Cookies-journal, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\hi.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\am.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ar.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\bg.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\bn.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ca.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\cs.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\da.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\de.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\el.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\en-GB.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\en-US.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\es-419.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\es.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\et.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\fa.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\fi.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\fil.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\fr.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\gu.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\he.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\hr.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\hu.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\id.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\it.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ja.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\kn.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ko.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\lt.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\lv.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ml.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\mr.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ms.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\nb.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\nl.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\pl.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\pt-BR.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\pt-PT.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ro.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ru.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\sk.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\sl.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\sr.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\sv.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\sw.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\ta.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\te.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\th.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\tr.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\uk.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\vi.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\zh-CN.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Users\Nikola\AppData\Local\background_fault\locales\zh-TW.pak, Quarantined, [6a19cd50ffaa30068c50aa29b9489769],
Adware.Elex, C:\Reerdition\Qerzerph.gwc, Quarantined, [30536db00d9c8aac7e609c3efb0607f9],
Adware.Elex, C:\Terward\Cuwolenuosy.777, Quarantined, [4a39120b4d5c2c0a5232c71a5ea3fb05],
PUP.Optional.ChromeADR.Generic, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\manifest.json, Quarantined, [7112dd4073365fd704307c9aa9586e92],
PUP.Optional.ChromeADR.Generic, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\js\background.js, Quarantined, [7112dd4073365fd704307c9aa9586e92],
PUP.Optional.ChromeADR.Generic, C:\Users\Nikola\AppData\Local\Boxbob\User Data\Default\Extensions\jiclpkloooednkohecgoedlhbiobhgip\1.1.16_0\js\content.js, Quarantined, [7112dd4073365fd704307c9aa9586e92],
PUP.Optional.SearchInMe, C:\Users\Nikola\AppData\Roaming\Firefox\Firefox\Profiles\7m3k2im5.default\searchplugins\startsearch.xml, Quarantined, [e49fb9646643ee484cacbcf72fd2f808],
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: (user_pref("browser.newtab.url", "http://www.initialpage123.com/?z=07a207e65a710d8d92ee5ebgfz1teo8q0o8z5qfb3z&from=dam&uid=WDCXWD10JPVX-22JC3T0_WD-WXA1A54MNLHHMNLHH&type=hp");), Replaced,[572c0a13f6b3c6709f86742548b96c94]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: (", 1492600210);
user_pref("app.update.lastUpdateTime.xpi-signat), Replaced,[bcc7021ba6034de947dedfbabe4336ca]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: (s file.
 *
 * If you make changes to this file while the application is running,
 * the changes will be overwritten when the application exits.
 *
 * To make a manual change to pref), Replaced,[ef94df3e9c0d5adc2df883167f82fa06]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: ( is running,
 * the changes will be overwritten when the application exits.
 *
 * To make a manual change to preferences, you can visit the URL about:config
 */

user_pref("accessibility.typeaheadfind", ), Replaced,[2063839a4a5f59ddd5503b5e53aed22e]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: (ferences, you can visit the URL about:config
 */

user_pref("accessibility.typeaheadfind", true);
user_pref("app.update.auto", false);
user_pref("app.update.enabled", false);
user_pref("app.update.lastUpd), Replaced,[e49f58c51693f244c461f5a4946d6b95]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: (anges will be overwritten when the application exits.
 *
 *), Replaced,[7b0821fc961389ad93924d4cba47639d]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\prefs.js, Good: (), Bad: (lse);
user_pref("app.update.enabled", false);
user_pref("app.update.lastUpdateTime.addon-background-update-timer", 1492540350);
user_pref("app.update.lastUpdateTime.background-u), Replaced,[463d38e55a4f082ee243b0e96b969f61]
Adware.Elex, C:\Users\Nikola\AppData\Roaming\Profiles\Jirityproruph.default\searchplugins\mrcmzud0.xml, Quarantined, [dba87ca12e7bea4cbb6973264bb60ff1],

Physical Sectors: 0
(No malicious items detected)


(end)

AdwCleaner[S0]:

# AdwCleaner v6.047 - Logfile created 28/05/2017 at 14:15:19
# Updated on 19/05/2017 by Malwarebytes
# Database : 2017-05-26.6 [Server]
# Operating System : Windows 7 Ultimate Service Pack 1 (X64)
# Username : Nikola - NIKOLA-PC
# Running from : C:\Users\Nikola\Desktop\adwcleaner_6.047.exe
# Mode: Scan
# Support : https://www.malwarebytes.com/support

 

***** [ Services ] *****

No malicious services found.


***** [ Folders ] *****

Folder Found:  C:\Program Files (x86)\Firefox
Folder Found:  C:\Users\Nikola\AppData\Roaming\Firefox
Folder Found:  C:\Users\Nikola\AppData\Local\Firefox
Folder Found:  C:\ProgramData\BIT


***** [ Files ] *****

File Found:  C:\Windows\SysNative\log\iSafeKrnlCall.log
File Found:  C:\Users\Public\Documents\temp.dat
File Found:  C:\Users\Public\Documents\report.dat


***** [ DLL ] *****

No malicious DLLs found.


***** [ WMI ] *****

No malicious keys found.


***** [ Shortcuts ] *****

No infected shortcut found.


***** [ Scheduled Tasks ] *****

No malicious task found.


***** [ Registry ] *****

Key Found:  HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\SNARE
Key Found:  [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\SNARE
Key Found:  HKU\.DEFAULT\Software\ompndb
Key Found:  HKU\S-1-5-21-1277645323-528265092-1560178641-1000\Software\Conduit
Key Found:  HKU\S-1-5-18\Software\ompndb
Key Found:  HKCU\Software\Conduit
Key Found:  HKLM\SOFTWARE\Conduit
Key Found:  HKLM\SOFTWARE\ScreenShot
Key Found:  HKLM\SOFTWARE\ompndb
Key Found:  [x64] HKCU\Software\Conduit
Key Found:  [x64] HKLM\SOFTWARE\ompndb
Key Found:  [x64] HKLM\SOFTWARE\InterSect Alliance
Key Found:  [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}
Value Found:  HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [WinSAPSvc]
Value Found:  HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [Kitty]
Value Found:  HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [BIT]


***** [ Web browsers ] *****

No malicious Firefox based browser items found.
No malicious Chromium based browser items found.

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [2208 Bytes] - [28/05/2017 14:15:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2281 Bytes] ##########

 

 

AdwCleaner[C0]

 

# AdwCleaner v6.047 - Logfile created 28/05/2017 at 14:17:42
# Updated on 19/05/2017 by Malwarebytes
# Database : 2017-05-26.6 [Server]
# Operating System : Windows 7 Ultimate Service Pack 1 (X64)
# Username : Nikola - NIKOLA-PC
# Running from : C:\Users\Nikola\Desktop\adwcleaner_6.047.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support

 

***** [ Services ] *****

 

***** [ Folders ] *****

[-] Folder deleted: C:\Program Files (x86)\Firefox
[-] Folder deleted: C:\Users\Nikola\AppData\Roaming\Firefox
[-] Folder deleted: C:\Users\Nikola\AppData\Local\Firefox
[-] Folder deleted: C:\ProgramData\BIT


***** [ Files ] *****

[-] File deleted: C:\Windows\SysNative\log\iSafeKrnlCall.log
[-] File deleted: C:\Users\Public\Documents\temp.dat
[-] File deleted: C:\Users\Public\Documents\report.dat


***** [ DLL ] *****

 

***** [ WMI ] *****

 

***** [ Shortcuts ] *****

 

***** [ Scheduled Tasks ] *****

 

***** [ Registry ] *****

[-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\SNARE
[#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\SNARE
[-] Key deleted: HKU\.DEFAULT\Software\ompndb
[-] Key deleted: HKU\S-1-5-21-1277645323-528265092-1560178641-1000\Software\Conduit
[#] Key deleted on reboot: HKU\S-1-5-18\Software\ompndb
[#] Key deleted on reboot: HKCU\Software\Conduit
[-] Key deleted: HKLM\SOFTWARE\Conduit
[-] Key deleted: HKLM\SOFTWARE\ScreenShot
[-] Key deleted: HKLM\SOFTWARE\ompndb
[#] Key deleted on reboot: [x64] HKCU\Software\Conduit
[-] Key deleted: [x64] HKLM\SOFTWARE\ompndb
[-] Key deleted: [x64] HKLM\SOFTWARE\InterSect Alliance
[-] Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}
[-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [WinSAPSvc]
[-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [Kitty]
[-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [BIT]


***** [ Web browsers ] *****

 

*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [2217 Bytes] - [28/05/2017 14:17:42]
C:\AdwCleaner\AdwCleaner[S0].txt - [2380 Bytes] - [28/05/2017 14:15:19]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [2363 Bytes] ##########

 

 

Junkware Removal Tool

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.3 (04.10.2017)
Operating System: Windows 7 Ultimate x64
Ran by Nikola (Administrator) on ­Ґ¤ 28.05.2017 Ј. at 14:22:54,48
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 


File System: 9

Successfully deleted: C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\extensions\trash (Folder)
Successfully deleted: C:\Users\Nikola\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AWIU6GT4 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Nikola\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1DHPJ8E (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Nikola\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F5BUAZ8A (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Nikola\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KJ64XYSJ (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AWIU6GT4 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D1DHPJ8E (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F5BUAZ8A (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KJ64XYSJ (Temporary Internet Files Folder)

 

Registry: 0

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ­Ґ¤ 28.05.2017 Ј. at 14:25:00,55
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

Farbar Recovery Scan

FRST

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-05-2017
Ran by Nikola (administrator) on NIKOLA-PC (28-05-2017 14:36:38)
Running from C:\Users\Nikola\Desktop
Loaded Profiles: Nikola (Available Profiles: Nikola)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfwsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
() C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-10-27] (Qualcomm®Atheros®)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27793888 2017-05-05] (Skype Technologies S.A.)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-04-26] (Valve Corporation)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\...\MountPoints2: {63ea2b4f-24f4-11e7-b756-9b1a3fe8ef5d} - F:\SETUP.EXE
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [170360 2017-05-02] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [148016 2017-05-02] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 212.25.58.2 212.25.58.8
Tcpip\..\Interfaces\{BC2E77EF-8CF6-4816-BC32-184009B53D70}: [DhcpNameServer] 212.25.58.2 212.25.58.8

Internet Explorer:
==================
HKU\S-1-5-21-1277645323-528265092-1560178641-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: 7m3k2im5.default
FF ProfilePath: C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default [2017-05-28]
FF Extension: (Firefox OnBoard) - C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\Extensions\@onboard-v2 [2017-05-05]
FF Extension: (uBlock Origin) - C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\Extensions\uBlock0@raymondhill.net.xpi [2017-05-28]
FF Extension: (Adblock Plus) - C:\Users\Nikola\AppData\Roaming\Mozilla\Firefox\Profiles\7m3k2im5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-05-28]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-27] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-27] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-10-27] (Windows (R) Win 7 DDK provider) [File not signed]
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [1002552 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfwsa.exe [1824184 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5334432 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [729048 2017-04-11] (AVG Technologies CZ, s.r.o.)
R2 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] ()
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344184 2017-01-24] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-05-03] (NVIDIA Corporation)
R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [157456 2017-03-07] ()
S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [73992 2016-10-23] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313088 2017-02-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [298240 2016-11-30] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [253184 2017-04-11] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-10-27] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2017-04-19] (Disc Soft Ltd)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2017-05-28] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-05-03] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-05-03] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [59448 2017-04-20] (NVIDIA Corporation)
R3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2016-10-18] ()
U0 Partizan; system32\drivers\Partizan.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-05-28 14:36 - 2017-05-28 14:36 - 00011581 _____ C:\Users\Nikola\Desktop\FRST.txt
2017-05-28 14:35 - 2017-05-28 14:35 - 00000000 ____D C:\Users\Nikola\Desktop\FRST-OlderVersion
2017-05-28 14:25 - 2017-05-28 14:28 - 00002005 _____ C:\Users\Nikola\Desktop\JRT.txt
2017-05-28 14:22 - 2017-05-28 14:22 - 01663672 _____ (Malwarebytes) C:\Users\Nikola\Desktop\JRT.exe
2017-05-28 14:21 - 2017-05-28 14:21 - 00002462 _____ C:\Users\Nikola\Desktop\AdwCleaner[C0].txt
2017-05-28 14:15 - 2017-05-28 14:16 - 00002380 _____ C:\Users\Nikola\Desktop\adwcleaner.txt
2017-05-28 14:12 - 2017-05-28 14:17 - 00000000 ____D C:\AdwCleaner
2017-05-28 14:12 - 2017-05-28 14:12 - 04110280 _____ C:\Users\Nikola\Desktop\adwcleaner_6.047.exe
2017-05-28 14:09 - 2017-05-28 14:09 - 00000000 _____ C:\Users\Nikola\Desktop\New Text Document.txt
2017-05-28 13:33 - 2017-05-28 14:20 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-05-28 13:32 - 2017-05-28 14:01 - 00001096 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2017-05-28 13:32 - 2017-05-28 13:32 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2017-05-28 13:32 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2017-05-28 13:32 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2017-05-28 13:32 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-05-28 13:31 - 2017-05-28 13:32 - 22908888 _____ (Malwarebytes ) C:\Users\Nikola\Desktop\mbam-setup-2.2.0.1024.exe
2017-05-28 11:16 - 2017-05-28 11:17 - 00370381 _____ C:\Users\Nikola\Desktop\Fixlog.txt
2017-05-27 20:03 - 2017-05-27 20:03 - 00002197 _____ C:\Users\Nikola\Desktop\aswMBR.txt
2017-05-27 20:03 - 2017-05-27 20:03 - 00000512 _____ C:\Users\Nikola\Desktop\MBR.dat
2017-05-27 19:37 - 2017-05-27 19:37 - 405820229 _____ C:\Windows\MEMORY.DMP
2017-05-27 19:37 - 2017-05-27 19:37 - 00314056 _____ C:\Windows\Minidump\052717-18158-01.dmp
2017-05-27 19:37 - 2017-05-27 19:37 - 00000000 ____D C:\Windows\Minidump
2017-05-27 19:23 - 2017-05-27 19:24 - 05198336 _____ (AVAST Software) C:\Users\Nikola\Desktop\aswMBR.exe
2017-05-27 19:21 - 2017-05-27 19:22 - 00210704 _____ C:\TDSSKiller.3.1.0.15_27.05.2017_19.21.28_log.txt
2017-05-27 19:19 - 2017-05-27 19:20 - 04922400 _____ (AO Kaspersky Lab) C:\Users\Nikola\Desktop\tdsskiller.exe
2017-05-27 17:14 - 2017-05-27 19:37 - 00000000 ____D C:\Program Files (x86)\{A44C5F3C-5A86-437B-A7CB-B735D65FFBDC}
2017-05-27 17:14 - 2017-05-27 17:14 - 00000000 ____D C:\Program Files (x86)\Default Company Name
2017-05-27 17:14 - 2017-05-27 17:14 - 00000000 ____D C:\Pipisy
2017-05-27 14:44 - 2017-05-28 14:35 - 00000000 ____D C:\FRST
2017-05-27 14:43 - 2017-05-28 14:35 - 02429952 _____ (Farbar) C:\Users\Nikola\Desktop\FRST64.exe
2017-05-26 13:43 - 2017-05-28 11:16 - 00000000 ____D C:\Users\Nikola\AppData\Local\terana
2017-05-25 17:42 - 2017-05-25 17:42 - 00000000 ____D C:\Users\Nikola\AppData\LocalLow\KMPlayer
2017-05-25 11:26 - 2017-05-26 13:39 - 00000000 ____D C:\Program Files (x86)\{3DB0175D-38AA-44E0-8376-BDB6DB15C5A1}
2017-05-25 11:26 - 2017-05-25 11:26 - 00000000 ____D C:\Cosusp
2017-05-24 15:39 - 2017-05-24 16:17 - 00000000 ____D C:\Users\Nikola\Desktop\asdasd
2017-05-24 13:53 - 2017-05-25 11:14 - 00000000 ____D C:\Program Files (x86)\{FE995DF2-5F1D-404A-BAB6-45AFCC56729E}
2017-05-23 14:17 - 2017-05-24 09:52 - 00000000 ____D C:\Program Files (x86)\{5B0DB57B-51D4-4011-B1C6-B50ED4B84258}
2017-05-21 00:15 - 2017-05-21 00:15 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Macromedia
2017-05-21 00:15 - 2017-05-21 00:15 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Adobe
2017-05-21 00:15 - 2017-05-21 00:15 - 00000000 ____D C:\Users\Nikola\AppData\Local\Macromedia
2017-05-21 00:12 - 2017-05-21 00:12 - 00082164 _____ C:\Users\Nikola\Desktop\Zeitgeist Moving Forward (2011) DVDRip XviD-P2P.rar
2017-05-20 23:28 - 2017-05-20 23:28 - 00000000 ____D C:\Users\Nikola\AppData\LocalLow\uTorrent
2017-05-20 22:21 - 2017-05-20 22:21 - 00037138 _____ C:\Users\Nikola\Desktop\The.Fate.of.the.Furious.2017.576p.HDRip.x264.AAC-OzZY1.rar
2017-05-20 22:07 - 2017-05-27 14:14 - 00803320 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-05-20 22:07 - 2017-05-27 14:14 - 00144888 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-20 22:07 - 2017-05-27 14:14 - 00004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-05-20 22:07 - 2017-05-27 14:14 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-05-20 22:07 - 2017-05-27 14:14 - 00000000 ____D C:\Windows\system32\Macromed
2017-05-20 22:06 - 2017-05-27 14:14 - 00000000 ____D C:\Users\Nikola\AppData\Local\Adobe
2017-05-19 10:19 - 2017-05-28 14:25 - 00000000 ____D C:\Users\Nikola\AppData\LocalLow\Mozilla
2017-05-19 10:17 - 2017-05-19 10:17 - 00000000 ____D C:\Users\Nikola\AppData\Local\BMExplorer
2017-05-19 10:16 - 2017-05-19 10:16 - 00000000 ____D C:\Users\Nikola\Documents\Bluetooth Folder
2017-05-19 10:16 - 2017-05-19 10:16 - 00000000 ____D C:\Program Files\Common Files\AV
2017-05-18 18:36 - 2017-05-19 10:16 - 00000000 ____D C:\Program Files (x86)\{A4E0DBF7-4385-4767-8B72-A7A082ACD12E}
2017-05-18 18:36 - 2017-05-18 18:36 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\go00001
2017-05-17 18:09 - 2017-05-17 18:09 - 00000000 ____D C:\Program Files (x86)\{10531AA0-E11F-4B1B-87A2-7B6E28059C96}
2017-05-17 18:08 - 2017-05-17 18:08 - 00000000 ____D C:\Program Files\t9dlfshk
2017-05-17 17:52 - 2017-05-17 17:52 - 00000000 ____D C:\Users\Nikola\Documents\League of Legends
2017-05-17 14:08 - 2017-05-17 14:08 - 00000000 ____D C:\Users\Nikola\AppData\Local\CEF
2017-05-17 14:07 - 2017-05-19 10:16 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Atheros
2017-05-17 14:07 - 2017-05-17 14:07 - 00000000 ____D C:\Program Files (x86)\{B6073E2B-A8CC-4420-940F-4A57D5A84069}
2017-05-14 15:18 - 2017-05-22 10:42 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\BSplayer
2017-05-14 15:18 - 2017-05-14 15:18 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\BSplayer Pro
2017-05-14 15:18 - 2017-05-14 15:18 - 00000000 ____D C:\Program Files (x86)\Webteh
2017-05-12 16:14 - 2017-05-12 16:14 - 00000000 ____D C:\Program Files (x86)\{26D94659-9D28-420F-BD81-D090FF430B8F}
2017-05-12 14:48 - 2017-05-12 14:48 - 00003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-12 14:47 - 2017-05-03 23:21 - 00175736 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-05-12 14:47 - 2017-05-03 23:21 - 00143480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-05-12 14:47 - 2017-05-03 23:21 - 00048248 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2017-05-11 14:07 - 2017-05-11 14:07 - 00000000 _____ C:\Windows\SysWOW64\3333333
2017-05-11 14:06 - 2017-05-11 14:06 - 00000000 _____ C:\Windows\SysWOW64\1111111
2017-05-11 14:06 - 2017-05-11 14:06 - 00000000 _____ C:\Windows\SysWOW64\11
2017-05-11 14:06 - 2017-05-11 14:06 - 00000000 _____ C:\Windows\SysWOW64\00
2017-05-11 13:39 - 2017-05-11 13:39 - 00000000 ____D C:\Program Files (x86)\{351F1D18-6EC3-499E-8A6B-318E90A0700D}
2017-05-10 18:04 - 2017-05-10 18:04 - 00000000 ____D C:\Program Files (x86)\{AC016B5E-206E-4300-9E54-31480AFAA4A1}
2017-05-10 14:20 - 2017-04-28 04:14 - 05547240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-05-10 14:20 - 2017-04-28 04:14 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2017-05-10 14:20 - 2017-04-28 04:14 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2017-05-10 14:20 - 2017-04-28 04:14 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-05-10 14:20 - 2017-04-28 04:14 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-05-10 14:20 - 2017-04-28 04:11 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2017-05-10 14:20 - 2017-04-28 04:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 04:09 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:36 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2017-05-10 14:20 - 2017-04-28 03:36 - 03945192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2017-05-10 14:20 - 2017-04-28 03:34 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:19 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2017-05-10 14:20 - 2017-04-28 03:19 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2017-05-10 14:20 - 2017-04-28 03:19 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2017-05-10 14:20 - 2017-04-28 03:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-05-10 14:20 - 2017-04-28 03:15 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2017-05-10 14:20 - 2017-04-28 03:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2017-05-10 14:20 - 2017-04-28 03:12 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-05-10 14:20 - 2017-04-28 03:11 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-05-10 14:20 - 2017-04-28 03:11 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-05-10 14:20 - 2017-04-28 03:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-05-10 14:20 - 2017-04-28 03:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2017-05-10 14:20 - 2017-04-28 03:10 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-05-10 14:20 - 2017-04-28 03:08 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2017-05-10 14:20 - 2017-04-28 03:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2017-05-10 14:20 - 2017-04-28 03:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2017-05-10 14:20 - 2017-04-28 03:08 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2017-05-10 14:20 - 2017-04-28 03:07 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-05-10 14:20 - 2017-04-28 03:07 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2017-05-10 14:20 - 2017-04-26 17:59 - 03220992 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-05-10 14:20 - 2017-04-21 18:34 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2017-05-10 14:20 - 2017-04-21 18:15 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2017-05-10 14:20 - 2017-04-20 03:00 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2017-05-10 14:20 - 2017-04-20 02:16 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 02065408 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00876544 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2017-05-10 14:20 - 2017-04-17 18:37 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2017-05-10 14:20 - 2017-04-17 18:12 - 01417728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2017-05-10 14:20 - 2017-04-17 18:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2017-05-10 14:20 - 2017-04-17 18:12 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2017-05-10 14:20 - 2017-04-17 17:54 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2017-05-10 14:20 - 2017-04-16 12:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2017-05-10 14:20 - 2017-04-16 12:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2017-05-10 14:20 - 2017-04-16 11:57 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2017-05-10 14:20 - 2017-04-16 11:55 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2017-05-10 14:20 - 2017-04-16 11:55 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2017-05-10 14:20 - 2017-04-16 11:54 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2017-05-10 14:20 - 2017-04-16 11:54 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2017-05-10 14:20 - 2017-04-16 11:51 - 02899456 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2017-05-10 14:20 - 2017-04-16 11:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2017-05-10 14:20 - 2017-04-16 11:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2017-05-10 14:20 - 2017-04-16 11:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2017-05-10 14:20 - 2017-04-16 11:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2017-05-10 14:20 - 2017-04-16 11:37 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2017-05-10 14:20 - 2017-04-16 11:36 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2017-05-10 14:20 - 2017-04-16 11:36 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2017-05-10 14:20 - 2017-04-16 11:35 - 25741312 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-05-10 14:20 - 2017-04-16 11:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2017-05-10 14:20 - 2017-04-16 11:21 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2017-05-10 14:20 - 2017-04-16 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2017-05-10 14:20 - 2017-04-16 11:18 - 05977600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2017-05-10 14:20 - 2017-04-16 11:11 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-05-10 14:20 - 2017-04-16 11:10 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2017-05-10 14:20 - 2017-04-16 11:09 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2017-05-10 14:20 - 2017-04-16 11:04 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2017-05-10 14:20 - 2017-04-16 11:03 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2017-05-10 14:20 - 2017-04-16 11:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2017-05-10 14:20 - 2017-04-16 11:01 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2017-05-10 14:20 - 2017-04-16 11:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2017-05-10 14:20 - 2017-04-16 11:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2017-05-10 14:20 - 2017-04-16 11:00 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2017-05-10 14:20 - 2017-04-16 11:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2017-05-10 14:20 - 2017-04-16 10:57 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2017-05-10 14:20 - 2017-04-16 10:53 - 02290176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2017-05-10 14:20 - 2017-04-16 10:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2017-05-10 14:20 - 2017-04-16 10:52 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2017-05-10 14:20 - 2017-04-16 10:49 - 20278272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-05-10 14:20 - 2017-04-16 10:48 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2017-05-10 14:20 - 2017-04-16 10:47 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2017-05-10 14:20 - 2017-04-16 10:47 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2017-05-10 14:20 - 2017-04-16 10:46 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2017-05-10 14:20 - 2017-04-16 10:43 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2017-05-10 14:20 - 2017-04-16 10:40 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2017-05-10 14:20 - 2017-04-16 10:40 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-05-10 14:20 - 2017-04-16 10:37 - 02132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2017-05-10 14:20 - 2017-04-16 10:37 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2017-05-10 14:20 - 2017-04-16 10:35 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2017-05-10 14:20 - 2017-04-16 10:30 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2017-05-10 14:20 - 2017-04-16 10:29 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2017-05-10 14:20 - 2017-04-16 10:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2017-05-10 14:20 - 2017-04-16 10:25 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2017-05-10 14:20 - 2017-04-16 10:24 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2017-05-10 14:20 - 2017-04-16 10:22 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2017-05-10 14:20 - 2017-04-16 10:20 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2017-05-10 14:20 - 2017-04-16 10:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2017-05-10 14:20 - 2017-04-16 10:10 - 15250944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2017-05-10 14:20 - 2017-04-16 10:10 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2017-05-10 14:20 - 2017-04-16 10:08 - 04548608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2017-05-10 14:20 - 2017-04-16 10:08 - 02057216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2017-05-10 14:20 - 2017-04-16 10:08 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2017-05-10 14:20 - 2017-04-16 10:04 - 03241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2017-05-10 14:20 - 2017-04-16 09:53 - 13661184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2017-05-10 14:20 - 2017-04-16 09:50 - 01544704 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2017-05-10 14:20 - 2017-04-16 09:40 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2017-05-10 14:20 - 2017-04-16 09:37 - 02767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2017-05-10 14:20 - 2017-04-16 09:34 - 01314816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2017-05-10 14:20 - 2017-04-16 09:34 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 01483776 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2017-05-10 14:20 - 2017-04-12 18:32 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2017-05-10 14:20 - 2017-04-12 18:26 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2017-05-10 14:20 - 2017-04-12 18:25 - 01176064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2017-05-10 14:20 - 2017-04-12 18:25 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2017-05-10 14:20 - 2017-04-12 18:25 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2017-05-10 14:20 - 2017-04-07 18:34 - 00986856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2017-05-10 14:20 - 2017-04-07 18:34 - 00265448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2017-05-10 14:20 - 2017-04-07 18:30 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2017-05-10 14:20 - 2017-04-07 18:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2017-05-10 14:20 - 2017-04-07 18:22 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2017-05-10 14:20 - 2017-04-05 17:55 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2017-05-10 14:20 - 2017-04-05 17:55 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2017-05-10 14:20 - 2017-04-05 17:55 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2017-05-10 14:20 - 2017-04-04 18:34 - 01895656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2017-05-10 14:20 - 2017-04-04 18:34 - 00377576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2017-05-10 14:20 - 2017-04-04 18:34 - 00287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2017-05-10 14:20 - 2017-04-04 17:53 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2017-05-10 14:20 - 2017-04-04 17:53 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2017-05-10 14:20 - 2017-03-10 19:32 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2017-05-10 14:20 - 2017-03-10 19:32 - 00300544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2017-05-10 14:20 - 2017-03-10 19:20 - 01508352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2017-05-10 14:20 - 2017-03-10 19:20 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2017-05-10 14:20 - 2017-03-10 18:57 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2017-05-10 14:20 - 2017-03-10 18:55 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2017-05-10 14:20 - 2017-03-10 18:55 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2017-05-10 14:20 - 2017-03-09 19:34 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2017-05-10 14:20 - 2017-03-09 19:19 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2017-05-10 14:03 - 2017-05-10 14:03 - 00000000 ____D C:\Program Files (x86)\{5D99A23C-122C-4D42-AB91-769AC3A8412C}
2017-05-09 18:30 - 2017-05-09 18:36 - 00000000 ____D C:\Users\Nikola\AppData\Local\ElevatedDiagnostics
2017-05-09 16:23 - 2017-05-24 15:53 - 00000000 _____ C:\Windows\SysWOW64\1111
2017-05-08 21:12 - 2017-05-28 14:01 - 00000973 _____ C:\Users\Public\Desktop\Winamp.lnk
2017-05-08 21:12 - 2017-05-08 21:17 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Winamp
2017-05-08 21:12 - 2017-05-08 21:12 - 00000000 ____D C:\Program Files (x86)\Winamp
2017-05-08 18:59 - 2017-05-08 18:59 - 00000000 ____D C:\Program Files (x86)\{525BDD8F-6E82-42C3-81A5-7146AA96B684}
2017-05-06 12:58 - 2017-05-27 15:07 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2017-05-05 19:26 - 2017-05-05 19:26 - 00000000 ____D C:\Windows\SysWOW64\NV
2017-05-05 19:26 - 2017-05-05 19:26 - 00000000 ____D C:\Windows\system32\NV
2017-05-05 19:24 - 2017-05-05 19:24 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-05-05 19:24 - 2017-03-11 00:17 - 00536864 _____ C:\Windows\system32\vulkan-1.dll
2017-05-05 19:24 - 2017-03-11 00:17 - 00525600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-05-05 19:24 - 2017-03-11 00:17 - 00254240 _____ C:\Windows\system32\vulkaninfo.exe
2017-05-05 19:24 - 2017-03-11 00:17 - 00233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-05-05 19:23 - 2017-05-01 23:51 - 06437312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 02479552 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 01762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00548800 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2017-05-05 19:23 - 2017-05-01 23:51 - 00069752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-05-05 19:23 - 2017-04-26 00:11 - 07944687 _____ C:\Windows\system32\nvcoproc.bin
2017-05-05 19:21 - 2017-05-02 01:32 - 40201848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 35348600 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 35281528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 28592760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 20063696 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 17423240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 16434624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 14270072 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2017-05-05 19:21 - 2017-05-02 01:32 - 13401256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 11056456 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 11024384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 10547624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 09245560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 09014792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 08805416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 04075936 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 03592312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 03432896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 03012032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 01988032 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438205.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 01589696 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438205.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 01053816 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00991168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00960960 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00911992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00688968 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00609728 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00577728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00507504 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00499136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00491024 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00426128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00406736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00170360 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00153368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00131720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2017-05-05 19:21 - 2017-05-02 01:32 - 00042897 _____ C:\Windows\system32\nvinfo.pb
2017-05-05 19:21 - 2017-05-02 01:32 - 00038336 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2017-05-05 19:21 - 2017-05-02 01:32 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2017-05-05 19:21 - 2017-05-02 01:32 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2017-05-05 19:09 - 2017-05-03 18:41 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2017-05-05 18:45 - 2017-05-05 18:47 - 00000000 ____D C:\Users\Nikola\AppData\Local\NVIDIA
2017-05-05 18:43 - 2017-05-05 18:45 - 00000000 ____D C:\Users\Nikola\AppData\Local\NVIDIA Corporation
2017-05-05 18:39 - 2017-05-28 14:01 - 00001406 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-05-05 18:38 - 2017-05-12 14:48 - 00004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:38 - 2017-05-12 14:48 - 00003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:38 - 2017-05-03 23:21 - 01893496 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 01755256 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 01477240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 01317496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2017-05-05 18:38 - 2017-05-03 23:21 - 00121464 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2017-05-05 18:37 - 2017-05-12 14:47 - 00003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-12 14:47 - 00003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-05-05 18:37 - 2017-05-03 22:28 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2017-05-05 18:34 - 2017-04-20 04:57 - 00059448 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-05-05 13:53 - 2017-05-28 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-05-05 13:53 - 2017-05-28 14:01 - 00001950 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-05-05 13:53 - 2017-05-07 13:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-05-05 13:52 - 2017-05-05 13:52 - 00179832 _____ (Mozilla) C:\Users\Nikola\Downloads\Firefox Installer.exe
2017-05-05 13:34 - 2017-05-28 14:01 - 00000355 _____ C:\Users\Nikola\Desktop\Computer - Shortcut.lnk
2017-05-05 13:32 - 2017-05-05 14:13 - 00000000 ____D C:\Program Files (x86)\UnHackMe
2017-05-05 13:32 - 2017-05-05 13:49 - 00000000 ____D C:\Users\Nikola\Documents\RegRun2
2017-05-05 13:32 - 2017-05-05 13:32 - 00000002 RSHOT C:\Windows\winstart.bat
2017-05-05 13:32 - 2017-05-05 13:32 - 00000002 RSHOT C:\Windows\SysWOW64\CONFIG.NT
2017-05-05 13:32 - 2017-05-05 13:32 - 00000002 RSHOT C:\Windows\SysWOW64\AUTOEXEC.NT
2017-05-05 13:28 - 2017-05-05 13:30 - 18656117 _____ C:\Users\Nikola\Downloads\unhackme.zip
2017-05-05 11:00 - 2017-05-05 11:00 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\AVG
2017-05-05 10:59 - 2017-05-28 14:01 - 00000930 _____ C:\Users\Public\Desktop\AVG Protection.lnk
2017-05-05 10:58 - 2017-05-05 10:58 - 00000000 ___HD C:\$AVG
2017-05-05 10:57 - 2017-05-05 10:57 - 00000000 ____D C:\Users\Nikola\AppData\Local\MFAData
2017-05-05 10:53 - 2017-05-05 10:57 - 00000000 ____D C:\Program Files (x86)\AVG
2017-05-05 10:52 - 2017-05-06 13:03 - 00000000 ____D C:\Users\Nikola\AppData\Local\Avg
2017-05-05 10:52 - 2017-05-05 10:57 - 00000000 ____D C:\Users\Nikola\AppData\Local\AvgSetupLog
2017-05-04 21:46 - 2017-05-28 14:01 - 00000136 _____ C:\Users\Nikola\Desktop\Spider Solitaire - Shortcut.lnk
2017-05-04 21:44 - 2017-05-04 21:44 - 00000000 ____D C:\Program Files\8lhrdwbv
2017-05-04 15:59 - 2017-05-21 21:26 - 00000000 ____D C:\Windows\system32\appmgmt
2017-05-04 13:35 - 2017-05-04 13:35 - 00000000 ____D C:\Program Files (x86)\{32AB01D9-ACD6-4A3F-8A9D-6D1C406FA4A2}
2017-05-03 18:17 - 2017-05-12 15:02 - 00000000 ____D C:\Users\Nikola\Desktop\kola
2017-05-03 14:20 - 2017-05-28 14:01 - 00002142 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-03 07:23 - 2017-05-28 14:01 - 00000622 _____ C:\Users\Nikola\Desktop\Solitaire - Shortcut.lnk
2017-05-02 21:26 - 2017-05-02 21:26 - 00000000 ____D C:\Program Files\p3erxciv
2017-05-02 15:10 - 2017-05-02 15:17 - 00000000 ____D C:\Users\Nikola\AppData\Local\Google
2017-05-02 14:26 - 2017-05-02 14:26 - 00000000 ____D C:\Program Files (x86)\{BB4DF102-33D7-44DC-8E5A-62FB67D3A6A9}
2017-04-28 13:53 - 2017-04-28 13:53 - 00000000 ____D C:\NVIDIA
2017-04-28 13:19 - 2017-04-28 13:48 - 396903680 _____ (NVIDIA Corporation) C:\Users\Nikola\Desktop\381.89-notebook-win8-win7-64bit-international-whql.exe
2017-04-28 13:17 - 2017-04-28 13:17 - 00000017 _____ C:\Users\Nikola\AppData\Local\resmon.resmoncfg

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-05-28 14:27 - 2009-07-14 07:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-05-28 14:27 - 2009-07-14 07:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-05-28 14:23 - 2017-04-16 23:43 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Skype
2017-05-28 14:19 - 2017-04-17 17:53 - 00000000 ____D C:\Program Files (x86)\Steam
2017-05-28 14:19 - 2017-04-16 22:56 - 00000000 __SHD C:\Users\Nikola\IntelGraphicsProfiles
2017-05-28 14:18 - 2009-07-14 08:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-05-28 14:17 - 2017-04-21 13:27 - 00000000 ____D C:\Windows\system32\log
2017-05-28 14:01 - 2017-04-19 20:58 - 00001944 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2017-05-28 14:01 - 2017-04-17 17:53 - 00000957 _____ C:\Users\Public\Desktop\Steam.lnk
2017-05-28 14:01 - 2017-04-16 23:42 - 00002691 _____ C:\Users\Public\Desktop\Skype.lnk
2017-05-28 14:01 - 2017-04-16 22:15 - 00001714 _____ C:\Users\Public\Desktop\League of Legends.lnk
2017-05-28 14:01 - 2017-04-16 19:42 - 00001389 _____ C:\Users\Nikola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-05-28 13:59 - 2009-07-14 08:32 - 00000000 ____D C:\Windows\Offline Web Pages
2017-05-28 13:52 - 2017-04-21 13:31 - 00000000 ____D C:\Windows\Update
2017-05-28 13:52 - 2017-04-19 20:58 - 00000000 ____D C:\Program Files (x86)\Lerjudom
2017-05-27 20:04 - 2017-04-22 20:42 - 00000000 ____D C:\KMPlayer
2017-05-26 13:43 - 2017-04-17 11:04 - 00000000 ____D C:\Users\Nikola\AppData\Local\CrashDumps
2017-05-25 11:17 - 2017-04-18 16:23 - 00109280 _____ C:\Users\Nikola\AppData\Local\GDIPFONTCACHEV1.DAT
2017-05-24 13:52 - 2017-04-21 13:25 - 00000000 ____D C:\Program Files\mrcmzud0
2017-05-22 10:50 - 2009-07-14 07:45 - 00408800 _____ C:\Windows\system32\FNTCACHE.DAT
2017-05-21 00:28 - 2017-04-19 20:40 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\uTorrent
2017-05-17 14:10 - 2017-04-16 23:42 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-05-17 14:10 - 2017-04-16 21:23 - 00000000 ____D C:\Users\Nikola\AppData\Roaming\Mozilla
2017-05-17 14:08 - 2017-04-16 21:37 - 00000000 ____D C:\Intel
2017-05-12 16:49 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\rescache
2017-05-12 15:00 - 2009-07-14 08:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2017-05-12 15:00 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\inf
2017-05-12 14:59 - 2009-07-14 06:20 - 00000000 __RHD C:\Users\Public\Libraries
2017-05-12 14:48 - 2017-04-16 22:06 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-05-12 14:48 - 2017-04-16 22:04 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-05-11 13:27 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2017-05-09 18:36 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\system32\NDF
2017-05-09 14:24 - 2009-07-14 08:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2017-05-06 12:49 - 2017-04-16 21:23 - 00000000 ____D C:\Users\Nikola\AppData\Local\Mozilla
2017-05-05 19:23 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\Help
2017-05-05 16:58 - 2017-04-26 14:30 - 00000000 ____D C:\Insist
2017-05-04 00:56 - 2017-04-17 14:28 - 00000000 ___RD C:\Users\Nikola\Desktop\driveri

==================== Files in the root of some directories =======

2017-04-16 21:54 - 2017-04-16 21:55 - 0023325 _____ () C:\Users\Nikola\AppData\Local\HWVendorDetection.log
2017-04-28 13:17 - 2017-04-28 13:17 - 0000017 _____ () C:\Users\Nikola\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-05-24 10:29

==================== End of FRST.txt ============================

 

 

 

 

 

Addition.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Какво е положението със системата ви...? Наблюдавате ли промяна,проблеми ,нередности..?

 

25.jpg?1426074241   Сканиране с SecurityCheck by glax24

  • Изтеглете SecurityCheck by glax24 от тук и запомнете инструмента на десктопа .
  • Стартирате програмата (ако използвате Windows XP) или стартирате с десен бутон на мишката от името на администратор (ако използватеWindows Vista/7/8/10)
  • Изчакайте да приключи сканирането.Ще се отвори в текстов файл с имеSecurityCheck.txt. Копирайте съдържанието на  този файл  следващия си пост
  • Можете да намерите този файл в основната директория на системния диск в папка с име SecurityCheck, напр. C:\SecurityCheck\SecurityCheck.txt

 

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • SecurityCheck.txt (копирате съдържанието)

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
публикувано (редактирано)
преди 1 час, icotonev написа:

Какво е положението със системата ви...? Наблюдавате ли промяна,проблеми ,нередности..?

Компютъра се държи много по-добре не засича и като го стартирам не зареждат 1000 програмки с измислени имена

Ето и SecurityCheck

SecurityCheck by glax24 & Severnyj v.1.4.0.49 [15.04.17]
WebSite: www.safezone.cc
DateLog: 28.05.2017 18:04:04
Path starting: C:\Users\Nikola\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: Nikola
VersionXML: 4.29is-26.05.2017
___________________________________________________________________________

Windows 7(6.1.7601) Service Pack 1 (x64) Ultimate Lang: English(0409)
Installation date OS: 16.04.2017 16:41:46
LicenseStatus: Windows(R) 7, Ultimate edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
SystemDrive: C: FS: [NTFS] Capacity: [195.2 Gb] Used: [71 Gb] Free: [124.2 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.0.9600.18665
User Account Control disabled
The elevation prompt for administrators disabled
^It is recommended to enable: Win+R typing UserAccountControlSettings and Enter^
Automatically download and schedule installation
Date install updates: 2017-05-26 10:45:54
Windows Update (wuauserv) - The service is running
Security Center (wscsvc) - The service is running
Remote Registry (RemoteRegistry) - The service has stopped
SSDP Discovery (SSDPSRV) - The service has stopped
Remote Desktop Services (TermService) - The service has stopped
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
------------------------------ [ MS Office ] ------------------------------
Microsoft Office 2010 x64 v.14.0.7015.1000
---------------------------- [ Antivirus_WMI ] ----------------------------
AVG Internet Security (disabled and up to date)
---------------------------- [ Firewall_WMI ] -----------------------------
AVG Internet Security (disabled)
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (enabled and up to date)
AVG Internet Security (disabled and up to date)
-------------------------- [ SecurityUtilities ] --------------------------
Malwarebytes Anti-Malware version 2.2.0.1024 v.2.2.0.1024
--------------------------- [ OtherUtilities ] ----------------------------
WinRAR 5.40 (32-bit) v.5.40.0
--------------------------------- [ IM ] ----------------------------------
Skype™ 7.35 v.7.35.103 Warning! Download Update
^Optional update.^
--------------------------------- [ P2P ] ---------------------------------
µTorrent v.3.5.0.43804 Warning! P2P-client.
--------------------------- [ AdobeProduction ] ---------------------------
Adobe Flash Player 25 NPAPI v.25.0.0.171
------------------------------- [ Browser ] -------------------------------
Mozilla Firefox 53.0.2 (x86 en-US) v.53.0.2 Warning! Download Update
--------------------------- [ RunningProcess ] ----------------------------
C:\Program Files (x86)\Mozilla Firefox\firefox.exe v.53.0.2.6333
------------------ [ AntivirusFirewallProcessServices ] -------------------
AvgAMPS (AvgAMPS) - The service has stopped
C:\Program Files (x86)\AVG\Av\avgrsa.exe v.16.151.0.8013
C:\Program Files (x86)\AVG\Av\avgcsrva.exe v.16.151.0.8013
AVGIDSAgent (AVGIDSAgent) - The service is running
AVG Service (avgsvc) - The service is running
C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe v.1.143.2.51391
AVG Service (avgsvc) - The service is running
AVG Firewall (avgfws) - The service is running
C:\Program Files (x86)\AVG\Av\avgfwsa.exe v.16.151.0.8013
AVG WatchDog (avgwd) - The service is running
C:\Program Files (x86)\AVG\Av\avgwdsvca.exe v.16.151.0.8013
C:\Program Files (x86)\AVG\Av\avgnsa.exe v.16.151.0.8013
C:\Program Files (x86)\AVG\Av\avgemca.exe v.16.151.0.8013
C:\Program Files (x86)\AVG\Av\avgui.exe v.16.151.0.8013
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe v.1.143.2.51391
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe v.2.3.125.0
MBAMScheduler (MBAMScheduler) - The service is running
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe v.3.1.6.0
MBAMService (MBAMService) - The service is running
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe v.3.2.19.0
Windows Defender (WinDefend) - The service is running
----------------------------- [ End of Log ] ------------------------------

 

Редактирано от Никола Стефанов (преглед на промените)

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
преди 1 час, Никола Стефанов написа:

Компютъра се държи много по-добре не засича и като го стартирам не зареждат 1000 програмки с измислени имена

Това е чудесно..! :)

Правим контролни проверки и приключваме..! :)

 

Сканиране с ESET Online Scan

 

  • Моля изтеглете и стартирайте изпълнимия файл от линка: ESET Online Scanner
  • Сложете отметката пред qy7AMI8.jpg (ако опцията е налична) и натиснете бутона ePL5oyv.jpg.
  • Добре е да изключите вашата антивирусна преди началото на проверката. За да видите списъка с инсталираната от вас антивирусна програма, която трябва да изключите натиснете бутона E5rfZI9.png.
  • Ще се появи списък с инсталираната от вас антивирусна програма:

c4VVzVO.png

  • Изключете антивирусната си програма.
  • Сложете отметката пред: Enable detection of potentially unwanted applications.
  • Сега кликнете на Advanced Settings и се уверете, че опцията Clean threats automatically не е маркирана, а следните са маркирани:

 

  • Enable detection of potentially unsafe applications
  • Enable detection of suspicious applications
  • Scan archives
  • Enable Anti-Stealth Technology

 

  • Изберете сега бутона Change и поставете отметки пред следните обектиOperating memory, Autostart locations и дял C:\

yKulboi.jpg

  • Натиснете бутона dtoGjAL.png за да започне проверката.
  • ESET ще започне да сваля и инсталира актуализации за вирусните дефиниции и след това ще започне да сканира компютъра. Бъдете търпеливи, защото процеса е бавен и може да отнеме доста време.

8L8IBHJ.png

  • След като проверката приключи списъка с намерените зарази ще се отвори автоматично (ако такива са намерени).

imxEgHt.png

  • Натиснете бутонаcRhRYZ8.png и запазете файла на десктопа с име по избор като например (ESETScan.txt). Копирайте резултата в следващия си коментар.
  • Натиснете бутона 9IjfdXq.png
  • Сложете отметка пред RHzfZB1.png за да почистите следите от приложението след затварянето му.
  • Натиснете бутона Vc3btaC.png и след това затворете приложението от хикса в горния десен ъгъл.

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Фикс с Farbar Recovery Scan Tool

icon13.gif Изтеглете прикачения файл fixlist.txt   и го запазете там, където сте свалили FRST.exe
Стартирайте отново FRST.exe и натиснете бутона Fix веднъж и изчакайте.

Press%20the%20FIX%20button_zpsdd5zi3mt.p


Ще се създаде нов лог файла FixLog.txt. Прикачете съдържанието му в следващия си коментар.
 
ЗАБЕЛЕЖКА: Този скрипт е написан специално за този потребител,и за тази конкретна машина. Изпълнението на фикса, на друг компютър може да доведе до увреждане на  операционната ви система

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • FixLog.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравейте...! Последно как е положението след всичко до тук...? Системата ви беше заразена с Адуер ELEX + Троянец Win64/Snarasite.F...! Вече за мен е "Чиста"..! :) 

Ако всичко е наред остана да премахнем всички програми които използвахме..!

 

7k2Zu73R.png.0a6a6ba63fa68fb3917cffc81bf0ccab.png Изтеглете DelFix и го стартирайте. Сложете отметка пред:

  • Remove disinfection tools <----- това ще премахне инструментите които сме използвали
  • Create registry backup <----- тази опция ще създадете резервно копие от регистъра на Windows
  • Purge system restore <---  това ще премахне всички предишни точки за възстановяване, ще бъде създадена нова точка  на състоянието на системата в момента.
  • Reset system settings <--- това ще нулира всички настройки на системата и по подразбиране, които са били променени или от нас по време на почистването или от зловреден софтуер / инфекция

DelFix.png.6f92057f93286acd2741e87aeb5876d9.png

..и след това натиснете бутона Run

  • След като операцията е завърши,ще се създаде дневник
  • Копирате го и го поставите в следващия си отговор

Инструмента ще се самоизтрие след като приключи своята задача!

Ако има нещо което използвахме в лечението до тук и не се е премахнало след последните инструкции го премахнете ръчно ,по стандартните методи..!

i_arrow-r.gif Препоръчвам програмата Malwarebytes' Anti-Malware да остане на вашия компютър и периодично да сканирате системата си с нея (поне един -два пъти в седмицата),като не забравяйте да обновите дефинициите и преди всяко сканиране..както и да изключите защитата в реално време на програмата. Напомням че това не е антивирусна програма а едно изключително добро допълнение към нея..!

pfNZP4A.png Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • DelFix
  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
публикувано (редактирано)
преди 6 часа, icotonev написа:

Здравейте...! Последно как е положението след всичко до тук...? Системата ви беше заразена с Адуер ELEX + Троянец Win64/Snarasite.F...! Вече за мен е "Чиста"..!

Вече компютъра си се държи нормално...друго няма.

DelFix.txt

Редактирано от Никола Стефанов (преглед на промените)
  • Харесва ми 2

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Чудесно..! :) Ами това е от мен..! Ако нямате други проблеми и въпроси да приключваме...Маркирам случая за "Решен"...! Пожелавам лек ден и безопасен интернет..! :)

  • Харесва ми 3

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Регистрирайте се или влезете в профила си за да коментирате

Трябва да имате регистрация за да може да коментирате това

Регистрирайте се

Създайте нова регистрация в нашия форум. Лесно е!

Нова регистрация

Вход

Имате регистрация? Влезте от тук.

Вход

  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

  • Подобни теми

    • от Rada Beliata
      Здравейте, 
      Все още не съм успяла да си купя нов комп. С мъж-о ползваме неговия, преди няколко дена като пътувахме и ползвахме различен доставчик чрез телефон за връзка с мобилен  интернет изведнъж при отваряне на ИЕ (IE) вместо гугъл се появи Vivakom . Не можах по никакъв начин да го махна. Сега пи всеки опит да отворя Интернет Експлоер ми се появява страница на Виваком( не ползваме този доставчик на услуги нито като телефони , нито като домашен Интернет) . Нямам и идея от къде се настани и защо не успявам да го махна. Изтеглих  instrumenta Malwаrebytes , нищо не показа, после изтеглих и AdwCleaner , но и след тези ми действия това нахално "нещо" стои . Явно аз не съм в час какво трябва да направя. Моля за помощта ви и предварително благодаря!
      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23.09.2018
      Ran by User (administrator) on USER-PC (28-09-2018 22:57:32)
      Running from C:\Users\User\Downloads
      Loaded Profiles: User (Available Profiles: User)
      Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
      Internet Explorer Version 11 (Default browser: IE)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
      (AMD) C:\Windows\System32\atiesrxx.exe
      (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
      (AMD) C:\Windows\System32\atieclxx.exe
      (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
      (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
      (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
      (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
      (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
      (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
      (VoipConnect) C:\Program Files (x86)\VoipConnect.com\VoipConnect\voipconnect.exe
      (Viber Media S.à r.l.) C:\Users\User\AppData\Local\Viber\Viber.exe
      () C:\ProgramData\MobileBrServ\mbbService.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
      (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
      (© 2015 Microsoft Corporation) C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe
      (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
      (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
      (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      (Intel Corporation) C:\Windows\System32\igfxEM.exe
      (Intel Corporation) C:\Windows\System32\igfxHK.exe
      (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
      (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
      (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
      (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
      (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
      (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
      (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
      (Microsoft Corporation) C:\Windows\System32\mspaint.exe
      (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Microsoft Corporation) C:\Windows\System32\dllhost.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
      HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-12-05] (IDT, Inc.)
      HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2795248 2013-10-25] (Synaptics Incorporated)
      HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation)
      HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
      HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2670056 2018-09-10] (Adobe Systems, Incorporated)
      HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
      HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642816 2013-05-18] (Advanced Micro Devices, Inc.)
      HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-03-01] (Hewlett-Packard Company)
      HKLM-x32\...\Run: [BtTray] => C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [387832 2013-11-01] (IVT Corporation)
      Winlogon\Notify\igfxcui: igfxdev.dll [X]
      HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\...\Run: [*LABAL*] => [X]
      HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\...\Run: [VoipConnect] => C:\Program Files (x86)\VoipConnect.com\VoipConnect\voipconnect.exe [36547168 2016-05-14] (VoipConnect)
      HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\...\Run: [Viber] => C:\Users\User\AppData\Local\Viber\Viber.exe [35790408 2018-09-17] (Viber Media S.à r.l.)
      HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\...\Run: [BingSvc] => C:\Users\User\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
      HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [50100160 2018-03-02] (Skype Technologies S.A.)
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
      Tcpip\..\Interfaces\{4F635613-A958-44D2-ABE6-D3CC1A3DABC3}: [DhcpNameServer] 192.168.8.1 192.168.8.1
      Tcpip\..\Interfaces\{7019DF92-BFEA-4C0F-A4AA-C467798353EB}: [DhcpNameServer] 192.168.0.1
      Internet Explorer:
      ==================
      HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
      HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
      HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
      BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
      BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
      BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
      DPF: HKLM-x32 {A996E48C-D3DC-4244-89F7-AFA33EC60679} hxxps://online.bulbank.bg/capicom.cab
      Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -  No File
      FireFox:
      ========
      FF DefaultProfile: aewkzmml.default
      FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\aewkzmml.default [2018-03-10]
      FF NetworkProxy: Mozilla\Firefox\Profiles\aewkzmml.default -> autoconfig_url", "hxxp://aiidatapro.net/proxy2.js"
      FF Extension: (Skype) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25] [Legacy]
      FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_31_0_0_108.dll [2018-09-14] ()
      FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
      FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
      FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_108.dll [2018-09-14] ()
      FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.)
      FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
      FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
      FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
      FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
      FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)
      Chrome: 
      =======
      CHR DefaultProfile: Default
      CHR HomePage: Default -> msn.com
      CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
      CHR DefaultSearchKeyword: Default -> bing.com
      CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__DF&PC=__PARAM__&query={searchTerms}
      CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2018-09-28]
      CHR Extension: (Slides) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15]
      CHR Extension: (Docs) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
      CHR Extension: (Google Drive) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
      CHR Extension: (Skype Calling) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2017-09-06]
      CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26]
      CHR Extension: (Google Search) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-29]
      CHR Extension: (Bing) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2018-09-28]
      CHR Extension: (Sheets) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
      CHR Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-22]
      CHR Extension: (AdBlock) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-09-19]
      CHR Extension: (Skype) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-03]
      CHR Extension: (Chrome Web Store Payments) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
      CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
      CHR Extension: (Chrome Media Router) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-19]
      CHR HKU\S-1-5-21-3914007145-2479916420-1064401623-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2910696 2018-09-10] (Adobe Systems, Incorporated)
      R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2704872 2018-09-10] (Adobe Systems, Incorporated)
      R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1706744 2013-11-01] (IVT Corporation)
      R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [145656 2013-11-01] (IVT Corporation)
      R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
      R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-21] (Intel Corporation)
      S2 JWC; C:\Jeppesen\JWC\JWC.exe [658016 2014-10-06] (Jeppesen)
      R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
      R2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [242256 2014-08-20] ()
      R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation)
      R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation)
      R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2013-12-05] (IDT, Inc.) [File not signed]
      R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH)
      S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [35936 2013-04-10] (Advanced Micro Devices, Inc.)
      S3 BlueletAudio; C:\Windows\System32\DRIVERS\blueletaudio.sys [33968 2012-12-19] (IVT Corporation)
      S3 BlueletAudio; C:\Windows\SysWOW64\DRIVERS\blueletaudio.sys [33968 2012-12-19] (IVT Corporation)
      R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
      R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [54064 2013-04-26] (Ralink Corporation)
      R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [49584 2013-03-25] (Ralink Corporation)
      R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-08-25] (Disc Soft Ltd)
      R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [152688 2018-09-11] (Malwarebytes)
      R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-30] (Intel Corporation)
      R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [200232 2018-09-27] (Malwarebytes)
      R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [118584 2018-09-28] (Malwarebytes)
      R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [58400 2018-09-28] (Malwarebytes)
      R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [260384 2018-09-28] (Malwarebytes)
      R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [100664 2018-09-28] (Malwarebytes)
      R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation)
      R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation)
      R3 netr28x; C:\Windows\System32\DRIVERS\netr28x.sys [2473616 2014-12-10] (MediaTek Inc.)
      R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation)
      R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.)
      S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [444632 2013-09-26] (Realsil Semiconductor Corporation)
      R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [34544 2013-10-25] (Synaptics Incorporated)
      S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
      S3 ewusbmbb; system32\DRIVERS\ewusbwwan.sys [X]
      S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
      S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
      S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
      S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
      S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
      S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
      S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One Month Created files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-09-28 22:57 - 2018-09-28 22:59 - 000019536 _____ C:\Users\User\Downloads\FRST.txt
      2018-09-28 22:57 - 2018-09-28 22:57 - 000000000 ____D C:\FRST
      2018-09-28 22:56 - 2018-09-28 22:56 - 002414080 _____ (Farbar) C:\Users\User\Downloads\FRST64.exe
      2018-09-28 22:38 - 2018-09-28 22:38 - 000118584 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
      2018-09-28 22:38 - 2018-09-28 22:38 - 000100664 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
      2018-09-28 22:38 - 2018-09-28 22:38 - 000058400 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
      2018-09-28 22:35 - 2018-09-28 22:35 - 000260384 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
      2018-09-28 22:27 - 2018-09-28 22:29 - 000000000 ____D C:\AdwCleaner
      2018-09-28 22:27 - 2018-09-28 22:27 - 007592144 _____ (Malwarebytes) C:\Users\User\Downloads\adwcleaner_7.2.4.0.exe
      2018-09-27 23:44 - 2018-09-27 23:44 - 000200232 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
      2018-09-27 23:44 - 2018-09-27 23:44 - 000000000 ____D C:\Users\User\AppData\Local\mbamtray
      2018-09-27 23:44 - 2018-09-27 23:44 - 000000000 ____D C:\Users\User\AppData\Local\mbam
      2018-09-27 23:43 - 2018-09-27 23:43 - 000001867 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
      2018-09-27 23:43 - 2018-09-27 23:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
      2018-09-27 23:43 - 2018-09-11 13:18 - 000152688 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
      2018-09-27 23:42 - 2018-09-27 23:43 - 080334792 _____ (Malwarebytes ) C:\Users\User\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.463-1.0.6985.exe
      2018-09-27 17:21 - 2018-09-27 17:21 - 000515494 _____ C:\Users\User\Downloads\20180621_BEG_Vacation Regulation for BEG FCM & CCM.pdf
      2018-09-27 11:00 - 2018-09-27 11:01 - 000656891 _____ C:\Users\User\Documents\viewtickets.pdf
      2018-09-26 13:36 - 2018-09-26 13:37 - 000000000 ____D C:\Users\User\AppData\Local\Viber
      2018-09-16 10:51 - 2018-09-16 10:51 - 000022032 _____ C:\Users\User\Desktop\molba-za-napuskane-na-rabota-na-osnovanie-chl325-t1-ot-kt.pdf
      2018-09-14 22:21 - 2018-09-14 22:21 - 000018446 _____ C:\Users\User\Downloads\Новата такса + нов фонд ремонт.xlsx
      2018-09-14 22:19 - 2018-09-14 22:19 - 000018453 _____ C:\Users\User\Downloads\Новата такса.xlsx
      2018-09-12 18:35 - 2018-08-31 18:08 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
      2018-09-12 18:35 - 2018-08-31 18:08 - 000340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
      2018-09-12 18:35 - 2018-08-30 04:47 - 001230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
      2018-09-12 18:35 - 2018-08-30 04:10 - 001424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
      2018-09-12 18:35 - 2018-08-28 08:50 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
      2018-09-12 18:35 - 2018-08-24 22:47 - 000398424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2018-09-12 18:35 - 2018-08-24 21:47 - 000350296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2018-09-12 18:35 - 2018-08-24 02:05 - 025736704 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2018-09-12 18:35 - 2018-08-24 01:56 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
      2018-09-12 18:35 - 2018-08-24 01:56 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
      2018-09-12 18:35 - 2018-08-24 01:45 - 002902016 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2018-09-12 18:35 - 2018-08-24 01:44 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
      2018-09-12 18:35 - 2018-08-24 01:43 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2018-09-12 18:35 - 2018-08-24 01:43 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
      2018-09-12 18:35 - 2018-08-24 01:43 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
      2018-09-12 18:35 - 2018-08-24 01:43 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
      2018-09-12 18:35 - 2018-08-24 01:37 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
      2018-09-12 18:35 - 2018-08-24 01:36 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
      2018-09-12 18:35 - 2018-08-24 01:34 - 005779456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2018-09-12 18:35 - 2018-08-24 01:34 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
      2018-09-12 18:35 - 2018-08-24 01:33 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
      2018-09-12 18:35 - 2018-08-24 01:33 - 000794624 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2018-09-12 18:35 - 2018-08-24 01:33 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
      2018-09-12 18:35 - 2018-08-24 01:33 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
      2018-09-12 18:35 - 2018-08-24 01:27 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
      2018-09-12 18:35 - 2018-08-24 01:24 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
      2018-09-12 18:35 - 2018-08-24 01:19 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
      2018-09-12 18:35 - 2018-08-24 01:18 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
      2018-09-12 18:35 - 2018-08-24 01:17 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
      2018-09-12 18:35 - 2018-08-24 01:15 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
      2018-09-12 18:35 - 2018-08-24 01:15 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2018-09-12 18:35 - 2018-08-24 01:13 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2018-09-12 18:35 - 2018-08-24 01:12 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
      2018-09-12 18:35 - 2018-08-24 01:03 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
      2018-09-12 18:35 - 2018-08-24 01:01 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2018-09-12 18:35 - 2018-08-24 01:01 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2018-09-12 18:35 - 2018-08-24 01:00 - 015283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2018-09-12 18:35 - 2018-08-24 00:59 - 002136064 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2018-09-12 18:35 - 2018-08-24 00:59 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
      2018-09-12 18:35 - 2018-08-24 00:52 - 004510720 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2018-09-12 18:35 - 2018-08-24 00:40 - 001555456 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2018-09-12 18:35 - 2018-08-24 00:28 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2018-09-12 18:35 - 2018-08-24 00:27 - 020279296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2018-09-12 18:35 - 2018-08-24 00:25 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
      2018-09-12 18:35 - 2018-08-24 00:15 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2018-09-12 18:35 - 2018-08-24 00:14 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
      2018-09-12 18:35 - 2018-08-24 00:14 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
      2018-09-12 18:35 - 2018-08-24 00:14 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
      2018-09-12 18:35 - 2018-08-24 00:13 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
      2018-09-12 18:35 - 2018-08-24 00:12 - 002295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2018-09-12 18:35 - 2018-08-24 00:09 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
      2018-09-12 18:35 - 2018-08-24 00:09 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
      2018-09-12 18:35 - 2018-08-24 00:07 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
      2018-09-12 18:35 - 2018-08-24 00:06 - 000662016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2018-09-12 18:35 - 2018-08-24 00:06 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
      2018-09-12 18:35 - 2018-08-24 00:06 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
      2018-09-12 18:35 - 2018-08-24 00:00 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
      2018-09-12 18:35 - 2018-08-23 23:56 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
      2018-09-12 18:35 - 2018-08-23 23:56 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
      2018-09-12 18:35 - 2018-08-23 23:55 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
      2018-09-12 18:35 - 2018-08-23 23:54 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
      2018-09-12 18:35 - 2018-08-23 23:53 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
      2018-09-12 18:35 - 2018-08-23 23:52 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
      2018-09-12 18:35 - 2018-08-23 23:51 - 004494848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2018-09-12 18:35 - 2018-08-23 23:51 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
      2018-09-12 18:35 - 2018-08-23 23:48 - 013679616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2018-09-12 18:35 - 2018-08-23 23:46 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
      2018-09-12 18:35 - 2018-08-23 23:44 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2018-09-12 18:35 - 2018-08-23 23:44 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
      2018-09-12 18:35 - 2018-08-23 23:44 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2018-09-12 18:35 - 2018-08-23 23:30 - 004037632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2018-09-12 18:35 - 2018-08-23 23:27 - 001329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2018-09-12 18:35 - 2018-08-23 23:24 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 014183936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 002004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 001888768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
      2018-09-12 18:35 - 2018-08-13 18:54 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
      2018-09-12 18:35 - 2018-08-13 18:53 - 001867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
      2018-09-12 18:35 - 2018-08-13 18:53 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
      2018-09-12 18:35 - 2018-08-13 18:41 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 012880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 001390080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 001241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
      2018-09-12 18:35 - 2018-08-13 18:40 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
      2018-09-12 18:35 - 2018-08-12 23:32 - 000378464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
      2018-09-12 18:35 - 2018-08-12 23:31 - 001894496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
      2018-09-12 18:35 - 2018-08-12 23:31 - 000289376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
      2018-09-12 18:35 - 2018-08-12 23:28 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
      2018-09-12 18:35 - 2018-08-12 23:14 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
      2018-09-12 18:35 - 2018-08-10 18:59 - 005552816 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2018-09-12 18:35 - 2018-08-10 18:59 - 000154800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
      2018-09-12 18:35 - 2018-08-10 18:58 - 000385120 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
      2018-09-12 18:35 - 2018-08-10 18:58 - 000263776 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
      2018-09-12 18:35 - 2018-08-10 18:58 - 000096864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
      2018-09-12 18:35 - 2018-08-10 18:57 - 000708272 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
      2018-09-12 18:35 - 2018-08-10 18:57 - 000631624 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
      2018-09-12 18:35 - 2018-08-10 18:56 - 001664296 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
      2018-09-12 18:35 - 2018-08-10 18:55 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 001461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 001211904 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
      2018-09-12 18:35 - 2018-08-10 18:54 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:53 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:45 - 004054192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
      2018-09-12 18:35 - 2018-08-10 18:45 - 000309424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
      2018-09-12 18:35 - 2018-08-10 18:44 - 003961440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
      2018-09-12 18:35 - 2018-08-10 18:42 - 001315512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
      2018-09-12 18:35 - 2018-08-10 18:41 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000463360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:39 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
      2018-09-12 18:35 - 2018-08-10 18:39 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
      2018-09-12 18:35 - 2018-08-10 18:27 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
      2018-09-12 18:35 - 2018-08-10 18:22 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
      2018-09-12 18:35 - 2018-08-10 18:22 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
      2018-09-12 18:35 - 2018-08-10 18:22 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
      2018-09-12 18:35 - 2018-08-10 18:21 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
      2018-09-12 18:35 - 2018-08-10 18:20 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
      2018-09-12 18:35 - 2018-08-10 18:17 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
      2018-09-12 18:35 - 2018-08-10 18:17 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
      2018-09-12 18:35 - 2018-08-10 18:17 - 000129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
      2018-09-12 18:35 - 2018-08-10 18:15 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
      2018-09-12 18:35 - 2018-08-10 18:13 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
      2018-09-12 18:35 - 2018-08-10 18:13 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
      2018-09-12 18:35 - 2018-08-10 18:13 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
      2018-09-12 18:35 - 2018-08-10 18:13 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
      2018-09-12 18:35 - 2018-08-10 18:12 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
      2018-09-12 18:35 - 2018-08-10 18:12 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
      2018-09-12 18:35 - 2018-08-10 18:12 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
      2018-09-12 18:35 - 2018-08-10 18:12 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
      2018-09-12 18:35 - 2018-08-10 18:12 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
      2018-09-12 18:35 - 2018-08-10 18:12 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
      2018-09-12 18:35 - 2018-08-10 18:10 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
      2018-09-12 18:35 - 2018-08-10 18:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
      2018-09-12 18:35 - 2018-08-10 18:10 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
      2018-09-12 18:35 - 2018-08-10 18:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
      2018-09-12 18:35 - 2018-08-10 18:09 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
      2018-09-12 18:35 - 2018-08-10 18:09 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:09 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
      2018-09-12 18:35 - 2018-08-10 18:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
      2018-09-12 18:35 - 2018-07-29 18:55 - 001110528 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
      2018-09-12 18:35 - 2018-07-18 18:18 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
      2018-09-12 18:35 - 2018-06-27 16:20 - 000419648 _____ C:\Windows\SysWOW64\locale.nls
      2018-09-12 18:35 - 2018-06-27 16:19 - 000419648 _____ C:\Windows\system32\locale.nls
      ==================== One Month Modified files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-09-28 22:44 - 2009-07-14 07:45 - 000031504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2018-09-28 22:44 - 2009-07-14 07:45 - 000031504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2018-09-28 22:35 - 2016-08-05 16:18 - 000003620 _____ C:\Windows\SysWOW64\LOCALSERVICE.INI
      2018-09-28 22:34 - 2013-11-20 10:44 - 000001077 _____ C:\Windows\SysWOW64\bscs.ini
      2018-09-28 22:32 - 2016-08-05 16:18 - 000000061 _____ C:\Windows\SysWOW64\LOCALDEVICE.INI
      2018-09-28 22:31 - 2009-07-14 08:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2018-09-28 13:43 - 2016-08-05 16:20 - 000000713 _____ C:\Windows\SysWOW64\REMOTEDEVICE.INI
      2018-09-28 12:07 - 2009-07-14 08:13 - 000783606 _____ C:\Windows\system32\PerfStringBackup.INI
      2018-09-28 12:07 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf
      2018-09-27 23:43 - 2014-12-09 01:10 - 000000000 ____D C:\ProgramData\Malwarebytes
      2018-09-27 23:33 - 2017-06-11 18:30 - 000000000 ____D C:\Users\User\Documents\ViberDownloads
      2018-09-27 10:07 - 2017-06-11 18:28 - 000000000 ____D C:\Users\User\AppData\Roaming\ViberPC
      2018-09-26 17:00 - 2016-08-05 16:22 - 000000680 _____ C:\Windows\SysWOW64\SHORTCUT.INI
      2018-09-26 13:44 - 2014-12-30 12:03 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
      2018-09-26 13:42 - 2017-03-06 15:12 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
      2018-09-19 18:08 - 2014-12-09 00:49 - 000002184 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2018-09-19 18:08 - 2014-12-09 00:49 - 000002143 _____ C:\Users\Public\Desktop\Google Chrome.lnk
      2018-09-16 10:47 - 2016-10-20 11:15 - 000000000 ____D C:\Program Files (x86)\TeamViewer
      2018-09-14 20:15 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\rescache
      2018-09-14 18:44 - 2018-03-13 14:57 - 000004458 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
      2018-09-14 18:44 - 2014-08-21 19:10 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
      2018-09-14 18:44 - 2014-08-21 19:10 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
      2018-09-14 18:44 - 2014-08-21 19:10 - 000004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
      2018-09-14 18:44 - 2014-08-21 19:10 - 000000000 ____D C:\Windows\SysWOW64\Macromed
      2018-09-14 18:44 - 2014-08-21 19:10 - 000000000 ____D C:\Windows\system32\Macromed
      2018-09-14 17:41 - 2014-08-18 17:35 - 000110008 _____ C:\Users\User\AppData\Local\GDIPFONTCACHEV1.DAT
      2018-09-14 17:38 - 2009-07-14 07:45 - 000410984 _____ C:\Windows\system32\FNTCACHE.DAT
      2018-09-12 23:27 - 2014-08-18 19:28 - 000000000 ____D C:\Windows\system32\MRT
      2018-09-12 23:23 - 2014-08-18 19:28 - 139184408 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2018-09-12 23:20 - 2014-08-18 17:35 - 000767916 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
      2018-09-01 11:30 - 2018-03-31 21:36 - 000000000 ____D C:\Users\User\Desktop\Flying Book R.I
      ==================== Files in the root of some directories =======
      2016-05-14 21:19 - 2016-05-14 21:19 - 000000017 _____ () C:\Users\User\AppData\Local\resmon.resmoncfg
      2017-07-13 23:04 - 2017-07-13 23:04 - 000000000 _____ () C:\Users\User\AppData\Local\{08496EBD-3675-4FFD-9190-C60ED46C2602}
      ==================== Bamital & volsnap ======================
      (There is no automatic fix for files that do not pass verification.)
      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
      LastRegBack: 2018-09-26 14:18
      ==================== End of FRST.txt ============================
       
      Addition.txt

    • от rvp
      здравейте,
       
      Проблема е че след рестарт или изключване процесът отива на 100% и трябва да го спирам ръчно. ето логовете:
       
      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01.09.2018 03
      Ran by kpacko (administrator) on KPACKO-MOBILEPC (07-09-2018 10:02:30)
      Running from C:\Users\kpacko\Desktop
      Loaded Profiles: kpacko (Available Profiles: kpacko)
      Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Български (България)
      Internet Explorer Version 11 (Default browser: Chrome)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
      (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
      (Microsoft Corporation) C:\Windows\System32\wlanext.exe
      (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
      (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
      (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
      (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
      (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
      (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      () C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe
      (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
      (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
      (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
      () C:\Users\kpacko\AppData\Roaming\WinRAR\Precomp\precomp.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6611048 2011-02-18] (Realtek Semiconductor)
      HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
      HKLM\...\Run: [FreeFallProtection] => C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe [727664 2010-09-24] ()
      HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-07-06] (Apple Inc.)
      HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
      HKU\S-1-5-21-2772379611-2548023608-3356451699-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
      IFEO\LogTransport2.exe: [Debugger] 0
      Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Windows.vbs [2018-02-26] ()
      GroupPolicy: Restriction ? <==== ATTENTION
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
      Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
      Tcpip\..\Interfaces\{EDC66EE9-FC63-456B-9263-6FA1362BFECA}: [DhcpNameServer] 192.168.0.1
      Tcpip\..\Interfaces\{F056F4A9-7DE8-4608-90FE-D6F4B68785AC}: [DhcpNameServer] 192.168.0.1
      Internet Explorer:
      ==================
      HKU\S-1-5-21-2772379611-2548023608-3356451699-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:NewsFeed
      FireFox:
      ========
      FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
      Chrome: 
      =======
      CHR NewTab: Default ->  Active:"chrome-extension://jpfpebmajhhopeonhlcgidhclcccjcik/newtab.html"
      CHR Session Restore: Default -> is enabled.
      CHR Profile: C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default [2018-09-07]
      CHR Extension: (Презентации) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12]
      CHR Extension: (Документи) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
      CHR Extension: (Google Диск) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-15]
      CHR Extension: (Auto Copy) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bijpdibkloghppkbmhcklkogpjaenfkg [2018-01-11]
      CHR Extension: (YouTube) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-15]
      CHR Extension: (Forecastfox (fix version)) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\boljdehmejbffnfiiicckjhafabdepnd [2018-08-05]
      CHR Extension: (uBlock Origin) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2018-08-27]
      CHR Extension: (Таблици) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12]
      CHR Extension: (Google Документи офлайн) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-17]
      CHR Extension: (Speed Dial 2 Нов раздел) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2018-03-28]
      CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
      CHR Extension: (Gmail) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-15]
      CHR Extension: (Chrome Media Router) - C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-07]
      CHR Profile: C:\Users\kpacko\AppData\Local\Google\Chrome\User Data\System Profile [2018-04-26]
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-02-27] (Adobe Systems, Incorporated)
      R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-07-05] (Apple Inc.)
      S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2016-04-04] ()
      R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11644656 2018-08-13] (TeamViewer GmbH)
      R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2017-07-17] (Microsoft Corporation)
      R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3833248 2016-04-04] (Intel® Corporation)
      R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
      R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      S3 CisUtMonitor; C:\Windows\System32\DRIVERS\CisUtMonitor.sys [54192 2017-07-04] (CrystalIdea Software)
      R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2017-09-16] (DT Soft Ltd)
      R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-12-11] (Intel Corporation)
      R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [59240 2018-03-16] (NVIDIA Corporation)
      U4 AdobeARMservice; no ImagePath
      U3 SwitchBoard; no ImagePath
      S3 VGPU; System32\drivers\rdvgkmd.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One Month Created files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-09-07 10:02 - 2018-09-07 10:03 - 000009284 _____ C:\Users\kpacko\Desktop\FRST.txt
      2018-09-07 10:02 - 2018-09-07 10:02 - 000000000 ____D C:\FRST
      2018-09-07 10:01 - 2018-09-07 10:01 - 002413056 _____ (Farbar) C:\Users\kpacko\Desktop\FRST64.exe
      2018-09-06 22:25 - 2018-09-06 13:48 - 000083968 _____ C:\Users\kpacko\Desktop\Working_Schedule_01-10_Sep_Update_4.xls
      2018-09-04 00:43 - 2018-08-03 18:55 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
      2018-09-04 00:43 - 2018-08-02 06:18 - 000096864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
      2018-09-04 00:43 - 2018-08-02 06:07 - 000263776 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
      2018-09-04 00:43 - 2018-08-02 06:02 - 001665320 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
      2018-09-04 00:43 - 2018-08-02 05:59 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
      2018-09-04 00:43 - 2018-08-02 05:58 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2018-09-04 00:43 - 2018-08-02 05:58 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
      2018-09-04 00:43 - 2018-08-02 05:58 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2018-09-04 00:43 - 2018-08-02 05:58 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
      2018-09-04 00:43 - 2018-08-02 05:58 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
      2018-09-04 00:43 - 2018-08-02 05:58 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:45 - 004054192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
      2018-09-04 00:43 - 2018-08-02 05:45 - 003959984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
      2018-09-04 00:43 - 2018-08-02 05:43 - 001315512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
      2018-09-04 00:43 - 2018-08-02 05:42 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
      2018-09-04 00:43 - 2018-08-02 05:42 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
      2018-09-04 00:43 - 2018-08-02 05:42 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2018-09-04 00:43 - 2018-08-02 05:42 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
      2018-09-04 00:43 - 2018-08-02 05:42 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
      2018-09-04 00:43 - 2018-08-02 05:42 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
      2018-09-04 00:43 - 2018-08-02 05:41 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:26 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
      2018-09-04 00:43 - 2018-08-02 05:26 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
      2018-09-04 00:43 - 2018-08-02 05:26 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
      2018-09-04 00:43 - 2018-08-02 05:25 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
      2018-09-04 00:43 - 2018-08-02 05:22 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
      2018-09-04 00:43 - 2018-08-02 05:21 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
      2018-09-04 00:43 - 2018-08-02 05:21 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
      2018-09-04 00:43 - 2018-08-02 05:17 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
      2018-09-04 00:43 - 2018-08-02 05:17 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
      2018-09-04 00:43 - 2018-08-02 05:17 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
      2018-09-04 00:43 - 2018-08-02 05:16 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
      2018-09-04 00:43 - 2018-08-02 05:16 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
      2018-09-04 00:43 - 2018-08-02 05:16 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
      2018-09-04 00:43 - 2018-08-02 05:16 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
      2018-09-04 00:43 - 2018-08-02 05:16 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
      2018-09-04 00:43 - 2018-08-02 05:16 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
      2018-09-04 00:43 - 2018-08-02 05:16 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
      2018-09-04 00:43 - 2018-08-02 05:11 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
      2018-09-04 00:43 - 2018-08-02 05:11 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
      2018-09-04 00:43 - 2018-08-02 05:11 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
      2018-09-04 00:43 - 2018-08-02 05:11 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
      2018-09-04 00:43 - 2018-08-02 05:10 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
      2018-09-04 00:43 - 2018-08-02 05:10 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:10 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
      2018-09-04 00:43 - 2018-08-02 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
      2018-09-04 00:43 - 2018-07-20 02:53 - 000396936 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2018-09-04 00:43 - 2018-07-20 01:58 - 000350272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2018-09-04 00:43 - 2018-07-19 07:48 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
      2018-09-04 00:43 - 2018-07-19 07:47 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
      2018-09-04 00:43 - 2018-07-19 07:35 - 002902016 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2018-09-04 00:43 - 2018-07-19 07:34 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
      2018-09-04 00:43 - 2018-07-19 07:33 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2018-09-04 00:43 - 2018-07-19 07:33 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
      2018-09-04 00:43 - 2018-07-19 07:33 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
      2018-09-04 00:43 - 2018-07-19 07:32 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
      2018-09-04 00:43 - 2018-07-19 07:30 - 005778432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2018-09-04 00:43 - 2018-07-19 07:26 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
      2018-09-04 00:43 - 2018-07-19 07:25 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
      2018-09-04 00:43 - 2018-07-19 07:23 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
      2018-09-04 00:43 - 2018-07-19 07:22 - 020286464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2018-09-04 00:43 - 2018-07-19 07:22 - 000794624 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2018-09-04 00:43 - 2018-07-19 07:22 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
      2018-09-04 00:43 - 2018-07-19 07:22 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
      2018-09-04 00:43 - 2018-07-19 07:21 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
      2018-09-04 00:43 - 2018-07-19 07:16 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
      2018-09-04 00:43 - 2018-07-19 07:14 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
      2018-09-04 00:43 - 2018-07-19 07:11 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
      2018-09-04 00:43 - 2018-07-19 07:05 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2018-09-04 00:43 - 2018-07-19 07:05 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
      2018-09-04 00:43 - 2018-07-19 07:04 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
      2018-09-04 00:43 - 2018-07-19 07:04 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
      2018-09-04 00:43 - 2018-07-19 07:04 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
      2018-09-04 00:43 - 2018-07-19 07:03 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
      2018-09-04 00:43 - 2018-07-19 07:03 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
      2018-09-04 00:43 - 2018-07-19 07:01 - 002295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2018-09-04 00:43 - 2018-07-19 07:00 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
      2018-09-04 00:43 - 2018-07-19 07:00 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2018-09-04 00:43 - 2018-07-19 06:58 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2018-09-04 00:43 - 2018-07-19 06:58 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
      2018-09-04 00:43 - 2018-07-19 06:57 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
      2018-09-04 00:43 - 2018-07-19 06:56 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
      2018-09-04 00:43 - 2018-07-19 06:56 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
      2018-09-04 00:43 - 2018-07-19 06:55 - 000662016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2018-09-04 00:43 - 2018-07-19 06:55 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
      2018-09-04 00:43 - 2018-07-19 06:54 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
      2018-09-04 00:43 - 2018-07-19 06:47 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
      2018-09-04 00:43 - 2018-07-19 06:46 - 015283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2018-09-04 00:43 - 2018-07-19 06:46 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
      2018-09-04 00:43 - 2018-07-19 06:45 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2018-09-04 00:43 - 2018-07-19 06:45 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2018-09-04 00:43 - 2018-07-19 06:43 - 002136064 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2018-09-04 00:43 - 2018-07-19 06:43 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
      2018-09-04 00:43 - 2018-07-19 06:42 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
      2018-09-04 00:43 - 2018-07-19 06:41 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
      2018-09-04 00:43 - 2018-07-19 06:41 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
      2018-09-04 00:43 - 2018-07-19 06:39 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
      2018-09-04 00:43 - 2018-07-19 06:38 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
      2018-09-04 00:43 - 2018-07-19 06:37 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
      2018-09-04 00:43 - 2018-07-19 06:35 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
      2018-09-04 00:43 - 2018-07-19 06:32 - 004494848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2018-09-04 00:43 - 2018-07-19 06:31 - 004510720 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2018-09-04 00:43 - 2018-07-19 06:30 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
      2018-09-04 00:43 - 2018-07-19 06:28 - 013679616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2018-09-04 00:43 - 2018-07-19 06:28 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2018-09-04 00:43 - 2018-07-19 06:28 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2018-09-04 00:43 - 2018-07-19 06:27 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
      2018-09-04 00:43 - 2018-07-19 06:20 - 001554944 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2018-09-04 00:43 - 2018-07-19 06:09 - 004037632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2018-09-04 00:43 - 2018-07-19 06:09 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2018-09-04 00:43 - 2018-07-19 06:06 - 001329152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2018-09-04 00:43 - 2018-07-19 06:04 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2018-09-04 00:43 - 2018-07-13 22:19 - 001894080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
      2018-09-04 00:43 - 2018-07-13 22:19 - 000377024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
      2018-09-04 00:43 - 2018-07-13 22:19 - 000287936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
      2018-09-04 00:43 - 2018-07-08 19:08 - 000383680 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
      2018-09-04 00:43 - 2018-07-08 19:02 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
      2018-09-04 00:43 - 2018-07-08 19:01 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
      2018-09-04 00:43 - 2018-07-08 18:47 - 000309440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
      2018-09-04 00:43 - 2018-07-08 18:42 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
      2018-09-04 00:43 - 2018-07-06 19:09 - 000947904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
      2018-09-04 00:43 - 2018-07-06 19:03 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
      2018-09-04 00:43 - 2018-07-06 18:48 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
      2018-09-04 00:43 - 2018-06-29 18:55 - 000695808 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
      2018-09-04 00:43 - 2018-06-29 18:55 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
      2018-09-04 00:43 - 2018-06-29 18:55 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
      2018-09-04 00:43 - 2018-06-29 18:40 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
      2018-09-04 00:43 - 2018-06-29 18:14 - 000516096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
      2018-09-04 00:43 - 2018-06-29 18:09 - 000034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
      2018-09-04 00:43 - 2018-06-27 19:01 - 000114368 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
      2018-09-04 00:43 - 2018-06-27 18:55 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
      2018-09-04 00:43 - 2018-06-27 18:55 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
      2018-09-04 00:43 - 2018-06-27 18:54 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
      2018-09-04 00:43 - 2018-06-27 18:54 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
      2018-09-04 00:43 - 2018-06-27 18:43 - 000363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
      2018-09-04 00:43 - 2018-06-27 18:42 - 002366464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
      2018-09-04 00:43 - 2018-06-27 18:42 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
      2018-09-04 00:43 - 2018-06-27 18:41 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
      2018-09-04 00:43 - 2018-06-27 18:21 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
      2018-09-04 00:43 - 2018-06-27 18:16 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
      2018-09-04 00:43 - 2018-06-16 08:11 - 000467856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
      2018-09-04 00:43 - 2018-06-13 19:20 - 014185984 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
      2018-09-04 00:43 - 2018-06-13 19:19 - 001867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
      2018-09-04 00:43 - 2018-06-13 18:55 - 012880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
      2018-09-04 00:43 - 2018-06-13 18:54 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
      2018-09-04 00:43 - 2018-06-08 19:21 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
      2018-09-04 00:43 - 2018-06-08 19:20 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
      2018-09-04 00:43 - 2018-06-08 19:19 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
      2018-09-04 00:43 - 2018-06-08 19:19 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
      2018-09-04 00:43 - 2018-06-08 19:19 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
      2018-09-04 00:43 - 2018-06-08 18:55 - 001417728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
      2018-09-04 00:43 - 2018-06-08 18:55 - 000330240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
      2018-09-04 00:43 - 2018-06-08 18:54 - 000269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
      2018-09-04 00:43 - 2018-06-08 18:29 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
      2018-09-04 00:43 - 2018-06-07 19:19 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
      2018-09-04 00:43 - 2018-06-07 18:57 - 000463360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
      2018-09-04 00:43 - 2018-06-07 18:49 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
      2018-09-04 00:43 - 2018-06-07 18:34 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
      2018-09-04 00:43 - 2018-05-15 06:44 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
      2018-09-04 00:43 - 2018-05-15 06:24 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
      2018-09-04 00:43 - 2018-05-15 06:23 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
      2018-09-04 00:43 - 2018-05-15 06:13 - 003207168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
      2018-09-04 00:43 - 2018-05-15 06:13 - 000782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
      2018-09-04 00:43 - 2018-05-15 06:13 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
      2018-09-04 00:43 - 2018-05-15 06:01 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
      2018-09-04 00:43 - 2018-05-15 06:01 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
      2018-09-04 00:43 - 2018-05-12 05:07 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
      2018-09-04 00:43 - 2018-05-12 05:07 - 000033152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
      2018-09-04 00:43 - 2018-05-12 05:07 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
      2018-09-04 00:43 - 2018-05-12 00:19 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
      2018-09-04 00:43 - 2018-05-11 03:40 - 000741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
      2018-09-04 00:43 - 2018-05-11 03:40 - 000084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000998912 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000918296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000065880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000063832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000021848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000020824 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000019288 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000018776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000017752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000017752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000017240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000017240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000016216 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000015704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000015704 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000015192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000014168 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000014168 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000013656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000013656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000013656 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000013152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012632 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
      2018-09-04 00:43 - 2018-04-26 16:05 - 000011096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
      2018-09-04 00:43 - 2018-04-25 19:02 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
      2018-09-04 00:43 - 2018-04-25 18:18 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
      2018-09-04 00:43 - 2018-04-23 02:40 - 000582144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
      2018-09-04 00:43 - 2018-04-18 19:03 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
      2018-09-04 00:43 - 2018-04-18 19:03 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll
      2018-09-04 00:43 - 2018-04-18 18:51 - 000523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
      2018-09-04 00:43 - 2018-04-18 18:51 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhsetup.dll
      2018-09-04 00:43 - 2018-04-18 18:41 - 000016896 _____ (Microsoft Corporation) C:\Windows\hh.exe
      2018-09-04 00:43 - 2018-04-18 18:35 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hh.exe
      2018-09-04 00:43 - 2018-04-11 19:38 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
      2018-09-04 00:43 - 2018-04-11 19:36 - 000158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
      2018-09-04 00:43 - 2018-04-10 19:36 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
      2018-09-04 00:43 - 2018-04-10 19:36 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
      2018-09-04 00:43 - 2018-04-10 19:34 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
      2018-09-04 00:43 - 2018-04-10 19:33 - 001241600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
      2018-09-04 00:43 - 2018-04-10 19:32 - 000487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
      2018-09-04 00:43 - 2018-04-10 19:00 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
      2018-09-04 00:43 - 2018-04-10 18:48 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
      2018-09-04 00:43 - 2018-04-10 18:47 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
      2018-09-04 00:43 - 2018-04-10 18:47 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
      2018-09-04 00:43 - 2018-04-07 19:41 - 000371392 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
      2018-09-04 00:43 - 2018-03-14 20:16 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
      2018-09-04 00:43 - 2018-03-14 20:12 - 003165184 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
      2018-09-04 00:43 - 2018-03-14 20:12 - 000192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
      2018-09-04 00:43 - 2018-03-14 20:12 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
      2018-09-04 00:43 - 2018-03-14 20:07 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
      2018-09-04 00:43 - 2018-03-14 19:57 - 000573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
      2018-09-04 00:43 - 2018-03-14 19:57 - 000093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
      2018-09-04 00:43 - 2018-03-14 19:57 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
      2018-09-04 00:43 - 2018-03-14 19:57 - 000030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
      2018-09-04 00:43 - 2018-03-14 19:53 - 002651648 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
      2018-09-04 00:43 - 2018-03-14 19:53 - 000709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
      2018-09-04 00:43 - 2018-03-14 19:52 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
      2018-09-04 00:43 - 2018-03-14 19:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
      2018-09-04 00:43 - 2018-03-14 19:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
      2018-09-04 00:43 - 2018-03-14 19:52 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
      2018-09-04 00:43 - 2018-03-14 19:52 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
      2018-09-04 00:43 - 2018-03-06 21:11 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
      2018-09-04 00:43 - 2018-03-06 21:07 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
      2018-09-04 00:43 - 2018-02-22 06:28 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
      2018-09-04 00:43 - 2018-02-22 06:06 - 000134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
      2018-09-04 00:43 - 2018-02-10 21:35 - 000367296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000334528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000185024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000122560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS
      2018-09-04 00:43 - 2018-02-10 21:35 - 000068288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000064192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS
      2018-09-04 00:43 - 2018-02-10 21:35 - 000063168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000060608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000036032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000031936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000020160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000015040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
      2018-09-04 00:43 - 2018-02-10 21:35 - 000012096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
      2018-09-04 00:43 - 2018-02-10 21:23 - 002292224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
      2018-09-04 00:43 - 2018-02-10 21:23 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll
      2018-09-04 00:43 - 2018-02-10 21:11 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
      2018-09-04 00:43 - 2018-02-10 20:36 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsraLegacy.tlb
      2018-09-04 00:43 - 2018-02-10 20:25 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
      2018-09-04 00:43 - 2018-02-10 20:25 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
      2018-09-04 00:43 - 2018-02-10 20:25 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
      2018-09-04 00:43 - 2018-01-12 19:40 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
      2018-09-04 00:43 - 2018-01-12 19:27 - 004834816 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
      2018-09-04 00:43 - 2018-01-12 19:26 - 000308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
      2018-09-04 00:43 - 2018-01-12 19:16 - 003405824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
      2018-09-04 00:43 - 2018-01-11 19:41 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
      2018-09-04 00:43 - 2018-01-11 19:22 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
      2018-09-04 00:43 - 2018-01-01 05:21 - 000288488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
      2018-09-04 00:43 - 2018-01-01 05:21 - 000213736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
      2018-09-04 00:43 - 2018-01-01 05:18 - 001741312 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 001361408 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 001110528 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000842752 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000439296 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000366592 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
      2018-09-04 00:43 - 2018-01-01 05:18 - 000264704 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
      2018-09-04 00:43 - 2018-01-01 05:18 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
      2018-09-04 00:43 - 2018-01-01 05:04 - 000559616 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
      2018-09-04 00:43 - 2018-01-01 05:00 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
      2018-09-04 00:43 - 2018-01-01 05:00 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDist.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
      2018-09-04 00:43 - 2018-01-01 05:00 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
      2018-09-04 00:43 - 2018-01-01 04:59 - 000309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
      2018-09-04 00:43 - 2018-01-01 04:55 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
      2018-09-04 00:43 - 2018-01-01 04:55 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
      2018-09-04 00:43 - 2018-01-01 04:55 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
      2018-09-04 00:43 - 2018-01-01 04:55 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
      2018-09-04 00:43 - 2018-01-01 04:55 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
      2018-09-04 00:43 - 2018-01-01 04:50 - 000455680 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
      2018-09-04 00:43 - 2018-01-01 04:47 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
      2018-09-04 00:43 - 2018-01-01 04:46 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
      2018-09-04 00:43 - 2018-01-01 04:43 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
      2018-09-04 00:43 - 2018-01-01 04:43 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
      2018-09-04 00:43 - 2018-01-01 04:43 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
      2018-09-04 00:43 - 2018-01-01 04:43 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapPeerProxy.dll
      2018-09-04 00:43 - 2018-01-01 04:43 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapAuthProxy.dll
      2018-09-04 00:43 - 2018-01-01 04:43 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll
      2018-09-04 00:43 - 2018-01-01 04:41 - 000754176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
      2018-09-04 00:43 - 2017-12-05 20:36 - 000625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
      2018-09-04 00:43 - 2017-12-05 20:36 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
      2018-09-04 00:43 - 2017-12-05 20:36 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
      2018-09-04 00:43 - 2017-12-05 20:36 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
      2018-09-04 00:43 - 2017-12-05 20:36 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
      2018-09-04 00:43 - 2017-12-05 20:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
      2018-09-04 00:43 - 2017-12-05 20:08 - 001176576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
      2018-09-04 00:43 - 2017-12-05 20:08 - 000481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
      2018-09-04 00:43 - 2017-12-05 20:08 - 000179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
      2018-09-04 00:43 - 2017-12-05 20:08 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
      2018-09-04 00:43 - 2017-12-05 20:08 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
      2018-09-04 00:43 - 2017-12-05 19:04 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
      2018-09-04 00:43 - 2017-12-05 18:49 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
      2018-09-04 00:42 - 2018-08-03 18:39 - 000084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
      2018-09-04 00:42 - 2018-08-02 06:20 - 000708272 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
      2018-09-04 00:42 - 2018-08-02 06:06 - 000156256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
      2018-09-04 00:42 - 2018-08-02 06:05 - 005553760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2018-09-04 00:42 - 2018-08-02 06:00 - 000633080 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
      2018-09-04 00:42 - 2018-08-02 05:59 - 001211904 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
      2018-09-04 00:42 - 2018-08-02 05:59 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
      2018-09-04 00:42 - 2018-08-02 05:59 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
      2018-09-04 00:42 - 2018-08-02 05:58 - 001461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2018-09-04 00:42 - 2018-08-02 05:58 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2018-09-04 00:42 - 2018-08-02 05:57 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
      2018-09-04 00:42 - 2018-08-02 05:57 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
      2018-09-04 00:42 - 2018-08-02 05:41 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
      2018-09-04 00:42 - 2018-08-02 05:41 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
      2018-09-04 00:42 - 2018-08-02 05:41 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
      2018-09-04 00:42 - 2018-08-02 05:40 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
      2018-09-04 00:42 - 2018-07-19 09:15 - 025745408 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2018-09-04 00:42 - 2018-07-19 07:04 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
      2018-09-04 00:42 - 2018-07-08 19:02 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
      2018-09-04 00:42 - 2018-07-08 19:02 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
      2018-09-04 00:42 - 2018-07-08 19:01 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
      2018-09-04 00:42 - 2018-07-08 18:42 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
      2018-09-04 00:42 - 2018-07-08 18:41 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
      2018-09-04 00:42 - 2018-07-08 18:41 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
      2018-09-04 00:42 - 2018-07-08 18:13 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
      2018-09-04 00:42 - 2018-07-07 18:24 - 003226112 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2018-09-04 00:42 - 2018-07-06 19:03 - 000056832 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
      2018-09-04 00:42 - 2018-07-06 18:48 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
      2018-09-04 00:42 - 2018-06-29 18:55 - 000137728 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
      2018-09-04 00:42 - 2018-06-27 18:55 - 003246592 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
      2018-09-04 00:42 - 2018-06-27 18:55 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
      2018-09-04 00:42 - 2018-06-27 18:42 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
      2018-09-04 00:42 - 2018-06-21 06:33 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
      2018-09-04 00:42 - 2018-06-21 06:09 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
      2018-09-04 00:42 - 2018-06-16 08:24 - 000459632 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
      2018-09-04 00:42 - 2018-06-16 08:11 - 000634272 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
      2018-09-04 00:42 - 2018-06-13 19:23 - 000140992 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
      2018-09-04 00:42 - 2018-06-13 19:18 - 000680960 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
      2018-09-04 00:42 - 2018-06-08 19:20 - 002066432 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
      2018-09-04 00:42 - 2018-06-08 19:20 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
      2018-09-04 00:42 - 2018-06-08 18:55 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
      2018-09-04 00:42 - 2018-06-08 18:44 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
      2018-09-04 00:42 - 2018-06-08 18:28 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
      2018-09-04 00:42 - 2018-06-08 16:05 - 002860032 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
      2018-09-04 00:42 - 2018-06-08 16:05 - 001602048 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
      2018-09-04 00:42 - 2018-06-08 16:05 - 000783872 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
      2018-09-04 00:42 - 2018-06-08 16:05 - 000612352 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
      2018-09-04 00:42 - 2018-06-08 16:05 - 000470016 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
      2018-09-04 00:42 - 2018-06-08 16:05 - 000443392 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
      2018-09-04 00:42 - 2018-06-08 16:05 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
      2018-09-04 00:42 - 2018-06-08 16:05 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
      2018-09-04 00:42 - 2018-06-07 19:20 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
      2018-09-04 00:42 - 2018-06-07 19:19 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
      2018-09-04 00:42 - 2018-06-07 19:19 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
      2018-09-04 00:42 - 2018-05-15 07:16 - 001681088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
      2018-09-04 00:42 - 2018-05-15 06:44 - 004120576 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
      2018-09-04 00:42 - 2018-05-15 06:44 - 001159680 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
      2018-09-04 00:42 - 2018-05-15 06:44 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
      2018-09-04 00:42 - 2018-05-15 06:13 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
      2018-09-04 00:42 - 2018-05-12 00:19 - 000977408 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
      2018-09-04 00:42 - 2018-05-02 18:32 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
      2018-09-04 00:42 - 2018-05-02 18:32 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
      2018-09-04 00:42 - 2018-05-02 18:32 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
      2018-09-04 00:42 - 2018-05-02 18:32 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
      2018-09-04 00:42 - 2018-05-02 18:32 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
      2018-09-04 00:42 - 2018-05-02 18:32 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
      2018-09-04 00:42 - 2018-05-02 18:32 - 000007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
      2018-09-04 00:42 - 2018-04-23 03:00 - 000876032 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
      2018-09-04 00:42 - 2018-04-11 19:38 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
      2018-09-04 00:42 - 2018-04-11 19:36 - 000142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
      2018-09-04 00:42 - 2018-04-10 19:35 - 001735168 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
      2018-09-04 00:42 - 2018-03-10 20:11 - 000340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
      2018-09-04 00:42 - 2018-03-06 21:13 - 000148160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
      2018-09-04 00:42 - 2018-03-06 21:11 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
      2018-09-04 00:42 - 2018-03-06 21:10 - 000170176 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
      2018-09-04 00:42 - 2018-03-06 21:07 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
      2018-09-04 00:42 - 2018-02-10 21:35 - 000023744 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
      2018-09-04 00:42 - 2018-02-10 21:11 - 003665920 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
      2018-09-04 00:42 - 2018-02-10 21:11 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
      2018-09-04 00:42 - 2018-02-10 20:36 - 000108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe
      2018-09-04 00:42 - 2018-02-10 20:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe
      2018-09-04 00:42 - 2018-02-10 20:26 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
      2018-09-04 00:42 - 2018-02-10 20:26 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
      2018-09-04 00:42 - 2018-01-01 05:18 - 002004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
      2018-09-04 00:42 - 2018-01-01 05:18 - 000705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
      2018-09-04 00:42 - 2018-01-01 05:18 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
      2018-09-04 00:42 - 2018-01-01 05:18 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
      2018-09-04 00:42 - 2018-01-01 05:18 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
      2018-09-04 00:42 - 2018-01-01 05:18 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
      2018-09-04 00:42 - 2018-01-01 05:00 - 001390080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
      2018-09-04 00:42 - 2018-01-01 05:00 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
      2018-09-04 00:42 - 2018-01-01 05:00 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp
      2018-09-04 00:42 - 2018-01-01 05:00 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll
      2018-09-04 00:42 - 2018-01-01 05:00 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
      2018-09-04 00:42 - 2018-01-01 04:46 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
      2018-09-04 00:42 - 2018-01-01 04:43 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
      2018-09-04 00:42 - 2017-12-05 20:36 - 001484288 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
      2018-09-04 00:42 - 2017-12-05 20:36 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
      2018-09-04 00:42 - 2017-12-05 20:08 - 000215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
      2018-08-13 10:45 - 2018-08-13 10:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
      2018-08-13 10:45 - 2018-08-13 10:45 - 000000000 ____D C:\Program Files\qBittorrent
      ==================== One Month Modified files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-09-07 10:02 - 2017-09-16 15:50 - 000000000 ____D C:\Users\kpacko\AppData\Roaming\qBittorrent
      2018-09-07 07:53 - 2009-07-14 07:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2018-09-07 07:53 - 2009-07-14 07:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2018-09-07 07:51 - 2009-07-14 08:13 - 000772130 _____ C:\Windows\system32\PerfStringBackup.INI
      2018-09-07 07:51 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf
      2018-09-07 07:49 - 2017-09-15 22:54 - 000002269 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2018-09-07 07:45 - 2017-09-16 17:07 - 000000000 ____D C:\Program Files (x86)\TeamViewer
      2018-09-07 07:45 - 2017-09-15 18:18 - 000000000 ____D C:\ProgramData\NVIDIA
      2018-09-07 07:45 - 2009-07-14 08:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2018-09-07 00:19 - 2017-10-22 09:50 - 000000000 ____D C:\Users\kpacko\AppData\Local\CrashDumps
      2018-09-06 23:59 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\rescache
      2018-09-04 22:42 - 2017-09-17 23:54 - 000000000 ____D C:\Users\kpacko\AppData\Roaming\FileZilla
      2018-09-04 00:58 - 2009-07-14 07:45 - 000295648 _____ C:\Windows\system32\FNTCACHE.DAT
      2018-09-04 00:56 - 2017-09-16 19:15 - 000000000 ____D C:\Windows\system32\appraiser
      2018-09-04 00:56 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\PolicyDefinitions
      2018-09-04 00:51 - 2017-07-17 23:37 - 000756356 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
      2018-09-02 00:28 - 2017-10-02 14:41 - 000000000 ____D C:\Users\kpacko\AppData\Roaming\ViberPC
      2018-09-02 00:27 - 2018-07-02 00:59 - 000000000 ____D C:\Users\kpacko\AppData\Local\Viber
      2018-09-02 00:26 - 2017-10-02 14:41 - 000000000 ____D C:\Users\kpacko\Documents\ViberDownloads
      2018-08-19 17:49 - 2017-11-02 01:00 - 000001018 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 13.lnk
      2018-08-08 00:53 - 2017-10-02 09:30 - 000000000 ____D C:\Users\kpacko\AppData\Local\ElevatedDiagnostics
      2018-08-08 00:53 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\system32\NDF
      ==================== Files in the root of some directories =======
      2018-05-04 13:56 - 2018-05-01 20:53 - 001527138 _____ () C:\Users\kpacko\AppData\Roaming\ccseetup542pro.exe
      2018-05-04 13:56 - 2018-04-30 15:50 - 015816144 ____R (Piriform Ltd) C:\Users\kpacko\AppData\Roaming\ccsetup542pro.exe
      2018-05-04 13:56 - 2018-03-12 20:36 - 001371485 _____ () C:\Users\kpacko\AppData\Roaming\ccsetup542proo.exe
      2018-05-04 13:56 - 2018-03-12 20:34 - 000211375 _____ () C:\Users\kpacko\AppData\Roaming\ccsetup542prro.exe
      2017-11-30 16:35 - 2018-02-22 12:29 - 000007603 _____ () C:\Users\kpacko\AppData\Local\Resmon.ResmonCfg
      Some files in TEMP:
      ====================
      2018-04-30 12:09 - 2018-04-30 12:09 - 011491456 _____ (Raxco Software, Inc.                                        ) C:\Users\kpacko\AppData\Local\Temp\PD140p_x64.exe
      ==================== Bamital & volsnap ======================
      (There is no automatic fix for files that do not pass verification.)
      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
      LastRegBack: 2018-09-06 23:52
      ==================== End of FRST.txt ============================
      Addition.txt
    • от мирослав24
      Здравейте,сблъсках се със следния проблем-неизвестно лице или лица правят опити за проникване в мои акаунти в електронни  пощи и  сайтове където съм се регистрирал.Получих писмо от единия сайт че е правен опит за вписване с моето потребителско име,но с грешна парола,и аналогично съобщение от е-майл провайдър.Ползвам десктоп компютър и лаптоп и не знам дали някое от устройствата не е със зловреден софтуер.Видимо нямам проблеми с машините,освен че и на двата компютъра като исках да си сменя паролата на един сайт,ми излезе прозорец с искане да си напиша електронната поща с който съм регистриран в сайта и като я написах след това ми излезе втори прозорец с подкана да напиша и паролата си за съответната поща.Нищо не смених в крайна сметка докато не установя къде е проблема.Изпращам резултатите от сканиране с FRST на настолния компютър :
       
      Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23.08.2018
      Ran by User1 (administrator) on PC1 (30-08-2018 15:49:50)
      Running from C:\Documents and Settings\User1\Desktop
      Loaded Profiles: User1 (Available Profiles: User1 & User2 & Administrator)
      Platform: Microsoft Windows XP Professional Service Pack 3 (X86) Language: English (United States)
      Internet Explorer Version 8 (Default browser: IE)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
      (Comodo) C:\Program Files\Comodo\Dragon\dragon_updater.exe
      () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareService.exe
      () C:\WINDOWS\tsnpstd3.exe
      () C:\WINDOWS\vsnpstd3.exe
      () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareTray.exe
      (Hewlett-Packard Co.) C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
      (Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
      (BitTorrent, Inc.) C:\Program Files\uTorrent\uTorrent.exe
      (Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
      (MyCity) C:\Program Files\MCShield\MCShieldRTM.exe
      (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
      (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
      (Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
      (Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\vpngui.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Run: [tsnpstd3] => C:\WINDOWS\tsnpstd3.exe [262144 2006-06-19] ()
      HKLM\...\Run: [snpstd3] => C:\WINDOWS\vsnpstd3.exe [827392 2006-09-19] ()
      HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareTray.exe [8063200 2016-07-18] ()
      HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49152 2007-03-11] (Hewlett-Packard Co.)
      HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
      HKU\S-1-5-21-220523388-412668190-1417001333-1003\...\Run: [Messenger (Yahoo!)] => "F:\SKYPE_~1\yahoo\Messenger\YahooMessenger.exe" -quiet
      HKU\S-1-5-21-220523388-412668190-1417001333-1003\...\Run: [uTorrent] => C:\Program Files\uTorrent\uTorrent.exe [395640 2011-05-02] (BitTorrent, Inc.)
      HKU\S-1-5-21-220523388-412668190-1417001333-1003\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6490904 2015-08-20] (Piriform Ltd)
      HKU\S-1-5-21-220523388-412668190-1417001333-1003\...\Run: [Google Update] => C:\Documents and Settings\User1\Local Settings\Application Data\Google\Update\1.3.33.7\GoogleUpdateCore.exe [601680 2017-12-02] (Google Inc.)
      HKU\S-1-5-21-220523388-412668190-1417001333-1003\...\Run: [MCShield Monitor] => C:\Program Files\MCShield\mcshieldrtm.exe [650816 2014-04-11] (MyCity)
      HKU\S-1-5-18\...\RunOnce: [RunNarrator] => C:\WINDOWS\system32\Narrator.exe [53760 2008-04-14] (Microsoft Corporation)
      HKU\S-1-5-18\...\RunOnce: [FlashPlayerUpdate] => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_30_0_0_134_pepper.exe [1447936 2018-07-27] (Adobe Systems Incorporated)
      Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2018-03-28]
      ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
      Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPN Client.lnk [2018-08-30]
      ShortcutTarget: VPN Client.lnk -> C:\WINDOWS\Installer\{B0BF7057-6869-4E4B-920C-EA2A58DA07F0}\Icon3E5562ED7.ico ()
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Tcpip\..\Interfaces\{0227FD86-8C54-4C88-8029-3F44137A8ADF}: [DhcpNameServer] 192.168.0.1
      Tcpip\..\Interfaces\{1524681E-CD57-4084-9846-709C0A2CC0ED}: [NameServer] 192.168.100.40,192.168.100.140
      Internet Explorer:
      ==================
      HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
      HKU\S-1-5-21-220523388-412668190-1417001333-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
      BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_152\bin\ssv.dll [2017-12-08] (Oracle Corporation)
      BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_152\bin\jp2ssv.dll [2017-12-08] (Oracle Corporation)
      DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_09-windows-i586.cab
      FireFox:
      ========
      FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_27_0_0_187.dll [2017-12-08] ()
      FF Plugin: @java.com/DTPlugin,version=11.152.2 -> C:\Program Files\Java\jre1.8.0_152\bin\dtplugin\npDeployJava1.dll [2017-12-08] (Oracle Corporation)
      FF Plugin: @java.com/JavaPlugin,version=11.152.2 -> C:\Program Files\Java\jre1.8.0_152\bin\plugin2\npjp2.dll [2017-12-08] (Oracle Corporation)
      FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
      FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
      FF Plugin HKU\S-1-5-21-220523388-412668190-1417001333-1003: @talk.google.com/GoogleTalkPlugin -> C:\Documents and Settings\User1\Application Data\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
      FF Plugin HKU\S-1-5-21-220523388-412668190-1417001333-1003: @talk.google.com/O1DPlugin -> C:\Documents and Settings\User1\Application Data\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)
      FF Plugin HKU\S-1-5-21-220523388-412668190-1417001333-1003: @tools.google.com/Google Update;version=3 -> C:\Documents and Settings\User1\Local Settings\Application Data\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-02] (Google Inc.)
      FF Plugin HKU\S-1-5-21-220523388-412668190-1417001333-1003: @tools.google.com/Google Update;version=9 -> C:\Documents and Settings\User1\Local Settings\Application Data\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-02] (Google Inc.)
      FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\User1\Application Data\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)
      FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\User1\Application Data\mozilla\plugins\npo1d.dll [2015-12-08] (Google)
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335872 2018-07-27] (Adobe Systems Incorporated) [File not signed]
      S2 Browser; C:\WINDOWS\System32\browser.dll [78336 2012-07-06] (Microsoft Corporation) [File not signed]
      R2 CVPND; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [1528616 2010-03-23] (Cisco Systems, Inc.)
      R2 DcomLaunch; C:\WINDOWS\system32\rpcss.dll [401408 2009-02-09] (Microsoft Corporation) [File not signed]
      R2 Dnscache; C:\WINDOWS\System32\dnsrslvr.dll [45568 2009-04-20] (Microsoft Corporation) [File not signed]
      R2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2060848 2016-02-05] (Comodo)
      R2 Eventlog; C:\WINDOWS\system32\services.exe [110592 2009-02-06] (Microsoft Corporation) [File not signed]
      R3 EventSystem; C:\WINDOWS\system32\es.dll [253952 2008-07-07] (Microsoft Corporation) [File not signed]
      S3 FastUserSwitchingCompatibility; C:\WINDOWS\System32\shsvcs.dll [135168 2009-07-28] (Microsoft Corporation) [File not signed]
      R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-03-11] (Hewlett-Packard Co.) [File not signed]
      R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [602112 2007-06-04] (Hewlett-Packard Co.) [File not signed]
      S4 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [170912 2013-01-12] (Oracle Corporation)
      R2 LanmanServer; C:\WINDOWS\System32\srvsvc.dll [99840 2010-08-27] (Microsoft Corporation) [File not signed]
      R2 lanmanworkstation; C:\WINDOWS\System32\wkssvc.dll [132096 2009-06-10] (Microsoft Corporation) [File not signed]
      R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareService.exe [664040 2016-07-18] ()
      S3 MSIServer; C:\WINDOWS\System32\msiexec.exe [95744 2008-05-19] (Microsoft Corporation) [File not signed]
      S3 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [43520 2006-11-08] (Hewlett-Packard) [File not signed]
      R3 Nla; C:\WINDOWS\System32\mswsock.dll [245248 2008-06-20] (Microsoft Corporation) [File not signed]
      R2 PlugPlay; C:\WINDOWS\system32\services.exe [110592 2009-02-06] (Microsoft Corporation) [File not signed]
      R3 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [53248 2006-11-08] (Hewlett-Packard) [File not signed]
      R2 RpcSs; C:\WINDOWS\System32\rpcss.dll [401408 2009-02-09] (Microsoft Corporation) [File not signed]
      R2 ShellHWDetection; C:\WINDOWS\System32\shsvcs.dll [135168 2009-07-28] (Microsoft Corporation) [File not signed]
      S2 SkypeUpdate; C:\Program Files\Skype\Updater\Updater.exe [317400 2017-04-05] (Skype Technologies) [File not signed]
      R2 Spooler; C:\WINDOWS\system32\spoolsv.exe [58880 2010-08-17] (Microsoft Corporation) [File not signed]
      R2 Themes; C:\WINDOWS\System32\shsvcs.dll [135168 2009-07-28] (Microsoft Corporation) [File not signed]
      S3 Wmi; C:\WINDOWS\System32\advapi32.dll [617472 2009-02-09] (Microsoft Corporation) [File not signed]
      S2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [X]
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R1 AFD; C:\WINDOWS\System32\drivers\afd.sys [138496 2011-08-17] (Microsoft Corporation) [File not signed]
      R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [36864 2006-06-18] (Advanced Micro Devices)
      S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
      R3 CVirtA; C:\WINDOWS\System32\DRIVERS\CVirtA.sys [5275 2007-01-18] (Cisco Systems, Inc.)
      R2 CVPNDRVA; C:\WINDOWS\system32\Drivers\CVPNDRVA.sys [308859 2010-03-23] (Cisco Systems, Inc.) [File not signed]
      R3 DNE; C:\WINDOWS\System32\DRIVERS\dne2000.sys [131984 2008-11-16] (Deterministic Networks, Inc.)
      R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.129.0\gzflt.sys [175008 2016-04-28] (BitDefender LLC)
      R3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49920 2007-01-19] (HP)
      R3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2007-01-19] (HP)
      R3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2007-01-19] (HP)
      R3 HTTP; C:\WINDOWS\System32\Drivers\HTTP.sys [265728 2009-10-20] (Microsoft Corporation) [File not signed]
      R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4368896 2006-08-15] (Realtek Semiconductor Corp.) [File not signed]
      R3 irsir; C:\WINDOWS\System32\DRIVERS\irsir.sys [18688 2001-08-17] (Microsoft Corporation)
      R0 KSecDD; C:\WINDOWS\system32\Drivers\KSecDD.sys [92928 2009-06-24] (Microsoft Corporation) [File not signed]
      R1 MRxSmb; C:\WINDOWS\System32\DRIVERS\mrxsmb.sys [456320 2011-07-15] (Microsoft Corporation) [File not signed]
      R0 Mup; C:\WINDOWS\system32\Drivers\Mup.sys [105472 2011-04-21] (Microsoft Corporation) [File not signed]
      S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
      R3 NdisTapi; C:\WINDOWS\System32\DRIVERS\ndistapi.sys [10496 2011-07-08] (Microsoft Corporation) [File not signed]
      R3 NDProxy; C:\WINDOWS\system32\Drivers\NDProxy.sys [40960 2013-11-27] (Microsoft Corporation) [File not signed]
      R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [57856 2006-07-11] (NVIDIA Corporation)
      R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [20480 2006-07-11] (NVIDIA Corporation)
      R3 Rasirda; C:\WINDOWS\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation)
      S3 SNPSTD3; C:\WINDOWS\System32\DRIVERS\snpstd3.sys [10252544 2007-03-27] (Sonix Co. Ltd.)
      R3 Srv; C:\WINDOWS\System32\DRIVERS\srv.sys [357888 2011-02-17] (Microsoft Corporation) [File not signed]
      R1 Tcpip; C:\WINDOWS\System32\DRIVERS\tcpip.sys [361600 2008-06-20] (Microsoft Corporation) [File not signed]
      S3 Trufos; C:\WINDOWS\System32\DRIVERS\Trufos.sys [428832 2016-04-28] (BitDefender S.R.L.)
      S3 usbaudio; C:\WINDOWS\System32\drivers\usbaudio.sys [60160 2013-07-17] (Microsoft Corporation) [File not signed]
      R3 usbccgp; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [32384 2013-08-09] (Microsoft Corporation) [File not signed]
      R3 usbehci; C:\WINDOWS\System32\DRIVERS\usbehci.sys [30336 2009-03-18] (Microsoft Corporation) [File not signed]
      S3 usbscan; C:\WINDOWS\System32\DRIVERS\usbscan.sys [14976 2013-07-03] (Microsoft Corporation) [File not signed]
      R3 vsdatant; C:\WINDOWS\system32\vsdatant.sys [394952 2007-11-14] (Zone Labs, LLC)
      S3 catchme; \??\C:\DOCUME~1\User1\LOCALS~1\Temp\catchme.sys [X]
      S4 IntelIde; no ImagePath
      S2 StarOpen; no ImagePath
      S1 ZAM; \??\C:\WINDOWS\System32\drivers\zam32.sys [X]
      S1 ZAM_Guard; \??\C:\WINDOWS\System32\drivers\zamguard32.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One Month Created files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-08-30 15:49 - 2018-08-30 15:50 - 000014109 _____ C:\Documents and Settings\User1\Desktop\FRST.txt
      2018-08-30 15:15 - 2018-08-30 15:15 - 001773568 _____ (Farbar) C:\Documents and Settings\User1\Desktop\FRST.exe
      2018-08-10 12:36 - 2018-08-10 12:40 - 000000000 ____D C:\Documents and Settings\User2\Desktop\куче Анжело 0887999938
      ==================== One Month Modified files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-08-30 15:50 - 2015-07-18 13:46 - 000000000 ____D C:\Documents and Settings\User1\Local Settings\temp
      2018-08-30 15:49 - 2018-03-26 11:31 - 000000000 ____D C:\FRST
      2018-08-30 15:48 - 2011-05-02 12:46 - 000000000 ____D C:\Documents and Settings\User1\Application Data\uTorrent
      2018-08-30 15:31 - 2011-05-02 12:44 - 000000000 ____D C:\Program Files\Opera
      2018-08-30 14:58 - 2016-02-20 13:25 - 000000000 ____D C:\Documents and Settings\All Users\Application Data\MCShield
      2018-08-30 14:58 - 2015-06-22 14:14 - 000000222 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job
      2018-08-30 14:58 - 2015-06-22 14:14 - 000000216 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job
      2018-08-30 14:58 - 2011-05-02 10:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
      2018-08-30 14:57 - 2018-03-27 15:50 - 000032638 _____ C:\WINDOWS\SchedLgU.Txt
      2018-08-30 14:57 - 2011-05-02 12:10 - 000000178 ___SH C:\Documents and Settings\User1\ntuser.ini
      2018-08-30 14:57 - 2011-05-02 12:10 - 000000000 ____D C:\Documents and Settings\User1
      2018-08-30 14:55 - 2013-03-08 15:11 - 000001078 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-220523388-412668190-1417001333-1003UA.job
      2018-08-30 14:47 - 2015-04-26 09:48 - 000000000 ____D C:\Documents and Settings\User2\Application Data\Skype
      2018-08-30 14:47 - 2011-05-02 13:28 - 000000000 ____D C:\Documents and Settings\User2\Local Settings\Temp
      2018-08-30 12:55 - 2013-03-08 15:11 - 000001026 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-220523388-412668190-1417001333-1003Core.job
      2018-08-30 07:50 - 2001-08-23 12:00 - 000002206 _____ C:\WINDOWS\system32\wpa.dbl
      2018-08-25 12:48 - 2017-01-16 13:16 - 000000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
      2018-08-25 12:48 - 2011-05-02 10:10 - 000000000 ____D C:\WINDOWS\system32\Macromed
      2018-08-09 12:25 - 2011-05-16 16:38 - 000000000 ____D C:\Program Files\Recuva
      2018-08-02 14:29 - 2013-12-09 13:51 - 000000000 ____D C:\Documents and Settings\User2\Desktop\образци PDF
      ==================== Files in the root of some directories =======
      2011-05-02 13:33 - 2014-09-24 16:20 - 000014848 _____ () C:\Documents and Settings\User1\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
      2014-01-01 13:07 - 2014-01-01 13:07 - 000000036 _____ () C:\Documents and Settings\User1\Local Settings\Application Data\housecall.guid.cache
      2011-05-15 13:35 - 2011-05-15 13:35 - 000000056 _____ () C:\Documents and Settings\All Users\Application Data\ezsidmv.dat
      2017-09-02 12:57 - 2018-04-11 15:32 - 000021736 _____ () C:\Documents and Settings\All Users\Application Data\hpzinstall.log
      ==================== Bamital & volsnap ======================
      (There is no automatic fix for files that do not pass verification.)
      C:\WINDOWS\explorer.exe => File is digitally signed
      C:\WINDOWS\system32\winlogon.exe => File is digitally signed
      C:\WINDOWS\system32\svchost.exe => File is digitally signed
      C:\WINDOWS\system32\services.exe => MD5 is legit
      C:\WINDOWS\system32\User32.dll => File is digitally signed
      C:\WINDOWS\system32\userinit.exe => File is digitally signed
      C:\WINDOWS\system32\rpcss.dll => MD5 is legit
      C:\WINDOWS\system32\dnsapi.dll => MD5 is legit
      C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
      ==================== End of FRST.txt ============================
      Addition.txt
    • от d1cho
      Привет преди два дни ми изпищя windows defender-a и антивируснта програма,пише, че гадината е Trojan:Win32/Killav.DR. Компютрите са в мрежа, единя е с vista business 64 bit, a другия с windows 10 32bit. Този с vistata не ми да ва да включа защитната стена и да инсталриам антивирусна. Мъчих компютъра с windows 10 с различни антивирусни понеже ми позволява да инсталриам,но само ги слага под карантина,а мен ме е страх да ги трия понеже имаме софтуер за работа и ме тревожи да не би да повредя нещо и да замине информацията.
      Моля за съдействие, понеже е почти невъзможно да се работи на компютрите.
      Ето тоша ми е от лог файла на компѝтъра с вистата FRST.txt
      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.08.2018
      Ran by DBPROTOOLS (administrator) on DBPROTOOLS-PC (17-08-2018 10:17:44)
      Running from C:\Users\DBPROTOOLS\Desktop
      Loaded Profiles: DBPROTOOLS (Available Profiles: DBPROTOOLS)
      Platform: Windows Vista (TM) Business Service Pack 2 (X64) Language: English (United States)
      Internet Explorer Version 7 (Default browser: Chrome)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (Microsoft Corporation) C:\Windows\System32\SLsvc.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
      () C:\Windows\zqmeyojeujuakpbxqoc.exe
      (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
      () C:\Users\DBPROTOOLS\AppData\Local\Temp\zeoucgp.exe
      () C:\Users\DBPROTOOLS\AppData\Local\Temp\zeoucgp.exe
      (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
      (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
      (Microsoft Corporation) C:\Windows\SysWOW64\conime.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1584184 2008-01-21] (Microsoft Corporation)
      HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-01-23] (Brother Industries, Ltd.)
      HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4509184 2012-12-27] (Brother Industries, Ltd.)
      HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.)
      HKLM-x32\...\Run: [mqzelo] => C:\Windows\fuoewkdwkxgksvfzq.exe [503808 2018-08-17] ()
      HKLM-x32\...\Run: [qapanwkyhpts] => C:\Users\DBPROTOOLS\AppData\Local\Temp\fuoewkdwkxgksvfzq.exe [503808 2018-08-16] () <==== ATTENTION
      HKLM-x32\...\RunOnce: [zeoucgp] => mebupgcypfryjpcztshe.exe .
      HKLM-x32\...\RunOnce: [tcqamuhucjm] => C:\Users\DBPROTOOLS\AppData\Local\Temp\zqmeyojeujuakpbxqoc.exe . [503808 2018-08-16] () <==== ATTENTION
      HKLM\...\Policies\Explorer\Run: [oufmvaku] => C:\Windows\zqmeyojeujuakpbxqoc.exe [503808 2018-08-16] ()
      HKLM\...\Policies\Explorer\Run: [bemqw] => C:\Users\DBPROTOOLS\AppData\Local\Temp\fuoewkdwkxgksvfzq.exe [503808 2018-08-16] ()
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\Run: [fmygqwhsy] => C:\Windows\oezqjysmbpzenrcxpm.exe [503808 2018-08-17] ()
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\Run: [mqzelo] => C:\Users\DBPROTOOLS\AppData\Local\Temp\ymfulyqivhpszbkd.exe [503808 2018-08-16] () <==== ATTENTION
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\RunOnce: [ygtcnugszf] => fuoewkdwkxgksvfzq.exe .
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\RunOnce: [zeoucgp] => C:\Users\DBPROTOOLS\AppData\Local\Temp\oezqjysmbpzenrcxpm.exe . [503808 2018-08-16] () <==== ATTENTION
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\Policies\system: [DisableRegistryTools] 1
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\MountPoints2: {175dbd82-9a45-11e8-861a-0019990d7d87} - E:\tyquftktfbz.bat
      HKU\S-1-5-21-3181692578-1277306937-1901717452-1000\...\MountPoints2: {1b56a57f-9a44-11e8-a149-8748c642f7d2} - E:\setup.exe
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.1
      Tcpip\..\Interfaces\{16F65250-913D-4F56-B2DA-49AF5C765191}: [DhcpNameServer] 192.168.0.1 192.168.0.1
      Internet Explorer:
      ==================
      HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
      SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      SearchScopes: HKU\S-1-5-21-3181692578-1277306937-1901717452-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
      Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-04-11] (Microsoft Corporation)
      Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-04-11] (Microsoft Corporation)
      Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-04-11] (Microsoft Corporation)
      Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-04-11] (Microsoft Corporation)
      FireFox:
      ========
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-08-06] (Google Inc.)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-08-06] (Google Inc.)
      Chrome: 
      =======
      CHR Profile: C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default [2018-08-17]
      CHR Extension: (Slides) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-08-07]
      CHR Extension: (Docs) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-08-07]
      CHR Extension: (Google Drive) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-08-07]
      CHR Extension: (YouTube) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-07]
      CHR Extension: (Sheets) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-08-07]
      CHR Extension: (Google Docs Offline) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-07]
      CHR Extension: (Chrome Web Store Payments) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-08-07]
      CHR Extension: (Gmail) - C:\Users\DBPROTOOLS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-08-07]
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
      R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11644656 2018-08-13] (TeamViewer GmbH)
      S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [383544 2008-01-21] (Microsoft Corporation)
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
      S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
      S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One Month Created files and folders ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2018-08-17 10:17 - 2018-08-17 10:18 - 000008964 _____ C:\Users\DBPROTOOLS\Desktop\FRST.txt
      2018-08-17 10:16 - 2018-08-17 10:17 - 000000000 ____D C:\FRST
      2018-08-17 10:15 - 2018-08-17 10:15 - 002412544 _____ (Farbar) C:\Users\DBPROTOOLS\Desktop\FRST64.exe
      2018-08-17 09:35 - 2018-08-17 09:36 - 046625016 _____ (Microsoft Corporation) C:\Users\DBPROTOOLS\Downloads\Windows-KB890830-x64-V5.63.exe
      2018-08-16 12:03 - 2018-08-16 12:03 - 000000000 ____D C:\ProgramData\AVG
      2018-08-16 12:02 - 2018-08-16 11:36 - 007460520 _____ (AVG Technologies CZ, s.r.o.) C:\Users\DBPROTOOLS\Desktop\avg_antivirus_free_setup.exe
      2018-08-15 16:13 - 2018-08-15 16:33 - 000038147 _____ C:\Users\DBPROTOOLS\Documents\ПРОТОКОЛ КОНСИГНАЦИЯ.odt
      2018-08-15 10:04 - 2018-08-17 10:18 - 000000272 ____H C:\Windows\SysWOW64\dacaawxyupgsitlnmqkmj.vgd
      2018-08-15 10:04 - 2018-08-17 10:18 - 000000272 ____H C:\Windows\dacaawxyupgsitlnmqkmj.vgd
      2018-08-15 10:04 - 2018-08-17 10:18 - 000000272 ____H C:\Program Files (x86)\dacaawxyupgsitlnmqkmj.vgd
      2018-08-15 10:03 - 2018-08-17 10:16 - 000503808 __RSH C:\Windows\ymfulyqivhpszbkd.exe
      2018-08-15 10:03 - 2018-08-17 10:16 - 000503808 __RSH C:\Windows\smlgdwusldranvkjfgxwqy.exe
      2018-08-15 10:03 - 2018-08-17 10:16 - 000503808 __RSH C:\Windows\oezqjysmbpzenrcxpm.exe
      2018-08-15 10:03 - 2018-08-17 10:16 - 000503808 __RSH C:\Windows\mebupgcypfryjpcztshe.exe
      2018-08-15 10:03 - 2018-08-17 10:16 - 000503808 __RSH C:\Windows\fuoewkdwkxgksvfzq.exe
      2018-08-15 10:03 - 2018-08-17 10:16 - 000503808 __RSH C:\Windows\busmiaxumdqykrfdyyomf.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\zqmeyojeujuakpbxqoc.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\SysWOW64\zqmeyojeujuakpbxqoc.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\SysWOW64\ymfulyqivhpszbkd.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\SysWOW64\smlgdwusldranvkjfgxwqy.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\SysWOW64\oezqjysmbpzenrcxpm.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\SysWOW64\mebupgcypfryjpcztshe.exe
      2018-08-15 10:03 - 2018-08-16 17:01 - 000503808 __RSH C:\Windows\SysWOW64\fuoewkdwkxgksvfzq.exe
      2018-08-15 10:03 - 2018-08-15 10:03 - 000503808 __RSH C:\Windows\SysWOW64\busmiaxumdqykrfdyyomf.exe
      2018-08-08 19:55 - 2018-08-08 19:55 - 000000586 _____ C:\Users\DBPROTOOLS\Desktop\control8.lnk
      2018-08-08 19:53 - 2018-08-08 19:54 - 000000586 _____ C:\Users\DBPROTOOLS\Desktop\control7.lnk
      2018-08-08 10:50 - 2018-08-08 10:51 - 000000000 ___HD C:\Program Files (x86)\Temp
      2018-08-08 10:49 - 2018-08-08 10:49 - 020227746 _____ C:\Users\DBPROTOOLS\Downloads\FTS_RealtekHDAudio_6015911_1039707.zip
      2018-08-08 10:36 - 2018-08-08 10:36 - 000529696 _____ (Fujitsu) C:\Users\DBPROTOOLS\Downloads\AutoDetect_CR.exe
      2018-08-08 10:19 - 2018-08-08 10:19 - 000870768 _____ (PDFLogic Corporation ) C:\Users\DBPROTOOLS\Downloads\pdfvista.exe
      2018-08-08 10:14 - 2018-08-08 10:14 - 000127389 _____ C:\Users\DBPROTOOLS\Downloads\received_1656658347796650.jpeg
      2018-08-08 09:51 - 2018-08-08 09:51 - 000131068 _____ C:\Users\DBPROTOOLS\Downloads\ACFrOgD5qMx8urBDsFoSA7F_JPxuDeiEhFOgmeQLIU44kuc2fxOLoZfY-xq9ebf1sM-mw4X0coR12Y2kOz69foLufsDyMtHGIiFwi_Ya2E4BRTKHCOlw-VxJoiTp7S8=
      2018-08-08 09:41 - 2018-08-08 09:41 - 000949332 _____ (Vivid Document Imaging Technologies ) C:\Users\DBPROTOOLS\Downloads\PDFViewerSetup (1).exe
      2018-08-08 09:40 - 2018-08-16 12:03 - 000000000 ____D C:\Users\DBPROTOOLS\AppData\Roaming\YcanPDF
      2018-08-08 09:39 - 2018-08-08 09:39 - 003451040 _____ (PDFZilla, Inc. ) C:\Users\DBPROTOOLS\Downloads\freepdfreader.exe
      2018-08-07 17:15 - 2018-08-07 17:15 - 000008192 ___RS C:\BOOTSECT.BAK
      2018-08-07 17:15 - 2018-08-07 16:22 - 000000000 ____D C:\Windows\Panther
      2018-08-07 17:15 - 2009-04-11 19:22 - 000333257 __RSH C:\bootmgr
      2018-08-07 16:21 - 2018-08-07 16:21 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_00_00.Wdf
      2018-08-07 16:18 - 2018-08-07 16:18 - 000000000 ____D C:\Windows\CSC
      2018-08-07 12:34 - 2018-08-07 12:34 - 000044749 _____ C:\Users\DBPROTOOLS\Downloads\logo_db_protools.pdf
      2018-08-07 12:29 - 2018-08-07 12:29 - 001207800 _____ (Adobe Systems Incorporated) C:\Users\DBPROTOOLS\Downloads\readerdc_en_ha_install.exe
      2018-08-07 12:27 - 2018-08-07 12:27 - 000949332 _____ (Vivid Document Imaging Technologies ) C:\Users\DBPROTOOLS\Downloads\PDFViewerSetup.exe
      2018-08-07 12:22 - 2018-08-07 12:22 - 000004088 ____H C:\Users\DBPROTOOLS\AppData\Local\ygtcnugszfhefberbqviqmyucpyjqcov.dab
      2018-08-07 12:20 - 2018-08-17 10:18 - 000000272 ____H C:\Users\DBPROTOOLS\AppData\Local\dacaawxyupgsitlnmqkmj.vgd
      2018-08-07 12:19 - 2018-08-07 12:19 - 000000000 ____D C:\Users\DBPROTOOLS\Desktop\Оферти Доставчици
      2018-08-07 12:16 - 2018-08-07 12:16 - 000000000 ____D C:\Users\DBPROTOOLS\AppData\Roaming\ControlCenter4
      2018-08-07 12:13 - 2018-08-07 12:13 - 000001975 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk
      2018-08-07 12:13 - 2018-08-07 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
      2018-08-07 12:11 - 2018-08-07 12:11 - 000000000 ____D C:\ProgramData\ControlCenter4
      2018-08-07 12:11 - 2018-08-07 12:11 - 000000000 ____D C:\Program Files (x86)\ControlCenter4
      2018-08-07 12:11 - 2018-08-07 12:11 - 000000000 ____D C:\Program Files (x86)\BrownyInd
      2018-08-07 12:11 - 2018-08-07 12:11 - 000000000 ____D C:\Program Files (x86)\Browny02
      2018-08-07 12:11 - 2018-08-07 12:11 - 000000000 ____D C:\Brother
      2018-08-07 12:11 - 2012-12-14 04:31 - 000180224 _____ (Brother Industries, Ltd.) C:\Windows\SysWOW64\BROSNMP.DLL
      2018-08-07 12:11 - 2012-12-14 04:31 - 000113744 _____ (Brother Industries Ltd) C:\Windows\SysWOW64\BRRBTOOL.EXE
      2018-08-07 12:11 - 2012-12-14 04:31 - 000077824 _____ (Brother Industries, Ltd.) C:\Windows\SysWOW64\BRLMW03A.DLL
      2018-08-07 12:11 - 2012-12-14 04:31 - 000045056 _____ C:\Windows\SysWOW64\BRTCPCON.DLL
      2018-08-07 12:11 - 2012-12-14 04:31 - 000025299 _____ (Brother Industries, Ltd) C:\Windows\SysWOW64\BRLM03A.DLL
      2018-08-07 12:11 - 2012-12-14 04:31 - 000000114 _____ C:\Windows\SysWOW64\BRLMW03A.INI
      2018-08-07 12:11 - 2012-12-14 04:29 - 000000050 _____ C:\Windows\system32\BRADM12A.DAT
      2018-08-07 12:11 - 2012-12-13 19:00 - 000226816 _____ (Brother Industries, Ltd.) C:\Windows\system32\BRCOM12A.DLL
      2018-08-07 12:11 - 2012-10-19 15:07 - 001441792 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrWi212c.dll
      2018-08-07 12:11 - 2012-10-19 15:03 - 000054272 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrUsi12c.dll
      2018-08-07 12:11 - 2012-07-06 13:56 - 000012800 _____ (Brother Industries Ltd.) C:\Windows\system32\BrCiImg.dll
      2018-08-07 12:11 - 2011-09-08 12:36 - 000279040 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrJDec.dll
      2018-08-07 12:10 - 2018-08-07 12:11 - 000000000 ____D C:\Program Files (x86)\Brother
      2018-08-07 12:10 - 2018-08-07 12:10 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
      2018-08-07 12:10 - 2012-11-02 18:15 - 000245760 ____N (brother) C:\Windows\SysWOW64\NSSearch.dll
      2018-08-07 12:10 - 2012-02-02 11:21 - 000002560 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2S.dll
      2018-08-07 12:10 - 2010-03-15 19:45 - 000073728 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2.dll
      2018-08-07 12:10 - 2007-12-13 22:16 - 000005120 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2L.dll
      2018-08-07 12:09 - 2018-08-07 12:13 - 000000000 ____D C:\ProgramData\Brother
      2018-08-07 12:09 - 2018-08-07 12:09 - 000000000 ____D C:\Users\DBPROTOOLS\Downloads\install
      2018-08-07 12:08 - 2018-08-07 12:08 - 141297272 _____ (A.I.SOFT,INC.) C:\Users\DBPROTOOLS\Downloads\DCP-1510-inst-A1-eeu.EXE
      2018-08-07 10:22 - 2018-08-07 10:22 - 000000000 ____D C:\Users\DBPROTOOLS\AppData\Roaming\OpenOffice
      2018-08-07 10:12 - 2018-08-07 10:12 - 000000985 _____ C:\Users\Public\Desktop\OpenOffice 4.1.5.lnk
      2018-08-07 10:12 - 2018-08-07 10:12 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5
      2018-08-07 10:12 - 2018-08-07 10:12 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4
      2018-08-07 09:45 - 2018-08-07 09:46 - 000456080 _____ C:\Users\DBPROTOOLS\AppData\Local\dd_vcredistMSI22E4.txt
      2018-08-07 09:45 - 2018-08-07 09:46 - 000011632 _____ C:\Users\DBPROTOOLS\AppData\Local\dd_vcredistUI22E4.txt
      2018-08-07 09:44 - 2018-08-07 09:45 - 000452836 _____ C:\Users\DBPROTOOLS\AppData\Local\dd_vcredistMSI223D.txt
      2018-08-07 09:44 - 2018-08-07 09:45 - 000011616 _____ C:\Users\DBPROTOOLS\AppData\Local\dd_vcredistUI223D.txt
      2018-08-07 09:44 - 2018-08-07 09:44 - 000000000 ____D C:\Users\DBPROTOOLS\Desktop\OpenOffice 4.1.5 (bg) Installation Files
      2018-08-07 09:40 - 2018-08-07 09:40 - 013057882 _____ C:\Users\DBPROTOOLS\D