Премини към съдържанието

Препоръчан отговор


Здравейте, днес си бях инсталирал Avast Cleaner, и след неговото използване компютъра ми започна много да се претоварва и да забива ужасно, дори и при минимален брой работещи процеси. Само в "Безопасен режим" няма никакви проблеми. Пробвах да си възстановя системата, но се оказа че Avast Cleaner ми е изтрил всички точки за възстановяване на системата...

Някакви идеи как да се справя с този проблем?

В момента даже пиша темата в "Безопасен режим", защото в нормален режим браузърът забива страшно много...

По-долу прилагам логовете от FRST (64 bit):

Addition.txt FRST.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравейте...! Малко да уточним ..какво използвахте  - Avast Cleaner  или Avast Cleanup ...! Вижда се да използвате Avast Premier...платена версия ....? Така ли е ..? А наистина ли е платена или е кракната ...?

 

Изтеглете  CKScanner  от  askey127 и го запазете на вашия десктоп. 
 

  • Щракнете с десния бутон на мишката върху CKScanner.exe и изберете  Run as administrator
  • Когато инструментът се отвори, щракнете върху Search For Files (Търсене на файлове). 
  • Когато иконата з на курсора изчезне, щракнете върху Save List To File
  • Полето за съобщение ще потвърди, че файлът е запазен. Моля, стартирайте програмата само веднъж. 
  • Инструментът ще създаде дневник на работния плот, наречен CKFiles.txt. Отворете го, след което копирайте и поставете съдържанието му в следващия си отговор.

 

=============================================================================================

 

  Изтеглете и стартирайте диагностичен инструмент (MGADiag.exe) от тук и го запазете на работния си плот.

  • Кликнете два пъти върху MGADiag.exe 
  • Кликнете върху Continue  (Продължи..)
  • Когато програмата приключи, кликнете върху Copy (Копиране) 
  • Отворете Notepad и натиснете Ctrl + V, за да поставите съдържанието на отчета в текстовия файл 
  • Запазете файла на работния плот и го качете в следващия си отговор.

 

 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Avas Cleanup беше, а антивирусната я активирах просто със сериал, който го намерих в интернет, но нито съм краквал, нито съм пачвал, а всичко съм свалял или променял чрез Update/Upgrade/Add на антивирусната. Само искам да кажа, че в момента работим чрез Safe Mode, ако това има някакво значение... 

 

Microsoft Genuine.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

А резултат от другата програма...???

Цитат

ProxyServer: [S-1-5-21-4278387435-538730147-2961561878-1000] => 169.46.159.24:80

Това Proxy познато ли ви е...?

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
преди 11 минути, icotonev написа:

А резултат от другата програма...???

Това Proxy познато ли ви е...?

Ни най-малко... А ето и лог от другата програма:

ckfiles.txt


Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Следващите инструкции изпълнявате в безопасен режим ( Safe Mode )..!

 

Деинсталиране на нежелани / ненужни програми:

  • Натиснете клавишна комбинация   WindowsKey.png + R на клавиатурата си едновременно. Напишете (копирайте) в полето appwiz.cpl и кликнете върху OK.
  • В отворилия се списък с инсталирани програми,  деинсталирайте  програмите от карето по долу:
Цитат

RelevantKnowledge

Skype Click to Call

 

Фикс с Farbar Recovery Scan Tool
 
icon13.gif Изтеглете прикачения файл
 fixlist.txt и го запазете там, където сте свалили FRST.exe
Стартирайте отново FRST.exe и натиснете бутона Fix веднъж и изчакайте.

Press%20the%20FIX%20button_zpsdd5zi3mt.p


Ще се създаде нов лог файла FixLog.txt. Прикачете съдържанието му в следващия си коментар.
 
ЗАБЕЛЕЖКА: Този скрипт е написан специално за този потребител,и за тази конкретна машина. Изпълнението на фикса, на друг компютър може да доведе до увреждане на  операционната ви система

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • FixLog.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Стартирайте компютъра си в нормален режим и подгответе нови дневници :

 

Сканиране с Farbar Recovery Scan

  • Моля изтеглете icon1337953436.pngFarbar Recovery Scan Tool (според версията на Windows изберете 32 битовата или 64 битовата версия) и го запазете на десктопа.
  • Стартирайте файла FRST.exe (или FRST64.exe)
  • Програмата ще се стартира. Натиснете YES за да се съгласите с лицензионното споразумение.
  • Натиснете бутона YClYkft.jpg.
  • Изчакайте търпеливо проверката да приключи.
  • Ще се създадат два лог файла с името - FRST.txt и Addition.txt на десктопа.
  • Копирайте съдържанието на файла FRST.txt в следващия си пост.Прикачете Addition.txt в коментар си (погледнете опцията Прикачване на файлове, когато публикувате мнение).

pfNZP4A.png&key=0a487e0a7cff89c690a32d13  Дневници 

В следващия си отговор, моля да включите (като копирате целите съдържания ) следните дневници:

  • FRST.txt (копирате цялото съдържание)
  • Addition.txt (прикачате..) 

 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Заповядай:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019
Ran by User-x (administrator) on USER-X-PC (14-04-2019 18:57:06)
Running from C:\Users\User-x\Downloads
Loaded Profiles: User-x (Available Profiles: User-x)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Български (България)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Intel Corporation) [File not signed] C:\Windows\System32\IPROSetMonitor.exe
() [File not signed] C:\Program Files (x86)\ProKAward\rsasws.exe
() [File not signed] C:\Program Files (x86)\ProKAward\wap.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [itype] => C:\Program Files\Microsoft IntelliType Pro\itype.exe [1873256 2011-08-10] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [261000 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18383328 2017-09-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company -> Hewlett-Packard Company)
HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe* [418336 2012-11-14] () [File not signed]
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe* [163360 2012-11-14] () [File not signed]
HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe* [387616 2012-11-14] () [File not signed]
HKLM-x32\...\Run: [cmsc] => "c:\program files (x86)\cmcm\Clean Master\cmtray.exe" -autorun
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe** [39792 2007-10-10] () [File not signed]
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31072 2008-10-25] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\...\Drivers32: [VIDC.DIVX] => C:\Windows\SysWOW64\DivX.dll [682496 2007-12-04] (DivX, Inc.) [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [139264 2004-07-03] () [File not signed]
HKLM\...\Drivers32: [VIDC.YV12] => C:\Windows\SysWOW64\yv12vfw.dll [217088 2004-01-25] (www.helixcommunity.org) [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\AC3ACM.acm [118784 2007-09-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [389120 2006-09-24] (hxxp://www.mp3dev.org/) [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [7680 2007-12-24] () [File not signed]
HKLM\...\Drivers32: [msacm.voxacm160] => C:\Windows\SysWOW64\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [File not signed]
HKLM\...\Drivers32: [msacm.scg726] => C:\Windows\SysWOW64\scg726.acm [13239 2000-03-14] (SHARP Corporation) [File not signed]
HKLM\...\Drivers32: [msacm.alf2cd] => C:\Windows\SysWOW64\alf2cd.acm [38912 2003-05-21] (NCT Company) [File not signed]
HKLM\...\Drivers32-x32: [msacm.lame] => lame.ax
HKLM\...\Drivers32: [vidc.dvsd] => C:\Windows\SysWOW64\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [File not signed]
HKLM\...\Drivers32: [vidc.mpg4] => C:\Windows\SysWOW64\mpg4c32.dll [413760 2002-08-20] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.mp42] => C:\Windows\SysWOW64\mpg4c32.dll [413760 2002-08-20] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.mp43] => C:\Windows\SysWOW64\mpg4c32.dll [413760 2002-08-20] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed]
HKLM\...\Drivers32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed]
HKLM\...\Drivers32: [vidc.VP62] => C:\Windows\SysWOW64\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed]
HKLM\...\Drivers32: [vidc.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] ( ) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-18] (Google LLC -> Google Inc.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{3F6FA2B9-C96C-4200-BB2A-3535FCB42917}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C828C4A4-B76F-4EC2-BCC8-996EF51D3A11}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKU\S-1-5-21-4278387435-538730147-2961561878-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.bg/
HKU\S-1-5-21-4278387435-538730147-2961561878-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO-x32: Adobe PDF Reader Link Helper -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF DefaultProfile: m6u0e0h6.default
FF ProfilePath: C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default [2019-04-14]
FF user.js: detected! => C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default\user.js [2015-07-17]
FF Extension: (Avast SafePrice) - C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default\Extensions\sp@avast.com.xpi [2017-12-04] [UpdateUrl:hxxps://firefoxextension.avast.com/sp/update.json]
FF Extension: (Easy Video Downloader) - C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default\Extensions\vdpure@link64.xpi [2017-08-09]
FF Extension: (Avast Online Security) - C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default\Extensions\wrc@avast.com.xpi [2017-10-09] [UpdateUrl:hxxps://firefoxextension.avast.com/aos/update.json]
FF Extension: (YouTube Best Video Downloader 2) - C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default\Extensions\{170503FA-3349-4F17-BC86-001888A5C8E2}.xpi [2017-10-09]
FF Extension: (Adblock Plus) - C:\Users\User-x\AppData\Roaming\Mozilla\Firefox\Profiles\m6u0e0h6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-04]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_171.dll [2019-04-14] (Adobe Inc. -> )
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_171.dll [2019-04-14] (Adobe Inc. -> )
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @real.com/nppl3260;version=6.0.11.2852 -> C:\Program Files (x86)\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll [2008-02-25] (RealNetworks, Inc. -> RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nppl3260;version=6.0.12.46 -> C:\Program Files (x86)\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll [2008-02-25] (RealNetworks, Inc. -> RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.1662 -> C:\Program Files (x86)\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll [2008-02-25] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.46 -> C:\Program Files (x86)\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll [2008-02-25] (RealNetworks, Inc.) [File not signed]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-20] (Google Inc -> Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-20] (Google Inc -> Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default [2019-04-14]
CHR Extension: (Презентации) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]
CHR Extension: (Документи) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14]
CHR Extension: (Google Диск) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-24]
CHR Extension: (YouTube) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-24]
CHR Extension: (Avast Passwords) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2019-04-13]
CHR Extension: (Таблици) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14]
CHR Extension: (Google Документи офлайн) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-31]
CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-10-27]
CHR Extension: (Gmail) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-03-27]
CHR Extension: (Chrome Media Router) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-18]
CHR Profile: C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1 [2019-04-14]
CHR Extension: (Презентации) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-30]
CHR Extension: (Документи) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-30]
CHR Extension: (Google Диск) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-24]
CHR Extension: (YouTube) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-24]
CHR Extension: (Таблици) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-30]
CHR Extension: (Google Документи офлайн) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-30]
CHR Extension: (Avast Online Security) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-03-30]
CHR Extension: (Skype) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2019-03-30]
CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-03-30]
CHR Extension: (Gmail) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-07-24]
CHR Extension: (Chrome Media Router) - C:\Users\User-x\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-30]
CHR Profile: C:\Users\User-x\AppData\Local\Google\Chrome\User Data\System Profile [2019-04-14]

Opera: 
=======
OPR Extension: (Enhancer for YouTube) - C:\Users\User-x\AppData\Roaming\Opera Software\Opera Stable\Extensions\ofhehnfmgbgnkjaojifkmebjjgffjaeh [2019-02-18]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6660888 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [362488 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [373416 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
S4 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272560 2015-05-21] (Disc Soft Ltd -> Disc Soft Ltd)
R2 Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [505856 2017-08-21] (Intel Corporation) [File not signed]
S4 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324584 2017-09-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 SKLProService; C:\Program Files (x86)\ProKAward\rsasws.exe [98304 2012-02-13] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
S2 avast; "C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe" /svc [X]
S3 avastm; "C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe" /medsvc [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205400 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [254128 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196000 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320624 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [57888 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [166848 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\Windows\System32\drivers\aswNetSec.sys [526376 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112520 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88160 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1031000 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [476776 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [220640 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [380160 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
S3 DrvAgent64; C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [22200 2016-03-06] (eSupport.com, Inc. -> Phoenix Technologies)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2019-03-29] (Disc Soft Ltd -> Disc Soft Ltd)
R3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [10629408 2012-11-14] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 ksapi64; C:\Windows\system32\drivers\ksapi64.sys [81584 2019-03-18] (Beijing Kingsoft Security software Co.,Ltd -> Kingsoft Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381608 2015-04-18] (Disc Soft Ltd -> Duplex Secure Ltd.)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42064 2016-08-23] (AnchorFree Inc -> Anchorfree Inc.)
S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-05-05] (Microsoft Windows -> Microsoft Corporation)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-04-14 18:29 - 2019-04-14 18:30 - 000009103 _____ C:\Users\User-x\Downloads\Fixlog.txt
2019-04-14 17:50 - 2019-04-14 17:50 - 000000127 _____ C:\Users\User-x\Downloads\ckfiles.txt
2019-04-14 17:48 - 2019-04-14 17:48 - 000468480 _____ () C:\Users\User-x\Downloads\CKScanner.exe
2019-04-14 17:32 - 2019-04-14 17:32 - 000000000 ____D C:\MGADiagToolOutput
2019-04-14 17:31 - 2019-04-14 17:31 - 000000000 ____D C:\ProgramData\Office Genuine Advantage
2019-04-14 17:29 - 2019-04-14 17:29 - 002031992 _____ (Microsoft Corporation) C:\Users\User-x\Downloads\MGADiag.exe
2019-04-14 16:05 - 2019-04-14 16:07 - 000033862 _____ C:\Users\User-x\Downloads\Addition.txt
2019-04-14 16:02 - 2019-04-14 19:12 - 000019966 _____ C:\Users\User-x\Downloads\FRST.txt
2019-04-14 16:02 - 2019-04-14 18:57 - 000000000 ____D C:\FRST
2019-04-14 16:02 - 2019-04-14 16:02 - 002434048 _____ (Farbar) C:\Users\User-x\Downloads\FRST64.exe
2019-04-14 15:10 - 2019-04-14 18:32 - 000235156 _____ C:\Windows\ntbtlog.txt
2019-04-14 14:21 - 2019-04-14 14:21 - 007505920 _____ C:\Program Files (x86)\GUTADBC.tmp
2019-04-14 14:21 - 2019-04-14 14:21 - 000000000 ____D C:\Program Files (x86)\GUMADBB.tmp
2019-04-14 14:05 - 2019-04-14 14:05 - 000001232 _____ C:\Users\User-x\Desktop\Facebook Gameroom.lnk
2019-04-14 13:58 - 2019-04-14 13:58 - 000410984 _____ C:\Windows\system32\FNTCACHE.DAT
2019-04-14 13:57 - 2019-04-14 13:57 - 000003288 ____N C:\bootsqm.dat
2019-04-14 13:27 - 2019-04-14 13:27 - 000004424 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-04-14 13:18 - 2019-04-14 13:18 - 000003936 _____ C:\Windows\System32\Tasks\Avast Cleanup Update
2019-04-14 12:55 - 2019-04-14 12:55 - 000109688 _____ C:\Users\User-x\AppData\Local\GDIPFONTCACHEV1.DAT
2019-04-14 12:52 - 2019-04-14 15:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2019-04-14 12:50 - 2019-04-14 12:49 - 000526376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
2019-04-14 12:50 - 2019-04-14 12:49 - 000362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-04-14 12:49 - 2019-04-14 12:49 - 000038152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys
2019-04-14 10:47 - 2019-04-14 11:34 - 000000000 ____D C:\Users\User-x\.oracle_jre_usage
2019-04-13 13:04 - 2019-04-13 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grand Theft Auto IV Complete Edition
2019-04-13 11:50 - 2019-04-13 12:07 - 000000000 ____D C:\ProgramData\TEMP
2019-04-13 11:50 - 2019-04-13 11:50 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7
2019-04-13 11:50 - 2019-04-13 11:50 - 000000000 ____D C:\Users\User-x\AppData\Roaming\URSoft
2019-04-13 11:50 - 2019-04-13 11:50 - 000000000 ____D C:\Program Files (x86)\Your Uninstaller! 7
2019-04-13 11:46 - 2019-04-13 11:47 - 000008715 _____ C:\Users\User-x\Downloads\Your Uninstaller! Pro v7.5.2014.03.torrent
2019-04-12 21:24 - 2019-04-14 12:50 - 000000077 _____ C:\Windows\system32\Drivers\aswSP.sys.sum
2019-04-11 16:04 - 2019-04-11 16:04 - 000724667 _____ C:\Users\User-x\Downloads\s0beit by SlonoBoyko 23.03.2019_MF_0ba05.zip
2019-04-11 15:31 - 2019-04-11 15:32 - 015534010 _____ C:\Users\User-x\Downloads\sa-mp-0.3.7-R3-1-install.exe
2019-04-11 14:40 - 2019-04-11 14:40 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Pouchin TV Mod
2019-04-11 14:39 - 2019-04-11 14:39 - 002262573 _____ C:\Users\User-x\Downloads\MMzinTV_setup.0.6.3.77.exe
2019-04-11 13:51 - 2019-04-11 13:51 - 010253632 _____ (SoftPerfect Pty Ltd ) C:\Users\User-x\Downloads\networx_setup.exe
2019-04-08 22:34 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2019-04-08 22:34 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2019-04-08 22:34 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2019-04-08 22:34 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2019-04-08 22:34 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2019-04-08 22:34 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2019-04-08 18:01 - 2019-04-08 18:09 - 000000000 ____D C:\Program Files (x86)\VideoLAN
2019-04-06 15:05 - 2019-04-07 09:13 - 000000000 ____D C:\Users\User-x\AppData\LocalLow\Yandex
2019-04-06 15:05 - 2019-04-07 09:13 - 000000000 ____D C:\Users\User-x\AppData\Local\Yandex
2019-04-06 15:04 - 2019-04-07 09:13 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Yandex
2019-04-06 15:04 - 2019-04-06 15:04 - 000000000 ____D C:\ProgramData\IP-TV Player
2019-04-01 09:14 - 2019-04-01 09:14 - 000000000 ____D C:\ProgramData\XLive
2019-03-31 09:50 - 2019-03-31 09:50 - 000000000 ____D C:\Users\User-x\AppData\Roaming\WinRAR
2019-03-31 09:49 - 2019-03-31 09:49 - 000001029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2019-03-31 09:49 - 2019-03-31 09:49 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-03-31 09:49 - 2019-03-31 09:49 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2019-03-31 09:48 - 2019-03-31 09:49 - 000000000 ____D C:\Program Files\WinRAR
2019-03-29 21:08 - 2019-03-29 21:08 - 000000000 ____D C:\Users\User-x\Documents\Rockstar Games
2019-03-29 17:21 - 2010-06-02 05:55 - 000527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2019-03-29 17:21 - 2010-06-02 05:55 - 000518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2019-03-29 17:21 - 2010-06-02 05:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2019-03-29 17:21 - 2010-06-02 05:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2019-03-29 17:21 - 2010-06-02 05:55 - 000077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2019-03-29 17:21 - 2010-06-02 05:55 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2019-03-29 17:21 - 2010-05-26 12:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2019-03-29 17:21 - 2010-05-26 12:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2019-03-29 17:21 - 2010-02-04 11:01 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2019-03-29 17:21 - 2009-09-04 18:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2019-03-29 17:21 - 2009-09-04 18:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2019-03-29 17:21 - 2009-09-04 18:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2019-03-29 17:21 - 2009-09-04 18:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2019-03-29 17:21 - 2009-09-04 18:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2019-03-29 17:21 - 2009-09-04 18:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2019-03-29 17:21 - 2009-09-04 18:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2019-03-29 17:21 - 2009-09-04 18:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2019-03-29 17:21 - 2009-09-04 18:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2019-03-29 17:21 - 2009-09-04 18:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2019-03-29 17:21 - 2009-03-16 15:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2019-03-29 17:21 - 2009-03-16 15:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2019-03-29 17:21 - 2009-03-09 16:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2019-03-29 17:21 - 2009-03-09 16:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2019-03-29 17:21 - 2009-03-09 16:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2019-03-29 17:21 - 2009-03-09 16:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2019-03-29 17:21 - 2009-03-09 16:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2019-03-29 17:21 - 2009-03-09 16:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2019-03-29 17:20 - 2009-03-16 15:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2019-03-29 17:20 - 2009-03-16 15:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2019-03-29 17:20 - 2009-03-16 15:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2019-03-29 17:20 - 2009-03-16 15:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2019-03-29 17:20 - 2008-10-27 11:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2019-03-29 17:20 - 2008-07-31 11:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2019-03-29 17:20 - 2008-07-31 11:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2019-03-29 17:20 - 2008-07-31 11:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2019-03-29 17:20 - 2008-07-31 11:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2019-03-29 17:20 - 2008-07-31 11:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2019-03-29 17:20 - 2008-07-31 11:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2019-03-29 17:20 - 2008-07-10 12:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2019-03-29 17:20 - 2008-07-10 12:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2019-03-29 17:20 - 2008-07-10 12:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2019-03-29 17:20 - 2008-07-10 12:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2019-03-29 17:20 - 2008-07-10 12:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2019-03-29 17:20 - 2008-07-10 12:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2019-03-29 17:20 - 2008-05-30 15:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2019-03-29 17:20 - 2008-05-30 15:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2019-03-29 17:20 - 2008-05-30 15:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2019-03-29 17:20 - 2008-05-30 15:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2019-03-29 17:20 - 2008-05-30 15:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2019-03-29 17:20 - 2008-05-30 15:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2019-03-29 17:20 - 2008-05-30 15:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2019-03-29 17:20 - 2008-05-30 15:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2019-03-29 17:20 - 2008-05-30 15:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2019-03-29 17:20 - 2008-05-30 15:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2019-03-29 17:20 - 2008-05-30 15:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2019-03-29 17:20 - 2008-05-30 15:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2019-03-29 17:20 - 2008-05-30 15:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2019-03-29 17:20 - 2008-05-30 15:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2019-03-29 17:20 - 2008-03-05 17:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2019-03-29 17:20 - 2008-03-05 17:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2019-03-29 17:20 - 2008-03-05 17:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2019-03-29 17:20 - 2008-03-05 17:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2019-03-29 17:20 - 2008-03-05 17:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2019-03-29 17:20 - 2008-03-05 17:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2019-03-29 17:20 - 2008-03-05 16:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2019-03-29 17:20 - 2008-03-05 16:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2019-03-29 17:20 - 2008-03-05 16:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2019-03-29 17:20 - 2008-03-05 16:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2019-03-29 17:20 - 2008-02-06 00:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2019-03-29 17:20 - 2008-02-06 00:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2019-03-29 17:20 - 2007-10-22 04:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2019-03-29 17:20 - 2007-10-22 04:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2019-03-29 17:20 - 2007-10-22 04:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2019-03-29 17:20 - 2007-10-22 04:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2019-03-29 17:20 - 2007-10-12 16:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2019-03-29 17:20 - 2007-10-12 16:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2019-03-29 17:20 - 2007-10-12 16:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2019-03-29 17:20 - 2007-10-12 16:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2019-03-29 17:20 - 2007-10-02 10:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2019-03-29 17:20 - 2007-10-02 10:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2019-03-29 17:20 - 2007-07-20 01:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2019-03-29 17:20 - 2007-07-20 01:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2019-03-29 17:20 - 2007-07-19 19:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2019-03-29 17:20 - 2007-07-19 19:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2019-03-29 17:20 - 2007-07-19 19:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2019-03-29 17:20 - 2007-07-19 19:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2019-03-29 17:20 - 2007-07-19 19:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2019-03-29 17:20 - 2007-07-19 19:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2019-03-29 17:20 - 2007-06-20 21:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2019-03-29 17:20 - 2007-06-20 21:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2019-03-29 17:20 - 2007-05-16 17:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2019-03-29 17:20 - 2007-05-16 17:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2019-03-29 17:20 - 2007-05-16 17:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2019-03-29 17:20 - 2007-05-16 17:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2019-03-29 17:20 - 2007-05-16 17:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2019-03-29 17:20 - 2007-05-16 17:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2019-03-29 17:20 - 2007-04-04 19:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2019-03-29 17:20 - 2007-04-04 19:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2019-03-29 17:20 - 2007-03-15 17:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2019-03-29 17:20 - 2007-03-15 17:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2019-03-29 17:20 - 2007-03-12 17:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2019-03-29 17:20 - 2007-03-12 17:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2019-03-29 17:20 - 2007-03-12 17:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2019-03-29 17:20 - 2007-03-12 17:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2019-03-29 17:20 - 2007-03-05 13:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2019-03-29 17:20 - 2007-03-05 13:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2019-03-29 17:20 - 2007-01-24 16:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2019-03-29 17:20 - 2007-01-24 16:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2019-03-29 17:20 - 2006-12-08 13:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2019-03-29 17:20 - 2006-12-08 13:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2019-03-29 17:20 - 2006-11-29 14:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2019-03-29 17:20 - 2006-11-29 14:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2019-03-29 17:20 - 2006-09-28 17:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2019-03-29 17:20 - 2006-09-28 17:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2019-03-29 17:20 - 2006-09-28 17:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2019-03-29 17:20 - 2006-09-28 17:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2019-03-29 17:20 - 2006-07-28 10:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2019-03-29 17:20 - 2006-07-28 10:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2019-03-29 17:20 - 2006-07-28 10:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2019-03-29 17:20 - 2006-07-28 10:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2019-03-29 17:20 - 2006-05-31 08:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2019-03-29 17:20 - 2006-05-31 08:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2019-03-29 17:20 - 2006-03-31 13:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2019-03-29 17:20 - 2006-03-31 13:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2019-03-29 17:20 - 2006-03-31 13:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2019-03-29 17:20 - 2006-03-31 13:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2019-03-29 16:50 - 2019-03-29 16:50 - 000000000 ____D C:\Users\User-x\AppData\Local\Disc_Soft_Ltd
2019-03-29 16:50 - 2019-03-29 16:50 - 000000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2019-03-29 16:44 - 2019-03-29 16:46 - 000000000 ____D C:\Program Files\DAEMON Tools Lite
2019-03-29 16:44 - 2019-03-29 16:44 - 000030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys
2019-03-29 16:44 - 2019-03-29 16:44 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2019-03-29 00:59 - 2019-03-29 00:59 - 000001149 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2019-03-29 00:58 - 2019-04-04 09:14 - 000000000 ____D C:\Users\User-x\AppData\Roaming\BSplayer PRO
2019-03-29 00:58 - 2019-03-29 00:58 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2019-03-29 00:58 - 2019-03-29 00:58 - 000000000 ____D C:\Program Files (x86)\Webteh
2019-03-29 00:34 - 2019-03-29 00:34 - 000000000 ____D C:\Users\User-x\AppData\Local\BitTorrentHelper
2019-03-24 09:56 - 2019-03-24 09:56 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2019-03-24 09:56 - 2019-03-24 09:56 - 000000000 ____D C:\Program Files\7-Zip
2019-03-23 21:53 - 2019-04-04 08:59 - 000000000 _____ C:\Windows\system32\last.dump
2019-03-23 21:47 - 2019-04-14 12:49 - 000320624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
2019-03-23 21:47 - 2019-04-14 12:49 - 000254128 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-03-23 21:47 - 2019-04-14 12:49 - 000196000 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-03-23 21:47 - 2019-04-14 12:49 - 000057888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-03-23 21:28 - 2019-03-23 21:28 - 000000000 ____D C:\Users\User-x\AppData\Roaming\KMP
2019-03-23 21:25 - 2019-03-29 00:56 - 000000000 ____D C:\Program Files\KMPlayer 64X
2019-03-23 00:39 - 2019-03-23 00:39 - 000015620 _____ C:\Windows\system32\results.xml
2019-03-23 00:38 - 2019-03-23 00:38 - 000000000 ____D C:\Program Files\Intel
2019-03-23 00:38 - 2017-08-21 21:12 - 000002291 ____N C:\Windows\system32\SetupBD.din
2019-03-23 00:36 - 2017-08-21 21:12 - 000430656 _____ (Intel Corporation) C:\Windows\system32\PROUnstl.exe
2019-03-18 18:53 - 2019-03-18 18:53 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
2019-03-18 18:22 - 2019-03-18 18:22 - 000000000 ____D C:\Users\User-x\AppData\Local\Hewlett-Packard
2019-03-18 17:56 - 2019-03-18 17:56 - 000000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard
2019-03-18 17:55 - 2019-03-18 17:55 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2019-03-18 17:54 - 2019-04-14 13:25 - 000000000 ____D C:\ProgramData\{A8DA1505-E615-42BB-BB77-74D5CC91FE7E}
2019-03-18 17:53 - 2019-03-18 17:53 - 000000000 ___HD C:\System.sav
2019-03-18 17:53 - 2019-03-18 17:53 - 000000000 ____D C:\Users\User-x\AppData\Roaming\WinBatch
2019-03-18 17:43 - 2019-03-18 17:57 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2019-03-18 17:43 - 2019-03-18 17:43 - 000000178 _____ C:\Windows\system32\HPPA.ini
2019-03-18 17:43 - 2019-03-18 17:43 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2019-03-18 17:43 - 2019-03-18 17:43 - 000000000 ____D C:\Program Files\Hewlett-Packard
2019-03-18 17:39 - 2019-04-14 13:22 - 000000000 ____D C:\Users\User-x\AppData\Roaming\hpqLog
2019-03-18 17:39 - 2019-03-19 16:36 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Hewlett-Packard
2019-03-18 17:39 - 2019-03-18 17:57 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2019-03-18 17:39 - 2019-03-18 17:39 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Hewlett-Packard Company
2019-03-18 17:39 - 2019-03-18 17:39 - 000000000 ____D C:\swsetup
2019-03-18 17:32 - 2019-03-18 17:32 - 000000000 ____D C:\Program Files (x86)\cmcm
2019-03-18 17:21 - 2019-03-18 17:21 - 000000000 ____D C:\ProgramData\VS Revo Group
2019-03-18 11:05 - 2019-03-18 11:05 - 000000000 ____D C:\Windows\system32\SRSLabs
2019-03-18 11:04 - 2019-03-18 11:04 - 000000000 ____D C:\Program Files (x86)\Realtek
2019-03-18 11:04 - 2017-09-07 05:27 - 003560904 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 003509200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 001435144 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 001348160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000691680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000467160 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000387312 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000381408 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000343704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000341152 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000341152 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000231912 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000214832 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000192984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000190544 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFProc64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000096056 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFComm64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000093496 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFSAPO64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000092472 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFHAPO64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000092472 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFDAPO64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000090912 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000088344 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000088320 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2019-03-18 11:04 - 2017-09-07 05:27 - 000083624 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2019-03-18 11:04 - 2017-09-07 05:26 - 072520712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2019-03-18 11:04 - 2017-09-07 05:26 - 005944296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2019-03-18 11:04 - 2017-09-07 05:26 - 003677160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2019-03-18 11:04 - 2017-09-07 05:26 - 003205120 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2019-03-18 11:04 - 2017-09-07 05:26 - 002923496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2019-03-18 11:04 - 2017-09-07 05:26 - 001616688 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2019-03-18 11:04 - 2017-09-07 05:26 - 001529136 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64Proxy.dll
2019-03-18 11:04 - 2017-09-07 05:26 - 000122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2019-03-18 11:04 - 2017-09-07 05:26 - 000023696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2019-03-18 11:04 - 2017-09-07 01:51 - 013381194 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2019-03-18 10:54 - 2017-07-21 17:17 - 002839488 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2019-03-18 10:07 - 2019-03-23 00:24 - 000000000 ____D C:\MyDrivers
2019-03-18 10:07 - 2019-03-18 10:07 - 000000000 ____D C:\Program Files\DIFX
2019-03-18 10:07 - 2012-05-30 08:42 - 000569152 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStor.sys
2019-03-18 09:46 - 2019-03-18 17:32 - 000132832 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\ksapi_ev.sys
2019-03-18 09:46 - 2019-03-18 17:32 - 000124592 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\ksapi.sys
2019-03-18 09:46 - 2019-03-18 17:32 - 000089776 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\ksapi64_ev.sys
2019-03-18 09:46 - 2019-03-18 17:32 - 000081584 _____ (Kingsoft Corporation) C:\Windows\system32\Drivers\ksapi64.sys
2019-03-18 09:46 - 2019-03-18 10:03 - 000000000 ____D C:\ProgramData\Kingsoft
2019-03-18 09:46 - 2019-03-18 09:46 - 000000000 ____D C:\Users\User-x\AppData\Roaming\kingsoft
2019-03-18 09:46 - 2019-03-18 09:46 - 000000000 ____D C:\Users\User-x\AppData\Roaming\kcleaner
2019-03-18 09:46 - 2019-03-18 09:46 - 000000000 ____D C:\ProgramData\cmcm

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-04-14 19:00 - 2009-07-14 07:45 - 000026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-04-14 19:00 - 2009-07-14 07:45 - 000026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-04-14 18:49 - 2018-04-29 18:56 - 000000000 ____D C:\Users\User-x\AppData\Local\AVAST Software
2019-04-14 18:47 - 2019-02-18 11:22 - 000000047 _____ C:\Windows\SysWOW64\E302AF636FDE.ini
2019-04-14 18:47 - 2017-08-06 18:02 - 000065536 _____ C:\Windows\system32\Ikeext.etl
2019-04-14 18:47 - 2015-07-17 15:12 - 000000008 __RSH C:\ProgramData\ntuser.pol
2019-04-14 18:47 - 2009-07-14 08:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-04-14 18:29 - 2009-07-14 06:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2019-04-14 18:29 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2019-04-14 15:29 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\tracing
2019-04-14 15:14 - 2015-05-23 17:11 - 000000000 ____D C:\Users\User-x\AppData\Local\ElevatedDiagnostics
2019-04-14 15:12 - 2018-04-29 18:56 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2019-04-14 15:12 - 2015-03-11 17:26 - 000000000 ____D C:\ProgramData\AVAST Software
2019-04-14 14:38 - 2015-03-11 17:24 - 000003430 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-04-14 14:38 - 2015-03-11 17:24 - 000003302 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-04-14 14:22 - 2015-03-11 16:45 - 000000000 ____D C:\Users\User-x\AppData\Roaming\uTorrent
2019-04-14 14:08 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf
2019-04-14 14:01 - 2018-04-29 18:57 - 000003474 _____ C:\Windows\System32\Tasks\AvastUpdateTaskMachineUA
2019-04-14 14:01 - 2018-04-29 18:57 - 000003346 _____ C:\Windows\System32\Tasks\AvastUpdateTaskMachineCore
2019-04-14 13:27 - 2015-04-14 20:47 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-04-14 13:27 - 2015-04-14 20:47 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-04-14 13:27 - 2015-04-14 20:47 - 000004314 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-04-14 13:27 - 2015-04-14 20:47 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-04-14 13:27 - 2015-04-14 20:47 - 000000000 ____D C:\Windows\system32\Macromed
2019-04-14 13:22 - 2015-06-20 17:46 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Media Player Classic
2019-04-14 13:22 - 2015-03-11 17:15 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Skype
2019-04-14 13:19 - 2015-04-16 18:46 - 000000000 ____D C:\Users\User-x\AppData\Roaming\AVAST Software
2019-04-14 12:50 - 2017-03-31 20:15 - 000003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-04-14 12:50 - 2015-03-11 17:27 - 000476776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-04-14 12:50 - 2015-03-11 17:27 - 000380160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-04-14 12:49 - 2018-11-10 23:37 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-04-14 12:49 - 2017-11-10 20:36 - 000205400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-04-14 12:49 - 2015-04-16 14:33 - 000220640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-04-14 12:49 - 2015-03-11 17:27 - 001031000 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-04-14 12:49 - 2015-03-11 17:27 - 000166848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-04-14 12:49 - 2015-03-11 17:27 - 000112520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-04-14 12:49 - 2015-03-11 17:27 - 000088160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-04-14 10:47 - 2015-03-11 16:40 - 000000000 ____D C:\Users\User-x
2019-04-13 13:07 - 2015-04-18 09:41 - 000000000 ____D C:\Windows\SysWOW64\directx
2019-04-13 11:54 - 2017-04-22 15:49 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2019-04-12 18:28 - 2015-12-03 19:13 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-04-09 10:56 - 2015-04-18 18:11 - 000000000 ____D C:\Users\User-x\AppData\Roaming\DAEMON Tools Lite
2019-04-08 18:11 - 2015-03-11 16:45 - 000000000 ____D C:\Users\User-x\AppData\Roaming\Winamp
2019-04-06 14:01 - 2009-07-14 08:13 - 000781782 _____ C:\Windows\system32\PerfStringBackup.INI
2019-04-04 12:21 - 2015-04-18 21:44 - 000000000 ____D C:\Users\User-x\AppData\Local\Rockstar Games
2019-04-01 20:30 - 2015-04-18 09:20 - 000000000 ____D C:\Users\User-x\Documents\GTA San Andreas User Files
2019-03-30 20:24 - 2015-03-11 16:45 - 000000000 ____D C:\Program Files (x86)\WinRAR
2019-03-24 09:57 - 2017-03-15 23:19 - 000000000 ___RD C:\Program Files (x86)\Skype
2019-03-24 09:57 - 2015-03-11 17:15 - 000000000 ____D C:\ProgramData\Skype
2019-03-24 09:55 - 2017-04-22 16:29 - 000000000 ____D C:\Program Files (x86)\Smart Application Controller
2019-03-23 03:19 - 2015-05-23 17:09 - 000000000 ____D C:\Intel
2019-03-18 23:08 - 2015-03-11 17:19 - 000000000 ____D C:\Users\User-x\AppData\Local\Google
2019-03-18 18:53 - 2016-11-03 21:26 - 000000000 ____D C:\Users\User-x\AppData\Local\Facebook
2019-03-18 18:09 - 2015-03-11 17:25 - 000002222 ____H C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-18 18:00 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\Help
2019-03-18 17:56 - 2009-07-14 06:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2019-03-18 11:06 - 2015-05-23 18:25 - 000000000 ___HD C:\Program Files (x86)\Temp
2019-03-18 11:05 - 2015-05-23 17:07 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2019-03-18 10:02 - 2015-04-14 18:11 - 000000000 ____D C:\Users\User-x\AppData\Local\Mozilla
2019-03-18 09:55 - 2016-11-23 15:50 - 000000000 ____D C:\Windows\Minidump
2019-03-18 09:55 - 2015-03-11 16:07 - 000000000 ____D C:\Windows\Panther

==================== Files in the root of some directories =======

2019-04-14 14:21 - 2019-04-14 14:21 - 007505920 _____ () C:\Program Files (x86)\GUTADBC.tmp
2015-04-15 15:52 - 2015-07-02 18:40 - 000007608 _____ () C:\Users\User-x\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-04-06 17:03

==================== End of FRST.txt ============================

 

Addition.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Фикс с Farbar Recovery Scan Tool
 
icon13.gif Изтеглете прикачения файл
 fixlist.txt и го запазете там, където сте свалили FRST.exe
Стартирайте отново FRST.exe и натиснете бутона Fix веднъж и изчакайте.

Press%20the%20FIX%20button_zpsdd5zi3mt.p


Ще се създаде нов лог файла FixLog.txt. Прикачете съдържанието му в следващия си коментар.
 
ЗАБЕЛЕЖКА: Този скрипт е написан специално за този потребител,и за тази конкретна машина. Изпълнението на фикса, на друг компютър може да доведе до увреждане на  операционната ви система

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • FixLog.txt
 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

За съжаление трите файла които изпратихме на анализ се оказаха заразени..! Ще се наложи да ги премахнем..!

Фикс с Farbar Recovery Scan Tool
 
icon13.gif Изтеглете прикачения файл
 fixlist.txt и го запазете там, където сте свалили FRST.exe
Стартирайте отново FRST.exe и натиснете бутона Fix веднъж и изчакайте.

Press%20the%20FIX%20button_zpsdd5zi3mt.p


Ще се създаде нов лог файла FixLog.txt. Прикачете съдържанието му в следващия си коментар.
 
ЗАБЕЛЕЖКА: Този скрипт е написан специално за този потребител,и за тази конкретна машина. Изпълнението на фикса, на друг компютър може да доведе до увреждане на  операционната ви система

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • FixLog.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

И така ..какви проблеми наблюдавате със системата  си на този етап..?

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Първият основен проблем е че все още си забива страшно много, и ако не успея веднага да отворя браузъра за да вляза във сайта, после става много трудно. Вторият проблем беше че когато днес инсталирах Avast Cleanup, след това ми се инсталира Avast Browser, без въобще да ме пита, но аз после го деинсталирах. Третият проблем е че когато натисна десния бутон на мишката на работния плот, там виждам две допълнителни опции за графиката написани на английски, които също се появиха днес, незнайно откъде (по-долу ще приложа и скрийншот). Четвъртият проблем е че днес в диспечера на задачите ми се появиха някакви нови процеси, на които също ще публикувам снимка по-долу но ще ги опиша после, че програмата за разглеждане на снимки не работи в безопасен режим, а в нормален режим е невъзможно да качвам снимки, защото браузърът ми забива и ми изписва (Не отговаря).

Без име.png

Без име2.png

Значи процесите са taskeng.exe, igfxpers.exe, HPSFMsgr.exe и мисля че taskhost.exe

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
преди 2 минути, ioannidis написа:

когато днес инсталирах Avast Cleanup

Ами ...в момента системата ви е чиста ...не се виждат вече активни зарази...! Тук в този форум често са обсъждани  такива програми оптимизатори..които са нож с две остриета..! Вие сте изтеглили късата клечка....доста сте си омазали системата ..! Аз предполагам какво се е случило ...системата ви е работила бавно защото е била заразена....вие сте решили че Avast Cleanup ще реши проблема и резултат е видим...! Пълно мазало..!

Ще се опитаме да възстановим системата ви ..въпреки че въобще не ми е работа и не е предмет на този подраздел...! Правя последен компромис...!

 

  • Рестартирайте компютъра
  • Натиснете  F8 преди да се появи логото на Windows 7
  • В менюто Advanced Boot Options (Разширени опции за стартиране) изберете опцията Repair your computer (Поправяне на компютъра)
  • Натиснете ENTER
  • Вече трябва да има опции за възстановяване на системата

image.thumb.png.32a975831236308248e2e27e56f8e990.png

 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Благодаря Ви много, @icotonev! Направих всичко както ми казахте и сега системата е по-добре, а след като деинсталирах напълно антивирусната, стана още по-добре. Явно повече няма да слагам Avast, защото още отпреди знам че с тяхната антивирусна винаги е имало проблеми...

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравейте..! Преди да приключим може ли едно ново сканиране ,защото ние премахнахме заразите ...но да след последната процедура да не би да са се върнали ..!?! Освен това Avast как го деинсталирахте ..? Има си специален инструмент за това: avastclear. Инструкция:

https://www.avast.com/uninstall-utility

 

Сканиране с Farbar Recovery Scan

  • Моля изтеглете icon1337953436.pngFarbar Recovery Scan Tool (според версията на Windows изберете 32 битовата или 64 битовата версия) и го запазете на десктопа.
  • Стартирайте файла FRST.exe (или FRST64.exe)
  • Програмата ще се стартира. Натиснете YES за да се съгласите с лицензионното споразумение.
  • Натиснете бутона YClYkft.jpg.
  • Изчакайте търпеливо проверката да приключи.
  • Ще се създадат два лог файла с името - FRST.txt и Addition.txt на десктопа.
  • Копирайте съдържанието на файла FRST.txt в следващия си пост.Прикачете Addition.txt в коментар си (погледнете опцията Прикачване на файлове, когато публикувате мнение).

pfNZP4A.png&key=0a487e0a7cff89c690a32d13  Дневници 

В следващия си отговор, моля да включите (като копирате целите съдържания ) следните дневници:

  • FRST.txt (копирате цялото съдържание)
  • Addition.txt (прикачате..) 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравей, @icotonev, аз направих преинсталация на системата чрез флашка, и ако това не променя нещата, ще направя следващата стъпка за проверка на вируси, но също така искам да разбера как да изтрия безопасно папката Windows.old, защото тя ми заема много място...? Иначе от тази папка изтрих някои файлове, и не мисля че би възникнал проблем....

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

А ето и логовете от FRST:

FRST.txt

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019
Ran by Ivan (administrator) on IVAN-PC (15-04-2019 16:21:06)
Running from C:\Users\Ivan\Downloads
Loaded Profiles: Ivan (Available Profiles: Ivan)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Български (България)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google) C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\SwReporter\39.195.200.3\software_reporter_tool.exe
(Google LLC -> Google) C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\SwReporter\39.195.200.3\software_reporter_tool.exe
(Google LLC -> Google) C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\SwReporter\39.195.200.3\software_reporter_tool.exe
(Google LLC -> Google) C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\SwReporter\39.195.200.3\software_reporter_tool.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.103\Installer\chrmstp.exe [2019-04-15] (Google LLC -> Google Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{6FB48C45-0A03-4F46-A7A9-647243A3DF49}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-2485589726-3344615239-370885923-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-xl/?ocid=iehp
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Windows -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-04-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-04-15] (Google Inc -> Google LLC)

Chrome: 
=======
CHR Profile: C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default [2019-04-15]
CHR Extension: (Презентации) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-04-15]
CHR Extension: (Документи) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-04-15]
CHR Extension: (Google Диск) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-04-15]
CHR Extension: (YouTube) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-04-15]
CHR Extension: (Avast Passwords) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2019-04-15]
CHR Extension: (Таблици) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-04-15]
CHR Extension: (Google Документи офлайн) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-04-15]
CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-04-15]
CHR Extension: (Gmail) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-15]
CHR Extension: (Chrome Media Router) - C:\Users\Ivan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-04-15]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Windows -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 e1kexpress; C:\Windows\System32\DRIVERS\e1k60x64.sys [220672 2009-06-10] (Microsoft Windows -> Intel Corporation)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-04-15 16:21 - 2019-04-15 16:27 - 000008340 _____ C:\Users\Ivan\Downloads\FRST.txt
2019-04-15 16:20 - 2019-04-15 16:20 - 002434048 _____ (Farbar) C:\Users\Ivan\Downloads\FRST64.exe
2019-04-15 16:13 - 2019-04-15 15:43 - 000000000 ____D C:\Windows\Panther
2019-04-15 16:07 - 2019-04-15 16:07 - 000000000 ____D C:\Users\Ivan\AppData\Roaming\Google
2019-04-15 16:06 - 2019-04-15 16:13 - 000000000 ____D C:\Users\Ivan\AppData\Local\Google
2019-04-15 16:06 - 2019-04-15 16:06 - 000002294 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-04-15 16:06 - 2019-04-15 16:06 - 000002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-04-15 16:05 - 2019-04-15 16:05 - 000000000 ____D C:\Program Files (x86)\Google
2019-04-15 16:04 - 2019-04-15 16:05 - 000000000 ____D C:\Users\Ivan\AppData\Local\Deployment
2019-04-15 16:04 - 2019-04-15 16:04 - 000057560 _____ C:\Users\Ivan\AppData\Local\GDIPFONTCACHEV1.DAT
2019-04-15 16:04 - 2019-04-15 16:04 - 000000000 ____D C:\Users\Ivan\AppData\Local\Apps\2.0
2019-04-15 16:04 - 2019-04-15 15:51 - 000000000 ____D C:\Windows.old
2019-04-15 16:01 - 2019-04-15 16:02 - 000056818 _____ C:\Windows\ntbtlog.txt
2019-04-15 15:44 - 2019-04-15 15:44 - 000001427 _____ C:\Users\Ivan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2019-04-15 15:44 - 2019-04-15 15:44 - 000001393 _____ C:\Users\Ivan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2019-04-15 15:44 - 2014-05-14 19:23 - 002477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-04-15 15:44 - 2014-05-14 19:23 - 000058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2019-04-15 15:44 - 2014-05-14 19:23 - 000044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2019-04-15 15:44 - 2014-05-14 19:21 - 002620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2019-04-15 15:44 - 2014-05-14 09:23 - 000198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2019-04-15 15:44 - 2014-05-14 09:23 - 000179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2019-04-15 15:44 - 2014-05-14 09:20 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2019-04-15 15:44 - 2014-05-14 09:17 - 000033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2019-04-15 15:43 - 2019-04-15 15:44 - 000000000 ____D C:\Users\Ivan
2019-04-15 15:43 - 2019-04-15 15:43 - 000000020 ___SH C:\Users\Ivan\ntuser.ini
2019-04-15 15:43 - 2019-04-15 15:43 - 000000000 ____D C:\Users\Ivan\AppData\Local\VirtualStore
2019-04-15 15:43 - 2011-04-12 11:34 - 000000000 ____D C:\Users\Ivan\AppData\Roaming\Media Center Programs
2019-04-15 15:20 - 2019-04-15 15:20 - 000001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2019-04-15 15:20 - 2019-04-15 15:20 - 000001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2019-04-14 17:32 - 2019-04-14 17:32 - 000000000 ____D C:\MGADiagToolOutput
2019-04-14 16:02 - 2019-04-15 16:21 - 000000000 ____D C:\FRST
2019-04-14 13:57 - 2019-04-14 13:57 - 000003288 ____N C:\bootsqm.dat
2019-03-18 17:53 - 2019-03-18 17:53 - 000000000 ___HD C:\System.sav
2019-03-18 17:39 - 2019-03-18 17:39 - 000000000 ____D C:\swsetup
2019-03-18 10:07 - 2019-03-23 00:24 - 000000000 ____D C:\MyDrivers

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-04-15 16:22 - 2009-07-14 08:13 - 000713888 _____ C:\Windows\system32\PerfStringBackup.INI
2019-04-15 16:22 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf
2019-04-15 16:18 - 2009-07-14 07:45 - 000020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-04-15 16:18 - 2009-07-14 07:45 - 000020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-04-15 16:15 - 2009-07-14 08:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-04-15 16:12 - 2009-07-14 08:32 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2019-04-15 15:43 - 2010-11-21 05:50 - 000000000 ____D C:\Users\Administrator
2019-04-15 15:43 - 2009-07-14 06:20 - 000000000 __RHD C:\Users\Public\Libraries
2019-04-15 15:39 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\rescache
2019-04-15 15:20 - 2009-07-14 08:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2019-04-15 15:20 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\system32\sysprep
2019-04-15 15:17 - 2011-04-12 11:34 - 000000000 ____D C:\Windows\CSC
2019-04-15 15:16 - 2009-07-14 07:45 - 000274320 _____ C:\Windows\system32\FNTCACHE.DAT
2019-03-23 03:19 - 2015-05-23 17:09 - 000000000 ____D C:\Intel

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2019-04-15 15:16

==================== End of FRST.txt ============================

 

Addition.txt

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Всъщност аз преинсталирах наново компютъра и вече папката Windows.old я няма, но обаче има нещо, което ми гълта много RAM и искам да разбера кои програми заемат толкова много RAM и има ли някаква възможност да се снижи използването на RAM до минимум...

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Чиста е системата ..Всичко е "ок" ..!

Да деинсталираме FRST така:

i_arrow-r.gif&key=65f9fbaa716d42178fcd1e Остана само да премахнем програмите които използвахме За да премахнете правилно инструмента Farbar Recovery Scan Tool  , преименувайте изпълнимия файл FRST64.exe (или FRST.exe) в Uninstall.exe..!

image.png.9cf9e0ab76b122782aff3552f54c5829.png     =>     image.png.44f957ce25ef61c76206655a46425152.png

Стартирайте  файла Uninstall.exe. Ще бъдете уведомени, че трябва да рестартирате системата, за да изтриете инструмента ..!

image.png.abcc20b28654d54fae08e7451bb5dc3b.png

 

 

преди 2 часа, ioannidis написа:

как да изтрия безопасно папката Windows.old

 

Цитат

Тази папка се създава при надстройване от една версия на Windows на друга. Папката Windows.old съдържа всички файлове и данни от предишната инсталация на Windows. Можете да го използвате, за да възстановите системата си до старата версия на Windows, ако не харесвате новата версия. Ако търсите конкретен файл, който не е бил копиран правилно в новата инсталация на Windows, можете също да влезете в папката Windows.old и да го намерите. 
 
По същество папката Windows.old съдържа само старата система на Windows. От системните файлове на Windows до инсталираните програми и настройките и файловете на всеки потребителски акаунт е всичко тук. Новата версия на Windows просто я държи  в случай, че искате да се върнете към по-старата версия на Windows или в случай, че трябва да копирате и намерите файл.  Windows автоматично ще изтрие папката Windows.old, за да освободи място след месец.

 

 

https://www.howtogeek.com/223821/what-is-the-windows.old-folder-and-how-do-you-delete-it/

 

преди 7 минути, ioannidis написа:

което ми гълта много RAM и искам да разбера кои програми заемат толкова много RAM и има ли някаква възможност да се снижи използването на RAM до минимум...

 

..и това на преинсталирана система...? Нещата отиват към вероятен хардуерен проблем ..но нека проверим какво се случва...:

 

icon1373991893.jpg

Изтеглете Autoruns и:

  • Стартирайте програмата;
  • Изберете Options => сложете отметки пред Hide Empty Locations, Hide Microsoft Entries и Hide Windows Entries и махнете отметката пред Hide VirusTotal Clean Entries;
  • Сега изберете Options => Scan Options => и сложете отметки пред Verify Code Signature, Check VirusTotal.com и Submit Unknown Images;
  • Изберете бутона F5 за да се повтори проверката. Изчакайте да приключи (ще разберете, че е така ако в долния ляв край на програмата изпише Ready.);
  • От менюто File => изберете Save => запазете файла някъде с желано от вас име (във формат arn), архивирайте го с програма по желание в zip формат и го прикачете към темата.

 

=======

image.png.8a3c74f8693c9558651e122063e8bb9e.png

Изтеглете Process Explorer  от тук:

https://live.sysinte...com/procexp.exe

Запазете го на десктопа си, след това го стартирайте ( десен бутон и Run As Administrator).

  • Сега изберете  View => Select Column => маркирайте  Verified Signer => OK
  • След това  Options => Verify Image Signatures

Кликнете два пъти  над колоната на CPU, за да подредите нещата по възходящ ред натоварването  на процесора (най -високите стойности отгоре)

Изчакайте минута след това: 
 
От менюто File => изберете Save  As => Save. Запомнете името на  файла. Отворете файла на работния плот и копирайте и поставете текста в следващия си отговор.

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Заповядай:

Process	CPU	Private Bytes	Working Set	PID	Description	Company Name	Verified Signer
TrustedInstaller.exe	39.88	66 108 K	59 544 K	1160	Windows Modules Installer	Microsoft Corporation	(Verified) Microsoft Windows
System Idle Process	59.35	0 K	24 K	0			
procexp64.exe	5.12	30 740 K	46 004 K	608	Sysinternals Process Explorer	Sysinternals - www.sysinternals.com	(Verified) Microsoft Corporation
SearchIndexer.exe	4.64	19 208 K	9 072 K	1428	Microsoft Windows Search Indexer	Microsoft Corporation	(Verified) Microsoft Windows
chrome.exe	4.06	139 848 K	120 736 K	2908	Google Chrome	Google Inc.	(Verified) Google LLC
svchost.exe	2.39	91 132 K	79 256 K	836	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
System	0.69	132 K	264 K	4			
svchost.exe	1.82	1 183 016 K	907 584 K	864	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
chrome.exe	1.65	63 980 K	42 340 K	3728	Google Chrome	Google Inc.	(Verified) Google LLC
Interrupts	0.79	0 K	0 K	n/a	Hardware Interrupts and DPCs		
chrome.exe	0.71	75 228 K	62 884 K	2592	Google Chrome	Google Inc.	(Verified) Google LLC
chrome.exe	0.45	18 436 K	16 368 K	2780	Google Chrome	Google Inc.	(Verified) Google LLC
dwm.exe	0.41	35 936 K	13 336 K	1144	Диспечер на прозорците на работния плот	Microsoft Corporation	(Verified) Microsoft Windows
csrss.exe	0.33	2 328 K	2 452 K	420	Client Server Runtime Process	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe	0.10	14 404 K	7 428 K	344	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
chrome.exe	0.06	20 496 K	13 592 K	2772	Google Chrome	Google Inc.	(Verified) Google LLC
chrome.exe	0.05	32 028 K	10 980 K	2916	Google Chrome	Google Inc.	(Verified) Google LLC
explorer.exe	0.04	31 392 K	28 436 K	1184	Windows Explorer	Microsoft Corporation	(Verified) Microsoft Windows
chrome.exe	0.02	23 152 K	8 660 K	3556	Google Chrome	Google Inc.	(Verified) Google LLC
svchost.exe	0.02	5 848 K	2 716 K	1372	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe	0.02	67 840 K	13 236 K	3340	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe	0.01	8 432 K	2 696 K	1008	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
taskhost.exe	0.01	3 376 K	1 776 K	1780	Host Process for Windows Tasks	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe	0.01	20 004 K	6 392 K	800	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe	< 0.01	9 784 K	5 728 K	2200	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
csrss.exe	< 0.01	1 932 K	1 652 K	364	Client Server Runtime Process	Microsoft Corporation	(Verified) Microsoft Windows
wmpnetwk.exe	< 0.01	4 480 K	1 264 K	1460	Услуга за мрежово споделяне на Windows Media Player	Microsoft Corporation	(Verified) Microsoft Windows
wuauclt.exe		1 936 K	1 016 K	3012	Windows Update	Microsoft Corporation	(Verified) Microsoft Windows Component Publisher
WmiPrvSE.exe		2 492 K	3 952 K	3996	WMI Provider Host	Microsoft Corporation	(Verified) Microsoft Windows
winlogon.exe		2 728 K	1 576 K	520	Приложение за влизане в Windows	Microsoft Corporation	(Verified) Microsoft Windows
wininit.exe		1 480 K	304 K	396	Приложение за начално стартиране на Windows	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe		3 612 K	3 468 K	704	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe		3 992 K	2 796 K	624	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
svchost.exe		13 724 K	6 620 K	1276	Хост процес за услугите на Windows	Microsoft Corporation	(Verified) Microsoft Windows
sppsvc.exe		5 372 K	732 K	3632	Microsoft Software Protection Platform Service	Microsoft Corporation	(Verified) Microsoft Windows
spoolsv.exe		6 224 K	1 416 K	1248	Spooler SubSystem App	Microsoft Corporation	(Verified) Microsoft Windows
smss.exe		440 K	308 K	264	Windows Session Manager	Microsoft Corporation	(Verified) Microsoft Windows
services.exe		4 028 K	3 932 K	452	Приложение за услуги и контролери	Microsoft Corporation	(Verified) Microsoft Windows
procexp.exe		2 548 K	6 920 K	3972	Sysinternals Process Explorer	Sysinternals - www.sysinternals.com	(Verified) Microsoft Corporation
lsm.exe		2 356 K	1 556 K	476	Local Session Manager Service	Microsoft Corporation	(Verified) Microsoft Windows
lsass.exe		4 496 K	3 788 K	468	Local Security Authority Process	Microsoft Corporation	(Verified) Microsoft Windows
GoogleCrashHandler64.exe		1 544 K	416 K	1104	Google Crash Handler	Google LLC	(Verified) Google Inc
GoogleCrashHandler.exe		1 480 K	292 K	2028	Google Crash Handler	Google LLC	(Verified) Google Inc
chrome.exe		23 116 K	7 560 K	3884	Google Chrome	Google Inc.	(Verified) Google LLC
chrome.exe		23 908 K	8 112 K	3736	Google Chrome	Google Inc.	(Verified) Google LLC
chrome.exe		1 972 K	1 520 K	2612	Google Chrome	Google Inc.	(Verified) Google LLC
chrome.exe		2 036 K	416 K	2644	Google Chrome	Google Inc.	(Verified) Google LLC
audiodg.exe		15 584 K	15 180 K	3220	Windows Audio Device Graph Isolation 	Microsoft Corporation	(Verified) Microsoft Windows

 

AutoRunsLogFile.zip

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
преди 16 минути, ioannidis написа:

TrustedInstaller.exe

Този процес товари..! Вие сте в процес на инсталиране на нещо?  Ако не, този процес не трябва да се изпълнява. Прекъснали ли сте инсталацията на нещо? Може би не се е изчистило от паметта след неуспешна инсталация. Ако не инсталирате нищо, трябва да можете да убиете процеса. Рестартирането също трябва да го изчисти.

Опитайте да спрете услугата за актуализиране на Windows ( Windows Update ) пробно и да настроите типа на стартиране на 'забранено' (disabled )..След рестартиране проверете дали имате същия проблем.

Сподели този отговор


Линк към този отговор
Сподели в други сайтове
преди 1 минута, icotonev написа:

Този процес товари..! Вие сте в процес на инсталиране на нещо?  Ако не, този процес не трябва да се изпълнява. Прекъснали ли сте инсталацията на нещо? Може би не се е изчистило от паметта след неуспешна инсталация. Ако не инсталирате нищо, трябва да можете да убиете процеса. Рестартирането също трябва да го изчисти.

Бях прекъснал автоматичните актуализации на Windows, защото след почти 10 минутно чакане не се изтегли дори и един байт, и сега направих така, че чакащите актуализации да се изтеглят или при следващото изключване на компютъра, или в 03:00 сутринта.

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Добавете отговор

Можете да публикувате отговор сега и да се регистрирате по-късно. Ако имате регистрация, влезте в профила си за да публикувате от него.
Бележка: Вашата публикация изисква одобрение от модератор, преди да стане видима за всички.

Гост
Напишете отговор в тази тема...

×   Вмъкнахте текст, който съдържа форматиране.   Премахни форматирането на текста

  Разрешени са само 75 емотикони.

×   Съдържанието от линка беше вградено автоматично.   Премахни съдържанието и покажи само линк

×   Съдържанието, което сте написали преди беше възстановено..   Изтрий всичко

×   You cannot paste images directly. Upload or insert images from URL.


  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

  • Горещи теми в момента

  • Подобни теми

    • от Калинка Попова
      Здравейте,
      вчера получих от Вас съвет за стартиране на FRST
      и сега прикачам файловете
      t of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019
      Ran by user (administrator) on USER-PC (28-03-2019 12:08:26)
      Running from C:\Users\user\Desktop
      Loaded Profiles: user (Available Profiles: user)
      Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
      Internet Explorer Version 11 (Default browser: FF)
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
      (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
      (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
      (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
      (Dell Inc.) [File not signed] C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE
      (Dell Inc.) [File not signed] C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE
      (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
      (ArcSoft, Inc. -> ArcSoft, Inc.) C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe
      (AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
      (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
      (Andrea Electronics -> Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
      (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
      (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
      (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
      (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
      (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
      (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
      (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      (Dell Inc.) [File not signed] C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE
      (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      (Opera Software AS -> Opera Software) C:\Users\user\AppData\Local\Programs\Opera\assistant\browser_assistant.exe
      (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
      (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
      (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
      (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
      (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
      (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
      (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
      (McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
      (McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe
      (TeamViewer GmbH -> TeamViewer GmbH) C:\Users\Public\temp\TeamViewer\TeamViewer_Service.exe
      (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
      (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
      (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
      (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
      (Advanced Micro Devices Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
      (ATI Technologies Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
      (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
      (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
      (Lavasoft Limited -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
      (Lavasoft Limited -> Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe
      (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler.exe
      (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.7\GoogleCrashHandler64.exe
      (BitTorrent Inc -> BitTorrent Inc.) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe
      (BitTorrent Inc -> BitTorrent Inc.) C:\Users\user\AppData\Roaming\uTorrent\updates\3.5.5_45146\utorrentie.exe
      (BitTorrent Inc -> BitTorrent Inc.) C:\Users\user\AppData\Roaming\uTorrent\updates\3.5.5_45146\utorrentie.exe
      (BitTorrent Inc -> BitTorrent Inc.) C:\Users\user\AppData\Roaming\uTorrent\helper\helper.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
      (McAfee, Inc. -> McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6846096 2012-11-19] (Realtek Semiconductor Corp -> Realtek Semiconductor)
      HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1253520 2012-11-19] (Realtek Semiconductor Corp -> Realtek Semiconductor)
      HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-08-11] (Synaptics Incorporated -> Synaptics Incorporated)
      HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [8921600 2013-10-22] (Dell Inc.) [File not signed]
      HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088 2013-02-22] (Intel Corporation -> Intel Corporation)
      HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642728 2012-10-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
      HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-12-16] (Oracle America, Inc. -> Oracle Corporation)
      HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\Run: [uTorrent] => C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe [1998008 2019-03-28] (BitTorrent Inc -> BitTorrent Inc.)
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [7509280 2019-03-28] (Lavasoft Limited -> Lavasoft)
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\Run: [Opera Browser Assistant] => C:\Users\user\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [2264152 2018-12-19] (Opera Software AS -> Opera Software)
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: F - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {00436b5d-1004-11e5-b9e8-9c2a70d73da0} - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {23d7b5e8-fb87-11e8-af18-9c2a70d73da0} - F:\HiSuiteDownLoader.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {8a2f6e53-0fdf-11e5-ae17-9c2a70d73da0} - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {8a2f6ea9-0fdf-11e5-ae17-9c2a70d73da0} - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {96a6fd05-b6eb-11e5-a4c8-9c2a70d73da0} - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {98f89a53-ca5d-11e4-9dcf-9c2a70d73da0} - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {98f89a7d-ca5d-11e4-9dcf-9c2a70d73da0} - F:\AutoRun.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {c31eda96-9dfa-11e8-ad5e-9c2a70d73da0} - F:\HiSuiteDownLoader.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {d2ce57cd-e1ac-11e7-85fa-9c2a70d73da0} - G:\HiSuiteDownLoader.exe
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\...\MountPoints2: {dbe2ec1f-b8ea-11e5-8456-9c2a70d73da0} - F:\AutoRun.exe
      HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
      HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
      HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.86\Installer\chrmstp.exe [2019-03-26] (Google LLC -> Google Inc.)
      HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
      HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A509B1FF-37FF-4bFF-8CFF-4F3A747040FF}] -> C:\Windows\SysWOW64\advpack.dll [2009-07-14] (Microsoft Windows -> Microsoft Corporation)
      HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-02-18] (Adobe Systems, Incorporated -> Adobe Systems, Inc.)
      HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2013-09-21] (Broadcom Corporation -> Broadcom Corporation.)
      HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] -> C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll [2013-09-21] (Broadcom Corporation -> Broadcom Corporation.)
      Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
      Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2013-11-21]
      ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.)
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Tcpip\Parameters: [DhcpNameServer] 192.168.88.1 195.238.84.2 195.238.84.4
      Tcpip\..\Interfaces\{59D56FB3-C517-4D7D-9926-81B9DF5D37AF}: [DhcpNameServer] 192.168.88.1 195.238.84.2 195.238.84.4
      Tcpip\..\Interfaces\{C3882FF1-A6F7-4A65-A3D0-B8807331FD4C}: [DhcpNameServer] 192.168.1.1
      Internet Explorer:
      ==================
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
      HKU\S-1-5-21-190678317-3990350971-2298258134-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp.myway.com/allinonedocs/ttab02/index.html?n=7857F972&p2=^CHT^xdm009^TTAB02^bg&ptb=B7E589BA-98E8-4923-8CC6-02E4B3867EE1&si=EAIaIQobChMIiKnA-J-B4QIVCjjgCh0kUQceEAEYASAAEgJ-jfD_BwE&coid=142cc257d8044233aba2cf3bc9277c9b
      SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
      SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
      SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
      SearchScopes: HKU\S-1-5-21-190678317-3990350971-2298258134-1000 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
      SearchScopes: HKU\S-1-5-21-190678317-3990350971-2298258134-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = 
      SearchScopes: HKU\S-1-5-21-190678317-3990350971-2298258134-1000 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10419__181230&q={searchTerms}
      SearchScopes: HKU\S-1-5-21-190678317-3990350971-2298258134-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
      BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
      BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc -> Google Inc.)
      BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-02-08] (McAfee, Inc. -> McAfee, Inc.)
      BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
      BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
      BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\ssv.dll [2019-02-12] (Oracle America, Inc. -> Oracle Corporation)
      BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-27] (Google Inc -> Google Inc.)
      BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-02-08] (McAfee, Inc. -> McAfee, Inc.)
      BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\jp2ssv.dll [2019-02-12] (Oracle America, Inc. -> Oracle Corporation)
      Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc -> Google Inc.)
      Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-27] (Google Inc -> Google Inc.)
      Toolbar: HKU\S-1-5-21-190678317-3990350971-2298258134-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-27] (Google Inc -> Google Inc.)
      DPF: HKLM-x32 {A996E48C-D3DC-4244-89F7-AFA33EC60679} hxxps://efaktura.bg/inc/capicom.cab
      Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
      Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} -  No File
      FireFox:
      ========
      FF DefaultProfile: m7kv9edv.default-1550937407120
      FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\m7kv9edv.default-1550937407120 [2019-03-28]
      FF Homepage: Mozilla\Firefox\Profiles\m7kv9edv.default-1550937407120 -> hxxp://www.bing.com/?pc=COS2&ptag=D123018-N0300A6AA2274B27&form=CONMHP&conlogo=CT3335819
      FF NewTab: Mozilla\Firefox\Profiles\m7kv9edv.default-1550937407120 -> hxxp://www.bing.com/?pc=COS2&ptag=D123018-N0300A6AA2274B27&form=CONMHP&conlogo=CT3335819
      FF Extension: (Yahoo Homepage) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\m7kv9edv.default-1550937407120\Extensions\ff_hpset@jetpack.xpi [2019-02-25]
      FF Extension: (Avast Online Security) - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\m7kv9edv.default-1550937407120\Extensions\wrc@avast.com.xpi [2019-03-27]
      FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
      FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-03-20]
      FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
      FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_101.dll [2018-12-08] (Adobe Systems Incorporated -> )
      FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] (Microsoft Corporation ->  Microsoft Corporation)
      FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_101.dll [2018-12-08] (Adobe Systems Incorporated -> )
      FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [File not signed]
      FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
      FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
      FF Plugin-x32: @java.com/DTPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\dtplugin\npDeployJava1.dll [2019-02-12] (Oracle America, Inc. -> Oracle Corporation)
      FF Plugin-x32: @java.com/JavaPlugin,version=11.201.2 -> C:\Program Files (x86)\Java\jre1.8.0_201\bin\plugin2\npjp2.dll [2019-02-12] (Oracle America, Inc. -> Oracle Corporation)
      FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-21] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
      FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.7\npGoogleUpdate3.dll [2019-03-28] (Google Inc -> Google LLC)
      FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-02-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
      Chrome: 
      =======
      CHR DefaultProfile: Default
      CHR HomePage: Default -> mysearch.avg.com
      CHR StartupUrls: Default -> "hxxp://www.google.com/"
      CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee&type=E210US91105G91208&p={searchTerms}
      CHR DefaultSearchKeyword: Default -> mcafee
      CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default [2019-03-28]
      CHR Extension: (Slides) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-18]
      CHR Extension: (Docs) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-19]
      CHR Extension: (Google Drive) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-18]
      CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-20]
      CHR Extension: (AVG Secure Search) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2019-01-16]
      CHR Extension: (Google Search) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-01]
      CHR Extension: (Avast Passwords) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2019-01-17]
      CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-02-18]
      CHR Extension: (Sheets) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-18]
      CHR Extension: (McAfee® WebAdvisor) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2019-02-25]
      CHR Extension: (Google Docs Offline) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-26]
      CHR Extension: (Chrome Web Store Payments) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-15]
      CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-07]
      CHR Extension: (Chrome Media Router) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-26]
      CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
      CHR HKU\S-1-5-21-190678317-3990350971-2298258134-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [chfdnecihphmhljaaejmgoiahnihplgn] - hxxps://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
      CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
      Opera: 
      =======
      OPR Extension: (No Name) - C:\Users\user\AppData\Roaming\Opera Software\Opera Stable\Extensions\jhongheibdpfhdpfccheljfcabgliidh [2018-11-26]
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R2 ADExchange; C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe [44736 2014-03-11] (ArcSoft, Inc. -> ArcSoft, Inc.)
      R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [239616 2012-09-10] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
      R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6570352 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [360440 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-26] (AVAST Software s.r.o. -> AVAST Software)
      S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [File not signed]
      R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation -> Intel Corporation)
      S2 Launch TotalMedia Theatre 6 Driver; C:\Program Files (x86)\ArcSoft\TotalMedia Theatre 6\TMTLaunchDriverServer.exe [608256 2014-03-04] (ArcSoft, Inc.) [File not signed]
      R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [899640 2019-02-08] (McAfee, Inc. -> McAfee, Inc.)
      R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872 2012-11-23] (Realtek Semiconductor Corp -> Realtek Semiconductor)
      S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [977088 2014-03-02] (@ByELDI -> ) [File not signed]
      S3 ServiceLayer; C:\Program Files (x86)\Nokia\PC Connectivity Solution\ServiceLayer.exe [621056 2009-03-04] (Nokia.) [File not signed]
      R2 TeamViewer; C:\Users\Public\temp\TeamViewer\TeamViewer_Service.exe [11665136 2019-01-16] (TeamViewer GmbH -> TeamViewer GmbH)
      R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [25888 2019-03-28] (Lavasoft Limited -> )
      S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
      R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [6170624 2013-10-22] (Dell Inc.) [File not signed]
      S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X]
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [10679808 2012-09-10] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
      R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [459264 2012-09-10] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
      R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [35496 2012-07-09] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
      R1 ArcCtrl; C:\Windows\System32\drivers\ArcCtrl.sys [3315392 2013-11-20] (ArcSoft, Inc. -> )
      R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37320 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205608 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [254408 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196304 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320904 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [58168 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [249152 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42496 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [169104 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112520 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88152 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034640 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [476256 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [220632 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [380160 2019-03-26] (AVAST Software s.r.o. -> AVAST Software)
      R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [170200 2013-10-22] (Broadcom Corporation -> Broadcom Corporation.)
      R3 BCM42RLY; C:\Windows\System32\drivers\BCM42RLY.sys [23760 2013-10-22] (Broadcom Corporation -> Broadcom Corporation)
      R3 BCM43XX; C:\Windows\System32\DRIVERS\bcmwl664.sys [9082064 2013-10-22] (Broadcom Corporation -> Broadcom Corporation)
      R3 btwampfl; C:\Windows\system32\drivers\btwampfl.sys [598808 2013-10-22] (Broadcom Corporation -> Broadcom Corporation.)
      R3 btwaudio; C:\Windows\System32\drivers\btwaudio.sys [184144 2013-10-22] (Broadcom Corporation -> Broadcom Corporation.)
      R3 btwavdt; C:\Windows\System32\DRIVERS\btwavdt.sys [210984 2013-10-22] (Broadcom Corporation -> Broadcom Corporation.)
      R3 btwl2cap; C:\Windows\System32\DRIVERS\btwl2cap.sys [39976 2013-10-22] (Broadcom Corporation -> Broadcom Corporation.)
      R3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [21544 2013-10-22] (Broadcom Corporation -> Broadcom Corporation.)
      R3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [5343584 2012-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
      R3 IntcDAud; C:\Windows\System32\DRIVERS\IntcDAud.sys [342528 2012-06-19] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
      S3 nmwcdcx64; C:\Windows\System32\drivers\ccdcmbox64.sys [25088 2009-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      S3 nmwcdnsucx64; C:\Windows\System32\drivers\nmwcdnsucx64.sys [12288 2009-03-19] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      S3 nmwcdnsux64; C:\Windows\System32\drivers\nmwcdnsux64.sys [172544 2009-03-19] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      S3 nmwcdx64; C:\Windows\System32\drivers\ccdcmbx64.sys [18944 2009-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfdx64.sys [25600 2008-08-28] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-11] (Synaptics Incorporated -> Synaptics Incorporated)
      S3 upperdev; C:\Windows\System32\DRIVERS\usbser_lowerfltx64.sys [8192 2009-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      S3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltx64j.sys [8192 2009-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
      S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
      S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
      S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
      S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
      S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
      S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
      S3 hwusb_cdcacm; system32\DRIVERS\ew_cdcacm.sys [X]
      S3 hwusb_wwanecm; system32\DRIVERS\ew_wwanecm.sys [X]
      S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One month (created) ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2019-03-28 11:56 - 2019-03-28 12:00 - 000069400 _____ C:\Users\user\Desktop\Addition.txt
      2019-03-28 11:53 - 2019-03-28 12:09 - 000033111 _____ C:\Users\user\Desktop\FRST.txt
      2019-03-28 11:51 - 2019-03-28 11:48 - 002434048 _____ (Farbar) C:\Users\user\Downloads\FRST64 (1).exe
      2019-03-28 11:47 - 2019-03-28 11:48 - 002434048 _____ (Farbar) C:\Users\user\Desktop\FRST64 (1).exe
      2019-03-28 06:29 - 2019-03-28 06:29 - 000000000 ____D C:\Users\user\AppData\LocalLow\uTorrent
      2019-03-28 06:29 - 2019-03-28 06:29 - 000000000 ____D C:\Users\user\AppData\Local\BitTorrentHelper
      2019-03-26 17:35 - 2019-03-26 17:35 - 000000000 ____D C:\Program Files (x86)\MSXML 4.0
      2019-03-26 11:45 - 2019-02-16 07:32 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
      2019-03-26 11:45 - 2019-02-16 07:30 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
      2019-03-26 11:44 - 2019-03-26 11:46 - 000000000 ____D C:\Users\user\AppData\Roaming\Wise Euask
      2019-03-26 10:21 - 2019-03-28 06:48 - 000004950 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for user-PC-user user-PC
      2019-03-26 09:13 - 2019-03-26 09:13 - 000362888 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
      2019-03-25 19:37 - 2019-03-25 19:37 - 021205512 _____ (Piriform Software Ltd) C:\Users\user\Downloads\ccsetup555.exe
      2019-03-25 15:30 - 2019-03-25 15:30 - 000000000 ___SD C:\Windows\system32\CompatTel
      2019-03-25 15:30 - 2019-03-25 15:30 - 000000000 ____D C:\Windows\system32\appraiser
      2019-03-25 15:19 - 2015-07-30 15:13 - 000124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
      2019-03-25 15:19 - 2015-07-30 15:13 - 000103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
      2019-03-25 14:25 - 2019-03-06 05:18 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
      2019-03-25 14:25 - 2019-03-06 05:18 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
      2019-03-25 14:25 - 2019-03-06 05:10 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:04 - 004055784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
      2019-03-25 14:25 - 2019-03-06 05:02 - 001314104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
      2019-03-25 14:25 - 2019-03-06 05:01 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 04:45 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
      2019-03-25 14:25 - 2019-03-06 04:45 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
      2019-03-25 14:25 - 2019-03-06 04:44 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
      2019-03-25 14:25 - 2019-03-06 04:42 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
      2019-03-25 14:25 - 2019-03-06 04:41 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
      2019-03-25 14:25 - 2019-03-06 04:41 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
      2019-03-25 14:25 - 2019-03-06 04:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
      2019-03-25 14:25 - 2019-03-06 04:38 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
      2019-03-25 14:25 - 2019-03-06 04:38 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
      2019-03-25 14:25 - 2019-03-06 04:38 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
      2019-03-25 14:25 - 2019-03-06 04:38 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
      2019-03-25 14:25 - 2019-03-06 04:38 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
      2019-03-25 14:25 - 2019-03-06 04:37 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
      2019-03-25 14:25 - 2019-03-06 04:37 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
      2019-03-25 14:25 - 2019-03-06 04:37 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
      2019-03-25 14:25 - 2019-03-06 04:37 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
      2019-03-25 14:25 - 2019-03-06 04:37 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
      2019-03-25 14:25 - 2019-03-06 04:37 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
      2019-03-25 14:25 - 2019-03-06 04:37 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
      2019-03-25 14:25 - 2019-03-06 04:37 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
      2019-03-25 14:25 - 2019-03-06 04:36 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
      2019-03-25 14:25 - 2019-03-06 04:36 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 04:36 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 04:36 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-06 04:36 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
      2019-03-25 14:25 - 2019-03-05 04:44 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
      2019-03-25 14:25 - 2019-02-27 00:41 - 000397104 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2019-03-25 14:25 - 2019-02-26 23:47 - 000348984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2019-03-25 14:25 - 2019-02-26 09:46 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
      2019-03-25 14:25 - 2019-02-26 09:45 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
      2019-03-25 14:25 - 2019-02-26 09:33 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2019-03-25 14:25 - 2019-02-26 09:32 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
      2019-03-25 14:25 - 2019-02-26 09:31 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2019-03-25 14:25 - 2019-02-26 09:31 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
      2019-03-25 14:25 - 2019-02-26 09:25 - 020281856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2019-03-25 14:25 - 2019-02-26 09:24 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
      2019-03-25 14:25 - 2019-02-26 09:20 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
      2019-03-25 14:25 - 2019-02-26 09:20 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
      2019-03-25 14:25 - 2019-02-26 09:19 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
      2019-03-25 14:25 - 2019-02-26 09:12 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
      2019-03-25 14:25 - 2019-02-26 09:07 - 000498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2019-03-25 14:25 - 2019-02-26 09:07 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
      2019-03-25 14:25 - 2019-02-26 09:06 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
      2019-03-25 14:25 - 2019-02-26 09:06 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
      2019-03-25 14:25 - 2019-02-26 09:05 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
      2019-03-25 14:25 - 2019-02-26 09:04 - 002295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2019-03-25 14:25 - 2019-02-26 09:03 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
      2019-03-25 14:25 - 2019-02-26 09:02 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
      2019-03-25 14:25 - 2019-02-26 09:02 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
      2019-03-25 14:25 - 2019-02-26 09:01 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
      2019-03-25 14:25 - 2019-02-26 09:00 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
      2019-03-25 14:25 - 2019-02-26 08:58 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
      2019-03-25 14:25 - 2019-02-26 08:57 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2019-03-25 14:25 - 2019-02-26 08:57 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
      2019-03-25 14:25 - 2019-02-26 08:57 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
      2019-03-25 14:25 - 2019-02-26 08:56 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2019-03-25 14:25 - 2019-02-26 08:54 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
      2019-03-25 14:25 - 2019-02-26 08:49 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
      2019-03-25 14:25 - 2019-02-26 08:44 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
      2019-03-25 14:25 - 2019-02-26 08:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
      2019-03-25 14:25 - 2019-02-26 08:43 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2019-03-25 14:25 - 2019-02-26 08:43 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2019-03-25 14:25 - 2019-02-26 08:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
      2019-03-25 14:25 - 2019-02-26 08:41 - 002135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2019-03-25 14:25 - 2019-02-26 08:41 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
      2019-03-25 14:25 - 2019-02-26 08:41 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
      2019-03-25 14:25 - 2019-02-26 08:39 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
      2019-03-25 14:25 - 2019-02-26 08:38 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
      2019-03-25 14:25 - 2019-02-26 08:35 - 004494848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2019-03-25 14:25 - 2019-02-26 08:33 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
      2019-03-25 14:25 - 2019-02-26 08:31 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2019-03-25 14:25 - 2019-02-26 08:31 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2019-03-25 14:25 - 2019-02-26 08:30 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
      2019-03-25 14:25 - 2019-02-26 08:29 - 013681664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2019-03-25 14:25 - 2019-02-26 08:18 - 001557504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2019-03-25 14:25 - 2019-02-26 08:12 - 004386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2019-03-25 14:25 - 2019-02-26 08:09 - 001332224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2019-03-25 14:25 - 2019-02-26 08:07 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2019-03-25 14:25 - 2019-02-26 08:06 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2019-03-25 14:25 - 2019-02-22 05:07 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
      2019-03-25 14:25 - 2019-02-22 04:56 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
      2019-03-25 14:25 - 2019-02-22 04:35 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
      2019-03-25 14:25 - 2019-02-22 04:35 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
      2019-03-25 14:25 - 2019-02-16 08:02 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
      2019-03-25 14:25 - 2019-02-16 08:02 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
      2019-03-25 14:25 - 2019-02-16 08:01 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
      2019-03-25 14:25 - 2019-02-16 07:50 - 000321536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
      2019-03-25 14:25 - 2019-02-16 07:33 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
      2019-03-25 14:25 - 2019-02-16 06:10 - 000419608 _____ C:\Windows\SysWOW64\locale.nls
      2019-03-25 14:25 - 2019-02-16 06:10 - 000419608 _____ C:\Windows\system32\locale.nls
      2019-03-25 14:25 - 2019-02-15 18:09 - 000485888 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
      2019-03-25 14:25 - 2019-02-15 18:09 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
      2019-03-25 14:25 - 2019-02-15 18:09 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
      2019-03-25 14:25 - 2019-02-15 17:58 - 000382976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
      2019-03-25 14:25 - 2019-02-15 17:58 - 000320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
      2019-03-25 14:25 - 2019-02-15 17:40 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
      2019-03-25 14:25 - 2019-02-15 17:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
      2019-03-25 14:25 - 2019-02-15 17:40 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
      2019-03-25 14:25 - 2019-02-15 17:38 - 000360960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
      2019-03-25 14:25 - 2019-02-15 17:38 - 000053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
      2019-03-25 14:25 - 2019-02-15 17:38 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
      2019-03-25 14:25 - 2019-02-15 17:38 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
      2019-03-25 14:25 - 2019-02-10 17:36 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
      2019-03-25 14:25 - 2019-02-10 17:36 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
      2019-03-25 14:25 - 2019-02-10 17:35 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
      2019-03-25 14:25 - 2019-02-08 18:08 - 002009088 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2019-03-25 14:25 - 2019-02-08 18:08 - 001889280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
      2019-03-25 14:25 - 2019-02-08 18:07 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
      2019-03-25 14:25 - 2019-02-08 17:59 - 001391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
      2019-03-25 14:25 - 2019-02-08 17:59 - 001241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
      2019-03-25 14:25 - 2019-02-08 17:59 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
      2019-03-25 14:25 - 2019-02-07 18:06 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\brdgcfg.dll
      2019-03-25 14:25 - 2019-02-07 17:46 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
      2019-03-25 14:25 - 2019-02-03 17:36 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
      2019-03-25 14:25 - 2019-01-12 04:36 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
      2019-03-25 14:25 - 2019-01-01 18:08 - 000114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
      2019-03-25 14:25 - 2019-01-01 18:05 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
      2019-03-25 14:25 - 2019-01-01 18:04 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
      2019-03-25 14:25 - 2019-01-01 18:04 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
      2019-03-25 14:25 - 2019-01-01 17:58 - 002368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
      2019-03-25 14:25 - 2019-01-01 17:58 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
      2019-03-25 14:25 - 2019-01-01 17:57 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
      2019-03-25 14:25 - 2019-01-01 17:39 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
      2019-03-25 14:25 - 2019-01-01 17:39 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
      2019-03-25 14:25 - 2018-12-08 05:08 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
      2019-03-25 14:25 - 2018-12-08 04:56 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
      2019-03-25 14:25 - 2018-12-08 04:56 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
      2019-03-25 14:25 - 2018-12-08 04:47 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
      2019-03-25 14:25 - 2018-12-08 04:47 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
      2019-03-25 14:25 - 2018-12-08 04:47 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
      2019-03-25 14:25 - 2018-12-08 04:41 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
      2019-03-25 14:25 - 2018-12-08 04:41 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
      2019-03-25 14:25 - 2018-12-04 18:07 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
      2019-03-25 14:25 - 2018-12-04 18:07 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
      2019-03-25 14:25 - 2018-12-04 17:55 - 000158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
      2019-03-25 14:25 - 2018-12-04 17:55 - 000142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
      2019-03-25 14:25 - 2018-11-18 04:43 - 000297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
      2019-03-25 14:25 - 2018-11-18 04:43 - 000249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
      2019-03-25 14:25 - 2018-11-11 18:45 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
      2019-03-25 14:25 - 2018-10-27 05:42 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll
      2019-03-25 14:25 - 2018-10-27 05:42 - 000202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
      2019-03-25 14:25 - 2018-10-27 05:42 - 000150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
      2019-03-25 14:25 - 2018-10-27 05:42 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll
      2019-03-25 14:25 - 2018-10-27 05:41 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll
      2019-03-25 14:25 - 2018-10-27 05:27 - 000173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll
      2019-03-25 14:25 - 2018-10-27 05:27 - 000164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
      2019-03-25 14:25 - 2018-10-27 05:27 - 000121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
      2019-03-25 14:25 - 2018-10-27 05:11 - 000168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
      2019-03-25 14:25 - 2018-10-27 05:11 - 000156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
      2019-03-25 14:25 - 2018-10-27 05:04 - 000141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
      2019-03-25 14:25 - 2018-10-27 05:04 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
      2019-03-25 14:25 - 2018-10-27 05:04 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshcon.dll
      2019-03-25 14:25 - 2018-10-27 05:04 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dispex.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000998480 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000918408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000066000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000063936 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000021968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000019408 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000017872 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000017856 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000017360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000017352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000016336 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000015824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000015808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000015296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000014312 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000014272 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000013768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000013760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000013760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000013264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012736 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011728 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
      2019-03-25 14:25 - 2018-10-12 15:05 - 000011200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
      2019-03-25 14:25 - 2018-10-06 17:58 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
      2019-03-25 14:25 - 2018-10-06 17:50 - 000309480 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
      2019-03-25 14:25 - 2018-10-06 17:44 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
      2019-03-25 14:25 - 2018-10-06 17:43 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
      2019-03-25 14:25 - 2018-10-06 15:42 - 001988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
      2019-03-25 14:25 - 2018-09-23 04:55 - 002319872 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 002222080 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000778240 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
      2019-03-25 14:25 - 2018-09-23 04:54 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 001549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 001400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 000197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 000104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
      2019-03-25 14:25 - 2018-09-23 04:37 - 000034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
      2019-03-25 14:25 - 2018-09-23 04:34 - 000591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
      2019-03-25 14:25 - 2018-09-23 04:34 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
      2019-03-25 14:25 - 2018-09-23 04:33 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
      2019-03-25 14:25 - 2018-09-23 04:22 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
      2019-03-25 14:25 - 2018-09-23 04:22 - 000164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
      2019-03-25 14:25 - 2018-09-23 04:21 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
      2019-03-25 14:25 - 2018-09-23 04:21 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
      2019-03-25 14:25 - 2018-09-09 03:02 - 000986824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
      2019-03-25 14:25 - 2018-09-09 03:02 - 000265416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
      2019-03-25 14:25 - 2018-09-09 02:59 - 002851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
      2019-03-25 14:25 - 2018-09-09 02:57 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
      2019-03-25 14:25 - 2018-09-09 02:44 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
      2019-03-25 14:25 - 2018-08-31 17:08 - 000340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
      2019-03-25 14:25 - 2018-08-16 04:18 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
      2019-03-25 14:25 - 2018-08-13 23:49 - 001391856 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
      2019-03-25 14:25 - 2018-08-13 17:54 - 014183936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
      2019-03-25 14:25 - 2018-08-13 17:53 - 001867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
      2019-03-25 14:25 - 2018-08-13 17:40 - 012880896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
      2019-03-25 14:25 - 2018-08-13 17:40 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
      2019-03-25 14:25 - 2018-08-12 22:32 - 000378464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
      2019-03-25 14:25 - 2018-08-12 22:31 - 000289376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
      2019-03-25 14:25 - 2018-08-12 22:28 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
      2019-03-25 14:25 - 2018-08-12 22:14 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll
      2019-03-25 14:25 - 2018-08-10 17:54 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
      2019-03-25 14:25 - 2018-08-10 17:40 - 000463360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
      2019-03-25 14:25 - 2018-08-10 17:20 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
      2019-03-25 14:25 - 2018-08-03 17:55 - 000109568 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
      2019-03-25 14:25 - 2018-08-03 17:39 - 000084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
      2019-03-25 14:25 - 2018-07-29 17:55 - 001110528 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
      2019-03-25 14:25 - 2018-07-18 17:18 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
      2019-03-25 14:25 - 2018-06-29 17:55 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
      2019-03-25 14:25 - 2018-06-29 17:55 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
      2019-03-25 14:25 - 2018-06-29 17:40 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
      2019-03-25 14:25 - 2018-06-29 17:09 - 000034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
      2019-03-25 14:25 - 2018-06-27 17:55 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
      2019-03-25 14:25 - 2018-06-27 17:43 - 000363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
      2019-03-25 14:25 - 2018-06-08 18:21 - 000369664 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
      2019-03-25 14:25 - 2018-06-08 18:19 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
      2019-03-25 14:25 - 2018-06-08 17:55 - 000330240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
      2019-03-25 14:25 - 2018-06-08 17:54 - 000269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
      2019-03-25 14:25 - 2018-06-08 17:44 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
      2019-03-25 14:25 - 2018-06-08 17:28 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
      2019-03-25 14:25 - 2018-05-11 23:19 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
      2019-03-25 14:25 - 2018-05-11 02:40 - 000741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
      2019-03-25 14:25 - 2018-05-11 02:40 - 000084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
      2019-03-25 14:25 - 2018-05-02 17:32 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
      2019-03-25 14:25 - 2018-05-02 17:32 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
      2019-03-25 14:25 - 2018-05-02 17:32 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
      2019-03-25 14:25 - 2018-05-02 17:32 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
      2019-03-25 14:25 - 2018-05-02 17:32 - 000007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
      2019-03-25 14:25 - 2018-04-25 18:02 - 000124416 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
      2019-03-25 14:25 - 2018-04-25 17:18 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
      2019-03-25 14:25 - 2018-04-18 18:03 - 000701952 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
      2019-03-25 14:25 - 2018-04-18 18:03 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll
      2019-03-25 14:25 - 2018-04-18 17:51 - 000523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
      2019-03-25 14:25 - 2018-04-18 17:51 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhsetup.dll
      2019-03-25 14:25 - 2018-04-18 17:41 - 000016896 _____ (Microsoft Corporation) C:\Windows\hh.exe
      2019-03-25 14:25 - 2018-04-18 17:35 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hh.exe
      2019-03-25 14:25 - 2018-04-10 18:34 - 000525824 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
      2019-03-25 14:25 - 2018-04-10 18:33 - 001241600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
      2019-03-25 14:25 - 2018-04-10 18:32 - 000487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
      2019-03-25 14:25 - 2018-04-07 18:41 - 000371392 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
      2019-03-25 14:25 - 2018-03-14 19:16 - 000174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
      2019-03-25 14:25 - 2018-03-14 19:12 - 003165184 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
      2019-03-25 14:25 - 2018-03-14 19:12 - 000192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
      2019-03-25 14:25 - 2018-03-14 19:12 - 000098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
      2019-03-25 14:25 - 2018-03-14 19:07 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
      2019-03-25 14:25 - 2018-03-14 18:57 - 000573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
      2019-03-25 14:25 - 2018-03-14 18:57 - 000093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
      2019-03-25 14:25 - 2018-03-14 18:57 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
      2019-03-25 14:25 - 2018-03-14 18:57 - 000030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
      2019-03-25 14:25 - 2018-03-14 18:53 - 000709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
      2019-03-25 14:25 - 2018-03-14 18:52 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
      2019-03-25 14:25 - 2018-03-14 18:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
      2019-03-25 14:25 - 2018-03-14 18:52 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
      2019-03-25 14:25 - 2018-03-14 18:52 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
      2019-03-25 14:25 - 2018-03-14 18:52 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
      2019-03-25 14:25 - 2018-03-06 20:13 - 000148160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
      2019-03-25 14:25 - 2018-03-06 20:11 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
      2019-03-25 14:25 - 2018-03-06 20:11 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
      2019-03-25 14:25 - 2018-03-06 20:10 - 000170176 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
      2019-03-25 14:25 - 2018-03-06 20:07 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
      2019-03-25 14:25 - 2018-02-22 05:28 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
      2019-03-25 14:25 - 2018-02-22 05:06 - 000134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
      2019-03-25 14:25 - 2018-02-10 20:35 - 000185024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000122560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS
      2019-03-25 14:25 - 2018-02-10 20:35 - 000068288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000064192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS
      2019-03-25 14:25 - 2018-02-10 20:35 - 000063168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000060608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000036032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000031936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000023744 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
      2019-03-25 14:25 - 2018-02-10 20:35 - 000020160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000015040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
      2019-03-25 14:25 - 2018-02-10 20:35 - 000012096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
      2019-03-25 14:25 - 2018-02-10 20:23 - 002292224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
      2019-03-25 14:25 - 2018-02-10 20:23 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll
      2019-03-25 14:25 - 2018-02-10 20:11 - 003665920 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
      2019-03-25 14:25 - 2018-02-10 20:11 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
      2019-03-25 14:25 - 2018-02-10 19:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe
      2019-03-25 14:25 - 2018-02-10 19:36 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsraLegacy.tlb
      2019-03-25 14:25 - 2018-02-10 19:25 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
      2019-03-25 14:25 - 2018-02-10 19:25 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
      2019-03-25 14:25 - 2018-02-10 19:25 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\MsraLegacy.tlb
      2019-03-25 14:25 - 2018-01-12 18:27 - 004834816 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
      2019-03-25 14:25 - 2018-01-12 18:26 - 000308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
      2019-03-25 14:25 - 2018-01-12 18:16 - 003405824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
      2019-03-25 14:25 - 2018-01-01 04:18 - 001741312 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000842752 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000439296 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000366592 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
      2019-03-25 14:25 - 2018-01-01 04:18 - 000264704 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
      2019-03-25 14:25 - 2018-01-01 04:18 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
      2019-03-25 14:25 - 2018-01-01 04:04 - 000559616 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
      2019-03-25 14:25 - 2018-01-01 04:00 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
      2019-03-25 14:25 - 2018-01-01 04:00 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
      2019-03-25 14:25 - 2018-01-01 04:00 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll
      2019-03-25 14:25 - 2018-01-01 03:59 - 000309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
      2019-03-25 14:25 - 2018-01-01 03:55 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
      2019-03-25 14:25 - 2018-01-01 03:43 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
      2019-03-25 14:25 - 2018-01-01 03:43 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapPeerProxy.dll
      2019-03-25 14:25 - 2018-01-01 03:43 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapAuthProxy.dll
      2019-03-25 14:25 - 2018-01-01 03:43 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll
      2019-03-25 14:25 - 2018-01-01 03:41 - 000754176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
      2019-03-25 14:25 - 2017-12-05 19:36 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
      2019-03-25 14:25 - 2017-12-05 19:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
      2019-03-25 14:25 - 2017-12-05 19:08 - 000481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
      2019-03-25 14:25 - 2017-12-05 18:04 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
      2019-03-25 14:25 - 2017-12-05 17:49 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
      2019-03-25 14:25 - 2017-11-02 18:55 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
      2019-03-25 14:25 - 2017-11-02 18:55 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
      2019-03-25 14:25 - 2017-11-02 17:11 - 000075264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
      2019-03-25 14:25 - 2017-10-17 01:04 - 001001984 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
      2019-03-25 14:25 - 2017-10-17 00:46 - 000953344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
      2019-03-25 14:25 - 2017-10-12 02:55 - 002058240 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
      2019-03-25 14:25 - 2017-10-12 02:37 - 001363968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
      2019-03-25 14:25 - 2017-10-12 02:20 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
      2019-03-25 14:25 - 2017-09-13 17:28 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
      2019-03-25 14:25 - 2017-09-13 17:28 - 000448512 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
      2019-03-25 14:25 - 2017-09-13 17:28 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
      2019-03-25 14:25 - 2017-09-13 17:09 - 000830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
      2019-03-25 14:25 - 2017-09-13 17:05 - 000324608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
      2019-03-25 14:25 - 2017-09-08 16:20 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswstr10.dll
      2019-03-25 14:25 - 2017-09-08 16:20 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint40.dll
      2019-03-25 14:25 - 2017-08-19 17:28 - 000197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
      2019-03-25 14:25 - 2017-08-19 17:10 - 000180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 003203584 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 002150912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 001032192 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 000827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 000303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
      2019-03-25 14:25 - 2017-08-14 19:35 - 000128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll
      2019-03-25 14:25 - 2017-08-14 19:34 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
      2019-03-25 14:25 - 2017-08-13 23:45 - 000040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
      2019-03-25 14:25 - 2017-08-13 23:37 - 002144256 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
      2019-03-25 14:25 - 2017-08-13 23:30 - 001401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
      2019-03-25 14:25 - 2017-08-11 08:35 - 000757248 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
      2019-03-25 14:25 - 2017-08-11 08:35 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
      2019-03-25 14:25 - 2017-08-11 08:35 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll
      2019-03-25 14:25 - 2017-08-11 08:35 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
      2019-03-25 14:25 - 2017-08-11 08:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
      2019-03-25 14:25 - 2017-08-11 08:34 - 000166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
      2019-03-25 14:25 - 2017-08-11 08:34 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
      2019-03-25 14:25 - 2017-08-11 08:20 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
      2019-03-25 14:25 - 2017-08-11 08:20 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
      2019-03-25 14:25 - 2017-08-11 08:19 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
      2019-03-25 14:25 - 2017-08-11 08:19 - 000299008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
      2019-03-25 14:25 - 2017-08-11 08:19 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
      2019-03-25 14:25 - 2017-08-11 08:19 - 000016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
      2019-03-25 14:25 - 2017-08-11 08:19 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
      2019-03-25 14:25 - 2017-08-11 08:12 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
      2019-03-25 14:25 - 2017-08-11 08:09 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
      2019-03-25 14:25 - 2017-08-11 08:03 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
      2019-03-25 14:25 - 2017-08-11 08:00 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
      2019-03-25 14:25 - 2017-07-29 16:56 - 000117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
      2019-03-25 14:25 - 2017-07-21 16:26 - 000518144 _____ C:\Windows\SysWOW64\msjetoledb40.dll
      2019-03-25 14:25 - 2017-07-21 16:26 - 000409600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexch40.dll
      2019-03-25 14:25 - 2017-07-21 16:26 - 000290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjtes40.dll
      2019-03-25 14:25 - 2017-07-21 16:26 - 000282624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstext40.dll
      2019-03-25 14:25 - 2017-07-07 17:29 - 001143296 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
      2019-03-25 14:25 - 2017-07-07 17:10 - 000973312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll
      2019-03-25 14:25 - 2017-07-01 15:05 - 000866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswdat10.dll
      2019-03-25 14:25 - 2017-07-01 15:05 - 000616448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl40.dll
      2019-03-25 14:25 - 2017-07-01 15:05 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
      2019-03-25 14:25 - 2017-07-01 15:05 - 000375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
      2019-03-25 14:25 - 2017-07-01 15:05 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
      2019-03-25 14:25 - 2017-07-01 15:05 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter40.dll
      2019-03-25 14:25 - 2017-06-13 00:49 - 001363456 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
      2019-03-25 14:25 - 2017-06-13 00:49 - 000594432 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
      2019-03-25 14:25 - 2017-06-13 00:49 - 000475136 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
      2019-03-25 14:25 - 2017-06-13 00:49 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
      2019-03-25 14:25 - 2017-06-13 00:29 - 001227264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
      2019-03-25 14:25 - 2017-06-13 00:29 - 000444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
      2019-03-25 14:25 - 2017-06-13 00:29 - 000390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
      2019-03-25 14:25 - 2017-06-13 00:28 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
      2019-03-25 14:25 - 2017-06-13 00:14 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
      2019-03-25 14:25 - 2017-06-13 00:14 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe
      2019-03-25 14:25 - 2017-06-13 00:06 - 000157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
      2019-03-25 14:25 - 2017-06-13 00:06 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resmon.exe
      2019-03-25 14:25 - 2017-06-02 10:10 - 000733696 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
      2019-03-25 14:25 - 2017-05-10 17:33 - 000091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe
      2019-03-25 14:25 - 2017-05-10 17:16 - 000091368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MigAutoPlay.exe
      2019-03-25 14:25 - 2017-04-28 00:50 - 003550208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
      2019-03-25 14:25 - 2017-04-04 16:53 - 000496128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
      2019-03-25 14:25 - 2017-03-30 17:03 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
      2019-03-25 14:25 - 2017-03-30 16:58 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
      2019-03-25 14:25 - 2017-03-10 18:32 - 001389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
      2019-03-25 14:25 - 2017-03-10 18:20 - 001508352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
      2019-03-25 14:25 - 2017-03-10 17:57 - 000009216 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
      2019-03-25 14:25 - 2017-03-07 18:30 - 000085504 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
      2019-03-25 14:25 - 2017-03-07 18:17 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
      2019-03-25 14:25 - 2017-03-04 03:27 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
      2019-03-25 14:25 - 2017-03-04 03:14 - 000077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll
      2019-03-25 14:25 - 2017-02-09 18:32 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
      2019-03-25 14:25 - 2017-02-09 18:14 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
      2019-03-25 14:25 - 2016-11-10 18:32 - 001009152 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
      2019-03-25 14:25 - 2016-11-10 18:19 - 000833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
      2019-03-25 14:25 - 2016-10-11 17:31 - 001148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
      2019-03-25 14:25 - 2016-10-11 17:31 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
      2019-03-25 14:25 - 2016-10-11 17:31 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
      2019-03-25 14:25 - 2016-10-11 17:31 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
      2019-03-25 14:25 - 2016-10-11 17:18 - 001027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME
      2019-03-25 14:25 - 2016-10-11 17:18 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
      2019-03-25 14:25 - 2016-10-11 17:18 - 000430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime
      2019-03-25 14:25 - 2016-10-11 17:18 - 000202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
      2019-03-25 14:25 - 2016-10-11 16:55 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
      2019-03-25 14:25 - 2016-10-11 15:33 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
      2019-03-25 14:25 - 2016-10-11 15:06 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
      2019-03-25 14:25 - 2016-09-12 23:08 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
      2019-03-25 14:25 - 2016-09-12 22:49 - 000076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
      2019-03-25 14:25 - 2016-09-08 22:34 - 000208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
      2019-03-25 14:25 - 2016-09-08 22:34 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
      2019-03-25 14:25 - 2016-09-08 16:55 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
      2019-03-25 14:25 - 2016-08-12 18:26 - 000461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
      2019-03-25 14:25 - 2016-08-06 17:31 - 002023424 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
      2019-03-25 14:25 - 2016-08-06 17:31 - 000347136 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
      2019-03-25 14:25 - 2016-08-06 17:31 - 000310784 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
      2019-03-25 14:25 - 2016-08-06 17:31 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
      2019-03-25 14:25 - 2016-08-06 17:31 - 000012800 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
      2019-03-25 14:25 - 2016-08-06 17:15 - 001178112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
      2019-03-25 14:25 - 2016-08-06 17:15 - 000249344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
      2019-03-25 14:25 - 2016-08-06 17:15 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
      2019-03-25 14:25 - 2016-08-06 17:15 - 000146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
      2019-03-25 14:25 - 2016-08-06 17:01 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
      2019-03-25 14:25 - 2016-08-06 17:01 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
      2019-03-25 14:25 - 2016-08-06 16:53 - 000199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
      2019-03-25 14:25 - 2016-08-06 16:53 - 000012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
      2019-03-25 14:25 - 2016-08-06 16:53 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
      2019-03-25 14:24 - 2019-03-06 05:14 - 000708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
      2019-03-25 14:24 - 2019-03-06 05:14 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
      2019-03-25 14:24 - 2019-03-06 05:13 - 005552872 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2019-03-25 14:24 - 2019-03-06 05:13 - 000262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
      2019-03-25 14:24 - 2019-03-06 05:12 - 001664360 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
      2019-03-25 14:24 - 2019-03-06 05:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
      2019-03-25 14:24 - 2019-03-06 05:04 - 003960552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
      2019-03-25 14:24 - 2019-03-06 05:01 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
      2019-03-25 14:24 - 2019-03-06 05:01 - 000556032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2019-03-25 14:24 - 2019-03-06 05:01 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
      2019-03-25 14:24 - 2019-03-06 05:01 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
      2019-03-25 14:24 - 2019-03-06 05:00 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
      2019-03-25 14:24 - 2019-03-06 05:00 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
      2019-03-25 14:24 - 2019-03-06 05:00 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
      2019-03-25 14:24 - 2019-03-06 04:45 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
      2019-03-25 14:24 - 2019-03-06 04:42 - 003228160 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2019-03-25 14:24 - 2019-03-06 04:41 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
      2019-03-25 14:24 - 2019-03-06 04:38 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
      2019-03-25 14:24 - 2019-03-06 04:37 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
      2019-03-25 14:24 - 2019-03-06 04:37 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
      2019-03-25 14:24 - 2019-03-06 04:37 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
      2019-03-25 14:24 - 2019-03-05 04:44 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
      2019-03-25 14:24 - 2019-03-05 04:44 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
      2019-03-25 14:24 - 2019-02-26 09:57 - 025737216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2019-03-25 14:24 - 2019-02-26 09:31 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
      2019-03-25 14:24 - 2019-02-26 09:31 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
      2019-03-25 14:24 - 2019-02-26 09:25 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
      2019-03-25 14:24 - 2019-02-26 09:22 - 005777920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2019-03-25 14:24 - 2019-02-26 09:21 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
      2019-03-25 14:24 - 2019-02-26 09:20 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
      2019-03-25 14:24 - 2019-02-26 09:20 - 000790528 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2019-03-25 14:24 - 2019-02-26 09:09 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
      2019-03-25 14:24 - 2019-02-26 08:59 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
      2019-03-25 14:24 - 2019-02-26 08:58 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2019-03-25 14:24 - 2019-02-26 08:46 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
      2019-03-25 14:24 - 2019-02-26 08:43 - 015284224 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2019-03-25 14:24 - 2019-02-26 08:41 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
      2019-03-25 14:24 - 2019-02-26 08:29 - 004858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2019-03-25 14:24 - 2019-02-22 05:07 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
      2019-03-25 14:24 - 2019-02-22 04:55 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
      2019-03-25 14:24 - 2019-02-16 08:02 - 002072576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
      2019-03-25 14:24 - 2019-02-16 08:02 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
      2019-03-25 14:24 - 2019-02-16 08:02 - 000516608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
      2019-03-25 14:24 - 2019-02-16 08:02 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
      2019-03-25 14:24 - 2019-02-16 07:50 - 001425920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
      2019-03-25 14:24 - 2019-02-16 07:50 - 000583680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
      2019-03-25 14:24 - 2019-02-16 07:50 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
      2019-03-25 14:24 - 2019-02-10 18:10 - 001680104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
      2019-03-25 14:24 - 2019-02-10 17:36 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
      2019-03-25 14:24 - 2019-02-08 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
      2019-03-25 14:24 - 2019-02-08 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
      2019-03-25 14:24 - 2019-02-08 17:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
      2019-03-25 14:24 - 2019-02-08 17:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
      2019-03-25 14:24 - 2019-02-07 18:06 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\bridgeres.dll
      2019-03-25 14:24 - 2019-02-07 18:01 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
      2019-03-25 14:24 - 2019-01-04 18:13 - 000143592 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
      2019-03-25 14:24 - 2019-01-04 18:07 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 002862592 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
      2019-03-25 14:24 - 2019-01-04 16:05 - 001635328 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 000799744 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 000451584 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
      2019-03-25 14:24 - 2019-01-04 16:05 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
      2019-03-25 14:24 - 2019-01-03 18:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
      2019-03-25 14:24 - 2019-01-03 17:55 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
      2019-03-25 14:24 - 2019-01-01 18:05 - 003247104 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
      2019-03-25 14:24 - 2019-01-01 18:05 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
      2019-03-25 14:24 - 2019-01-01 17:58 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
      2019-03-25 14:24 - 2018-12-08 05:08 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
      2019-03-25 14:24 - 2018-12-08 05:08 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
      2019-03-25 14:24 - 2018-12-08 05:08 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
      2019-03-25 14:24 - 2018-12-08 05:08 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
      2019-03-25 14:24 - 2018-12-08 05:08 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
      2019-03-25 14:24 - 2018-12-08 04:56 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp
      2019-03-25 14:24 - 2018-12-08 04:41 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
      2019-03-25 14:24 - 2018-12-02 18:06 - 000687616 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
      2019-03-25 14:24 - 2018-11-18 04:56 - 000459632 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
      2019-03-25 14:24 - 2018-11-18 04:44 - 000634272 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
      2019-03-25 14:24 - 2018-11-18 04:44 - 000546656 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
      2019-03-25 14:24 - 2018-11-18 04:43 - 000467856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
      2019-03-25 14:24 - 2018-11-11 19:01 - 000366824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
      2019-03-25 14:24 - 2018-11-11 18:58 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
      2019-03-25 14:24 - 2018-10-06 18:03 - 000383720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
      2019-03-25 14:24 - 2018-10-06 17:59 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
      2019-03-25 14:24 - 2018-10-06 17:59 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
      2019-03-25 14:24 - 2018-10-06 17:58 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
      2019-03-25 14:24 - 2018-10-06 17:58 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
      2019-03-25 14:24 - 2018-10-06 17:44 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
      2019-03-25 14:24 - 2018-10-06 17:43 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
      2019-03-25 14:24 - 2018-10-06 17:16 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
      2019-03-25 14:24 - 2018-10-06 15:05 - 002565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
      2019-03-25 14:24 - 2018-08-30 03:47 - 001230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
      2019-03-25 14:24 - 2018-08-30 03:10 - 001424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
      2019-03-25 14:24 - 2018-08-28 07:50 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
      2019-03-25 14:24 - 2018-08-12 22:31 - 001894496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
      2019-03-25 14:24 - 2018-08-10 17:55 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
      2019-03-25 14:24 - 2018-08-10 17:54 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
      2019-03-25 14:24 - 2018-08-10 17:54 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
      2019-03-25 14:24 - 2018-08-10 17:27 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
      2019-03-25 14:24 - 2018-07-06 18:09 - 000947904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
      2019-03-25 14:24 - 2018-06-08 18:19 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
      2019-03-25 14:24 - 2018-05-15 05:44 - 001159680 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
      2019-03-25 14:24 - 2018-05-15 05:13 - 000782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
      2019-03-25 14:24 - 2018-05-11 23:19 - 000977408 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
      2019-03-25 14:24 - 2018-05-02 17:32 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
      2019-03-25 14:24 - 2018-05-02 17:32 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
      2019-03-25 14:24 - 2018-04-10 18:35 - 001735168 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
      2019-03-25 14:24 - 2018-03-14 18:53 - 002651648 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
      2019-03-25 14:24 - 2018-03-06 20:07 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
      2019-03-25 14:24 - 2018-02-10 20:35 - 000334528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
      2019-03-25 14:24 - 2018-02-10 20:11 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
      2019-03-25 14:24 - 2018-02-10 19:36 - 000108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe
      2019-03-25 14:24 - 2018-02-10 19:26 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
      2019-03-25 14:24 - 2018-02-10 19:26 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
      2019-03-25 14:24 - 2018-01-12 18:40 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
      2019-03-25 14:24 - 2018-01-01 04:21 - 000288488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
      2019-03-25 14:24 - 2018-01-01 04:21 - 000213736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
      2019-03-25 14:24 - 2018-01-01 04:18 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
      2019-03-25 14:24 - 2018-01-01 04:18 - 000705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
      2019-03-25 14:24 - 2018-01-01 04:18 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
      2019-03-25 14:24 - 2018-01-01 04:18 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
      2019-03-25 14:24 - 2018-01-01 04:18 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
      2019-03-25 14:24 - 2018-01-01 03:55 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
      2019-03-25 14:24 - 2018-01-01 03:50 - 000455680 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
      2019-03-25 14:24 - 2017-12-05 19:36 - 000625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
      2019-03-25 14:24 - 2017-12-05 19:36 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
      2019-03-25 14:24 - 2017-12-05 19:08 - 000215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
      2019-03-25 14:24 - 2017-11-02 18:55 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
      2019-03-25 14:24 - 2017-11-02 18:55 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
      2019-03-25 14:24 - 2017-11-02 17:11 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
      2019-03-25 14:24 - 2017-11-02 17:11 - 000115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
      2019-03-25 14:24 - 2017-11-02 16:56 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
      2019-03-25 14:24 - 2017-10-12 02:20 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
      2019-03-25 14:24 - 2017-09-13 17:28 - 000886272 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
      2019-03-25 14:24 - 2017-09-13 17:28 - 000414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
      2019-03-25 14:24 - 2017-09-13 17:28 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
      2019-03-25 14:24 - 2017-09-13 17:09 - 000428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
      2019-03-25 14:24 - 2017-09-13 17:09 - 000392704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
      2019-03-25 14:24 - 2017-09-13 17:09 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
      2019-03-25 14:24 - 2017-09-13 17:09 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
      2019-03-25 14:24 - 2017-08-16 17:29 - 000806912 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
      2019-03-25 14:24 - 2017-08-16 17:10 - 000629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
      2019-03-25 14:24 - 2017-08-14 19:35 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
      2019-03-25 14:24 - 2017-08-11 08:35 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
      2019-03-25 14:24 - 2017-08-11 07:58 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
      2019-03-25 14:24 - 2017-07-07 17:33 - 000363752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys
      2019-03-25 14:24 - 2017-07-06 06:56 - 000119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
      2019-03-25 14:24 - 2017-06-13 00:14 - 000379392 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
      2019-03-25 14:24 - 2017-06-13 00:06 - 000303616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
      2019-03-25 14:24 - 2017-05-12 18:25 - 001251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
      2019-03-25 14:24 - 2017-05-12 17:58 - 001648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
      2019-03-25 14:24 - 2017-05-12 17:58 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
      2019-03-25 14:24 - 2017-04-12 15:05 - 004296704 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
      2019-03-25 14:24 - 2017-03-10 18:32 - 000300544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
      2019-03-25 14:24 - 2017-03-10 18:20 - 000237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
      2019-03-25 14:24 - 2017-02-09 18:32 - 000769536 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
      2019-03-25 14:24 - 2016-10-11 17:32 - 000069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
      2019-03-25 14:24 - 2016-10-11 17:31 - 000176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime
      2019-03-25 14:24 - 2016-10-11 17:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime
      2019-03-25 14:24 - 2016-10-11 17:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:31 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
      2019-03-25 14:24 - 2016-10-11 17:31 - 000132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime
      2019-03-25 14:24 - 2016-10-11 17:18 - 000069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll
      2019-03-25 14:24 - 2016-09-08 22:34 - 000263680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
      2019-03-25 14:24 - 2016-09-08 22:34 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
      2019-03-25 14:24 - 2016-08-06 17:31 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
      2019-03-25 14:24 - 2016-08-06 17:15 - 000054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
      2019-03-25 14:19 - 2019-02-10 18:41 - 011411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 003207168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 001329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 001177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 001005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
      2019-03-25 14:19 - 2019-02-10 18:41 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
      2019-03-25 14:19 - 2019-02-10 18:29 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
      2019-03-25 14:19 - 2019-02-10 18:29 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
      2019-03-25 14:19 - 2019-02-10 18:29 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
      2019-03-25 14:19 - 2019-02-10 18:28 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
      2019-03-25 14:19 - 2019-02-10 18:28 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
      2019-03-25 14:19 - 2019-02-10 18:10 - 000094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
      2019-03-25 14:19 - 2019-02-10 18:09 - 014635520 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
      2019-03-25 14:19 - 2019-02-10 18:09 - 001574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
      2019-03-25 14:19 - 2019-02-10 18:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
      2019-03-25 14:19 - 2019-02-10 18:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 004120576 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 001484800 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 001202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
      2019-03-25 14:19 - 2019-02-10 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
      2019-03-25 14:19 - 2019-02-10 18:07 - 000842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
      2019-03-25 14:19 - 2019-02-10 18:07 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
      2019-03-25 14:19 - 2019-02-10 18:07 - 000438784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
      2019-03-25 14:19 - 2019-02-10 18:07 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
      2019-03-25 14:19 - 2019-02-10 18:02 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
      2019-03-25 14:19 - 2019-02-10 17:50 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
      2019-03-25 14:19 - 2019-02-10 17:49 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
      2019-03-25 14:19 - 2019-02-10 17:49 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
      2019-03-25 14:19 - 2019-02-10 17:38 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
      2019-03-25 14:19 - 2019-02-10 17:38 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
      2019-03-25 14:15 - 2015-07-15 05:19 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
      2019-03-25 14:14 - 2015-12-08 23:54 - 002285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
      2019-03-25 14:14 - 2015-12-08 23:54 - 001620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 001568768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 001325056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000740352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
      2019-03-25 14:14 - 2015-12-08 23:54 - 000739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
      2019-03-25 14:14 - 2015-12-08 23:54 - 000154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000970240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2adec.dll
      2019-03-25 14:14 - 2015-12-08 23:53 - 000829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
      2019-03-25 14:14 - 2015-12-08 23:53 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
      2019-03-25 14:14 - 2015-12-08 23:53 - 000153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
      2019-03-25 14:14 - 2015-12-08 23:53 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
      2019-03-25 14:14 - 2015-12-08 23:53 - 000053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
      2019-03-25 14:14 - 2015-12-08 23:53 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 002777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 001955328 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 001888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 001575424 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 001307136 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 001232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 001160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 001026048 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 001010688 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 000978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000653824 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000642048 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000447488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 000292352 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000189952 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
      2019-03-25 14:14 - 2015-12-08 21:07 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
      2019-03-25 14:14 - 2015-12-08 21:07 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
      2019-03-25 14:14 - 2015-12-08 21:06 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
      2019-03-25 14:14 - 2015-12-08 20:54 - 000116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
      2019-03-25 14:14 - 2015-12-08 20:12 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
      2019-03-25 14:14 - 2015-12-08 20:11 - 000005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
      2019-03-25 14:14 - 2015-11-14 01:09 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
      2019-03-25 14:14 - 2015-11-14 01:09 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
      2019-03-25 14:14 - 2015-11-14 01:08 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
      2019-03-25 14:14 - 2015-11-14 00:50 - 000076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
      2019-03-25 14:14 - 2015-11-14 00:50 - 000076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
      2019-03-25 14:14 - 2015-11-14 00:49 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
      2019-03-25 14:14 - 2015-07-10 19:51 - 003722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
      2019-03-25 14:14 - 2015-07-10 19:51 - 000158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
      2019-03-25 14:14 - 2015-07-10 19:51 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
      2019-03-25 14:14 - 2015-07-10 19:34 - 003221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
      2019-03-25 14:14 - 2015-07-10 19:34 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
      2019-03-25 14:14 - 2015-07-10 19:33 - 000131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
      2019-03-25 14:14 - 2015-06-02 02:07 - 000254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
      2019-03-25 14:14 - 2015-06-02 01:47 - 000210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
      2019-03-25 14:13 - 2016-05-11 19:02 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
      2019-03-25 14:13 - 2016-05-11 19:02 - 000296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
      2019-03-25 14:13 - 2016-05-11 17:19 - 000231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
      2019-03-25 14:13 - 2016-05-11 17:19 - 000206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
      2019-03-25 14:13 - 2016-04-14 15:49 - 000603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
      2019-03-25 14:13 - 2016-04-14 15:21 - 000647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
      2019-03-25 14:13 - 2016-02-09 11:55 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
      2019-03-25 14:13 - 2016-02-05 03:19 - 000381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
      2019-03-25 14:13 - 2016-02-04 20:41 - 000296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
      2019-03-25 14:13 - 2016-02-03 20:07 - 000091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
      2019-03-25 14:13 - 2016-01-22 08:18 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
      2019-03-25 14:13 - 2016-01-22 08:18 - 000723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
      2019-03-25 14:13 - 2016-01-22 08:17 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
      2019-03-25 14:13 - 2016-01-22 08:04 - 000642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
      2019-03-25 14:13 - 2016-01-22 08:04 - 000535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
      2019-03-25 14:13 - 2016-01-22 08:02 - 000176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
      2019-03-25 14:13 - 2016-01-22 08:02 - 000114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
      2019-03-25 14:13 - 2016-01-06 21:02 - 000275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
      2019-03-25 14:13 - 2016-01-06 20:41 - 000216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
      2019-03-25 14:13 - 2015-12-08 23:53 - 000509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
      2019-03-25 14:13 - 2015-12-08 21:07 - 000624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
      2019-03-25 14:13 - 2015-11-05 21:05 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
      2019-03-25 14:13 - 2015-11-05 21:02 - 000014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
      2019-03-25 14:13 - 2015-11-05 11:53 - 000146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
      2019-03-25 14:13 - 2015-07-09 19:57 - 000193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
      2019-03-25 14:13 - 2015-07-09 19:57 - 000193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
      2019-03-25 14:13 - 2015-07-09 19:42 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
      2019-03-25 14:13 - 2015-04-24 20:17 - 000633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
      2019-03-25 14:13 - 2015-04-24 19:56 - 000530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
      2019-03-25 14:13 - 2015-04-13 05:28 - 000328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
      2019-03-25 14:12 - 2016-04-06 17:27 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
      2019-03-25 14:12 - 2015-03-04 06:41 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
      2019-03-25 14:12 - 2015-03-04 06:10 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
      2019-03-25 14:00 - 2016-05-12 19:15 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
      (Microsoft Corporation) C:\Windows\system32\winipsec.dll
      2019-03-25 14:00 - 2016-05-12 19:14 - 000794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
      2019-03-25 14:00 - 2016-05-12 19:14 - 000502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
      2019-03-25 14:00 - 2016-05-12 19:14 - 000373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
      2019-03-25 14:00 - 2016-05-12 19:14 - 000096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
      2019-03-25 14:00 - 2016-05-12 19:14 - 000075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
      2019-03-25 14:00 - 2016-05-12 17:18 - 000274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
      2019-03-25 14:00 - 2016-05-12 17:18 - 000079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
      2019-03-25 14:00 - 2016-05-12 17:18 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
      2019-03-25 14:00 - 2016-05-12 17:18 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
      2019-03-25 14:00 - 2015-11-03 21:04 - 000241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
      2019-03-25 14:00 - 2015-11-03 20:55 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
      2019-03-19 12:41 - 2019-03-19 12:41 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
      2019-03-19 12:41 - 2019-03-19 12:41 - 000002124 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk
      2019-03-18 12:11 - 2019-03-18 12:11 - 000242155 _____ C:\Users\user\Downloads\Ustav.pdf
      2019-03-14 10:50 - 2019-03-14 10:50 - 000000000 ____D C:\Users\user\AppData\Local\AllInOneDocsTooltab
      2019-03-06 12:59 - 2019-03-18 11:35 - 000000000 ____D C:\Users\user\Downloads\атлетик васка
      2019-03-05 15:24 - 2019-03-05 15:24 - 000556197 _____ C:\Users\user\Downloads\Get.pdf
      2019-03-05 15:19 - 2019-03-05 15:19 - 000605192 _____ C:\Users\user\Downloads\Get_Еxercises.pdf
      2019-03-05 13:24 - 2019-03-05 13:24 - 000752080 _____ C:\Users\user\Downloads\Get - Втора част.pdf
      ==================== One month (modified) ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2019-03-28 12:09 - 2013-11-20 03:49 - 000000000 ____D C:\Users\user\AppData\Roaming\uTorrent
      2019-03-28 12:00 - 2018-10-23 17:55 - 000000000 ____D C:\FRST
      2019-03-28 11:19 - 2017-11-21 10:58 - 000000000 ____D C:\Users\user\AppData\Local\AVAST Software
      2019-03-28 09:23 - 2016-12-06 12:51 - 000000000 ____D C:\Users\user\AppData\LocalLow\Mozilla
      2019-03-28 06:29 - 2017-09-03 07:26 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
      2019-03-28 06:29 - 2013-11-20 11:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
      2019-03-28 06:13 - 2009-07-14 06:45 - 000022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2019-03-28 06:13 - 2009-07-14 06:45 - 000022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2019-03-28 06:02 - 2009-07-14 07:13 - 000785366 _____ C:\Windows\system32\PerfStringBackup.INI
      2019-03-28 06:02 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
      2019-03-28 06:00 - 2014-03-26 15:13 - 000003330 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
      2019-03-28 06:00 - 2014-03-26 15:13 - 000003202 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
      2019-03-28 05:54 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2019-03-27 07:17 - 2018-01-02 19:18 - 000007986 _____ C:\Windows\BRRBCOM.INI
      2019-03-26 18:29 - 2018-12-30 18:19 - 000004044 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1546186750
      2019-03-26 12:28 - 2018-10-18 11:50 - 000000464 _____ C:\Windows\Tasks\Wise Registry Cleaner Schedule Task.job
      2019-03-26 12:24 - 2019-02-06 22:46 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update
      2019-03-26 12:24 - 2019-02-06 22:46 - 000002786 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
      2019-03-26 12:24 - 2018-10-18 11:50 - 000003332 _____ C:\Windows\System32\Tasks\Wise Registry Cleaner Schedule Task
      2019-03-26 12:24 - 2015-12-04 13:03 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
      2019-03-26 12:24 - 2014-12-26 07:09 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
      2019-03-26 10:06 - 2014-05-11 05:17 - 000000000 __SHD C:\Users\user\AppData\Local\EmieUserList
      2019-03-26 10:06 - 2014-05-11 05:17 - 000000000 __SHD C:\Users\user\AppData\Local\EmieSiteList
      2019-03-26 09:57 - 2015-03-11 16:02 - 000000000 ____D C:\Temp
      2019-03-26 09:31 - 2013-11-20 12:04 - 000000000 ____D C:\Users\user\AppData\LocalLow\Adobe
      2019-03-26 09:30 - 2018-09-22 14:01 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
      2019-03-26 09:28 - 2019-02-06 22:46 - 000000782 _____ C:\Users\Public\Desktop\CCleaner.lnk
      2019-03-26 09:28 - 2018-03-13 15:03 - 000001266 _____ C:\Users\Public\Desktop\Skype.lnk
      2019-03-26 09:28 - 2018-03-13 15:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
      2019-03-26 09:22 - 2015-07-17 10:56 - 000000000 ___RD C:\Users\user\Dropbox
      2019-03-26 09:17 - 2018-10-24 11:47 - 003806881 ____H C:\Users\user\AppData\Local\IconCache.db.backup
      2019-03-26 09:14 - 2017-04-03 11:38 - 000003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
      2019-03-26 09:13 - 2019-02-18 11:15 - 000249152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
      2019-03-26 09:13 - 2018-10-23 11:46 - 000042496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
      2019-03-26 09:13 - 2014-12-26 07:18 - 000476256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
      2019-03-26 09:13 - 2014-12-26 07:18 - 000380160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
      2019-03-26 09:13 - 2014-12-26 07:18 - 000220632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
      2019-03-26 09:13 - 2014-12-26 07:18 - 000169104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
      2019-03-26 09:13 - 2014-12-26 07:18 - 000112520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
      2019-03-26 09:13 - 2014-12-26 07:18 - 000088152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
      2019-03-26 09:12 - 2019-01-14 16:39 - 000254408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
      2019-03-26 09:12 - 2019-01-12 08:39 - 000320904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswblog.sys
      2019-03-26 09:12 - 2019-01-12 08:39 - 000196304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
      2019-03-26 09:12 - 2019-01-12 08:39 - 000058168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
      2019-03-26 09:12 - 2019-01-12 08:39 - 000037320 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
      2019-03-26 09:12 - 2017-11-17 05:51 - 000205608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
      2019-03-26 09:12 - 2014-12-26 07:18 - 001034640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
      2019-03-26 04:41 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\AppCompat
      2019-03-26 00:56 - 2015-02-13 14:37 - 000002184 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2019-03-25 20:22 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache
      2019-03-25 15:40 - 2013-11-20 14:26 - 000117328 _____ C:\Users\user\AppData\Local\GDIPFONTCACHEV1.DAT
      2019-03-25 15:39 - 2015-05-31 20:57 - 000000000 ___RD C:\Users\user\Podcasts
      2019-03-25 15:39 - 2009-07-14 07:09 - 000000000 ____D C:\Windows\System32\Tasks\WPD
      2019-03-25 15:39 - 2009-07-14 06:57 - 000001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
      2019-03-25 15:34 - 2009-07-14 06:45 - 000447336 _____ C:\Windows\system32\FNTCACHE.DAT
      2019-03-25 15:30 - 2011-04-12 10:28 - 000000000 ____D C:\Program Files\Windows Journal
      2019-03-25 15:30 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\DVD Maker
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Setup
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\migwiz
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Setup
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\migwiz
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Dism
      2019-03-25 15:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\PolicyDefinitions
      2019-03-25 14:55 - 2015-02-28 14:16 - 000000000 ____D C:\Windows\system32\MRT
      2019-03-25 14:47 - 2015-02-28 14:15 - 127411920 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2019-03-24 15:42 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
      2019-03-19 12:41 - 2014-03-08 07:34 - 000000000 ____D C:\Program Files\Google
      2019-03-12 12:16 - 2013-11-20 12:01 - 000000000 ____D C:\Program Files (x86)\The KMPlayer
      2019-03-12 05:23 - 2018-09-22 00:49 - 000000600 _____ C:\Users\user\AppData\Roaming\winscp.rnd
      2019-03-11 22:33 - 2018-09-30 11:52 - 000000000 ____D C:\Users\user\Desktop\TEODOR
      2019-03-09 12:51 - 2019-02-06 22:46 - 000000000 ____D C:\Program Files\CCleaner
      2019-03-05 23:04 - 2018-04-14 11:02 - 000000000 ____D C:\Users\user\Desktop\P15-01_visit templates
      2019-03-02 07:54 - 2013-11-20 11:59 - 000000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
      2019-03-02 07:54 - 2013-11-20 11:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
      2019-03-02 07:54 - 2013-11-20 11:59 - 000000000 ____D C:\Program Files\WinRAR
      ==================== Files in the root of some directories =======
      2018-09-22 00:49 - 2019-03-12 05:23 - 000000600 _____ () C:\Users\user\AppData\Roaming\winscp.rnd
      ==================== Bamital & volsnap ======================
      (There is no automatic fix for files that do not pass verification.)
      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\dllhost.exe => File is digitally signed
      C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
      LastRegBack: 2019-03-25 09:27
      ==================== End of FRST.txt ============================

       
      Addition.txt
    • от ivan_pop
      Здравейте!
      Засякох Троянец който изтрих.Ако може една проверка за вируси?
      Win8.1/32bit
      Нямам оплаквания от работата на компютъра(лаптоп).
      Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-03-2019
      Ran by Vanka (administrator) on IVAN (27-03-2019 19:24:51)
      Running from C:\Users\Vanka\Desktop
      Loaded Profiles: Vanka (Available Profiles: Vanka)
      Platform: Microsoft Windows 8.1 Enterprise (Update) (X86) Language: English (United States)
      Default browser: Chrome
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
      (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
      (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
      (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
      () [File not signed] C:\Program Files\Realtek\REALTEK Bluetooth\BTDevMgr.exe
      (CrypKey (Canada) Ltd.) [File not signed] C:\Windows\System32\Crypserv.exe
      (Digital Wave Ltd -> Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
      (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed] C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe
      (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplms.exe
      (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
      (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
      (VMware, Inc. -> VMware, Inc.) C:\Windows\System32\vmnat.exe
      (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\pg_ctl.exe
      (VMware, Inc. -> VMware, Inc.) C:\Program Files\VMware\VMware Player\vmware-authd.exe
      (VMware, Inc. -> VMware, Inc.) C:\Windows\System32\vmnetdhcp.exe
      (VMware, Inc. -> VMware, Inc.) C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\postgres.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\postgres.exe
      (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplmv.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\postgres.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\postgres.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\postgres.exe
      (PostgreSQL Global Development Group) [File not signed] C:\Program Files\ATRis_Technik\pgsql\bin\postgres.exe
      (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe
      (HP Inc. -> HP Inc.) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
      (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
      (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
      (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
      (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
      (CHENGDU YIWO Tech Development Co., Ltd. -> ) [File not signed] C:\Program Files\EaseUS\Todo Backup\bin\TodoBackupService.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      (Google LLC -> Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Drivers32: [VIDC.VMnc] => C:\Windows\system32\vmnc.dll [360528 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\73.0.3683.86\Installer\chrmstp.exe [2019-03-26] (Google LLC -> Google Inc.)
      GroupPolicy: Restriction ? <==== ATTENTION
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
      Tcpip\..\Interfaces\{77F6F871-16E3-4748-90A7-7C5866B35451}: [DhcpNameServer] 192.168.0.1
      Internet Explorer:
      ==================
      HKU\S-1-5-21-3136552650-2365130857-356673686-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
      HKU\S-1-5-21-3136552650-2365130857-356673686-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
      BHO: Adobe PDF Reader Link Helper -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
      BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2018-10-31] (Microsoft Corporation -> Microsoft Corporation)
      BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
      IE Session Restore: HKU\S-1-5-21-3136552650-2365130857-356673686-1001 -> is enabled.
      DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
      DPF: {CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA} hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
      Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2018-03-14] (Microsoft Corporation -> Microsoft Corporation)
      FireFox:
      ========
      FF DefaultProfile: 0r0ddk0y.default-1538076306800
      FF ProfilePath: C:\Users\Vanka\AppData\Roaming\Mozilla\Firefox\Profiles\0r0ddk0y.default-1538076306800 [2019-03-04]
      FF Extension: (Telemetry coverage) - C:\Users\Vanka\AppData\Roaming\Mozilla\Firefox\Profiles\0r0ddk0y.default-1538076306800\features\{0276cc46-1c6e-4fb5-90cb-58f820b6e0bd}\telemetry-coverage-bug1487578@mozilla.org.xpi [2018-09-27] [Legacy]
      FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-10-31] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
      FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-24] (Google Inc -> Google Inc.)
      FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-24] (Google Inc -> Google Inc.)
      FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN -> VideoLAN)
      Chrome: 
      =======
      CHR HomePage: Default -> hxxps://www.google.com/?hl=bg
      CHR DefaultSearchURL: Default -> hxxps://www.google.bg/search?source=hp&ei=puTaW6nkGcuVkwWo3pvwCA&btnG=%D0%A2%D1%8A%D1%80%D1%81%D0%B5%D0%BD%D0%B5&q={searchTerms}&oq=BiGas+&gs_l=psy-ab.1.1.0l10.228878.235855.0.240374.6.6.0.0.0.0.119.511.5j1.6.0....0...1c.1.64.psy-ab..0.6.509...0i10k1.0.M9MP0hQ3K4s
      CHR Profile: C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default [2019-03-27]
      CHR Extension: (Презентации) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-12-24]
      CHR Extension: (Документи) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-12-24]
      CHR Extension: (Google Диск) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-12-24]
      CHR Extension: (MEGA) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2019-03-24]
      CHR Extension: (YouTube) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-12-24]
      CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-03-13]
      CHR Extension: (I don't care about cookies) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihnjjcciajhdojfnbdddfaoknhalnja [2019-03-13]
      CHR Extension: (Google Документи офлайн) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-12-24]
      CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-12-24]
      CHR Extension: (Gmail) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-12-24]
      CHR Extension: (Chrome Media Router) - C:\Users\Vanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-03-26]
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [209408 2014-07-22] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
      R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [276992 2014-07-05] (Advanced Micro Devices, Inc.) [File not signed]
      R2 BTDevManager; C:\Program Files\REALTEK\Realtek Bluetooth\BTDevMgr.exe [88064 2014-10-09] () [File not signed]
      R2 CrypKey License; C:\Windows\system32\crypserv.exe [126976 2010-03-18] (CrypKey (Canada) Ltd.) [File not signed]
      R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-03-22] (Digital Wave Ltd -> Digital Wave Ltd.)
      R2 EaseUS Agent; C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe [37416 2015-06-23] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R2 hasplms; C:\Windows\system32\hasplms.exe [4295208 2017-07-07] (SafeNet Canada, Inc. -> SafeNet, Inc.)
      R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [347512 2018-12-06] (HP Inc. -> HP Inc.)
      R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [254680 2015-05-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
      R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [208040 2015-05-07] (Synaptics Incorporated -> Synaptics Incorporated)
      R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11665136 2019-01-16] (TeamViewer GmbH -> TeamViewer GmbH)
      R2 VMAuthdService; C:\Program Files\VMware\VMware Player\vmware-authd.exe [87120 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      R2 VMnetDHCP; C:\Windows\system32\vmnetdhcp.exe [357456 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      R2 VMUSBArbService; C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe [721048 2012-10-11] (VMware, Inc. -> VMware, Inc.)
      R2 VMware NAT Service; C:\Windows\system32\vmnat.exe [436304 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
      R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103696 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
      R2 WorkshopDbService; "C:\Program Files\ATRis_Technik\pgsql\bin\pg_ctl.exe" runservice  -N WorkshopDbService -D "C:\ProgramData\WorkshopData\data2" -w 
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R2 aksfridge; C:\Windows\system32\drivers\aksfridge.sys [450904 2017-07-07] (SafeNet, Inc. -> SafeNet, Inc.)
      R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [15080 2013-10-24] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, INC.)
      R3 amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [11529216 2014-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
      R3 amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [501248 2014-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
      S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [16088 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
      S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [26168 2016-01-28] (Disc Soft Ltd -> Disc Soft Ltd)
      S3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [40504 2016-01-28] (Disc Soft Ltd -> Disc Soft Ltd)
      R0 EUBAKUP; C:\Windows\System32\drivers\eubakup.sys [51752 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [41512 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [File not signed]
      R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [15912 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [189992 2014-12-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) [File not signed]
      R2 eusk2par; C:\Windows\system32\Drivers\eusk2par.sys [25680 2008-12-18] (Aladdin Knowledge Systems LTD  -> Aladdin Knowledge Systems Ltd.)
      S3 FTDIBUS; C:\Windows\system32\drivers\autrbus.sys [47249 2006-05-18] (Microsoft Windows Hardware Compatibility Publisher -> FTDI Ltd.)
      S3 FTSER2K; C:\Windows\system32\drivers\autrser2k.sys [61067 2006-05-18] (Microsoft Windows Hardware Compatibility Publisher -> FTDI Ltd.)
      R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [606760 2017-07-07] (SafeNet Canada, Inc. -> SafeNet, Inc.)
      R2 hcmon; C:\Windows\system32\drivers\hcmon.sys [41496 2012-10-11] (VMware, Inc. -> VMware, Inc.)
      S3 iaioi2c; C:\Windows\System32\drivers\iaioi2c.sys [61936 2013-07-23] (MCG Windows Development and Validation -> Intel Corporation)
      S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [524784 2013-08-10] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
      S3 MDA_NTDRV; C:\Windows\system32\MDA_NTDRV.sys [31224 2019-01-25] (Bada Technology Co.,Ltd -> )
      R1 NetworkX; C:\Windows\System32\ckldrv.sys [23360 2010-03-19] (CrypKey (Canada) Inc. -> )
      R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [525568 2015-06-02] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
      R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [5357056 2016-12-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
      S3 Ser2pl; C:\Windows\system32\DRIVERS\ser2pl.sys [211648 2018-11-28] (WDKTestCert charles-yeh,131345514351795974 -> Prolific Technology Inc.)
      S3 Ser2plx86; C:\Windows\system32\DRIVERS\ser2pl.sys [211648 2018-11-28] (WDKTestCert charles-yeh,131345514351795974 -> Prolific Technology Inc.)
      R3 SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver_AMDASF.sys [25768 2015-05-07] (Synaptics Incorporated -> Synaptics Incorporated)
      S3 SNTNLUSB; C:\Windows\System32\drivers\SNTNLUSB.SYS [38376 2009-09-17] (SafeNet, Inc. -> SafeNet, Inc.)
      S0 sptd; C:\Windows\System32\Drivers\sptd.sys [685816 2018-05-30] (Duplex Secure Ltd -> Duplex Secure Ltd.)
      R3 vmkbd; C:\Windows\system32\drivers\VMkbd.sys [26064 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      S3 VMnetAdapter; C:\Windows\system32\DRIVERS\vmnetadapter.sys [16664 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      R2 VMnetBridge; C:\Windows\system32\DRIVERS\vmnetbridge.sys [37016 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      R2 VMnetuserif; C:\Windows\system32\drivers\vmnetuserif.sys [26192 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      S3 vmusb; C:\Windows\System32\Drivers\vmusb.sys [31280 2012-10-11] (VMware, Inc. -> VMware, Inc.)
      R2 vmx86; C:\Windows\system32\Drivers\vmx86.sys [62416 2013-02-26] (VMware, Inc. -> VMware, Inc.)
      S1 vtzkusmf; C:\Windows\system32\drivers\vtzkusmf.sys [63448 2019-03-26] (Microsoft Corporation -> Microsoft Corporation)
      S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [38920 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
      R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [231256 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
      S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [85336 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
      S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver86.sys [29792 2016-03-23] (Hewlett-Packard Company -> HP)
      R3 WirelessButtonDriver86; C:\Windows\System32\drivers\WirelessButtonDriver86.sys [29792 2016-03-23] (Hewlett-Packard Company -> HP)
      S3 WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [190976 2014-11-21] (Microsoft Windows -> Microsoft Corporation)
      S3 audas0; \SystemRoot\System32\drivers\audas0.sys [X]
      S3 BlueletAudio; \SystemRoot\system32\DRIVERS\blueletaudio.sys [X]
      S3 BlueletSCOAudio; \SystemRoot\system32\DRIVERS\BlueletSCOAudio.sys [X]
      S3 BT; \SystemRoot\system32\DRIVERS\btnetdrv.sys [X]
      S3 btaudio; \SystemRoot\system32\drivers\btaudio.sys [X]
      S3 BTDriver; \SystemRoot\system32\DRIVERS\btport.sys [X]
      S0 BTHidEnum; System32\Drivers\vbtenum.sys [X]
      S0 BTHidMgr; System32\Drivers\BTHidMgr.sys [X]
      S3 BTKRNL; \SystemRoot\system32\DRIVERS\btkrnl.sys [X]
      S3 BTWDNDIS; \SystemRoot\system32\DRIVERS\btwdndis.sys [X]
      S3 BTWUSB; \SystemRoot\System32\Drivers\btwusb.sys [X]
      S3 VComm; \SystemRoot\system32\DRIVERS\VComm.sys [X]
      S3 VcommMgr; \SystemRoot\System32\Drivers\VcommMgr.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One month (created) ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2019-03-27 19:24 - 2019-03-27 19:26 - 000019663 _____ C:\Users\Vanka\Desktop\FRST.txt
      2019-03-27 19:24 - 2019-03-27 19:24 - 000000000 ____D C:\FRST
      2019-03-27 19:22 - 2019-03-27 19:22 - 001793024 _____ (Farbar) C:\Users\Vanka\Desktop\FRST.exe
      2019-03-26 10:10 - 2019-03-26 10:10 - 000063448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vtzkusmf.sys
      2019-03-25 23:18 - 2019-03-25 23:18 - 000009680 _____ C:\Users\Vanka\AppData\Local\Tempastraheobd_dba_ellemeet.svgz
      2019-03-25 21:49 - 2019-03-25 21:49 - 000002045 _____ C:\Users\Vanka\Desktop\HynesPro.lnk
      2019-03-25 21:41 - 2019-03-25 21:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ATRis_Technik
      2019-03-25 21:32 - 2019-03-25 21:46 - 000000000 ____D C:\Program Files\ATRis_Technik
      2019-03-25 21:32 - 2011-04-18 20:54 - 000941568 _____ (Igor Pavlov) C:\ProgramData\7z.dll
      2019-03-25 21:32 - 2011-04-18 20:34 - 000168448 _____ (Igor Pavlov) C:\ProgramData\7z.exe
      2019-03-25 21:29 - 2019-03-25 21:29 - 000000295 _____ C:\Windows\Atris_STG.INI
      2019-03-25 21:29 - 2019-03-25 21:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ATRis STAHLGRUBER DVD
      2019-03-25 21:16 - 2019-03-25 21:16 - 000000000 ____D C:\ATRIS_ST
      2019-03-25 20:40 - 2019-03-26 14:30 - 000144625 _____ C:\Users\Vanka\wirdia.svg
      2019-03-23 20:12 - 2019-03-23 20:12 - 000643330 _____ C:\Users\Vanka\Desktop\nastroiki_W-router_DK.pdf
      2019-03-22 20:39 - 2019-03-06 08:41 - 005679864 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2019-03-22 20:39 - 2019-03-06 08:40 - 001407120 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
      2019-03-22 20:39 - 2019-03-06 08:40 - 001297088 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
      2019-03-22 20:39 - 2019-03-06 08:40 - 001281072 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
      2019-03-22 20:39 - 2019-03-06 08:40 - 001181944 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
      2019-03-22 20:39 - 2019-03-06 07:51 - 003450368 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2019-03-22 20:39 - 2019-03-06 07:37 - 003617280 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
      2019-03-22 20:39 - 2019-03-06 06:39 - 002464256 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
      2019-03-22 20:39 - 2019-02-26 09:25 - 020281856 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2019-03-22 20:39 - 2019-02-26 09:07 - 000498176 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2019-03-22 20:39 - 2019-02-26 09:04 - 002295808 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2019-03-22 20:39 - 2019-02-26 08:57 - 000663040 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2019-03-22 20:39 - 2019-02-26 08:36 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
      2019-03-22 20:39 - 2019-02-26 08:35 - 004494848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2019-03-22 20:39 - 2019-02-26 08:31 - 000696320 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2019-03-22 20:39 - 2019-02-26 08:29 - 013681664 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2019-03-22 20:39 - 2019-02-26 08:12 - 004386304 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2019-03-22 20:39 - 2019-02-26 08:09 - 001332224 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2019-03-22 20:39 - 2019-02-26 08:07 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2019-03-22 20:39 - 2019-02-20 22:17 - 000313344 _____ (Microsoft Corporation) C:\Windows\system32\msrd2x40.dll
      2019-03-22 20:39 - 2019-02-15 21:51 - 000449744 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
      2019-03-22 20:39 - 2019-02-15 21:51 - 000413576 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
      2019-03-22 20:39 - 2019-02-09 20:26 - 000333560 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2019-03-22 20:39 - 2019-02-09 20:21 - 001683400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
      2019-03-22 20:39 - 2019-02-09 18:45 - 000367104 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
      2019-03-22 20:39 - 2019-02-09 18:14 - 000879616 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
      2019-03-22 20:39 - 2019-02-09 02:33 - 001901888 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2019-03-22 20:39 - 2019-02-09 01:07 - 000889344 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2019-03-22 20:39 - 2019-02-09 01:07 - 000614040 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
      2019-03-22 20:39 - 2019-02-08 23:29 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
      2019-03-22 20:39 - 2019-02-08 19:50 - 001493504 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
      2019-03-22 20:39 - 2019-02-08 19:45 - 001556992 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
      2019-03-22 20:39 - 2019-02-07 02:34 - 001070456 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2019-03-22 20:39 - 2019-02-07 02:34 - 000849216 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
      2019-03-22 20:39 - 2019-02-06 20:29 - 000575488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
      2019-03-22 20:39 - 2019-02-01 06:25 - 001839344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
      2019-03-22 20:39 - 2019-01-08 07:12 - 001489704 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 001387520 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000617984 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000593408 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000524800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000377856 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000254464 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
      2019-03-22 20:39 - 2019-01-04 16:14 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
      2019-03-22 20:38 - 2019-03-06 07:52 - 000027392 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
      2019-03-22 20:38 - 2019-02-26 08:41 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2019-03-22 20:38 - 2019-02-26 08:39 - 000279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2019-03-22 20:38 - 2019-02-26 08:39 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
      2019-03-22 20:38 - 2019-02-26 08:33 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
      2019-03-22 20:38 - 2019-02-26 08:31 - 002059776 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2019-03-22 20:38 - 2019-02-26 08:31 - 000333312 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2019-03-22 20:38 - 2019-02-26 08:20 - 001049600 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
      2019-03-22 20:38 - 2019-02-15 21:51 - 000033504 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
      2019-03-22 20:38 - 2019-02-15 21:50 - 000372328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
      2019-03-22 20:38 - 2019-02-09 20:29 - 000178632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
      2019-03-22 20:38 - 2019-02-09 19:21 - 000260096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
      2019-03-22 20:38 - 2019-02-09 19:21 - 000163840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
      2019-03-22 20:38 - 2019-02-09 19:21 - 000073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
      2019-03-22 20:38 - 2019-02-09 19:19 - 000229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
      2019-03-22 20:38 - 2019-02-09 18:43 - 000730624 _____ (Microsoft Corporation) C:\Windows\system32\pmcsnap.dll
      2019-03-22 20:38 - 2019-02-09 18:16 - 000399360 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
      2019-03-22 20:38 - 2019-02-08 20:32 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
      2019-03-22 20:38 - 2019-02-07 20:35 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
      2019-03-22 20:38 - 2019-02-06 20:30 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
      2019-03-22 20:38 - 2019-02-06 20:30 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
      2019-03-22 20:38 - 2019-02-06 20:29 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
      2019-03-22 20:38 - 2019-02-06 20:28 - 000187392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
      2019-03-22 20:38 - 2019-01-09 05:52 - 000038912 _____ (Microsoft Corporation) C:\Windows\system32\hcproviders.dll
      2019-03-22 20:38 - 2019-01-09 05:45 - 000530432 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
      2019-03-22 20:38 - 2019-01-09 05:40 - 000839680 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
      2019-03-22 20:38 - 2019-01-05 09:31 - 000131344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
      2019-03-22 19:56 - 2019-03-22 19:56 - 024718688 _____ ( ) C:\Users\Vanka\Downloads\AdbeRdr812_ru_RU.exe
      2019-03-22 19:56 - 2019-03-22 19:56 - 015382749 _____ C:\Users\Vanka\Downloads\CAD-KAS  PDFEditor 5.5 Pro.rar
      2019-03-21 18:05 - 2019-03-21 18:06 - 000000000 ____D C:\Users\Vanka\AppData\Local\Viber
      2019-03-21 13:06 - 2019-03-21 13:06 - 000002511 _____ C:\Users\Public\Desktop\EmmeGas MULTI IC.lnk
      2019-03-21 13:06 - 2019-03-21 13:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EmmeGas
      2019-03-21 10:13 - 2019-03-21 10:16 - 000001139 _____ C:\Users\Public\Desktop\LPGTECH Gas Setting 2.0.lnk
      2019-03-21 10:13 - 2019-03-21 10:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LPGTECH Gas Setting 2.0
      2019-03-21 10:13 - 2019-03-21 10:16 - 000000000 ____D C:\Program Files\LPGTECH Gas Setting 2.0
      2019-03-20 12:08 - 2019-03-20 12:08 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\Livecare
      2019-03-20 12:08 - 2019-03-20 12:08 - 000000000 ____D C:\Users\Vanka\AppData\LocalLow\livecare
      2019-03-20 12:08 - 2019-03-20 12:08 - 000000000 ____D C:\ProgramData\Livecare
      2019-03-20 12:03 - 2019-03-20 12:03 - 000000000 ____D C:\Users\Vanka\AppData\Local\Zavoli
      2019-03-20 12:02 - 2019-03-20 12:06 - 000001567 _____ C:\Users\Public\Desktop\Zavoli.lnk
      2019-03-20 12:02 - 2019-03-20 12:02 - 000000000 ____D C:\Zavoli
      2019-03-19 21:09 - 2019-03-19 21:09 - 000013424 _____ C:\Users\Vanka\Downloads\FI202049G34.rar
      2019-03-19 21:06 - 2019-03-19 21:06 - 000059444 _____ C:\Users\Vanka\Desktop\LR202043G34.rar
      2019-03-19 20:37 - 2019-03-19 20:37 - 000000000 _____ C:\Windows\TCULR.INI
      2019-03-17 21:02 - 2019-03-17 21:02 - 000179937 _____ C:\Users\Vanka\Downloads\А10.pdf
      2019-03-17 20:31 - 2019-03-17 20:32 - 009824545 _____ C:\Users\Vanka\Downloads\Opel pin.rar
      2019-03-17 20:30 - 2019-03-17 20:30 - 016930062 _____ C:\Users\Vanka\Downloads\VIN to PIN Opel.rar
      2019-03-13 18:35 - 2019-03-13 18:41 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlueEnergy
      2019-03-13 18:35 - 2019-03-13 18:35 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\BlueEnergy
      2019-03-13 18:35 - 2019-03-13 18:35 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\Blue Energy
      2019-03-13 18:35 - 2019-03-13 18:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueEnergy
      2019-03-13 18:26 - 2019-03-13 18:34 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BluePower
      2019-03-13 18:26 - 2019-03-13 18:26 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\BluePower
      2019-03-13 18:26 - 2019-03-13 18:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BluePower
      2019-03-07 14:35 - 2019-03-07 14:41 - 000000000 ____D C:\Program Files\Simgas2
      2019-03-07 14:35 - 2019-03-07 14:35 - 000000911 _____ C:\Users\Vanka\Desktop\Simgas2.lnk
      2019-03-07 14:35 - 2019-03-07 14:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simgas2
      2019-03-07 14:34 - 2019-03-07 14:34 - 000001001 _____ C:\Users\Vanka\Desktop\Simgas+.lnk
      2019-03-07 14:34 - 2019-03-07 14:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimgasPlus
      2019-03-07 14:34 - 2019-03-07 14:34 - 000000000 ____D C:\Program Files\SimgasPlus
      2019-03-05 18:23 - 2019-03-05 18:23 - 000001799 _____ C:\Users\Public\Desktop\AIS.lnk
      2019-03-05 18:23 - 2019-03-05 18:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Romano s.r.l
      2019-03-05 18:23 - 2019-03-05 18:23 - 000000000 ____D C:\Program Files\AIS
      2019-03-04 12:42 - 2019-03-04 12:42 - 000002505 _____ C:\Users\Public\Desktop\Alex Sequential Injection System CAD.lnk
      2019-03-04 12:42 - 2019-03-04 12:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alex
      2019-03-03 15:30 - 2019-03-03 15:30 - 058773809 _____ C:\Users\Vanka\Downloads\T-NT14LDEUC_1042.0.exe
      2019-03-03 14:36 - 2019-03-03 14:36 - 000000024 _____ C:\Users\Vanka\Desktop\nasko12233.txt
      2019-02-28 18:21 - 2019-02-28 18:21 - 000001545 _____ C:\Users\Vanka\Desktop\VAUXCOM.exe - Shortcut.lnk
      2019-02-28 18:19 - 2019-02-28 18:20 - 000000000 ____D C:\Program Files\WaxCom
      2019-02-28 13:02 - 2019-02-28 13:03 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\AcGasSynchro II
      2019-02-28 12:54 - 2019-02-28 12:54 - 000001046 _____ C:\Users\Vanka\Desktop\ACGasSynchro 11.2.1.1.lnk
      2019-02-28 12:54 - 2019-02-28 12:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcGasSynchro II
      2019-02-28 12:54 - 2019-02-28 12:54 - 000000000 ____D C:\Program Files\AcGasSynchro II
      2019-02-28 12:42 - 2019-02-28 12:42 - 002938908 _____ C:\Users\Vanka\Downloads\ver2_8_9_RU_PREMIUM_manual.pdf
      2019-02-27 20:21 - 2019-02-27 20:22 - 000000353 _____ C:\Users\Vanka\Desktop\STOP-updates.txt
      ==================== One month (modified) ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2019-03-27 19:24 - 2018-04-25 19:40 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\ViberPC
      2019-03-27 18:36 - 2018-05-30 22:31 - 000000000 ____D C:\ADCDA2
      2019-03-26 21:42 - 2015-12-25 14:45 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\uTorrent
      2019-03-26 13:48 - 2018-12-24 14:34 - 000002188 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
      2019-03-26 13:48 - 2018-12-24 14:34 - 000002147 _____ C:\Users\Public\Desktop\Google Chrome.lnk
      2019-03-25 23:13 - 2013-08-22 08:13 - 000000187 _____ C:\Windows\win.ini
      2019-03-25 23:12 - 2019-01-29 19:09 - 000000000 ____D C:\Program Files\TeamViewer
      2019-03-25 23:12 - 2018-07-13 16:20 - 000000000 ____D C:\ProgramData\VMware
      2019-03-25 23:12 - 2013-08-22 09:23 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2019-03-25 22:51 - 2015-12-14 02:55 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\vlc
      2019-03-25 22:26 - 2015-12-12 05:09 - 000000000 ____D C:\Users\Vanka\AppData\Local\Packages
      2019-03-25 21:32 - 2016-10-30 16:20 - 000000000 ____D C:\ProgramData\WorkshopData
      2019-03-25 21:29 - 2016-10-30 16:19 - 000000626 _____ C:\Windows\ODBC.INI
      2019-03-25 21:29 - 2016-10-30 16:19 - 000000295 _____ C:\Windows\Atris_St.INI
      2019-03-25 20:49 - 2013-08-22 08:21 - 000000000 ____D C:\Windows\inf
      2019-03-25 20:40 - 2018-11-26 15:12 - 000000000 ____D C:\Users\Vanka
      2019-03-24 14:34 - 2013-08-22 10:17 - 000000000 ____D C:\Windows\rescache
      2019-03-23 10:39 - 2018-01-25 19:32 - 000000000 ____D C:\ProgramData\MCShield
      2019-03-22 21:06 - 2013-08-22 09:22 - 000481584 _____ C:\Windows\system32\FNTCACHE.DAT
      2019-03-22 21:04 - 2013-08-22 08:13 - 000262144 ___SH C:\Windows\system32\config\BBI
      2019-03-22 21:01 - 2015-04-14 23:41 - 000000000 ____D C:\Windows\system32\appraiser
      2019-03-22 21:01 - 2014-11-21 07:42 - 000000000 ___SD C:\Windows\system32\CompatTel
      2019-03-22 21:01 - 2013-08-22 10:17 - 000000000 ___RD C:\Windows\ToastData
      2019-03-22 20:53 - 2013-08-22 10:05 - 000000000 ____D C:\Windows\CbsTemp
      2019-03-22 20:33 - 2018-12-12 09:01 - 000513376 _____ C:\Windows\system32\locale.nls
      2019-03-21 18:05 - 2018-04-25 19:48 - 000000000 ____D C:\Users\Vanka\Documents\ViberDownloads
      2019-03-21 13:06 - 2018-06-30 10:30 - 000000000 ____D C:\Program Files\MultipointInj
      2019-03-20 12:47 - 2017-08-21 11:56 - 000000000 ____D C:\Users\Vanka\AppData\Local\SequentPD
      2019-03-20 12:47 - 2017-05-12 22:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BRC Gas Equipment
      2019-03-20 12:06 - 2018-06-30 10:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zavoli
      2019-03-19 21:30 - 2015-12-13 04:41 - 000000000 ___HD C:\Program Files\InstallShield Installation Information
      2019-03-19 20:27 - 2016-10-30 16:19 - 000000588 _____ C:\Windows\ODBCINST.INI
      2019-03-19 19:55 - 2018-06-10 09:55 - 000000000 ____D C:\Program Files\KME
      2019-03-13 11:33 - 2014-11-21 05:17 - 000869216 _____ C:\Windows\system32\PerfStringBackup.INI
      2019-03-12 19:02 - 2019-01-22 21:20 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\Skype
      2019-03-12 17:55 - 2013-08-22 10:17 - 000000000 ____D C:\Windows\system32\Macromed
      2019-03-05 18:23 - 2019-02-18 21:16 - 000000000 ____D C:\ProgramData\AntonioInjectionSystem
      2019-03-05 18:23 - 2018-11-18 13:30 - 000000000 ____D C:\Users\Vanka\AppData\Local\Downloaded Installations
      2019-03-04 21:52 - 2018-07-15 16:10 - 000000000 ____D C:\Users\Vanka\AppData\LocalLow\Mozilla
      2019-03-04 12:42 - 2018-12-18 21:40 - 000000000 ____D C:\Program Files\Chiave Hardware Eutron
      2019-03-03 09:04 - 2015-12-25 18:58 - 000000000 ____D C:\Users\Vanka\AppData\Local\ElevatedDiagnostics
      2019-03-02 12:26 - 2018-06-30 10:30 - 000000000 ____D C:\Users\Vanka\Documents\MultipointInj
      2019-02-25 21:28 - 2018-07-13 16:23 - 000000000 ____D C:\Users\Vanka\AppData\Local\VMware
      2019-02-25 21:25 - 2013-08-22 10:17 - 000000000 ____D C:\Windows\system32\FxsTmp
      2019-02-25 21:23 - 2018-07-13 16:23 - 000000000 ____D C:\Users\Vanka\AppData\Roaming\VMware
      ==================== Files in the root of some directories =======
      2019-03-25 21:32 - 2011-04-18 20:54 - 000941568 _____ (Igor Pavlov) C:\ProgramData\7z.dll
      2019-03-25 21:32 - 2011-04-18 20:34 - 000168448 _____ (Igor Pavlov) C:\ProgramData\7z.exe
      2018-07-02 11:56 - 2005-06-29 14:39 - 000617472 _____ () C:\Program Files\AUTRONIT.EX_
      2018-07-02 11:56 - 2002-03-21 10:29 - 000289056 _____ () C:\Program Files\HDSETUP.EX_
      2018-07-02 11:56 - 2002-03-21 10:29 - 000006656 _____ () C:\Program Files\SETUP.EXE
      2018-07-02 11:56 - 2005-06-29 13:00 - 000000633 _____ () C:\Program Files\SETUP.INF
      2018-07-02 11:56 - 2005-06-29 08:32 - 000000407 _____ () C:\Program Files\UNINSTAL.INF
      2018-07-02 11:56 - 2005-06-29 11:00 - 000000004 _____ () C:\Program Files\XMON.CF_
      2018-07-02 11:56 - 2005-04-27 08:59 - 000000195 _____ () C:\Program Files\XMON.DE_
      2018-07-02 11:56 - 2005-06-30 14:16 - 000009832 _____ () C:\Program Files\Xmon.di_
      2018-06-20 17:13 - 2018-12-09 15:27 - 000000071 _____ () C:\Users\Vanka\AppData\Local\DiegoG3-3.0.8.2.INI
      2019-03-25 23:18 - 2019-03-25 23:18 - 000009680 _____ () C:\Users\Vanka\AppData\Local\Tempastraheobd_dba_ellemeet.svgz
      2016-10-30 19:29 - 2016-10-30 19:29 - 000009612 _____ () C:\Users\Vanka\AppData\Local\Temppicasso eobd_dba_ellemeet.svgz
      Some files in TEMP:
      ====================
      2019-03-25 20:34 - 2019-03-26 14:16 - 000003584 _____ () C:\Users\Vanka\AppData\Local\Temp\dateinj01.dll
      2019-01-27 14:31 - 2013-07-29 13:40 - 000086392 _____ () C:\Users\Vanka\AppData\Local\Temp\dp-chooser.exe
      2019-01-27 14:31 - 2013-07-29 13:41 - 000676288 _____ (Microsoft Corporation) C:\Users\Vanka\AppData\Local\Temp\dpinst-amd64.exe
      2019-01-27 14:31 - 2013-07-29 13:41 - 000550848 _____ (Microsoft Corporation) C:\Users\Vanka\AppData\Local\Temp\dpinst-x86.exe
      2009-07-13 21:12 - 2009-07-13 21:12 - 001047632 _____ (Microsoft Corporation) C:\Users\Vanka\AppData\Local\Temp\DPInstx64.exe
      2009-07-13 20:47 - 2009-07-13 20:47 - 000922176 _____ (Microsoft Corporation) C:\Users\Vanka\AppData\Local\Temp\DPInstx86.exe
      2010-10-08 10:07 - 2010-10-08 10:07 - 000075672 _____ () C:\Users\Vanka\AppData\Local\Temp\DPInst_Monx64.exe
      2010-10-08 10:07 - 2010-10-08 10:07 - 000075160 _____ () C:\Users\Vanka\AppData\Local\Temp\DPInst_Monx86.exe
      2019-03-25 23:18 - 2019-03-25 23:18 - 000155729 _____ () C:\Users\Vanka\AppData\Local\Temp\JExplorer32.2.7.1.dll
      2019-03-25 23:18 - 2019-03-25 23:18 - 000008273 _____ (TeamDev Ltd) C:\Users\Vanka\AppData\Local\Temp\JExplorer32.2.7.1.exe
      2019-03-25 23:18 - 2019-03-25 23:18 - 000228864 _____ () C:\Users\Vanka\AppData\Local\Temp\JExplorer64.2.7.1.dll
      2010-10-08 10:06 - 2010-10-08 10:06 - 000075152 _____ () C:\Users\Vanka\AppData\Local\Temp\OS_Detect.exe
      2019-01-22 21:20 - 2015-12-31 23:00 - 000000000 __RSH () C:\Users\Vanka\AppData\Local\Temp\SkypeSetup.exe
      2019-01-27 14:27 - 2019-01-23 13:38 - 000205960 _____ () C:\Users\Vanka\AppData\Local\Temp\Uninstall.exe
      2019-01-21 21:05 - 2019-01-21 21:05 - 014456872 _____ (Microsoft Corporation) C:\Users\Vanka\AppData\Local\Temp\vc_redist.x86.exe
      2018-09-07 13:03 - 2018-09-07 13:03 - 000865280 _____ () C:\Users\Vanka\AppData\Local\Temp\x.exe
      ==================== Bamital & volsnap ======================
      (There is no automatic fix for files that do not pass verification.)
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\system32\dllhost.exe => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
      LastRegBack: 2019-03-19 12:44
      ==================== End of FRST.txt ============================
      Addition.txt
    • от мирослав24
      Здравейте,изникна ми проблем с браузърите-основно ползвам комодо и по-рядко опера.От няколко дни обаче комодо-то се затваря самостоятелно докато съм в нета.Спря да отваря адрес ,който ползвам за работа(vpn тунел с CISCO софтуер).Реших да направя ъпдейт,свързва се,но излиза надпис че ъпдета не може да се направи.Деинсталирах старата версия и инсталирах чисто ново комодо от страницата им.Сега пък е адски бавен и отново не ми отваря тунела.Опера-та ми работи с адреса,но също се крашва изведнъж.Друг проблем е с офис пакета-опциите на падащите менюта спряха да се поддават на команди.Незнам дали е хардуерен проблем или наличие на гадинка,затова реших да пиша първо в този форум.Изпращам логовете след сканинг:
      Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 13.03.2019 01
      Ran by m (administrator) on M-PC (15-03-2019 12:53:55)
      Running from C:\Users\m\Downloads
      Loaded Profiles: m & UpdatusUser (Available Profiles: m & user & UpdatusUser)
      Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
      Internet Explorer Version 11 (Default browser: "C:\Program Files (x86)\Comodo\Dragon\dragon.exe" -- "%1")
      Boot Mode: Normal
      Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
      ==================== Processes (Whitelisted) =================
      (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
      (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
      (Adaware Software -> ) C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.5.961.11619\AdAwareService.exe
      (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
      (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
      (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
      (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
      (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
      (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
      (Adaware Software -> ) C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.5.961.11619\AdAwareTray.exe
      (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
      (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
      (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
      (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
      (Hewlett-Packard Co.) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Hewlett-Packard) [File not signed] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      (Comodo Security Solutions -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon.exe
      ==================== Registry (Whitelisted) ===========================
      (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
      HKLM\...\Run: [AdAwareTray] => C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.5.961.11619\AdAwareTray.exe [4749784 2018-10-11] (Adaware Software -> )
      HKLM\...\Run: [snpstd3] => C:\Windows\vsnpstd3.exe
      HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
      HKLM-x32\...\Run: [] => [X]
      HKU\S-1-5-21-3677490310-1812953499-2719145278-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [49805160 2018-11-09] (Skype Software Sarl -> Skype Technologies S.A.)
      HKU\S-1-5-21-3677490310-1812953499-2719145278-1001\...\MountPoints2: {53615ed9-b5c5-11e8-9221-001966873225} - F:\SETUP.EXE
      Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2018-09-13]
      ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) [File not signed]
      Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk [2018-09-15]
      ShortcutTarget: vpngui.exe.lnk -> C:\Windows\Installer\{5FDC06BF-3D3D-4367-8FFB-4FAFCB61972D}\Icon09DB8A851.exe () [File not signed]
      ==================== Internet (Whitelisted) ====================
      (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
      Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
      Tcpip\..\Interfaces\{EF05353F-1AB4-4F63-852E-FDF507B7D414}: [DhcpNameServer] 192.168.0.1
      Internet Explorer:
      ==================
      HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
      HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
      HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
      HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
      HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
      HKU\S-1-5-21-3677490310-1812953499-2719145278-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
      HKU\S-1-5-21-3677490310-1812953499-2719145278-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/en-xl/?ocid=iehp
      SearchScopes: HKU\S-1-5-21-3677490310-1812953499-2719145278-1001 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10419__180911&q={searchTerms}
      BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-23] (Hewlett-Packard Company -> Hewlett-Packard Co.)
      BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-23] (Hewlett-Packard Company -> Hewlett-Packard Co.)
      Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      FireFox:
      ========
      FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
      FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2018-09-13] [Legacy] [not signed]
      FF HKU\S-1-5-21-3677490310-1812953499-2719145278-1001\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
      FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_156.dll [2019-03-13] (Adobe Systems Incorporated -> )
      FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_156.dll [2019-03-13] (Adobe Systems Incorporated -> )
      FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1234204.dll [2018-06-06] (Adobe Systems, Inc.) [File not signed]
      FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
      FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
      FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-02-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
      ==================== Services (Whitelisted) ====================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R2 adawareantivirusservice; C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.5.961.11619\AdAwareService.exe [587832 2018-10-11] (Adaware Software -> )
      R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2307768 2016-05-05] (Comodo Security Solutions -> Comodo)
      R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-23] (Hewlett-Packard Co.) [File not signed]
      R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-23] (Hewlett-Packard Co.) [File not signed]
      R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-23] (Hewlett-Packard Co.) [File not signed]
      S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
      R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
      S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2014-08-16] (Microsoft Windows -> Microsoft Corporation)
      ===================== Drivers (Whitelisted) ======================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
      R3 atc; C:\Windows\System32\DRIVERS\atc.sys [1283464 2018-06-08] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA)
      R1 bdfwfpf; C:\Program Files\adaware\adaware antivirus\AdAwareProxyEngine\1.0.0.8\bdfwfpf.sys [127312 2016-06-16] (Bitdefender SRL -> BitDefender LLC)
      R3 CVPNDRVA; C:\Windows\system32\Drivers\CVPNDRVA.sys [306536 2011-03-04] (Cisco Systems, Inc. -> )
      S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30352 2018-09-11] (Disc Soft Ltd -> Disc Soft Ltd)
      R3 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [187688 2018-05-02] (Bitdefender SRL -> BitDefender LLC)
      R0 Ignis; C:\Windows\System32\drivers\ignis.sys [304448 2017-08-29] (Bitdefender SRL -> Bitdefender)
      R3 irsir; C:\Windows\System32\DRIVERS\irsir.sys [27648 2008-01-19] (Microsoft Windows Hardware Compatibility Publisher -> Microsoft Corporation)
      R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [442848 2018-05-02] (Bitdefender SRL -> BitDefender S.R.L.)
      S3 VGPU; System32\drivers\rdvgkmd.sys [X]
      ==================== NetSvcs (Whitelisted) ===================
      (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

      ==================== One month (created) ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2019-03-15 12:53 - 2019-03-15 12:55 - 000012581 _____ C:\Users\m\Downloads\FRST.txt
      2019-03-15 12:53 - 2019-03-15 12:53 - 002433536 _____ (Farbar) C:\Users\m\Downloads\FRST64.exe
      2019-03-15 12:53 - 2019-03-15 12:53 - 000000000 ____D C:\FRST
      2019-03-13 10:33 - 2019-02-16 07:32 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
      2019-03-13 10:33 - 2019-02-16 07:30 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
      2019-03-13 10:33 - 2019-02-10 18:41 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
      2019-03-13 10:33 - 2019-02-10 18:41 - 011411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 003207168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 001329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 001177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 001005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
      2019-03-13 10:33 - 2019-02-10 18:41 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
      2019-03-13 10:33 - 2019-02-10 18:29 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
      2019-03-13 10:33 - 2019-02-10 18:29 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
      2019-03-13 10:33 - 2019-02-10 18:29 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
      2019-03-13 10:33 - 2019-02-10 18:28 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
      2019-03-13 10:33 - 2019-02-10 18:28 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
      2019-03-13 10:33 - 2019-02-10 18:10 - 000094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
      2019-03-13 10:33 - 2019-02-10 18:09 - 014635520 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
      2019-03-13 10:33 - 2019-02-10 18:09 - 001574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
      2019-03-13 10:33 - 2019-02-10 18:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
      2019-03-13 10:33 - 2019-02-10 18:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 004120576 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 001484800 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 001202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
      2019-03-13 10:33 - 2019-02-10 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
      2019-03-13 10:33 - 2019-02-10 18:07 - 000842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
      2019-03-13 10:33 - 2019-02-10 18:07 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
      2019-03-13 10:33 - 2019-02-10 18:07 - 000438784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
      2019-03-13 10:33 - 2019-02-10 18:07 - 000295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
      2019-03-13 10:33 - 2019-02-10 18:02 - 000663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
      2019-03-13 10:33 - 2019-02-10 17:50 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
      2019-03-13 10:33 - 2019-02-10 17:49 - 000125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
      2019-03-13 10:33 - 2019-02-10 17:49 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
      2019-03-13 10:33 - 2019-02-10 17:38 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
      2019-03-13 10:33 - 2019-02-10 17:38 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
      2019-03-13 10:32 - 2019-03-06 05:13 - 005552872 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
      2019-03-13 10:32 - 2019-03-06 05:10 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
      2019-03-13 10:32 - 2019-03-06 05:10 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
      2019-03-13 10:32 - 2019-03-06 05:10 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
      2019-03-13 10:32 - 2019-03-06 05:04 - 004055784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
      2019-03-13 10:32 - 2019-03-06 05:04 - 003960552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
      2019-03-13 10:32 - 2019-03-06 05:01 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
      2019-03-13 10:32 - 2019-03-06 05:01 - 000556032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
      2019-03-13 10:32 - 2019-03-06 05:01 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
      2019-03-13 10:32 - 2019-03-06 04:42 - 003228160 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
      2019-03-13 10:32 - 2019-03-06 04:38 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
      2019-03-13 10:32 - 2019-03-06 04:38 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
      2019-03-13 10:32 - 2019-03-06 04:37 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
      2019-03-13 10:32 - 2019-02-27 00:41 - 000397104 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
      2019-03-13 10:32 - 2019-02-26 23:47 - 000348984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
      2019-03-13 10:32 - 2019-02-26 09:57 - 025737216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
      2019-03-13 10:32 - 2019-02-26 09:46 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
      2019-03-13 10:32 - 2019-02-26 09:45 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
      2019-03-13 10:32 - 2019-02-26 09:33 - 002902528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
      2019-03-13 10:32 - 2019-02-26 09:32 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
      2019-03-13 10:32 - 2019-02-26 09:31 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
      2019-03-13 10:32 - 2019-02-26 09:31 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
      2019-03-13 10:32 - 2019-02-26 09:31 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
      2019-03-13 10:32 - 2019-02-26 09:31 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
      2019-03-13 10:32 - 2019-02-26 09:25 - 020281856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
      2019-03-13 10:32 - 2019-02-26 09:25 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
      2019-03-13 10:32 - 2019-02-26 09:24 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
      2019-03-13 10:32 - 2019-02-26 09:22 - 005777920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
      2019-03-13 10:32 - 2019-02-26 09:21 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
      2019-03-13 10:32 - 2019-02-26 09:20 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
      2019-03-13 10:32 - 2019-02-26 09:20 - 000790528 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
      2019-03-13 10:32 - 2019-02-26 09:20 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
      2019-03-13 10:32 - 2019-02-26 09:20 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
      2019-03-13 10:32 - 2019-02-26 09:19 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
      2019-03-13 10:32 - 2019-02-26 09:12 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
      2019-03-13 10:32 - 2019-02-26 09:09 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
      2019-03-13 10:32 - 2019-02-26 09:07 - 000498176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
      2019-03-13 10:32 - 2019-02-26 09:07 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
      2019-03-13 10:32 - 2019-02-26 09:06 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
      2019-03-13 10:32 - 2019-02-26 09:06 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
      2019-03-13 10:32 - 2019-02-26 09:05 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
      2019-03-13 10:32 - 2019-02-26 09:04 - 002295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
      2019-03-13 10:32 - 2019-02-26 09:03 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
      2019-03-13 10:32 - 2019-02-26 09:02 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
      2019-03-13 10:32 - 2019-02-26 09:02 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
      2019-03-13 10:32 - 2019-02-26 09:01 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
      2019-03-13 10:32 - 2019-02-26 09:00 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
      2019-03-13 10:32 - 2019-02-26 08:59 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
      2019-03-13 10:32 - 2019-02-26 08:58 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
      2019-03-13 10:32 - 2019-02-26 08:58 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
      2019-03-13 10:32 - 2019-02-26 08:57 - 000663040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
      2019-03-13 10:32 - 2019-02-26 08:57 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
      2019-03-13 10:32 - 2019-02-26 08:57 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
      2019-03-13 10:32 - 2019-02-26 08:56 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
      2019-03-13 10:32 - 2019-02-26 08:54 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
      2019-03-13 10:32 - 2019-02-26 08:49 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
      2019-03-13 10:32 - 2019-02-26 08:46 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
      2019-03-13 10:32 - 2019-02-26 08:44 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
      2019-03-13 10:32 - 2019-02-26 08:44 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
      2019-03-13 10:32 - 2019-02-26 08:43 - 015284224 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
      2019-03-13 10:32 - 2019-02-26 08:43 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
      2019-03-13 10:32 - 2019-02-26 08:43 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
      2019-03-13 10:32 - 2019-02-26 08:43 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
      2019-03-13 10:32 - 2019-02-26 08:41 - 002135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
      2019-03-13 10:32 - 2019-02-26 08:41 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
      2019-03-13 10:32 - 2019-02-26 08:41 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
      2019-03-13 10:32 - 2019-02-26 08:41 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
      2019-03-13 10:32 - 2019-02-26 08:39 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
      2019-03-13 10:32 - 2019-02-26 08:38 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
      2019-03-13 10:32 - 2019-02-26 08:35 - 004494848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
      2019-03-13 10:32 - 2019-02-26 08:33 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
      2019-03-13 10:32 - 2019-02-26 08:31 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
      2019-03-13 10:32 - 2019-02-26 08:31 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
      2019-03-13 10:32 - 2019-02-26 08:30 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
      2019-03-13 10:32 - 2019-02-26 08:29 - 013681664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
      2019-03-13 10:32 - 2019-02-26 08:29 - 004858880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
      2019-03-13 10:32 - 2019-02-26 08:18 - 001557504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
      2019-03-13 10:32 - 2019-02-26 08:12 - 004386304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
      2019-03-13 10:32 - 2019-02-26 08:09 - 001332224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
      2019-03-13 10:32 - 2019-02-26 08:07 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
      2019-03-13 10:32 - 2019-02-26 08:06 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
      2019-03-13 10:32 - 2019-02-22 04:35 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
      2019-03-13 10:32 - 2019-02-16 08:02 - 000972288 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
      2019-03-13 10:32 - 2019-02-16 08:02 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
      2019-03-13 10:32 - 2019-02-16 08:02 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
      2019-03-13 10:32 - 2019-02-16 07:50 - 000583680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
      2019-03-13 10:32 - 2019-02-16 07:50 - 000321536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
      2019-03-13 10:32 - 2019-02-15 18:09 - 000485888 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
      2019-03-13 10:32 - 2019-02-15 18:09 - 000355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
      2019-03-13 10:32 - 2019-02-15 17:58 - 000382976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
      2019-03-13 10:32 - 2019-02-15 17:58 - 000320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
      2019-03-13 10:32 - 2019-02-15 17:40 - 000415744 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
      2019-03-13 10:32 - 2019-02-15 17:40 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
      2019-03-13 10:32 - 2019-02-15 17:38 - 000360960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
      2019-03-13 10:32 - 2019-02-15 17:38 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
      2019-03-13 10:32 - 2019-02-10 18:10 - 001680104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
      2019-03-13 10:32 - 2019-02-10 17:36 - 000328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
      2019-03-13 10:32 - 2019-02-10 17:35 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
      2019-03-13 10:32 - 2019-02-08 18:08 - 002009088 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
      2019-03-13 10:32 - 2019-02-08 18:08 - 001889280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
      2019-03-13 10:32 - 2019-02-08 17:59 - 001391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
      2019-03-13 10:32 - 2019-02-08 17:59 - 001241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
      2019-03-13 10:32 - 2019-02-07 18:01 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
      2019-03-13 10:32 - 2019-02-03 17:36 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
      2019-03-13 10:32 - 2019-01-04 18:13 - 000143592 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
      2019-03-13 10:32 - 2019-01-04 18:07 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 002862592 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
      2019-03-13 10:32 - 2019-01-04 16:05 - 001635328 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 000799744 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 000623104 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 000495616 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 000451584 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
      2019-03-13 10:32 - 2019-01-04 16:05 - 000253952 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
      2019-03-13 10:31 - 2019-03-06 05:18 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
      2019-03-13 10:31 - 2019-03-06 05:18 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
      2019-03-13 10:31 - 2019-03-06 05:14 - 000708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
      2019-03-13 10:31 - 2019-03-06 05:14 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
      2019-03-13 10:31 - 2019-03-06 05:13 - 000262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
      2019-03-13 10:31 - 2019-03-06 05:12 - 001664360 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:10 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:02 - 001314104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
      2019-03-13 10:31 - 2019-03-06 05:01 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 05:00 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 04:45 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
      2019-03-13 10:31 - 2019-03-06 04:45 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
      2019-03-13 10:31 - 2019-03-06 04:45 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
      2019-03-13 10:31 - 2019-03-06 04:44 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
      2019-03-13 10:31 - 2019-03-06 04:42 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
      2019-03-13 10:31 - 2019-03-06 04:41 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
      2019-03-13 10:31 - 2019-03-06 04:41 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
      2019-03-13 10:31 - 2019-03-06 04:41 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
      2019-03-13 10:31 - 2019-03-06 04:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
      2019-03-13 10:31 - 2019-03-06 04:38 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
      2019-03-13 10:31 - 2019-03-06 04:38 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
      2019-03-13 10:31 - 2019-03-06 04:38 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
      2019-03-13 10:31 - 2019-03-06 04:38 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
      2019-03-13 10:31 - 2019-03-06 04:37 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
      2019-03-13 10:31 - 2019-03-06 04:37 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
      2019-03-13 10:31 - 2019-03-06 04:37 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
      2019-03-13 10:31 - 2019-03-06 04:37 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
      2019-03-13 10:31 - 2019-03-06 04:37 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
      2019-03-13 10:31 - 2019-03-06 04:37 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
      2019-03-13 10:31 - 2019-03-06 04:37 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
      2019-03-13 10:31 - 2019-03-06 04:37 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
      2019-03-13 10:31 - 2019-03-06 04:37 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
      2019-03-13 10:31 - 2019-03-06 04:37 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
      2019-03-13 10:31 - 2019-03-06 04:36 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
      2019-03-13 10:31 - 2019-03-06 04:36 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 04:36 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 04:36 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-06 04:36 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
      2019-03-13 10:31 - 2019-03-05 04:44 - 000076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
      2019-03-13 10:31 - 2019-03-05 04:44 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
      2019-03-13 10:31 - 2019-03-05 04:44 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
      2019-03-13 10:31 - 2019-02-22 05:07 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
      2019-03-13 10:31 - 2019-02-22 05:07 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
      2019-03-13 10:31 - 2019-02-22 04:56 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
      2019-03-13 10:31 - 2019-02-22 04:55 - 000044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
      2019-03-13 10:31 - 2019-02-16 08:02 - 002072576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
      2019-03-13 10:31 - 2019-02-16 08:02 - 000516608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
      2019-03-13 10:31 - 2019-02-16 08:02 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
      2019-03-13 10:31 - 2019-02-16 08:01 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
      2019-03-13 10:31 - 2019-02-16 07:50 - 001425920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
      2019-03-13 10:31 - 2019-02-16 07:50 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
      2019-03-13 10:31 - 2019-02-16 07:33 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
      2019-03-13 10:31 - 2019-02-15 18:09 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
      2019-03-13 10:31 - 2019-02-15 17:40 - 000050688 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
      2019-03-13 10:31 - 2019-02-15 17:38 - 000053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
      2019-03-13 10:31 - 2019-02-15 17:38 - 000028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
      2019-03-13 10:31 - 2019-02-10 17:36 - 000205312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
      2019-03-13 10:31 - 2019-02-10 17:36 - 000195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
      2019-03-13 10:31 - 2019-02-08 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
      2019-03-13 10:31 - 2019-02-08 18:08 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
      2019-03-13 10:31 - 2019-02-08 18:07 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
      2019-03-13 10:31 - 2019-02-08 17:59 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
      2019-03-13 10:31 - 2019-02-08 17:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
      2019-03-13 10:31 - 2019-02-08 17:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
      2019-03-13 10:31 - 2019-02-07 18:06 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\brdgcfg.dll
      2019-03-13 10:31 - 2019-02-07 18:06 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\bridgeres.dll
      2019-03-13 10:31 - 2019-02-07 17:46 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
      2019-03-13 10:31 - 2019-01-03 18:10 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
      2019-03-13 10:31 - 2019-01-03 17:55 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
      2019-03-08 12:37 - 2019-03-08 12:37 - 000000000 ____H C:\Users\user\Documents\Default.rdp
      2019-03-08 12:29 - 2019-03-08 12:29 - 000001230 _____ C:\Users\Public\Desktop\Comodo Dragon.lnk
      2019-03-08 12:29 - 2019-03-08 12:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
      2019-03-08 12:29 - 2019-03-08 12:29 - 000000000 ____D C:\Program Files (x86)\Comodo
      2019-03-08 12:25 - 2019-03-08 12:25 - 054376048 _____ (Comodo) C:\Users\m\Downloads\dragonsetup.exe
      2019-03-01 08:33 - 2019-03-02 13:15 - 000043520 _____ C:\Users\user\Desktop\Животни родени 2018 ВАЛТА.xls
      2019-02-28 12:42 - 2019-03-02 13:14 - 000023796 _____ C:\Users\user\Desktop\Животни родени 2018 ВАЛТА.xlsx
      2019-02-26 12:42 - 2019-02-26 12:42 - 352749717 _____ C:\Windows\MEMORY.DMP
      2019-02-26 12:42 - 2019-02-26 12:42 - 001097368 _____ C:\Windows\Minidump\022619-15984-01.dmp
      2019-02-26 12:42 - 2019-02-26 12:42 - 000000000 ____D C:\Windows\Minidump
      2019-02-25 14:15 - 2019-02-25 14:15 - 000065024 _____ C:\Users\user\Desktop\кИРО.xls
      2019-02-25 14:11 - 2019-02-25 14:11 - 000025088 _____ C:\Users\user\Desktop\ГОШО КИРОВ.xls
      2019-02-14 08:54 - 2019-01-12 04:36 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
      2019-02-14 08:54 - 2019-01-12 04:36 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
      2019-02-14 08:54 - 2019-01-01 18:08 - 000114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
      2019-02-14 08:54 - 2019-01-01 18:05 - 003247104 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
      2019-02-14 08:54 - 2019-01-01 18:05 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
      2019-02-14 08:54 - 2019-01-01 18:05 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
      2019-02-14 08:54 - 2019-01-01 18:04 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
      2019-02-14 08:54 - 2019-01-01 18:04 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
      2019-02-14 08:54 - 2019-01-01 17:58 - 002368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
      2019-02-14 08:54 - 2019-01-01 17:58 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
      2019-02-14 08:54 - 2019-01-01 17:58 - 000025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
      2019-02-14 08:54 - 2019-01-01 17:57 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
      2019-02-14 08:54 - 2019-01-01 17:39 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
      2019-02-14 08:54 - 2019-01-01 17:39 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
      2019-02-14 08:54 - 2018-12-04 18:07 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
      2019-02-14 08:54 - 2018-12-04 18:07 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
      2019-02-14 08:54 - 2018-12-04 17:55 - 000158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
      2019-02-14 08:54 - 2018-12-04 17:55 - 000142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
      2019-02-14 08:54 - 2018-12-02 18:06 - 000687616 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000998480 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000918408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000066000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000063936 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000021968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000020944 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000019408 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000017872 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000017856 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000017360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000017352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000016336 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000015824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000015808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000015296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000014312 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000014272 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000013768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000013760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000013760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000013264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012736 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012240 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012232 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000012024 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011728 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011512 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
      2019-02-14 08:54 - 2018-10-12 15:05 - 000011200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
      ==================== One month (modified) ========
      (If an entry is included in the fixlist, the file/folder will be moved.)
      2019-03-15 12:31 - 2009-07-14 07:13 - 000781790 _____ C:\Windows\system32\PerfStringBackup.INI
      2019-03-15 12:31 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
      2019-03-15 12:26 - 2009-07-14 07:32 - 000000000 ____D C:\Windows\system32\FxsTmp
      2019-03-14 09:07 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache
      2019-03-14 08:29 - 2009-07-14 06:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
      2019-03-14 08:29 - 2009-07-14 06:45 - 000026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
      2019-03-14 08:06 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
      2019-03-14 08:06 - 2009-07-14 06:45 - 000433672 _____ C:\Windows\system32\FNTCACHE.DAT
      2019-03-14 08:03 - 2018-09-13 06:44 - 000000000 ___SD C:\Windows\system32\CompatTel
      2019-03-14 08:03 - 2018-09-13 06:44 - 000000000 ____D C:\Windows\system32\appraiser
      2019-03-14 08:03 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
      2019-03-14 08:03 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Dism
      2019-03-13 15:08 - 2018-09-17 10:26 - 000000000 ____D C:\Windows\system32\MRT
      2019-03-13 15:03 - 2018-09-11 14:54 - 127411920 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
      2019-03-13 13:08 - 2018-12-20 13:23 - 000034304 _____ C:\Users\user\Desktop\ГОВЕДА КРУШАРЕ СЕЛЯНИ.xls
      2019-03-13 12:00 - 2018-11-28 11:25 - 000004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
      2019-03-13 12:00 - 2018-09-13 07:33 - 000004464 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
      2019-03-13 12:00 - 2018-09-13 07:32 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
      2019-03-13 12:00 - 2018-09-13 07:32 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
      2019-03-13 12:00 - 2018-09-13 07:32 - 000000000 ____D C:\Windows\SysWOW64\Macromed
      2019-03-13 12:00 - 2018-09-13 07:32 - 000000000 ____D C:\Windows\system32\Macromed
      2019-03-13 11:00 - 2018-09-13 14:16 - 000004452 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
      2019-03-12 12:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
      2019-03-08 12:29 - 2018-09-11 15:25 - 000000000 ____D C:\Users\m\AppData\Local\Comodo
      2019-03-08 12:20 - 2018-09-14 14:25 - 000003998 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1536927954
      2019-02-27 12:50 - 2018-09-11 15:40 - 000000000 ____D C:\ProgramData\c95c652a-58d5-1
      2019-02-27 12:50 - 2018-09-11 15:40 - 000000000 ____D C:\ProgramData\c95c652a-3521-0
      2019-02-22 11:23 - 2018-09-13 13:43 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
      2019-02-15 08:29 - 2018-09-13 13:44 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
      2019-02-14 12:57 - 2018-09-11 15:57 - 000765656 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
      ==================== Files in the root of some directories =======
      2018-09-13 07:27 - 2018-09-13 07:27 - 000007613 _____ () C:\Users\m\AppData\Local\Resmon.ResmonCfg
      Some files in TEMP:
      ====================
      2010-09-27 10:56 - 2010-09-27 10:56 - 000016505 _____ () C:\Users\m\AppData\Local\Temp\DelayInst.exe
      2019-03-08 12:31 - 2016-02-05 11:34 - 002043440 _____ (Comodo Security Solutions, Inc.) C:\Users\m\AppData\Local\Temp\dragon_restart_helper.exe
      2009-07-17 19:12 - 2009-07-17 19:12 - 001957206 _____ (Adobe Systems Incorporated) C:\Users\m\AppData\Local\Temp\FP_AX_MSI_INSTALLER.exe
      2010-09-27 10:56 - 2010-09-27 10:56 - 000221315 _____ () C:\Users\m\AppData\Local\Temp\installservice.exe
      1999-12-20 14:04 - 1999-12-20 14:04 - 000056832 ____R () C:\Users\m\AppData\Local\Temp\mpegc.dll
      2012-10-02 02:44 - 2012-10-02 02:44 - 000178824 ____R (Microsoft Corporation) C:\Users\m\AppData\Local\Temp\ose00000.exe
      2011-03-04 11:52 - 2011-03-04 11:52 - 000056832 _____ () C:\Users\m\AppData\Local\Temp\vpnclient_setup.exe
      ==================== Bamital & volsnap ======================
      (There is no automatic fix for files that do not pass verification.)
      C:\Windows\system32\winlogon.exe => File is digitally signed
      C:\Windows\system32\wininit.exe => File is digitally signed
      C:\Windows\SysWOW64\wininit.exe => File is digitally signed
      C:\Windows\explorer.exe => File is digitally signed
      C:\Windows\SysWOW64\explorer.exe => File is digitally signed
      C:\Windows\system32\svchost.exe => File is digitally signed
      C:\Windows\SysWOW64\svchost.exe => File is digitally signed
      C:\Windows\system32\services.exe => File is digitally signed
      C:\Windows\system32\User32.dll => File is digitally signed
      C:\Windows\SysWOW64\User32.dll => File is digitally signed
      C:\Windows\system32\userinit.exe => File is digitally signed
      C:\Windows\SysWOW64\userinit.exe => File is digitally signed
      C:\Windows\system32\rpcss.dll => File is digitally signed
      C:\Windows\system32\dnsapi.dll => File is digitally signed
      C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
      C:\Windows\system32\dllhost.exe => File is digitally signed
      C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
      C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
      LastRegBack: 2019-03-14 08:58
      ==================== End of FRST.txt ============================
      Addition.txt
    • от sv3tlio
      Здравейте на всички! Ще гледам да съм максимално кратък и ще карам направо. Както виждате от заглавието на темата имам проблем с Хромиум. Като цяло проблемът ми е доста сходен с този : https://www.kaldata.com/forums/topic/270658-след-зареждане-на-windows-се-стартира-chromium/ . Същата работа е при мен. Преди около седмица си изтеглих BS Player, и от тогава се появи и този Chromium. BS Player-ът го изтеглих баш от сайта им, не от някакво измислено място, но явно и от там няма гаранция. Както и да е. Всеки път като се включи компютъра, било то след рестарт, или обикновено включване (това е само след пълно изключване на компютъра, когато го включа след "режим на готовност", този проблем го няма) веднага ми отваря Chromium и по-точно раздела history. На пръв поглед е все едно гледам Chrome, но не е. Отначало когато за пръв път се появи имаше историята от Chrome + каквито видео файлове съм пускал. Примерно влизал съм в еди си кой сайт, гледал съм еди си кой филм. Помъчих се да го деинсталирам обаче не става (ще приложа снимки какво точно ми излиза). 

      След като щракна върху Промени/премахни, пък ми излиза това: 

       И така до безкрайност. Писах "Chromium" в търсачката на компютъра (едно кученце). То търси, търси, чете някакви книжки, гледа с една лупа и накрая ми показа къде стоят файловете на този ми ти Chromium. Изтрих ги, нямаше никакъв ефект. После с Ctrl+alt+del влязох в "Процеси" и от там изтрих редовете на които пишеше chromium.exe. Тук беше и най-големият ми напредък, щото историята от Chrome + видео файловете отваряни откакто този компютър е станал компютър ги нямаше. Обаче остана това, че всеки път като включа компютъра и ми изкача нов прозорец в Chromium, ами освен това усещам как ми бави и самият Chrome - той е браузърът ми по подразбиране. Само да вметна, деинсталирах BS Player, Google Chrome, Mozilla Firefox, Avast също махнах за малко, барем се оправи, но не постигнах желаният от мен ефект. В темата която постнах по-горе от човека със същия проблем, пробвах да изтегля препоръчаният му fixlist, обаче ми дава грешка в страницата. Аз даже първо мислех, да си постна проблема там като коментар, ама викам айде да не спамя на човека темата, по-добре сякаш да отворя нова. Пък ако модераторите решат, че темата ми нещо е извън правилата, моля да бъда извинен за невежеството си. Та общо взето това е, бих се радвал на всякаква помощ. Лека вечер от мен!
       
    • от Fabry
      През няколко минути се появява странно съобщение от системата - на прикачената снимка е . Ако някой помогне, ще съм задължен !

  • Дарение

×
×
  • Добави ново...

Информация

Поставихме бисквитки на устройството ви за най-добро потребителско изживяване. Можете да промените настройките си за бисквитки, или в противен случай приемаме, че сте съгласни с нашите Условия за ползване