Zasekaný notebook Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 02 bře 2024 17:18

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26.02.2024 01
Ran by mastr (02-03-2024 17:04:03)
Running from C:\Users\mastr\Desktop\Čištění
Microsoft Windows 10 Home Version 22H2 19045.4123 (X64) (2021-04-24 12:23:17)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-554275594-3167024261-3936697177-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-554275594-3167024261-3936697177-503 - Limited - Disabled)
Guest (S-1-5-21-554275594-3167024261-3936697177-501 - Limited - Disabled)
mastr (S-1-5-21-554275594-3167024261-3936697177-1001 - Administrator - Enabled) => C:\Users\mastr
WDAGUtilityAccount (S-1-5-21-554275594-3167024261-3936697177-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Malwarebytes (Disabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Enabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
FW: McAfee Firewall (Enabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 23.008.20470 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601067}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.0.19 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.3.0 - Canon Inc.)
Canon MG3000 series Elektronická příručka (HKLM-x32\...\Canon MG3000 series Elektronická příručka) (Version: 1.3.0 - Canon Inc.)
Canon MG3000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3000_series) (Version: 1.03 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.21 - Piriform)
CrystalDiskInfo 9.2.3 (HKLM\...\CrystalDiskInfo_is1) (Version: 9.2.3 - Crystal Dew World)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 122.0.6261.95 - Google LLC)
Malwarebytes version 5.0.17.99 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.0.17.99 - Malwarebytes)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 122.0.2365.59 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 122.0.2365.59 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.17328.20142 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProplusRetail - en-us) (Version: 16.0.17328.20142 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17328.20142 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.17328.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14026.20052 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14026.20052 - Microsoft Corporation) Hidden
Registrace uživatele zařízení Canon MG3000 series (HKLM-x32\...\Registrace uživatele zařízení Canon MG3000 series) (Version: - ‭Canon Inc.)
Revo Uninstaller 2.4.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.4.5 - VS Revo Group, Ltd.)
RogueKiller version 15.15.2.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 15.15.2.0 - Adlice Software)
Skype verze 8.113 (HKLM-x32\...\Skype_is1) (Version: 8.113 - Skype Technologies S.A.)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.9.0 - Sophos Limited)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
WinRAR 5.90 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
Zemana AntiMalware verze 3.2.28 (HKLM-x32\...\{4E1F3677-C72E-4F7D-B66E-85467B1A289E}_is1) (Version: 3.2.28 - Zemana)

Packages:
=========

Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-02-28] ()
AMD Radeon™ Settings Lite -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.59462344778C5_10.19.10006.0_x64__0a9344xs7nr4m [2021-04-24] (Advanced Micro Devices Inc.)
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep [2021-08-31] (Canon Inc.)
Dev Home -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.1100.416.0_x64__8wekyb3d8bbwe [2024-03-01] (Microsoft Corporation)
Dolby Audio -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAudio_3.20900.902.0_x64__rz1tebttyb220 [2021-04-23] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-09-20] (Microsoft Corporation)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.5.109.0_x64__5grkq8ppsgwt4 [2024-02-28] (LENOVO INC) [Startup Task]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.15.227.0_x64__dt26b99r8h8gj [2021-04-26] (Realtek Semiconductor Corp)
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.61931.0_x64__8wekyb3d8bbwe [2023-09-17] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.19.1262.0_x64__8wekyb3d8bbwe [2024-02-28] (Microsoft Studios) [MS Ad]
Vyhledávání na webu z Microsoft Bingu -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.91.0_x64__8wekyb3d8bbwe [2024-03-02] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-554275594-3167024261-3936697177-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-554275594-3167024261-3936697177-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana\AntiMalware\AM_ShellExt64.dll [2021-03-30] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-02-29] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana\AntiMalware\AM_ShellExt64.dll [2021-03-30] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-02-29] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\mastr\Downloads\CrystalDiskInfo9_2_3.exe:MBAM.Zone.Identifier [251]
AlternateDataStreams: C:\Users\mastr\Downloads\RogueKiller_setup.exe:MBAM.Zone.Identifier [186]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-554275594-3167024261-3936697177-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-02-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-02-28] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2024-03-01 07:31 - 000000841 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-554275594-3167024261-3936697177-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX2"
HKLM\...\StartupApproved\Run32: => "CanonQuickMenu"
HKU\S-1-5-21-554275594-3167024261-3936697177-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_7B2379F66202C90235086A5C4E1F5A25"
HKU\S-1-5-21-554275594-3167024261-3936697177-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{9895F5B0-AF56-468F-9155-45C0D0CE468B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2E84A252-CC6F-49A7-B586-3FA9FA8495F5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.100.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{06A5659A-800D-4ECE-AD83-9343E1BC8026}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.100.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{05F3ABD5-53A1-46E0-AAEE-8FBBB6C9AEC0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.100.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1CD3096E-8AB7-4188-A4E9-2073ADF22D26}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.100.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9A3B4E01-2A9A-4EA6-A0C3-34569A64D584}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BEEB7487-999C-4EF1-B44C-A62A4C818B56}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{ACA074F9-26EC-40EB-B3DB-D961E7DFCCD0}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\122.0.2365.59\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9B83DD07-BF3C-410C-8537-6A9D556B236C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

28-02-2024 20:02:12 Instalační služba modulů systému Windows
29-02-2024 12:07:30 JRT Pre-Junkware Removal
29-02-2024 12:22:24 Installed Sophos Virus Removal Tool.
29-02-2024 18:53:36 AdwCleaner_BeforeCleaning_29/02/2024_18:53:35
01-03-2024 02:51:33 Instalační služba modulů systému Windows
01-03-2024 03:07:31 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (03/02/2024 11:16:19 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (03/02/2024 11:16:19 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (03/02/2024 11:16:19 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (03/02/2024 11:16:18 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (03/02/2024 11:06:51 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x8007001f, Zařízení připojené k systému nefunguje..

Operace:
Spouštění asynchronní operace

Kontext:
Aktuální stav: DoSnapshotSet

Error: (03/02/2024 11:05:33 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen..

Error: (03/02/2024 11:04:58 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005, Přístup byl odepřen..To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {3bdbb00b-c957-45c1-b008-21662289c609}

Error: (03/01/2024 07:29:55 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x80070006, Neplatný popisovač..

Operace:
Spouštění asynchronní operace

Kontext:
Aktuální stav: DoSnapshotSet


System errors:
=============
Error: (03/02/2024 11:16:11 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {3EB3C877-1F16-487C-9050-104DBCD66683} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:16:11 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {3EB3C877-1F16-487C-9050-104DBCD66683} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:16:08 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:16:08 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:16:08 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:16:08 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:16:07 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QP19ROCV)
Description: Server {3EB3C877-1F16-487C-9050-104DBCD66683} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/02/2024 11:06:32 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Canon Inkjet Printer/Scanner/Fax Extended Survey Program byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
================
Date: 2024-02-29 09:55:26
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {D1DBED83-519D-4A1B-A2FC-5F4347E5FD7A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Úplné prohledávání
Uživatel: LAPTOP-QP19ROCV\mastr

Date: 2024-02-28 19:05:37
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {78D74F04-28E4-4631-8B93-B6223BA53736}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: LAPTOP-QP19ROCV\mastr

Date: 2024-02-14 10:17:17
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {9045B1E8-6B45-45C6-8532-EA4CB79939BA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2024-02-04 14:58:17
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {F1776551-6860-4CAE-8F24-F0B6564B7505}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2024-02-04 14:46:24
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {86FFC723-6BDB-4BFB-B269-2972DC66CC11}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2024-02-28 21:15:07
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.757.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80070102
Popis chyby: Vypršel časový limit operace čekání.

Date: 2024-02-28 21:15:07
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.405.757.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24010.10
Kód chyby: 0x80070102
Popis chyby: Vypršel časový limit operace čekání.

Date: 2024-02-28 19:43:56
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.403.3204.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23110.2
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2024-02-28 19:43:56
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.403.3204.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23110.2
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2024-02-28 19:43:56
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.403.3204.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.23110.2
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

CodeIntegrity:
===============
Date: 2024-03-01 18:48:07
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO AYCN21WW 12/27/2019
Motherboard: LENOVO LNVNB161216
Processor: AMD A4-9125 RADEON R3, 4 COMPUTE CORES 2C+2G
Percentage of memory in use: 74%
Total physical RAM: 3471.98 MB
Available physical RAM: 880.82 MB
Total Virtual: 6031.98 MB
Available Virtual: 2972.47 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:464.51 GB) (Free:363.27 GB) (Model: TOSHIBA MQ01ABF050) NTFS

\\?\Volume{14daf089-f6cd-4ba9-98db-26d0c44a6074}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.45 GB) NTFS
\\?\Volume{61ecf7a3-d07a-4d01-ac48-6503bddfe076}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 968C3C83)

Partition: GPT.

==================== End of Addition.txt =======================

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod jaro3 » 02 bře 2024 18:33

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CreateRestorePoint:
CloseProcesses:
CHR HKU\S-1-5-21-554275594-3167024261-3936697177-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
AV: McAfee VirusScan (Enabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
FW: McAfee Firewall (Enabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.

\\?\Volume{14daf089-f6cd-4ba9-98db-26d0c44a6074}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.45 GB) NTFS
\\?\Volume{61ecf7a3-d07a-4d01-ac48-6503bddfe076}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32
co je to za disky?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 10:29

Fix result of Farbar Recovery Scan Tool (x64) Version: 26.02.2024 01
Ran by mastr (03-03-2024 00:55:03) Run:2
Running from C:\Users\mastr\Desktop\Čištění
Loaded Profiles: mastr
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
CHR HKU\S-1-5-21-554275594-3167024261-3936697177-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
AV: McAfee VirusScan (Enabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
FW: McAfee Firewall (Enabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}

EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-554275594-3167024261-3936697177-1001\SOFTWARE\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => removed successfully
"AV: McAfee VirusScan (Enabled - Up to date) {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}" => removed successfully
"FW: McAfee Firewall (Enabled) {CEB92439-04C2-6B62-DF3F-10F42A719C72}" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 9529720 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 812633 B
Edge => 0 B
Chrome => 49362060 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 17978 B
NetworkService => 21482 B
mastr => 104057 B
defaultuser100000 => 104057 B
defaultuser100001.LAPTOP-QP19ROCV => 104057 B

RecycleBin => 0 B
EmptyTemp: => 57.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 00:56:56 ====

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 10:34

Jedná se o systémový oddíl EFI a Oddíl pro obnovení. Počítač byl kupován s předinstalovaným OS.

Jinak tedy vidím značný pokrok v práci s notebookem, ale po startu to chce fakt nechat tak 5minut, než si všechno překouše.
Možná už je opravdu limitovaný rychlostí mechanického disku.
Přílohy
Výstřižek.PNG

Uživatelský avatar
pcmaker
Level 4
Level 4
Příspěvky: 1250
Registrován: březen 18
Bydliště: Soukromý byt
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod pcmaker » 03 bře 2024 12:50

Né možná, ale zcela jistě. (omlouvám se, že vstupuji do příspěvku). Kup nový SSD, vyklonuj na něj HDD a z líného notebooku bude raketa. OS najede do 20s.
https://www.czc.cz/lexar-nq100-2-5-480gb/382889/produkt

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod jaro3 » 03 bře 2024 16:32

Předtím byl notebook OK? 5 mniut je dlohá doba.

Stáhni si OTL by OldTimer
https://www.bleepingcomputer.com/download/otl/

na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
http://www.geekstogo.com/forum/topic/27 ... er-listit/
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 18:06

S výměnou disku počítám jako s krajní možností. V prvé řadě zkouším, co jde udělat se stávajícím. Notebook je starý 2-3 roky a disk nevykazuje chyby.
Od začátku určitě tak pomalý nebyl. Ještě uvidím, co ukáže OTL, pak nechám rozhodnout uživatele notebooku.

OTL Extras logfile created on: 03.03.2024 16:59:19 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\mastr\Desktop\Čištění
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.19041.0)
Locale: 00000405 | Country: Česko | Language: CSY | Date Format: dd.MM.yyyy

3,39 Gb Total Physical Memory | 1,34 Gb Available Physical Memory | 39,60% Memory free
5,89 Gb Paging File | 3,67 Gb Available in Paging File | 62,37% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 464,51 Gb Total Space | 353,34 Gb Free Space | 76,07% Space Free | Partition Type: NTFS

Computer Name: LAPTOP-QP19ROCV | User Name: mastr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- Reg Error: Key error.
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation)
Directory [UpdateEncryptionSettings] -- Reg Error: Key error.
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation)
Directory [UpdateEncryptionSettings] -- Reg Error: Key error.
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Feature]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Av]
"DataMigrated" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Av\{0D452135-A081-B000-D6B6-132E52638543}]
"GUID" = {0D452135-A081-B000-D6B6-132E52638543}
"DISPLAYNAME" = Malwarebytes
"STATE" = 397312
"PRODUCTEXE" = C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe -- (Malwarebytes)
"REPORTINGEXE" = C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe -- (Malwarebytes)

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Av\{D68DDC3A-831F-4fae-9E44-DA132C1ACF46}]
"GUID" = {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
"DISPLAYNAME" = Windows Defender Antivirus
"STATE" = 393472
"PRODUCTEXE" = windowsdefender://
"REPORTINGEXE" = %ProgramFiles%\Windows Defender\MsMpeng.exe -- (Microsoft Corporation)

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Av\{F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}]
"GUID" = {F682A51C-4EAD-6A3A-F460-B9C1D4A2DB09}
"DISPLAYNAME" = McAfee VirusScan
"STATE" = 462848
"PRODUCTEXE" = C:\Program Files\McAfee.com\Agent\mcupdate.exe
"REPORTINGEXE" = C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\CBP]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\DPA]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Fw]
"DataMigrated" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Fw\{CEB92439-04C2-6B62-DF3F-10F42A719C72}]
"GUID" = {CEB92439-04C2-6B62-DF3F-10F42A719C72}
"DISPLAYNAME" = McAfee Firewall
"STATE" = 462848
"PRODUCTEXE" = C:\Program Files\McAfee.com\Agent\mcupdate.exe
"REPORTINGEXE" = C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\SecurityApp]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\SecurityApp\WebProtection]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\ProvidersMigration]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\ProvidersMigration\WicaUpgradableAVs]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 B1 11 74 04 39 D7 01 [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Feature]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Av]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\CBP]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\DPA]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\Fw]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\SecurityApp]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Provider\SecurityApp\WebProtection]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\ProvidersMigration]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06035127-F10F-4C77-ACE7-D0B4DA0FC9B5}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft\edge\application\msedge.exe |
"{9895F5B0-AF56-468F-9155-45C0D0CE468B}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\root\office16\outlook.exe |
"{9B83DD07-BF3C-410C-8537-6A9D556B236C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{ACA074F9-26EC-40EB-B3DB-D961E7DFCCD0}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft\edgewebview\application\122.0.2365.59\msedgewebview2.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00446B6A-8BA0-4912-9C74-A74DB7376857}" = dir=in | name=@{microsoft.windows.search_1.14.13.19041_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.search/resources/packagedisplayname} |
"{05F3ABD5-53A1-46E0-AAEE-8FBBB6C9AEC0}" = protocol=17 | dir=in | app=c:\program files\windowsapps\microsoft.skypeapp_15.100.3203.0_x64__kzf8qxf38zg5c\skype\skype.exe |
"{06A5659A-800D-4ECE-AD83-9343E1BC8026}" = protocol=6 | dir=out | app=c:\program files\windowsapps\microsoft.skypeapp_15.100.3203.0_x64__kzf8qxf38zg5c\skype\skype.exe |
"{12C1805C-106A-4FFC-B98C-E1A2EC2E015B}" = dir=in | name=@{microsoft.microsoftstickynotes_6.0.2.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftstickynotes/resources/stickynotesstoreappname} |
"{1797A30F-542A-4BAB-9273-2D3AB0682F8E}" = dir=in | name=@{microsoft.desktopappinstaller_1.22.10582.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} |
"{17A4B2FA-28E7-4BB0-AE6F-F814B791504A}" = dir=out | name=@{microsoft.windows.startmenuexperiencehost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.startmenuexperiencehost/startmenuexperiencehost/pkgdisplayname} |
"{1B26E100-EC2E-4115-AE71-E640BF8E8EB0}" = dir=out | name=@{microsoft.storepurchaseapp_22312.1401.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.storepurchaseapp/resources/displaytitle} |
"{1CD3096E-8AB7-4188-A4E9-2073ADF22D26}" = protocol=17 | dir=out | app=c:\program files\windowsapps\microsoft.skypeapp_15.100.3203.0_x64__kzf8qxf38zg5c\skype\skype.exe |
"{1E441C3F-CA2F-4263-9AC9-9DB65840E176}" = dir=in | name=@{microsoft.windowsalarms_11.2401.9.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsalarms/resources/appstorename} |
"{22A906D8-38BF-4A71-8CFE-FF19B1EF060C}" = dir=out | name=@{microsoft.windows.narratorquickstart_10.0.19041.3636_neutral_neutral_8wekyb3d8bbwe?ms-resource://microsoft.windows.narratorquickstart/resources/appdisplayname} |
"{23AA1295-08E7-4A84-BA8B-D470165B640A}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.19041.3636.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{278B9C24-0612-49FD-9C31-DEC8840E5E64}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{27F9CD1F-31A1-4FA4-8405-5A0C860A29AB}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.2401.20253.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{29C16D19-FE2E-4A84-A9FF-3B8AF74CAEC0}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.19041.1949_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} |
"{2DDF5249-F86F-41FE-93FA-CC959FC8939E}" = dir=out | name=@{microsoft.windows.peopleexperiencehost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.peopleexperiencehost/resources/pkgdisplayname} |
"{2E84A252-CC6F-49A7-B586-3FA9FA8495F5}" = protocol=6 | dir=in | app=c:\program files\windowsapps\microsoft.skypeapp_15.100.3203.0_x64__kzf8qxf38zg5c\skype\skype.exe |
"{329908C0-3828-49CF-A76E-2729FD0346C2}" = dir=out | name=@{microsoft.microsoftstickynotes_6.0.2.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftstickynotes/resources/stickynotesstoreappname} |
"{36BE6F9F-B498-4179-AB1C-2B3028F95295}" = dir=in | name=@{microsoft.storepurchaseapp_22312.1401.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.storepurchaseapp/resources/displaytitle} |
"{3CC96F21-1D43-4D7B-8464-328E436C87C4}" = dir=out | name=@{microsoft.windowscamera_2023.2312.3.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscamera/lenssdk/resources/appstorename} |
"{46E1F808-F7B3-4CEE-AE6C-4D2EEE24349E}" = dir=out | name=@{microsoft.gethelp_10.2308.12552.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.gethelp/resources/appdisplayname} |
"{49DC4FC9-B362-4BD9-8571-5A8DEC18783A}" = dir=out | name=@{microsoft.windows.sechealthui_10.0.19041.3636_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.sechealthui/resources/packagedisplayname} |
"{51118022-D93E-476F-B2B0-40D18C82D25F}" = dir=out | name=onenote for windows 10 |
"{5193B5EF-50A6-4C86-926B-BACB12495C5C}" = dir=out | name=@{microsoftwindows.client.cbs_1000.19054.1000.0_x64__cw5n1h2txyewy?ms-resource://microsoftwindows.client.cbs/resources/productpkgdisplayname} |
"{5424D013-D5C7-4C66-9A06-DBBB45B62C9F}" = dir=in | name=game bar |
"{5484358F-B514-44F3-BFAF-8B119D5AE7E5}" = dir=in | name=@{microsoft.windows.sechealthui_10.0.19041.3636_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.sechealthui/resources/packagedisplayname} |
"{57DDBF0E-61B1-4860-956C-CCC2E7B888FF}" = dir=out | name=@{microsoft.windowscalculator_11.2401.0.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscalculator/resources/appstorename} |
"{584B4BB7-14FF-4861-AC45-46A89C8AC96F}" = dir=in | name=@{microsoft.win32webviewhost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.win32webviewhost/resources/displayname} |
"{6008A72F-A133-4743-88E8-C5BF54BE05C4}" = dir=out | name=@{microsoft.windows.startmenuexperiencehost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.startmenuexperiencehost/startmenuexperiencehost/pkgdisplayname} |
"{6132C9AA-E93A-4384-A21F-D5422367BD86}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{659B16FC-D1E5-4F4A-A666-D9AC88A58CFB}" = dir=out | name=game bar |
"{69175BE4-9DCE-48E5-BAE4-CAB9AAA144F2}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.19041.3636.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{69F643A3-F237-48D6-B024-AF946A6E32D6}" = dir=out | name=@{microsoft.windowsalarms_11.2401.9.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsalarms/resources/appstorename} |
"{6D960F0F-E6F5-4372-8BC7-73EEB0D365E8}" = dir=out | name=@{microsoft.windows.search_1.14.13.19041_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.search/resources/packagedisplayname} |
"{70331EF0-C85E-459D-818A-104F547CA827}" = dir=out | name=@{microsoft.mspaint_6.2310.24037.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.mspaint/resources/appname} |
"{74D920D4-BC59-4034-9D75-C6A893D98CCD}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.19041.3636.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{7675DE1A-C923-4C80-BCE7-2CD65EB9CD79}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.19041.3636.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{7A087029-1165-482A-BCE8-30373CE54547}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{7C71AC16-2336-41F5-8ED5-9666A89CA3F8}" = dir=out | name=@{microsoft.xboxidentityprovider_12.95.3001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} |
"{7FF1E544-A09B-4A6E-B146-96E5D1E4B337}" = dir=in | name=@{microsoft.windows.photos_2024.11010.23003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{83AEA233-1967-4693-9FBA-7F76BCE6F400}" = dir=out | name=solitaire & casual games |
"{84A160F0-E50B-4285-ADF8-46BC938A0613}" = dir=in | name=microsoft store |
"{89EDDD49-CD1A-4A02-AEDC-B4E20881968F}" = dir=out | name=@{microsoft.windowscommunicationsapps_16005.14326.21830.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{95C2DC30-FC50-4143-AB85-7DF6329E57DA}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} |
"{980A659D-AC79-4F43-AE11-832664E960B8}" = dir=out | name=@{microsoft.windows.photos_2024.11010.23003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{98997E75-A6B5-4532-82AA-A63EA1FD4CC4}" = dir=out | name=lenovo hotkeys |
"{99C50DF1-1C3A-4E2D-AECE-93996F376ACB}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{9A3B4E01-2A9A-4EA6-A0C3-34569A64D584}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft\skype for desktop\skype.exe |
"{9FF63208-B0CD-4C93-AD5B-F4E5F95E19EA}" = dir=out | name=microsoft store |
"{A11272FD-A78C-41DF-A9EC-54A99B1CEA1F}" = dir=in | name=@{microsoft.windows.startmenuexperiencehost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.startmenuexperiencehost/startmenuexperiencehost/pkgdisplayname} |
"{A41283C5-FF40-4208-82D5-8CF60EB843FA}" = dir=out | name=@{microsoft.windows.oobenetworkcaptiveportal_10.0.19041.3636_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.oobenetworkcaptiveportal/resources/appdisplayname} |
"{ABF91943-0059-4F35-A9C0-7CE383CFCB6A}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.19041.3636.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} |
"{AF27EBF8-14BB-4F15-B941-40E4CF9CBD55}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.19041.1266_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{B19FA09F-CAA1-48FF-8ECA-B079FD45C0B1}" = dir=in | name=@{microsoftwindows.client.cbs_1000.19054.1000.0_x64__cw5n1h2txyewy?ms-resource://microsoftwindows.client.cbs/resources/productpkgdisplayname} |
"{B2549CA0-15B2-4BA2-B9EC-FA14B368FF99}" = dir=in | name=@{microsoft.windowscommunicationsapps_16005.14326.21830.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{B6D91081-169A-452C-BC51-FAC32AF86714}" = dir=in | name=onenote for windows 10 |
"{BB28BDA6-284F-4B81-A227-3CBDC6D806A3}" = dir=out | name=@{microsoft.accountscontrol_10.0.19041.3636_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{BE4BE16B-3871-4773-9955-C0D29AA2E941}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.2401.20253.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{BEEB7487-999C-4EF1-B44C-A62A4C818B56}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft\skype for desktop\skype.exe |
"{C546D9EB-A478-49A1-8EB9-6A9F3B8997D3}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.19041.1266_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{C85CE68E-43F1-44E5-B1FE-19D587A40CFA}" = dir=in | name=@{microsoft.windows.startmenuexperiencehost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.startmenuexperiencehost/startmenuexperiencehost/pkgdisplayname} |
"{CE0D5CE3-FCA3-4752-A2E0-EA9B10B8A242}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{CF5E043B-8437-4EB7-911C-5E166EF6C407}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{D4345C43-1A4B-40BE-8BBE-0FF0A949D880}" = dir=out | name=@{microsoft.windows.oobenetworkcaptiveportal_10.0.19041.1023_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.oobenetworkcaptiveportal/resources/appdisplayname} |
"{E7558D28-8BED-4D89-B16A-FA2FC69A957C}" = dir=out | name=@{microsoft.windowsmaps_11.2311.1.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{EB992568-5F8B-428D-A311-85FEF8F7F6C9}" = dir=in | name=solitaire & casual games |
"{EE0D3394-ACD4-4D0B-9D33-80FCEDB824D2}" = dir=out | name=@{microsoftwindows.client.cbs_1000.19041.1000.0_x64__cw5n1h2txyewy?ms-resource://microsoftwindows.client.cbs/resources/productpkgdisplayname} |
"{EFE10E17-674E-43ED-928C-F9619217BE23}" = dir=out | name=ncsiuwpapp |
"{F5363C49-AC51-46ED-BF66-92E5D3330507}" = dir=out | name=@{microsoft.lockapp_10.0.19041.3636_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{F596C22A-C6AB-43A5-931A-1C638ABF1F4D}" = dir=out | name=@{microsoft.desktopappinstaller_1.22.10582.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} |
"{F9DE1A1D-49C9-4858-B157-6DD39766F942}" = dir=out | name=@{microsoft.getstarted_10.2312.1.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{FF7955E5-AB58-453D-AEAD-51A72D8B1B3B}" = dir=out | name=@{microsoft.win32webviewhost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.win32webviewhost/resources/displayname} |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3000_series" = Canon MG3000 series MP Drivers
"{1FC1A6C2-576E-489A-9B4A-92D21F542136}" = Microsoft Update Health Tools
"{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1" = Malwarebytes version 5.0.17.99
"{90160000-007E-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Licensing Component
"{90160000-008C-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component
"{90160000-008C-0405-1000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component
"{90160000-008C-0409-1000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component
"{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1" = Revo Uninstaller 2.4.5
"{AC76BA86-1029-1033-7760-BC15014EA700}" = Adobe Acrobat (64-bit)
"8B3D7924-ED89-486B-8322-E8594065D5CB_is1" = RogueKiller version 15.15.2.0
"CCleaner" = CCleaner
"CrystalDiskInfo_is1" = CrystalDiskInfo 9.2.3
"ProplusRetail - cs-cz" = Microsoft Office Professional Plus 2016 - cs-cz
"ProplusRetail - en-us" = Microsoft Office Professional Plus 2016 - en-us
"WinRAR archiver" = WinRAR 5.90 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{4E1F3677-C72E-4F7D-B66E-85467B1A289E}_is1" = Zemana AntiMalware verze 3.2.28
"{AC76BA86-0804-1033-1959-018244601067}" = Adobe Refresh Manager
"{B829E117-D072-41EA-9606-9826A38D34C1}" = Sophos Virus Removal Tool
"Canon MG3000 series Elektronická příručka" = Canon MG3000 series Elektronická příručka
"Canon My Image Garden" = Canon My Image Garden
"Canon My Image Garden Design Files" = Canon My Image Garden Design Files
"Canon_IJ_Network_Scanner_Selector_EX2" = Canon IJ Network Scanner Selector EX2
"Canon_IJ_Scan_Utility" = Canon IJ Scan Utility
"CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program
"CanonQuickMenu" = Canon Quick Menu
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"Google Chrome" = Google Chrome
"Microsoft Edge" = Microsoft Edge
"Microsoft Edge Update" = Microsoft Edge Update
"Microsoft EdgeWebView" = Microsoft Edge WebView2 Runtime
"Registrace uživatele zařízení Canon MG3000 series" = Registrace uživatele zařízení Canon MG3000 series
"Skype_is1" = Skype verze 8.113

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 09.09.2023 7:31:38 | Computer Name = LAPTOP-QP19ROCV | Source = VSS | ID = 13
Description =

Error - 09.09.2023 7:31:38 | Computer Name = LAPTOP-QP19ROCV | Source = VSS | ID = 8193
Description =

Error - 09.09.2023 7:31:40 | Computer Name = LAPTOP-QP19ROCV | Source = VSS | ID = 12293
Description =

Error - 17.09.2023 8:59:40 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = Služba Šifrování selhala při volání OnIdentity() v objektu System
Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokol
Microsoft LLDP (Link-Layer Discovery Protocol). System Error: Přístup byl odepřen.
.

Error - 17.09.2023 9:03:33 | Computer Name = LAPTOP-QP19ROCV | Source = Application Hang | ID = 1002
Description = Program GameBar.exe verze 5.823.3261.0 přestal spolupracovat s Windows
a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto
problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID
procesu: 2530 Čas spuštění: 01d9e967309254ed Čas ukončení: 4294967295 Cesta k aplikaci:
C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.3261.0_x64__8wekyb3d8bbwe\GameBar.exe

ID
hlášení: c7f61328-d967-4f45-bac9-77112b66a1ad Úplný název balíčku s chybou: Microsoft.XboxGamingOverlay_5.823.3261.0_x64__8wekyb3d8bbwe

ID
aplikace relativní podle balíčku s chybou: App Typ zablokování: Activation

Error - 21.09.2023 5:43:54 | Computer Name = LAPTOP-QP19ROCV | Source = .NET Runtime | ID = 1026
Description =

Error - 21.09.2023 5:43:57 | Computer Name = LAPTOP-QP19ROCV | Source = Application Error | ID = 1000
Description = Název chybující aplikace: DTUltra.exe, verze: 5.8.0.1409, časové razítko:
0x5ec27a58 Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.3155, časové
razítko: 0xbf300201 Kód výjimky: 0xe0434352 Posun chyby: 0x000000000002cf19 ID chybujícího
procesu: 0xcb4 Čas spuštění chybující aplikace: 0x01d9ec6ffed4d06d Cesta k chybující
aplikaci: C:\Program Files\DAEMON Tools Ultra\DTUltra.exe Cesta k chybujícímu modulu:
C:\WINDOWS\System32\KERNELBASE.dll ID zprávy: c82efa55-cdd9-41fc-94ec-311e12cdd9d7
Úplný
název chybujícího balíčku: ? ID aplikace související s chybujícím balíčkem: ?

Error - 21.09.2023 5:50:27 | Computer Name = LAPTOP-QP19ROCV | Source = Application Error | ID = 1000
Description = Název chybující aplikace: Microsoft.Photos.exe, verze: 2023.10070.17002.0,
časové razítko: 0x64b5a80d Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.3155,
časové razítko: 0xbf300201 Kód výjimky: 0x80131623 Posun chyby: 0x000000000012d8b2
ID
chybujícího procesu: 0x34d4 Čas spuštění chybující aplikace: 0x01d9ebe93ffa8731 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2023.10070.17002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll ID zprávy: 9f1c054b-bb90-41f1-a1ae-8ac3626b7d0b
Úplný
název chybujícího balíčku: Microsoft.Windows.Photos_2023.10070.17002.0_x64__8wekyb3d8bbwe
ID
aplikace související s chybujícím balíčkem: App

Error - 21.09.2023 5:51:32 | Computer Name = LAPTOP-QP19ROCV | Source = Application Hang | ID = 1002
Description = Program explorer.exe verze 10.0.19041.3155 přestal spolupracovat s
Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací
o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení
a údržba. ID procesu: 14a0 Čas spuštění: 01d9e311da06d217 Čas ukončení: 0 Cesta k aplikaci:
C:\Windows\explorer.exe ID hlášení: 1b1972f7-9211-4898-b5f8-6a71d6e7b801 Úplný název
balíčku s chybou: ? ID aplikace relativní podle balíčku s chybou: ? Typ zablokování:
Cross-process

Error - 21.09.2023 5:51:40 | Computer Name = LAPTOP-QP19ROCV | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SearchApp.exe, verze: 10.0.19041.3155, časové
razítko: 0x5cb9ff30 Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.3155,
časové razítko: 0xbf300201 Kód výjimky: 0xc0000409 Posun chyby: 0x000000000012d8b2
ID
chybujícího procesu: 0xabc Čas spuštění chybující aplikace: 0x01d9ec703fe1bc4d Cesta
k chybující aplikaci: C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll ID zprávy: 1802a1c8-7614-4972-92a4-c6c41362763f
Úplný
název chybujícího balíčku: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
ID
aplikace související s chybujícím balíčkem: CortanaUI

[ OAlerts Events ]
Error - 09.07.2023 2:03:26 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 09.07.2023 11:42:17 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 09.07.2023 12:50:13 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 09.07.2023 21:00:24 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 10.07.2023 1:17:01 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 10.07.2023 2:48:13 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 10.07.2023 7:07:47 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 10.07.2023 9:56:19 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 10.07.2023 18:45:05 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


Error - 10.07.2023 21:46:17 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft Office 16 Alerts | ID = 300
Description = Failed to parse element: VersionOverrides Id=bdb87fae-106b-4eb5-909b-a1075076d14d,
DisplayName=Copilot (Preview), Provider=Microsoft Office Services, StoreType=SdxRdx,
StoreId=(null) P1: Apps for Office P2: 16.0.16529.20100 P3: 0x8004323E P4: New Document


[ Parameters Events ]
OTL encountered an error while reading this event log. It may be corrupt.
[ State Events ]
OTL encountered an error while reading this event log. It may be corrupt.
Error - 22.01.2024 5:55:29 | Computer Name = LAPTOP-QP19ROCV | Source = DCOM | ID = 10010
Description =

Error - 22.01.2024 9:45:16 | Computer Name = LAPTOP-QP19ROCV | Source = DCOM | ID = 10010
Description =

Error - 22.01.2024 9:46:03 | Computer Name = LAPTOP-QP19ROCV | Source = DCOM | ID = 10010
Description =

Error - 24.01.2024 12:26:57 | Computer Name = LAPTOP-QP19ROCV | Source = DCOM | ID = 10010
Description =

Error - 01.02.2024 11:00:27 | Computer Name = LAPTOP-QP19ROCV | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby Windows Search bylo dosaženo časového
limitu (30000 ms).

Error - 01.02.2024 11:00:27 | Computer Name = LAPTOP-QP19ROCV | Source = Service Control Manager | ID = 7000
Description = Služba Windows Search neuspěla při spuštění v důsledku následující
chyby: %%1053

Error - 01.02.2024 15:17:21 | Computer Name = LAPTOP-QP19ROCV | Source = DCOM | ID = 10010
Description =

Error - 01.02.2024 21:09:06 | Computer Name = LAPTOP-QP19ROCV | Source = DCOM | ID = 10010
Description =

Error - 01.02.2024 21:56:19 | Computer Name = LAPTOP-QP19ROCV | Source = Service Control Manager | ID = 7011
Description = Při čekání na odezvu transakce služby ClickToRunSvc bylo dosaženo
časového limitu (30000 ms).

Error - 01.02.2024 22:34:10 | Computer Name = LAPTOP-QP19ROCV | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalace se nezdařila: Instalování následující aktualizace se nezdařilo
z důvodu chyby (0x80073d02): 9NBLGGH4RV3K-Microsoft.VCLibs.140.00.UWPDesktop.


< End of report >

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 18:07

OTL logfile created on: 03.03.2024 16:59:19 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\mastr\Desktop\Čištění
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.19041.0)
Locale: 00000405 | Country: Česko | Language: CSY | Date Format: dd.MM.yyyy

3,39 Gb Total Physical Memory | 1,34 Gb Available Physical Memory | 39,60% Memory free
5,89 Gb Paging File | 3,67 Gb Available in Paging File | 62,37% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 464,51 Gb Total Space | 353,34 Gb Free Space | 76,07% Space Free | Partition Type: NTFS

Computer Name: LAPTOP-QP19ROCV | User Name: mastr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - File not found
PRC - C:\Users\mastr\Desktop\Čištění\OTL.exe (OldTimer Tools)
PRC - C:\Windows\SysWOW64\fontdrvhost.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc.)
PRC - C:\Program Files (x86)\Google\Update\1.3.36.363\GoogleCrashHandler.exe (Google LLC)
PRC - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe ()


========== Modules (No Company Name) ==========

MOD - C:\Windows\SysWOW64\umpdc.dll ()
MOD - C:\Windows\SysWOW64\TextShaping.dll ()


========== Services (SafeList) ==========

SRV:64bit: - (AppReadiness) -- C:\Windows\SysNative\AppReadiness.dll (Microsoft Corporation)
SRV:64bit: - (UdkUserSvc) -- C:\Windows\SysNative\windowsudk.shellcommon.dll (Microsoft Corporation)
SRV:64bit: - (AppXSvc) -- C:\Windows\SysNative\AppXDeploymentServer.dll (Microsoft Corporation)
SRV:64bit: - (DmEnrollmentSvc) -- C:\Windows\SysNative\Windows.Internal.Management.dll (Microsoft Corporation)
SRV:64bit: - (dmwappushservice) -- C:\Windows\SysNative\dmwappushsvc.dll (Microsoft Corporation)
SRV:64bit: - (dcsvc) -- C:\Windows\SysNative\dcsvc.dll (Microsoft Corporation)
SRV:64bit: - (UserManager) -- C:\Windows\SysNative\usermgr.dll (Microsoft Corporation)
SRV:64bit: - (EntAppSvc) -- C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll (Microsoft Corporation)
SRV:64bit: - (InstallService) -- C:\Windows\SysNative\InstallService.dll (Microsoft Corporation)
SRV:64bit: - (DoSvc) -- C:\Windows\SysNative\dosvc.dll (Microsoft Corporation)
SRV:64bit: - (TokenBroker) -- C:\Windows\SysNative\TokenBroker.dll (Microsoft Corporation)
SRV:64bit: - (GameInputSvc) -- C:\Windows\SysNative\GameInputSvc.exe (Microsoft Corporation)
SRV:64bit: - (WManSvc) -- C:\Windows\SysNative\Windows.Management.Service.dll (Microsoft Corporation)
SRV:64bit: - (TroubleshootingSvc) -- C:\Windows\SysNative\MitigationClient.dll (Microsoft Corporation)
SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV:64bit: - (MBVpnTunnelService) -- C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe (Malwarebytes)
SRV:64bit: - (MBAMService) -- C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes)
SRV:64bit: - (RetailDemo) -- C:\Windows\SysNative\RDXService.dll (Microsoft Corporation)
SRV:64bit: - (FrameServer) -- C:\Windows\SysNative\FrameServer.dll (Microsoft Corporation)
SRV:64bit: - (cbdhsvc) -- C:\Windows\SysNative\CBDHSvc.dll (Microsoft Corporation)
SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation)
SRV:64bit: - (PrintWorkflowUserSvc) -- C:\Windows\SysNative\PrintWorkflowService.dll (Microsoft Corporation)
SRV:64bit: - (DiagTrack) -- C:\Windows\SysNative\diagtrack.dll (Microsoft Corporation)
SRV:64bit: - (UsoSvc) -- C:\Windows\SysNative\usosvc.dll (Microsoft Corporation)
SRV:64bit: - (PushToInstall) -- C:\Windows\SysNative\PushToInstall.dll (Microsoft Corporation)
SRV:64bit: - (NgcSvc) -- C:\Windows\SysNative\ngcsvc.dll (Microsoft Corporation)
SRV:64bit: - (NgcCtnrSvc) -- C:\Windows\SysNative\NgcCtnrSvc.dll (Microsoft Corporation)
SRV:64bit: - (camsvc) -- C:\Windows\SysNative\CapabilityAccessManager.dll (Microsoft Corporation)
SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
SRV:64bit: - (CDPSvc) -- C:\Windows\SysNative\cdpsvc.dll (Microsoft Corporation)
SRV:64bit: - (CDPUserSvc) -- C:\Windows\SysNative\cdpusersvc.dll (Microsoft Corporation)
SRV:64bit: - (WpcMonSvc) -- C:\Windows\SysNative\WpcDesktopMonSvc.dll (Microsoft Corporation)
SRV:64bit: - (wisvc) -- C:\Windows\SysNative\FlightSettings.dll (Microsoft Corporation)
SRV:64bit: - (XblAuthManager) -- C:\Windows\SysNative\XblAuthManager.dll (Microsoft Corporation)
SRV:64bit: - (rkrtservice) -- C:\Program Files\RogueKiller\RogueKillerSvc.exe ()
SRV:64bit: - (CCleanerPerformanceOptimizerService) -- C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (Piriform Software Ltd)
SRV:64bit: - (DevicePickerUserSvc) -- C:\Windows\SysNative\Windows.Devices.Picker.dll (Microsoft Corporation)
SRV:64bit: - (WalletService) -- C:\Windows\SysNative\WalletService.dll (Microsoft Corporation)
SRV:64bit: - (OneSyncSvc) -- C:\Windows\SysNative\APHostService.dll (Microsoft Corporation)
SRV:64bit: - (MixedRealityOpenXRSvc) -- C:\Windows\SysNative\MixedRealityRuntime.dll (Microsoft Corporation)
SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvcext.dll (Microsoft Corporation)
SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvcext.dll (Microsoft Corporation)
SRV:64bit: - (spectrum) -- C:\Windows\SysNative\Spectrum.exe (Microsoft Corporation)
SRV:64bit: - (SharedRealitySvc) -- C:\Windows\SysNative\SharedRealitySvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicvmsession) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (vmicguestinterface) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation)
SRV:64bit: - (workfolderssvc) -- C:\Windows\SysNative\workfolderssvc.dll (Microsoft Corporation)
SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation)
SRV:64bit: - (TieringEngineService) -- C:\Windows\SysNative\TieringEngineService.exe (Microsoft Corporation)
SRV:64bit: - (McpManagementService) -- C:\Windows\SysNative\McpManagementService.dll (Microsoft Corporation)
SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation)
SRV:64bit: - (DispBrokerDesktopSvc) -- C:\Windows\SysNative\DispBroker.Desktop.dll (Microsoft Corporation)
SRV:64bit: - (smphost) -- C:\Windows\SysNative\smphost.dll (Microsoft Corporation)
SRV:64bit: - (ConsentUxUserSvc) -- C:\Windows\SysNative\ConsentUxClient.dll (Microsoft Corporation)
SRV:64bit: - (perceptionsimulation) -- C:\Windows\SysNative\PerceptionSimulation\PerceptionSimulationService.exe (Microsoft Corporation)
SRV:64bit: - (SgrmBroker) -- C:\Windows\SysNative\SgrmBroker.exe (Microsoft Corporation)
SRV:64bit: - (XboxNetApiSvc) -- C:\Windows\SysNative\XboxNetApiSvc.dll (Microsoft Corporation)
SRV:64bit: - (DisplayEnhancementService) -- C:\Windows\SysNative\Microsoft.Graphics.Display.DisplayEnhancementService.dll (Microsoft Corporation)
SRV:64bit: - (autotimesvc) -- C:\Windows\SysNative\autotimesvc.dll (Microsoft Corporation)
SRV:64bit: - (SmsRouter) -- C:\Windows\SysNative\SmsRouterSvc.dll (Microsoft Corporation)
SRV:64bit: - (BcastDVRUserService) -- C:\Windows\SysNative\bcastdvruserservice.dll (Microsoft Corporation)
SRV:64bit: - (diagsvc) -- C:\Windows\SysNative\DiagSvc.dll (Microsoft Corporation)
SRV:64bit: - (RmSvc) -- C:\Windows\SysNative\RMapi.dll (Microsoft Corporation)
SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation)
SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation)
SRV:64bit: - (SensorDataService) -- C:\Windows\SysNative\SensorDataService.exe (Microsoft Corporation)
SRV:64bit: - (ScDeviceEnum) -- C:\Windows\SysNative\ScDeviceEnum.dll (Microsoft Corporation)
SRV:64bit: - (diagnosticshub.standardcollector.service) -- C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (Microsoft Corporation)
SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation)
SRV:64bit: - (NetSetupSvc) -- C:\Windows\SysNative\NetSetupSvc.dll (Microsoft Corporation)
SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation)
SRV:64bit: - (WpnUserService_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (UserDataSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (UnistoreSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (UdkUserSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (PrintWorkflowUserSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (PimIndexMaintenanceSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (OneSyncSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (MessagingService_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (DevicesFlowUserSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (DevicePickerUserSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationBrokerSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (ConsentUxUserSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (CDPUserSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (cbdhsvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (CaptureService_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (BluetoothUserService_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (BcastDVRUserService_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (AarSvc_207bca) -- C:\Windows\SysNative\svchost.exe (Microsoft Corporation)
SRV:64bit: - (CoreMessagingRegistrar) -- C:\Windows\SysNative\CoreMessaging.dll (Microsoft Corporation)
SRV:64bit: - (CaptureService) -- C:\Windows\SysNative\CaptureService.dll (Microsoft Corporation)
SRV:64bit: - (DevicesFlowUserSvc) -- C:\Windows\SysNative\DevicesFlowBroker.dll (Microsoft Corporation)
SRV:64bit: - (shpamsvc) -- C:\Windows\SysNative\Windows.SharedPC.AccountManager.dll (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation)
SRV:64bit: - (SensorService) -- C:\Windows\SysNative\SensorService.dll (Microsoft Corporation)
SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\psmsrv.dll (Microsoft Corporation)
SRV:64bit: - (WpnUserService) -- C:\Windows\SysNative\WpnUserService.dll (Microsoft Corporation)
SRV:64bit: - (WpnService) -- C:\Windows\SysNative\wpnservice.dll (Microsoft Corporation)
SRV:64bit: - (NcbService) -- C:\Windows\SysNative\ncbservice.dll (Microsoft Corporation)
SRV:64bit: - (TimeBrokerSvc) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation)
SRV:64bit: - (StateRepository) -- C:\Windows\SysNative\Windows.StateRepository.dll (Microsoft Corporation)
SRV:64bit: - (WaaSMedicSvc) -- C:\Windows\SysNative\WaaSMedicSvc.dll (Microsoft Corporation)
SRV:64bit: - (UserDataSvc) -- C:\Windows\SysNative\UserDataService.dll (Microsoft Corporation)
SRV:64bit: - (UnistoreSvc) -- C:\Windows\SysNative\Unistore.dll (Microsoft Corporation)
SRV:64bit: - (PimIndexMaintenanceSvc) -- C:\Windows\SysNative\PimIndexMaintenance.dll (Microsoft Corporation)
SRV:64bit: - (LicenseManager) -- C:\Windows\SysNative\LicenseManagerSvc.dll (Microsoft Corporation)
SRV:64bit: - (GraphicsPerfSvc) -- C:\Windows\SysNative\GraphicsPerfSvc.dll (Microsoft Corporation)
SRV:64bit: - (SEMgrSvc) -- C:\Windows\SysNative\SEMgrSvc.dll (Microsoft Corporation)
SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation)
SRV:64bit: - (ClipSVC) -- C:\Windows\SysNative\ClipSVC.dll (Microsoft Corporation)
SRV:64bit: - (DeviceAssociationBrokerSvc) -- C:\Windows\SysNative\deviceaccess.dll (Microsoft Corporation)
SRV:64bit: - (tzautoupdate) -- C:\Windows\SysNative\tzautoupdate.dll (Microsoft Corporation)
SRV:64bit: - (DsSvc) -- C:\Windows\SysNative\dssvc.dll (Microsoft Corporation)
SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
SRV:64bit: - (embeddedmode) -- C:\Windows\SysNative\embeddedmodesvc.dll (Microsoft Corporation)
SRV:64bit: - (SecurityHealthService) -- C:\Windows\SysNative\SecurityHealthService.exe (Microsoft Corporation)
SRV:64bit: - (CredentialEnrollmentManagerUserSvc_207bca) -- C:\Windows\SysNative\CredentialEnrollmentManager.exe (Microsoft Corporation)
SRV:64bit: - (CredentialEnrollmentManagerUserSvc) -- C:\Windows\SysNative\CredentialEnrollmentManager.exe (Microsoft Corporation)
SRV:64bit: - (WFDSConMgrSvc) -- C:\Windows\SysNative\WFDSConMgrSvc.dll (Microsoft Corporation)
SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation)
SRV:64bit: - (NaturalAuthentication) -- C:\Windows\SysNative\NaturalAuth.dll (Microsoft Corporation)
SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation)
SRV:64bit: - (AarSvc) -- C:\Windows\SysNative\AarSvc.dll (Microsoft Corporation)
SRV:64bit: - (VacSvc) -- C:\Windows\SysNative\vac.dll (Microsoft Corporation)
SRV:64bit: - (icssvc) -- C:\Windows\SysNative\tetheringservice.dll (Microsoft Corporation)
SRV:64bit: - (PhoneSvc) -- C:\Windows\SysNative\PhoneService.dll (Microsoft Corporation)
SRV:64bit: - (MessagingService) -- C:\Windows\SysNative\MessagingService.dll (Microsoft Corporation)
SRV:64bit: - (LxpSvc) -- C:\Windows\SysNative\LanguageOverlayServer.dll (Microsoft Corporation)
SRV:64bit: - (XblGameSave) -- C:\Windows\SysNative\XblGameSave.dll (Microsoft Corporation)
SRV:64bit: - (XboxGipSvc) -- C:\Windows\SysNative\xboxgipsvc.dll (Microsoft Corporation)
SRV:64bit: - (wlpasvc) -- C:\Windows\SysNative\lpasvc.dll (Microsoft Corporation)
SRV:64bit: - (BTAGService) -- C:\Windows\SysNative\BTAGService.dll (Microsoft Corporation)
SRV:64bit: - (BluetoothUserService) -- C:\Windows\SysNative\Microsoft.Bluetooth.UserService.dll (Microsoft Corporation)
SRV:64bit: - (BthAvctpSvc) -- C:\Windows\SysNative\BthAvctpSvc.dll (Microsoft Corporation)
SRV:64bit: - (uhssvc) -- C:\Program Files\Microsoft Update Health Tools\uhssvc.exe (Microsoft Corporation)
SRV:64bit: - (ssh-agent) -- C:\Windows\SysNative\OpenSSH\ssh-agent.exe ()
SRV:64bit: - (DolbyDAXAPI) -- C:\Windows\SysNative\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe (Dolby Laboratories)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe (AMD)
SRV:64bit: - (RtkAudioUniversalService) -- C:\Windows\SysNative\RtkAudUService64.exe (Realtek Semiconductor)
SRV:64bit: - (FMAPOService) -- C:\Windows\SysNative\FMService64.exe (Fortemedia)
SRV:64bit: - (ETDService) -- C:\Windows\SysNative\ETDService.exe (ELAN Microelectronics Corp.)
SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation)
SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation)
SRV:64bit: - (WEPHOSTSVC) -- C:\Windows\SysNative\wephostsvc.dll (Microsoft Corporation)
SRV:64bit: - (DusmSvc) -- C:\Windows\SysNative\dusmsvc.dll (Microsoft Corporation)
SRV:64bit: - (HvHost) -- C:\Windows\SysNative\hvhostsvc.dll (Microsoft Corporation)
SRV:64bit: - (lfsvc) -- C:\Windows\SysNative\lfsvc.dll (Microsoft Corporation)
SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
SRV:64bit: - (DevQueryBroker) -- C:\Windows\SysNative\DevQueryBroker.dll (Microsoft Corporation)
SRV:64bit: - (MapsBroker) -- C:\Windows\SysNative\moshost.dll (Microsoft Corporation)
SRV:64bit: - (WarpJITSvc) -- C:\Windows\SysNative\Windows.WARP.JITService.dll (Microsoft Corporation)
SRV:64bit: - (AJRouter) -- C:\Windows\SysNative\AJRouter.dll (Microsoft Corporation)
SRV:64bit: - (IpxlatCfgSvc) -- C:\Windows\SysNative\ipxlatcfg.dll (Microsoft Corporation)
SRV - (DmEnrollmentSvc) -- C:\Windows\SysWOW64\Windows.Internal.Management.dll (Microsoft Corporation)
SRV - (InstallService) -- C:\Windows\SysWOW64\InstallService.dll (Microsoft Corporation)
SRV - (TokenBroker) -- C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation)
SRV - (PrintNotify) -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation)
SRV - (PrintWorkflowUserSvc) -- C:\Windows\SysWOW64\PrintWorkflowService.dll (Microsoft Corporation)
SRV - (wisvc) -- C:\Windows\SysWOW64\FlightSettings.dll (Microsoft Corporation)
SRV - (WdNisSvc) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\NisSrv.exe (Microsoft Corporation)
SRV - (WinDefend) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe (Microsoft Corporation)
SRV - (MicrosoftEdgeElevationService) -- C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.59\elevation_service.exe (Microsoft Corporation)
SRV - (GoogleChromeElevationService) -- C:\Program Files (x86)\Google\Chrome\Application\122.0.6261.95\elevation_service.exe (Google LLC)
SRV - (DevicePickerUserSvc) -- C:\Windows\SysWOW64\Windows.Devices.Picker.dll (Microsoft Corporation)
SRV - (MixedRealityOpenXRSvc) -- C:\Windows\SysWOW64\MixedRealityRuntime.dll (Microsoft Corporation)
SRV - (smphost) -- C:\Windows\SysWOW64\smphost.dll (Microsoft Corporation)
SRV - (CoreMessagingRegistrar) -- C:\Windows\SysWOW64\CoreMessaging.dll (Microsoft Corporation)
SRV - (DeviceAssociationBrokerSvc) -- C:\Windows\SysWOW64\deviceaccess.dll (Microsoft Corporation)
SRV - (tzautoupdate) -- C:\Windows\SysWOW64\tzautoupdate.dll (Microsoft Corporation)
SRV - (StateRepository) -- C:\Windows\SysWOW64\Windows.StateRepository.dll (Microsoft Corporation)
SRV - (UnistoreSvc) -- C:\Windows\SysWOW64\Unistore.dll (Microsoft Corporation)
SRV - (AarSvc) -- C:\Windows\SysWOW64\AarSvc.dll (Microsoft Corporation)
SRV - (BTAGService) -- C:\Windows\SysWOW64\BTAGService.dll (Microsoft Corporation)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc.)
SRV - (DolbyDAXAPI) -- C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe (Dolby Laboratories)
SRV - (AMD External Events Utility) -- C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\atiesrxx.exe (AMD)
SRV - (edgeupdatem) -- C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation)
SRV - (edgeupdate) -- C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation)
SRV - (RtkBtManServ) -- C:\Windows\RtkBtManServ.exe (Realtek Semiconductor Corp.)
SRV - (IJPLMSVC) -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe ()


========== Driver Services (SafeList) ==========

DRV:64bit: - (MBAMProtection) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes)
DRV:64bit: - (MBAMFarflt) -- C:\Windows\SysNative\drivers\farflt.sys (Malwarebytes)
DRV:64bit: - (MBAMWebProtection) -- C:\Windows\SysNative\drivers\mwac.sys (Malwarebytes)
DRV:64bit: - (mbamchameleon) -- C:\Windows\SysNative\drivers\MbamChameleon.sys (Malwarebytes)
DRV:64bit: - (CldFlt) -- C:\Windows\SysNative\drivers\cldflt.sys (Microsoft Corporation)
DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\drivers\wfplwfs.sys (Microsoft Corporation)
DRV:64bit: - (UCPD) -- C:\Windows\SysNative\drivers\UCPD.sys (Microsoft Corporation)
DRV:64bit: - (xboxgip) -- C:\Windows\SysNative\drivers\xboxgip.sys (Microsoft Corporation)
DRV:64bit: - (amsdk) -- C:\Windows\SysNative\drivers\amsdk.sys (Copyright 2018.)
DRV:64bit: - (MBAMSwissArmy) -- C:\Windows\SysNative\drivers\mbamswissarmy.sys (Malwarebytes)
DRV:64bit: - (ESProtectionDriver) -- C:\Windows\SysNative\drivers\mbae64.sys (Malwarebytes)
DRV:64bit: - (MbamElam) -- C:\Windows\SysNative\drivers\MbamElam.sys (Malwarebytes)
DRV:64bit: - (applockerfltr) -- C:\Windows\SysNative\drivers\applockerfltr.sys (Microsoft Corporation)
DRV:64bit: - (CimFS) -- C:\WINDOWS\SysNative\drivers\cimfs.sys ()
DRV:64bit: - (WinNat) -- C:\Windows\SysNative\drivers\winnat.sys (Microsoft Corporation)
DRV:64bit: - (Vid) -- C:\Windows\SysNative\drivers\Vid.sys (Microsoft Corporation)
DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\drivers\USBXHCI.SYS (Microsoft Corporation)
DRV:64bit: - (TPM) -- C:\Windows\SysNative\drivers\tpm.sys (Microsoft Corporation)
DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\drivers\USBHUB3.SYS (Microsoft Corporation)
DRV:64bit: - (xinputhid) -- C:\Windows\SysNative\drivers\xinputhid.sys (Microsoft Corporation)
DRV:64bit: - (WdNisDrv) -- C:\Windows\SysNative\drivers\wd\WdNisDrv.sys (Microsoft Corporation)
DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\drivers\wd\WdFilter.sys (Microsoft Corporation)
DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\drivers\wd\WdBoot.sys (Microsoft Corporation)
DRV:64bit: - (PktMon) -- C:\Windows\SysNative\drivers\PktMon.sys (Microsoft Corporation)
DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\drivers\EhStorClass.sys (Microsoft Corporation)
DRV:64bit: - (hvservice) -- C:\Windows\SysNative\drivers\hvservice.sys (Microsoft Corporation)
DRV:64bit: - (afunix) -- C:\Windows\SysNative\drivers\afunix.sys (Microsoft Corporation)
DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys (Microsoft Corporation)
DRV:64bit: - (dam) -- C:\Windows\SysNative\drivers\dam.sys (Microsoft Corporation)
DRV:64bit: - (ahcache) -- C:\Windows\SysNative\drivers\ahcache.sys (Microsoft Corporation)
DRV:64bit: - (CLFS) -- C:\Windows\SysNative\drivers\clfs.sys (Microsoft Corporation)
DRV:64bit: - (NetAdapterCx) -- C:\Windows\SysNative\drivers\NetAdapterCx.sys (Microsoft Corporation)
DRV:64bit: - (MsQuic) -- C:\Windows\SysNative\drivers\msquic.sys (Microsoft Corporation)
DRV:64bit: - (Wof) -- C:\WINDOWS\SysNative\drivers\wof.sys (Microsoft Corporation)
DRV:64bit: - (ReFS) -- C:\WINDOWS\SysNative\drivers\refs.sys (Microsoft Corporation)
DRV:64bit: - (ReFSv1) -- C:\WINDOWS\SysNative\drivers\refsv1.sys (Microsoft Corporation)
DRV:64bit: - (Ufx01000) -- C:\Windows\SysNative\drivers\ufx01000.sys (Microsoft Corporation)
DRV:64bit: - (UcmCx0101) -- C:\Windows\SysNative\drivers\UcmCx.sys (Microsoft Corporation)
DRV:64bit: - (UcmUcsiCx0101) -- C:\Windows\SysNative\drivers\UcmUcsiCx.sys (Microsoft Corporation)
DRV:64bit: - (HidSpiCx) -- C:\Windows\SysNative\drivers\HidSpiCx.sys (Microsoft Corporation)
DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\drivers\SpbCx.sys (Microsoft Corporation)
DRV:64bit: - (IndirectKmd) -- C:\Windows\SysNative\drivers\IndirectKmd.sys (Microsoft Corporation)
DRV:64bit: - (condrv) -- C:\Windows\SysNative\drivers\condrv.sys (Microsoft Corporation)
DRV:64bit: - (wcifs) -- C:\Windows\SysNative\drivers\wcifs.sys (Microsoft Corporation)
DRV:64bit: - (bindflt) -- C:\Windows\SysNative\drivers\bindflt.sys (Microsoft Corporation)
DRV:64bit: - (wcnfs) -- C:\Windows\SysNative\drivers\wcnfs.sys (Microsoft Corporation)
DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\drivers\msgpioclx.sys (Microsoft Corporation)
DRV:64bit: - (wdiwifi) -- C:\Windows\SysNative\drivers\WdiWiFi.sys (Microsoft Corporation)
DRV:64bit: - (pdc) -- C:\Windows\SysNative\drivers\pdc.sys (Microsoft Corporation)
DRV:64bit: - (Acx01000) -- C:\Windows\SysNative\drivers\Acx01000.sys (Microsoft Corporation)
DRV:64bit: - (MMCSS) -- C:\Windows\SysNative\drivers\mmcss.sys (Microsoft Corporation)
DRV:64bit: - (MbbCx) -- C:\Windows\SysNative\drivers\MbbCx.sys (Microsoft Corporation)
DRV:64bit: - (iorate) -- C:\Windows\SysNative\drivers\iorate.sys (Microsoft Corporation)
DRV:64bit: - (vpci) -- C:\Windows\SysNative\drivers\vpci.sys (Microsoft Corporation)
DRV:64bit: - (Synth3dVsc) -- C:\Windows\SysNative\drivers\Synth3dVsc.sys (Microsoft Corporation)
DRV:64bit: - (netvsc) -- C:\Windows\SysNative\drivers\netvsc.sys (Microsoft Corporation)
DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\drivers\HyperVideo.sys (Microsoft Corporation)
DRV:64bit: - (hvcrash) -- C:\Windows\SysNative\drivers\hvcrash.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (sdstor) -- C:\Windows\SysNative\drivers\sdstor.sys (Microsoft Corporation)
DRV:64bit: - (ufxsynopsys) -- C:\Windows\SysNative\drivers\ufxsynopsys.sys (Microsoft Corporation)
DRV:64bit: - (hidspi) -- C:\Windows\SysNative\drivers\hidspi.sys (Microsoft Corporation)
DRV:64bit: - (BthLEEnum) -- C:\Windows\SysNative\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys (Microsoft Corporation)
DRV:64bit: - (BthMini) -- C:\Windows\SysNative\drivers\BthMini.SYS (Microsoft Corporation)
DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\DriverStore\FileRepository\basicdisplay.inf_amd64_19e58b6267591a82\BasicDisplay.sys (Microsoft Corporation)
DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\DriverStore\FileRepository\basicrender.inf_amd64_d3f5994a67770b50\BasicRender.sys (Microsoft Corporation)
DRV:64bit: - (usbser) -- C:\Windows\SysNative\drivers\usbser.sys (Microsoft Corporation)
DRV:64bit: - (stornvme) -- C:\Windows\SysNative\drivers\stornvme.sys (Microsoft Corporation)
DRV:64bit: - (scmbus) -- C:\Windows\SysNative\drivers\scmbus.sys (Microsoft Corporation)
DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\drivers\uaspstor.sys (Microsoft Corporation)
DRV:64bit: - (storufs) -- C:\Windows\SysNative\drivers\storufs.sys (Microsoft Corporation)
DRV:64bit: - (storahci) -- C:\Windows\SysNative\drivers\storahci.sys (Microsoft Corporation)
DRV:64bit: - (pmem) -- C:\Windows\SysNative\drivers\pmem.sys (Microsoft Corporation)
DRV:64bit: - (spaceport) -- C:\Windows\SysNative\drivers\spaceport.sys (Microsoft Corporation)
DRV:64bit: - (intelpep) -- C:\Windows\SysNative\drivers\intelpep.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:64bit: - (Telemetry) -- C:\Windows\SysNative\drivers\IntelTA.sys (Microsoft Corporation)
DRV:64bit: - (WSDScan) -- C:\Windows\SysNative\drivers\WSDScan.sys (Microsoft Corporation)
DRV:64bit: - (WSDPrintDevice) -- C:\Windows\SysNative\drivers\WSDPrint.sys (Microsoft Corporation)
DRV:64bit: - (dg_ssudbus) -- C:\Windows\SysNative\drivers\ssudbus2.sys (Samsung Electronics Co., Ltd.)
DRV:64bit: - (ACPIVPC) -- C:\Windows\SysNative\drivers\AcpiVpc.sys (Lenovo Group Ltd.)
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\amdkmdag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (RtkBtFilter) -- C:\Windows\SysNative\drivers\RtkBtfilter.sys (Realtek Semiconductor Corporation)
DRV:64bit: - (RTWlanE) -- C:\Windows\SysNative\drivers\rtwlane.sys (Realtek Semiconductor Corporation )
DRV:64bit: - (amdi2c) -- C:\Windows\SysNative\drivers\amdi2c.sys (Advanced Micro Devices, Inc)
DRV:64bit: - (ETDHCF) -- C:\Windows\SysNative\drivers\ETDHCF.sys (ELAN Microelectronics Corp.)
DRV:64bit: - (ETD) -- C:\Windows\SysNative\drivers\ETD.sys (ELAN Microelectronics Corp.)
DRV:64bit: - (amdpsp) -- C:\Windows\SysNative\drivers\amdpsp.sys (Advanced Micro Devices, Inc. )
DRV:64bit: - (amdgpio2) -- C:\Windows\SysNative\drivers\amdgpio2.sys (Advanced Micro Devices, Inc)
DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\drivers\WpdUpFltr.sys (Microsoft Corporation)
DRV:64bit: - (SpatialGraphFilter) -- C:\Windows\SysNative\drivers\SpatialGraphFilter.sys (Microsoft Corporation)
DRV:64bit: - (NDKPing) -- C:\Windows\SysNative\drivers\NDKPing.sys (Microsoft Corporation)
DRV:64bit: - (spaceparser) -- C:\Windows\SysNative\drivers\spaceparser.sys (Microsoft Corporation)
DRV:64bit: - (Ndu) -- C:\Windows\SysNative\drivers\Ndu.sys (Microsoft Corporation)
DRV:64bit: - (SgrmAgent) -- C:\Windows\SysNative\drivers\SgrmAgent.sys (Microsoft Corporation)
DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\drivers\mslldp.sys (Microsoft Corporation)
DRV:64bit: - (NdisVirtualBus) -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys (Microsoft Corporation)
DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\drivers\VerifierExt.sys (Microsoft Corporation)
DRV:64bit: - (Fs_Rec) -- C:\WINDOWS\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (bam) -- C:\Windows\SysNative\drivers\bam.sys (Microsoft Corporation)
DRV:64bit: - (WdmCompanionFilter) -- C:\Windows\SysNative\drivers\WdmCompanionFilter.sys (Microsoft Corporation)
DRV:64bit: - (UcmTcpciCx0101) -- C:\Windows\SysNative\drivers\UcmTcpciCx.sys (Microsoft Corporation)
DRV:64bit: - (storqosflt) -- C:\Windows\SysNative\drivers\storqosflt.sys (Microsoft Corporation)
DRV:64bit: - (WindowsTrustedRT) -- C:\Windows\SysNative\drivers\WindowsTrustedRT.sys (Microsoft Corporation)
DRV:64bit: - (UrsCx01000) -- C:\Windows\SysNative\drivers\urscx01000.sys (Microsoft Corporation)
DRV:64bit: - (cnghwassist) -- C:\Windows\SysNative\drivers\cnghwassist.sys (Microsoft Corporation)
DRV:64bit: - (SerCx2) -- C:\Windows\SysNative\drivers\SerCx2.sys (Microsoft Corporation)
DRV:64bit: - (SerCx) -- C:\Windows\SysNative\drivers\SerCx.sys (Microsoft Corporation)
DRV:64bit: - (HwNClx0101) -- C:\Windows\SysNative\drivers\mshwnclx.sys (Microsoft Corporation)
DRV:64bit: - (portcfg) -- C:\Windows\SysNative\drivers\portcfg.sys (Microsoft Corporation)
DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\drivers\mshidumdf.sys (Microsoft Corporation)
DRV:64bit: - (Ucx01000) -- C:\Windows\SysNative\drivers\Ucx01000.sys (Microsoft Corporation)
DRV:64bit: - (acpiex) -- C:\Windows\SysNative\drivers\acpiex.sys (Microsoft Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (IPT) -- C:\Windows\SysNative\drivers\ipt.sys (Microsoft Corporation)
DRV:64bit: - (FileCrypt) -- C:\Windows\SysNative\drivers\filecrypt.sys (Microsoft Corporation)
DRV:64bit: - (UdeCx) -- C:\Windows\SysNative\drivers\Udecx.sys (Microsoft Corporation)
DRV:64bit: - (Ramdisk) -- C:\Windows\SysNative\drivers\ramdisk.sys (Microsoft Corporation)
DRV:64bit: - (GpuEnergyDrv) -- C:\Windows\SysNative\drivers\gpuenergydrv.sys (Microsoft Corporation)
DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation)
DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\drivers\hyperkbd.sys (Microsoft Corporation)
DRV:64bit: - (gencounter) -- C:\Windows\SysNative\drivers\vmgencounter.sys (Microsoft Corporation)
DRV:64bit: - (vmgid) -- C:\Windows\SysNative\drivers\vmgid.sys (Microsoft Corporation)
DRV:64bit: - (VirtualRender) -- C:\Windows\SysNative\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys (Microsoft Corporation)
DRV:64bit: - (UfxChipidea) -- C:\Windows\SysNative\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys (Microsoft Corporation)
DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\drivers\hidi2c.sys (Microsoft Corporation)
DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\drivers\msgpiowin32.sys (Microsoft Corporation)
DRV:64bit: - (hidinterrupt) -- C:\Windows\SysNative\drivers\hidinterrupt.sys (Microsoft Corporation)
DRV:64bit: - (buttonconverter) -- C:\Windows\SysNative\drivers\buttonconverter.sys (Microsoft Corporation)
DRV:64bit: - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation)
DRV:64bit: - (UcmUcsiAcpiClient) -- C:\Windows\SysNative\drivers\UcmUcsiAcpiClient.sys (Microsoft Corporation)
DRV:64bit: - (kdnic) -- C:\Windows\SysNative\drivers\kdnic.sys (Microsoft Corporation)
DRV:64bit: - (UrsChipidea) -- C:\Windows\SysNative\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys (Microsoft Corporation)
DRV:64bit: - (UrsSynopsys) -- C:\Windows\SysNative\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys (Microsoft Corporation)
DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\drivers\npsvctrig.sys (Microsoft Corporation)
DRV:64bit: - (genericusbfn) -- C:\Windows\SysNative\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys (Microsoft Corporation)
DRV:64bit: - (WindowsTrustedRTProxy) -- C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys (Microsoft Corporation)
DRV:64bit: - (cht4vbd) -- C:\Windows\SysNative\drivers\cht4vx64.sys (Chelsio Communications)
DRV:64bit: - (mlx4_bus) -- C:\Windows\SysNative\drivers\mlx4_bus.sys (Mellanox)
DRV:64bit: - (iaStorAVC) -- C:\Windows\SysNative\drivers\iaStorAVC.sys (Intel Corporation)
DRV:64bit: - (ibbus) -- C:\Windows\SysNative\drivers\ibbus.sys (Mellanox)
DRV:64bit: - (mausbhost) -- C:\Windows\SysNative\drivers\mausbhost.sys (Microsoft Corporation)
DRV:64bit: - (cht4iscsi) -- C:\Windows\SysNative\drivers\cht4sx64.sys (Chelsio Communications)
DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\drivers\VSTXRAID.SYS (VIA Corporation)
DRV:64bit: - (nvdimm) -- C:\Windows\SysNative\drivers\nvdimm.sys (Microsoft Corporation)
DRV:64bit: - (ndfltr) -- C:\Windows\SysNative\drivers\ndfltr.sys (Mellanox)
DRV:64bit: - (WinVerbs) -- C:\Windows\SysNative\drivers\winverbs.sys (Mellanox)
DRV:64bit: - (mausbip) -- C:\Windows\SysNative\drivers\mausbip.sys (Microsoft Corporation)
DRV:64bit: - (vhf) -- C:\Windows\SysNative\drivers\vhf.sys (Microsoft Corporation)
DRV:64bit: - (bttflt) -- C:\Windows\SysNative\drivers\bttflt.sys (Microsoft Corporation)
DRV:64bit: - (WinMad) -- C:\Windows\SysNative\drivers\winmad.sys (Mellanox)
DRV:64bit: - (acpitime) -- C:\Windows\SysNative\drivers\acpitime.sys (Microsoft Corporation)
DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\drivers\acpipagr.sys (Microsoft Corporation)
DRV:64bit: - (ADP80XX) -- C:\Windows\SysNative\drivers\adp80xx.sys (PMC-Sierra)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (SmartSAMD) -- C:\Windows\SysNative\drivers\SmartSAMD.sys (Microsemi Corportation)
DRV:64bit: - (ItSas35i) -- C:\Windows\SysNative\drivers\ItSas35i.sys (Avago Technologies)
DRV:64bit: - (LSI_SAS3i) -- C:\Windows\SysNative\drivers\lsi_sas3i.sys (Avago Technologies)
DRV:64bit: - (LSI_SAS2i) -- C:\Windows\SysNative\drivers\lsi_sas2i.sys (LSI Corporation)
DRV:64bit: - (3ware) -- C:\Windows\SysNative\drivers\3ware.sys (LSI)
DRV:64bit: - (megasas35i) -- C:\Windows\SysNative\drivers\megasas35i.sys (Avago Technologies)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\drivers\lsi_sss.sys (LSI Corporation)
DRV:64bit: - (megasas2i) -- C:\Windows\SysNative\drivers\MegaSas2i.sys (Avago Technologies)
DRV:64bit: - (percsas3i) -- C:\Windows\SysNative\drivers\percsas3i.sys (Avago Technologies)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (mvumis) -- C:\Windows\SysNative\drivers\mvumis.sys (Marvell Semiconductor, Inc.)
DRV:64bit: - (percsas2i) -- C:\Windows\SysNative\drivers\percsas2i.sys (Avago Technologies)
DRV:64bit: - (umbus) -- C:\Windows\SysNative\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys (Microsoft Corporation)
DRV:64bit: - (UEFI) -- C:\Windows\SysNative\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\uefi.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology, Inc.)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (AcpiDev) -- C:\Windows\SysNative\drivers\AcpiDev.sys (Microsoft Corporation)
DRV:64bit: - (volume) -- C:\Windows\SysNative\drivers\volume.sys (Microsoft Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (QLogic Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (QLogic Corporation)
DRV:64bit: - (usbaudio2) -- C:\Windows\SysNative\drivers\usbaudio2.sys (Microsoft Corporation)
DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys (Microsoft Corporation)
DRV:64bit: - (rhproxy) -- C:\Windows\SysNative\drivers\rhproxy.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSSi_I2C) -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys (Intel Corporation)
DRV:64bit: - (CompositeBus) -- C:\Windows\SysNative\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSSi_GPIO) -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys (Intel Corporation)
DRV:64bit: - (SDFRd) -- C:\Windows\SysNative\drivers\SDFRd.sys (Microsoft Corporation)
DRV:64bit: - (swenum) -- C:\Windows\SysNative\DriverStore\FileRepository\swenum.inf_amd64_16a14542b63c02af\swenum.sys (Microsoft Corporation)
DRV:64bit: - (PNPMEM) -- C:\Windows\SysNative\drivers\pnpmem.sys (Microsoft Corporation)
DRV:64bit: - (BthA2dp) -- C:\Windows\SysNative\drivers\BthA2dp.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSS2i_I2C_GLK) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_GLK.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_I2C_CNL) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_CNL.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_I2C_BXT_P) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_BXT_P.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_I2C) -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C.sys (Intel Corporation)
DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\drivers\BthHfEnum.sys (Microsoft Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2_CNL) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_CNL.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2_GLK) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_GLK.sys (Intel Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2_BXT_P) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_BXT_P.sys (Intel Corporation)
DRV:64bit: - (iai2c) -- C:\Windows\SysNative\drivers\iai2c.sys (Intel(R) Corporation)
DRV:64bit: - (iaLPSS2i_GPIO2) -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2.sys (Intel Corporation)
DRV:64bit: - (CAD) -- C:\Windows\SysNative\drivers\CAD.sys (Microsoft Corporation)
DRV:64bit: - (Microsoft_Bluetooth_AvrcpTransport) -- C:\Windows\SysNative\drivers\Microsoft.Bluetooth.AvrcpTransport.sys (Microsoft Corporation)
DRV:64bit: - (iagpio) -- C:\Windows\SysNative\drivers\iagpio.sys (Intel(R) Corporation)
DRV:64bit: - (intelpmax) -- C:\Windows\SysNative\drivers\intelpmax.sys (Microsoft Corporation)
DRV:64bit: - (bcmfn2) -- C:\Windows\SysNative\drivers\bcmfn2.sys (Windows (R) Win 7 DDK provider)
DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdWT6.sys (Advanced Micro Devices)
DRV - (afunix) -- C:\Windows\SysWOW64\drivers\afunix.sys (Microsoft Corporation)
DRV - (BasicDisplay) -- C:\WINDOWS\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_19e58b6267591a82\BasicDisplay.sys (Microsoft Corporation)
DRV - (BasicRender) -- C:\WINDOWS\System32\DriverStore\FileRepository\basicrender.inf_amd64_d3f5994a67770b50\BasicRender.sys (Microsoft Corporation)
DRV - (amdkmdag) -- C:\WINDOWS\System32\DriverStore\FileRepository\u0358356.inf_amd64_894c3b4bc882c059\B358199\amdkmdag.sys (Advanced Micro Devices, Inc.)
DRV - (VirtualRender) -- C:\WINDOWS\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys (Microsoft Corporation)
DRV - (UfxChipidea) -- C:\WINDOWS\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys (Microsoft Corporation)
DRV - (UrsChipidea) -- C:\WINDOWS\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys (Microsoft Corporation)
DRV - (UrsSynopsys) -- C:\WINDOWS\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys (Microsoft Corporation)
DRV - (genericusbfn) -- C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys (Microsoft Corporation)
DRV - (umbus) -- C:\WINDOWS\System32\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys (Microsoft Corporation)
DRV - (UEFI) -- C:\WINDOWS\System32\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\UEFI.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys (Microsoft Corporation)
DRV - (swenum) -- C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_16a14542b63c02af\swenum.sys (Microsoft Corporation)

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 18:09

========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6AFE9518-639D-440E-9600-C316BF2094BC}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6AFE9518-639D-440E-9600-C316BF2094BC}: "URL" = http://www.bing.com/search?q={SearchTerms}&form=PRLNC1&src=IE11TR&pc=LCTE
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\..\SearchScopes,DefaultScope = {6AFE9518-639D-440E-9600-C316BF2094BC}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6AFE9518-639D-440E-9600-C316BF2094BC}: "URL" = http://www.bing.com/search?q={SearchTerms}&form=PRLNC1&src=IE11TR&pc=LCTE

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/?pc=LCTE
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://mystart.lenovo.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://mystart.lenovo.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=LCTE
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKCU\..\SearchScopes,DefaultScope = {012E1000-F331-11DB-8314-0800200C9A66}
IE - HKCU\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\Adobe Acrobat: C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL (Microsoft Corporation)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\NativeMessagingHosts\com.microsoft.defender.browser_extension.native_message_host\\: C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24010.12-0\COM.MICROSOFT.DEFENDER.BE.FIREFOX.JSON [2024.02.28 21:21:19 | 000,000,310 | ---- | M] ()


========== Chrome ==========

CHR - Extension: No name found = C:\Users\mastr\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj\24.2.1.0_1\
CHR - Extension: No name found = C:\Users\mastr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.73.6_1\
CHR - Extension: No name found = C:\Users\mastr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_1\

O1 HOSTS File: ([2024.03.01 07:31:44 | 000,000,841 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:64bit: - BHO: (IEToEdge BHO) - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.59\BHO\ie_to_edge_bho_64.dll (Microsoft Corporation)
O2:64bit: - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (IEToEdge BHO) - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\122.0.2365.59\BHO\ie_to_edge_bho.dll (Microsoft Corporation)
O2 - BHO: (Skype for Business Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll (Microsoft Corporation)
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O3:64bit: - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O4:64bit: - HKLM..\Run: [RtkAudUService] C:\WINDOWS\SysNative\RtkAudUService64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SecurityHealth] C:\Windows\SysNative\SecurityHealthSystray.exe (Microsoft Corporation)
O4 - HKLM..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (CANON INC.)
O4 - HKLM..\Run: [IJNetworkScannerSelectorEX2] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (CANON INC.)
O4 - HKCU..\Run: [CCleaner Smart Cleaning] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd)
O4 - HKCU..\Run: [MicrosoftEdgeAutoLaunch_7B2379F66202C90235086A5C4E1F5A25] C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Skype for Desktop] C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Technologies S.A.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsHistory = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableFullTrustStartupTasks = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUwpStartupTasks = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportFullTrustStartupTasks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportUwpStartupTasks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000011 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000012 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000013 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog_Before_Reset\Catalog_Entries64\000000000014 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000012 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000013 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000014 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000011 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000012 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000013 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog_Before_Reset\Catalog_Entries\000000000014 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{aee0d453-a4b5-4d05-90d1-b6dd2bf65a00}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mso-minsb.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mso-minsb-roaming.16 {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\osf.16 {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\osf-roaming.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-minsb.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-minsb-roaming.16 {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\osf.16 {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\osf-roaming.16 {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\WINDOWS\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\SysWow64\credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\SysWow64\credssp.dll (Microsoft Corporation)
O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysNative\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysWow64\msv1_0.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 18:12

========== Files/Folders - Created Within 30 Days ==========

[2024.03.03 00:59:58 | 000,078,400 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2024.03.03 00:59:40 | 000,200,104 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\farflt.sys
[2024.03.03 00:59:31 | 000,188,784 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mwac.sys
[2024.03.03 00:59:26 | 000,223,296 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\MbamChameleon.sys
[2024.03.02 16:46:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
[2024.03.02 16:45:58 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2024.03.01 19:38:40 | 000,000,000 | ---D | C] -- C:\FRST
[2024.03.01 16:36:55 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\VirtualStore
[2024.03.01 16:35:01 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2024.03.01 08:50:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2024.03.01 08:50:40 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\Temp
[2024.03.01 07:21:15 | 000,000,000 | ---D | C] -- C:\zoek_backup
[2024.03.01 03:43:22 | 004,436,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
[2024.03.01 03:43:15 | 005,039,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdp.dll
[2024.03.01 03:43:14 | 000,726,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2024.03.01 03:42:37 | 003,560,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll
[2024.03.01 03:42:37 | 001,136,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DolbyDecMFT.dll
[2024.03.01 03:42:36 | 002,521,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msmpeg2vdec.dll
[2024.03.01 03:42:36 | 001,353,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmpeg2srcsnk.dll
[2024.03.01 03:42:35 | 004,798,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll
[2024.03.01 03:42:34 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tsgqec.dll
[2024.03.01 03:42:33 | 007,240,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2024.03.01 03:42:33 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iemigplugin.dll
[2024.03.01 03:42:32 | 000,562,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript9diag.dll
[2024.03.01 03:42:31 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IndexedDbLegacy.dll
[2024.03.01 03:42:27 | 019,867,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2024.03.01 03:42:27 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2024.03.01 03:42:26 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MiracastReceiverExt.dll
[2024.03.01 03:42:11 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tsgqec.dll
[2024.03.01 03:42:11 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MemoryDiagnostic.dll
[2024.03.01 03:42:10 | 008,395,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2024.03.01 03:42:10 | 000,545,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IESettingSync.exe
[2024.03.01 03:42:10 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iemigplugin.dll
[2024.03.01 03:42:08 | 004,886,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2024.03.01 03:42:08 | 000,714,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9diag.dll
[2024.03.01 03:42:07 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IndexedDbLegacy.dll
[2024.03.01 03:42:04 | 000,563,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2024.03.01 03:42:04 | 000,263,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
[2024.03.01 03:42:04 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4ushowIE.exe
[2024.03.01 03:42:04 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MiracastReceiverExt.dll
[2024.03.01 03:42:04 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iesetup.dll
[2024.03.01 03:42:04 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iernonce.dll
[2024.03.01 03:42:03 | 000,180,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAppInstaller.exe
[2024.03.01 03:42:02 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EDPCleanup.exe
[2024.03.01 03:42:02 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edpcsp.dll
[2024.03.01 03:42:02 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseDesktopAppMgmtCSP.dll
[2024.03.01 03:42:00 | 001,572,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
[2024.03.01 03:42:00 | 000,817,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcblaunch.exe
[2024.03.01 03:42:00 | 000,224,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcbloader.dll
[2024.03.01 03:41:59 | 001,301,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
[2024.03.01 03:41:59 | 000,311,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UnifiedConsent.dll
[2024.03.01 03:41:58 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AboveLockAppHost.dll
[2024.03.01 03:41:58 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockScreenData.dll
[2024.03.01 03:41:58 | 000,114,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OpenWith.exe
[2024.03.01 03:41:57 | 008,896,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
[2024.03.01 03:41:57 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
[2024.03.01 03:41:57 | 000,265,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
[2024.03.01 03:41:56 | 000,932,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gdi32full.dll
[2024.03.01 03:41:56 | 000,812,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Internal.Management.dll
[2024.03.01 03:41:56 | 000,759,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmenrollengine.dll
[2024.03.01 03:41:56 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\enrollmentapi.dll
[2024.03.01 03:41:56 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DMAlertListener.ProxyStub.dll
[2024.03.01 03:41:55 | 000,533,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\policymanager.dll
[2024.03.01 03:41:55 | 000,390,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmcmnutils.dll
[2024.03.01 03:41:55 | 000,175,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\omadmapi.dll
[2024.03.01 03:41:55 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\enterpriseresourcemanager.dll
[2024.03.01 03:41:55 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdmlocalmanagement.dll
[2024.03.01 03:41:54 | 002,632,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\combase.dll
[2024.03.01 03:41:54 | 000,900,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinTypes.dll
[2024.03.01 03:41:54 | 000,676,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe
[2024.03.01 03:41:54 | 000,297,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wincorlib.dll
[2024.03.01 03:41:54 | 000,147,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wldp.dll
[2024.03.01 03:41:54 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontsub.dll
[2024.03.01 03:41:53 | 001,354,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2024.03.01 03:41:53 | 001,277,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2024.03.01 03:41:53 | 000,966,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Taskmgr.exe
[2024.03.01 03:41:53 | 000,407,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\catsrvut.dll
[2024.03.01 03:41:53 | 000,338,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdmregistration.dll
[2024.03.01 03:41:53 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LaunchTM.exe
[2024.03.01 03:41:52 | 002,750,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
[2024.03.01 03:41:52 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
[2024.03.01 03:41:52 | 000,330,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32k.sys
[2024.03.01 03:41:52 | 000,094,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32u.dll
[2024.03.01 03:41:51 | 001,645,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.appcore.dll
[2024.03.01 03:41:50 | 003,936,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneCoreUAPCommonProxyStub.dll
[2024.03.01 03:41:50 | 001,103,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll
[2024.03.01 03:41:50 | 000,779,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Services.TargetedContent.dll
[2024.03.01 03:41:50 | 000,343,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FWPUCLNT.DLL
[2024.03.01 03:41:49 | 000,788,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
[2024.03.01 03:41:49 | 000,142,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\profext.dll
[2024.03.01 03:41:48 | 006,413,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
[2024.03.01 03:41:48 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InstallServiceTasks.dll
[2024.03.01 03:41:47 | 001,877,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InstallService.dll
[2024.03.01 03:41:47 | 000,755,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TextInputFramework.dll
[2024.03.01 03:41:47 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
[2024.03.01 03:41:47 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EditBufferTestHook.dll
[2024.03.01 03:41:47 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WordBreakers.dll
[2024.03.01 03:41:46 | 001,290,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadtb.dll
[2024.03.01 03:41:46 | 001,029,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CloudExperienceHostCommon.dll
[2024.03.01 03:41:46 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActivationManager.dll
[2024.03.01 03:41:46 | 000,631,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Gaming.Input.dll
[2024.03.01 03:41:46 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XInputUap.dll
[2024.03.01 03:41:45 | 000,294,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
[2024.03.01 03:41:43 | 014,746,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2024.03.01 03:41:42 | 004,753,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2024.03.01 03:41:42 | 001,242,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2024.03.01 03:41:42 | 001,000,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll
[2024.03.01 03:41:42 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tbauth.dll
[2024.03.01 03:41:42 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBrokerCookies.exe
[2024.03.01 03:41:41 | 000,650,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicensingWinRT.dll
[2024.03.01 03:41:41 | 000,394,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themeui.dll
[2024.03.01 03:41:40 | 000,455,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ShellCommonCommonProxyStub.dll
[2024.03.01 03:41:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imageres.dll
[2024.03.01 03:41:39 | 004,936,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
[2024.03.01 03:41:39 | 000,942,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmCoreProvisioning.dll
[2024.03.01 03:41:39 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secproc.dll
[2024.03.01 03:41:39 | 000,348,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemSettings.DataModel.dll
[2024.03.01 03:41:39 | 000,271,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncSettings.dll
[2024.03.01 03:41:39 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmCertResources.dll
[2024.03.01 03:41:38 | 002,821,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windowsudk.shellcommon.dll
[2024.03.01 03:41:37 | 006,197,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2024.03.01 03:41:37 | 000,484,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themeui.dll
[2024.03.01 03:41:37 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IppCommonProxy.dll
[2024.03.01 03:41:36 | 001,645,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\APMon.dll
[2024.03.01 03:41:36 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IppCommon.dll
[2024.03.01 03:41:35 | 003,566,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll
[2024.03.01 03:41:27 | 000,528,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncsi.dll
[2024.03.01 03:41:27 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeveloperOptionsSettingsHandlers.dll
[2024.03.01 03:41:27 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkDesktopSettings.dll
[2024.03.01 03:41:27 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CustomInstallExec.exe
[2024.03.01 03:41:26 | 001,776,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.desktop.dll
[2024.03.01 03:41:26 | 001,207,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplyTrustOffline.exe
[2024.03.01 03:41:26 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXApplicabilityBlob.dll
[2024.03.01 03:41:25 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2024.03.01 03:41:25 | 002,495,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.onecore.dll
[2024.03.01 03:41:24 | 000,548,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinREAgent.dll
[2024.03.01 03:41:24 | 000,382,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
[2024.03.01 03:41:23 | 000,448,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
[2024.03.01 03:41:23 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockScreenData.dll
[2024.03.01 03:41:23 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AboveLockAppHost.dll
[2024.03.01 03:41:23 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msIso.dll
[2024.03.01 03:41:22 | 000,134,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpapi.dll
[2024.03.01 03:41:21 | 002,145,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MdmDiagnostics.dll
[2024.03.01 03:41:21 | 001,130,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Management.dll
[2024.03.01 03:41:21 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmmigrator.dll
[2024.03.01 03:41:21 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2024.03.01 03:41:21 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMAlertListener.ProxyStub.dll
[2024.03.01 03:41:20 | 000,961,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenrollengine.dll
[2024.03.01 03:41:20 | 000,472,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmclient.exe
[2024.03.01 03:41:20 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenterprisediagnostics.dll
[2024.03.01 03:41:20 | 000,225,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmapi.dll
[2024.03.01 03:41:20 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterpriseresourcemanager.dll
[2024.03.01 03:41:20 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmlocalmanagement.dll
[2024.03.01 03:41:19 | 002,632,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll
[2024.03.01 03:41:19 | 000,648,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanager.dll
[2024.03.01 03:41:19 | 000,317,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMPushRouterCore.dll
[2024.03.01 03:41:19 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmwappushsvc.dll
[2024.03.01 03:41:18 | 000,990,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcsvc.dll
[2024.03.01 03:41:18 | 000,713,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\configmanager2.dll
[2024.03.01 03:41:18 | 000,486,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcmnutils.dll
[2024.03.01 03:41:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\declaredconfiguration.dll
[2024.03.01 03:41:17 | 001,787,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppobjs.dll
[2024.03.01 03:41:17 | 000,766,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicensingWinRT.dll
[2024.03.01 03:41:17 | 000,483,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceEnroller.exe
[2024.03.01 03:41:17 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcertinst.exe
[2024.03.01 03:41:14 | 000,133,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OpenWith.exe
[2024.03.01 03:41:13 | 001,486,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usermgr.dll
[2024.03.01 03:41:13 | 001,127,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctf.dll
[2024.03.01 03:41:13 | 000,828,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontdrvhost.exe
[2024.03.01 03:41:13 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontsub.dll
[2024.03.01 03:41:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpk.dll
[2024.03.01 03:41:12 | 000,503,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\FWPKCLNT.SYS
[2024.03.01 03:41:12 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dciman32.dll
[2024.03.01 03:41:10 | 001,199,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcrt4.dll
[2024.03.01 03:41:10 | 000,613,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\netio.sys
[2024.03.01 03:41:07 | 010,862,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2024.03.01 03:41:05 | 001,675,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2024.03.01 03:41:05 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2024.03.01 03:41:05 | 000,279,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinesam.dll
[2024.03.01 03:41:05 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samlib.dll
[2024.03.01 03:41:05 | 000,136,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinelsa.dll
[2024.03.01 03:41:04 | 003,499,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
[2024.03.01 03:41:04 | 001,400,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinTypes.dll
[2024.03.01 03:41:04 | 000,437,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wincorlib.dll
[2024.03.01 03:41:03 | 001,700,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsvcs.dll
[2024.03.01 03:41:03 | 000,522,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\catsrvut.dll
[2024.03.01 03:41:03 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\cldflt.sys
[2024.03.01 03:41:02 | 001,837,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
[2024.03.01 03:41:02 | 001,400,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
[2024.03.01 03:41:02 | 001,206,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
[2024.03.01 03:41:01 | 001,570,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
[2024.03.01 03:41:01 | 001,214,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Taskmgr.exe
[2024.03.01 03:41:01 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LaunchTM.exe
[2024.03.01 03:40:59 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputCloudStore.dll
[2024.03.01 03:40:58 | 000,306,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_ManagePhone.dll
[2024.03.01 03:40:57 | 000,866,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Language.dll
[2024.03.01 03:40:56 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_ContentDeliveryManager.dll
[2024.03.01 03:40:53 | 001,125,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShellAppRuntime.exe
[2024.03.01 03:40:50 | 004,009,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsThresholdAdminFlowUI.dll
[2024.03.01 03:40:50 | 000,591,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsEnvironment.Desktop.dll
[2024.03.01 03:40:50 | 000,066,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2024.03.01 03:40:50 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups2.dll
[2024.03.01 03:40:49 | 001,892,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll
[2024.03.01 03:40:48 | 000,621,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseAppMgmtSvc.dll
[2024.03.01 03:40:48 | 000,425,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmregistration.dll
[2024.03.01 03:40:47 | 003,791,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2024.03.01 03:40:47 | 000,780,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.immersiveshell.serviceprovider.dll
[2024.03.01 03:40:47 | 000,133,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32u.dll
[2024.03.01 03:40:46 | 001,188,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Services.TargetedContent.dll
[2024.03.01 03:40:39 | 001,507,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
[2024.03.01 03:40:39 | 001,402,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll
[2024.03.01 03:40:38 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FWPUCLNT.DLL
[2024.03.01 03:40:38 | 000,181,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wfplwfs.sys
[2024.03.01 03:40:37 | 001,059,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
[2024.03.01 03:40:37 | 000,177,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profext.dll
[2024.03.01 03:40:36 | 008,026,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2024.03.01 03:40:36 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll
[2024.03.01 03:40:36 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallServiceTasks.dll
[2024.03.01 03:40:35 | 002,479,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallService.dll
[2024.03.01 03:40:35 | 002,250,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ISM.dll
[2024.03.01 03:40:34 | 001,042,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Core.TextInput.dll
[2024.03.01 03:40:34 | 001,016,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TextInputFramework.dll
[2024.03.01 03:40:34 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputLocaleManager.dll
[2024.03.01 03:40:34 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WordBreakers.dll
[2024.03.01 03:40:33 | 004,734,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
[2024.03.01 03:40:33 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EditBufferTestHook.dll
[2024.03.01 03:40:32 | 003,751,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeContent.dll
[2024.03.01 03:40:32 | 002,979,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2024.03.01 03:40:32 | 002,866,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2024.03.01 03:40:32 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DafDnsSd.dll
[2024.03.01 03:40:31 | 001,538,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dosvc.dll
[2024.03.01 03:40:31 | 000,902,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms2.sys
[2024.03.01 03:40:31 | 000,526,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\domgmt.dll
[2024.03.01 03:40:31 | 000,456,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys
[2024.03.01 03:40:31 | 000,267,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdd.dll
[2024.03.01 03:40:30 | 002,112,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll
[2024.03.01 03:40:29 | 008,252,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneCoreUAPCommonProxyStub.dll
[2024.03.01 03:40:29 | 001,206,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudExperienceHostCommon.dll
[2024.03.01 03:40:29 | 000,803,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActivationManager.dll
[2024.03.01 03:40:28 | 001,533,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2024.03.01 03:40:28 | 001,145,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
[2024.03.01 03:40:28 | 000,617,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cloudAP.dll
[2024.03.01 03:40:28 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tbauth.dll
[2024.03.01 03:40:28 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBrokerCookies.exe
[2024.03.01 03:40:27 | 001,634,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadtb.dll
[2024.03.01 03:40:27 | 000,916,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Gaming.Input.dll
[2024.03.01 03:40:27 | 000,386,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GameInputInbox.dll
[2024.03.01 03:40:27 | 000,110,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GameInput.dll
[2024.03.01 03:40:27 | 000,053,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GameInputSvc.exe
[2024.03.01 03:40:27 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XInputUap.dll
[2024.03.01 03:40:26 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Resources.Common.dll
[2024.03.01 03:40:23 | 017,532,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2024.03.01 03:40:23 | 002,484,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.CloudStore.dll
[2024.03.01 03:40:22 | 010,347,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
[2024.03.01 03:40:21 | 005,802,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StartTileData.dll
[2024.03.01 03:40:21 | 000,851,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.CloudStore.Schema.Shell.dll
[2024.03.01 03:40:21 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\readCloudDataSettings.exe
[2024.03.01 03:40:17 | 001,175,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usbmon.dll
[2024.03.01 03:40:17 | 001,071,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NaturalLanguage6.dll
[2024.03.01 03:40:17 | 000,912,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShellCommonCommonProxyStub.dll
[2024.03.01 03:40:17 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localui.dll
[2024.03.01 03:40:16 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imageres.dll
[2024.03.01 03:40:15 | 005,608,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2024.03.01 03:40:15 | 001,172,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmCoreProvisioning.dll
[2024.03.01 03:40:15 | 000,807,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_StorageSense.dll
[2024.03.01 03:40:15 | 000,713,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\advapi32.dll
[2024.03.01 03:40:15 | 000,461,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.DataModel.dll
[2024.03.01 03:40:15 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmTasks.dll
[2024.03.01 03:40:15 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmCertResources.dll
[2024.03.01 03:40:14 | 001,338,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2024.03.01 03:40:14 | 001,281,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2024.03.01 03:40:14 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncSettings.dll
[2024.03.01 03:40:14 | 000,206,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsBroker.exe
[2024.03.01 03:40:14 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrinterCleanupTask.dll
[2024.03.01 03:40:14 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FaxPrinterInstaller.dll
[2024.03.01 03:40:13 | 000,725,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storport.sys
[2024.03.01 03:40:13 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAgent.exe
[2024.03.01 03:40:13 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RjvMDMConfig.dll
[2024.03.01 03:40:12 | 000,860,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.Service.dll
[2024.03.01 03:40:12 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudRestoreLauncher.dll
[2024.03.01 03:40:12 | 000,518,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MitigationClient.dll
[2024.03.01 03:40:12 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.System.UserProfile.dll
[2024.03.01 03:40:12 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autopilot.dll
[2024.03.01 03:40:12 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.ModernDeployment.ConfigProviders.dll
[2024.03.01 03:40:12 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
[2024.03.01 03:40:12 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UCPDMgr.exe
[2024.03.01 03:40:12 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UCPD.sys
[2024.03.01 03:40:12 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autopilotdiag.dll
[2024.03.01 03:40:11 | 001,580,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
[2024.03.01 03:40:11 | 000,412,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fcon.dll
[2024.03.01 03:40:11 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wosc.dll
[2024.03.01 03:40:07 | 000,340,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\xboxgip.sys
[2024.03.01 03:40:07 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\devauthe.sys
[2024.03.01 02:53:48 | 000,000,000 | -H-D | C] -- C:\$WinREAgent
[2024.03.01 02:51:28 | 000,392,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\poqexec.exe
[2024.03.01 02:51:27 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\poqexec.exe
[2024.02.29 20:36:20 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\Zemana
[2024.02.29 20:35:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
[2024.02.29 20:35:47 | 000,232,792 | ---- | C] (Copyright 2018.) -- C:\WINDOWS\SysNative\drivers\amsdk.sys
[2024.02.29 20:35:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Zemana
[2024.02.29 20:24:59 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\AMSDK
[2024.02.29 20:18:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2024.02.29 19:46:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
[2024.02.29 19:46:12 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo
[2024.02.29 19:02:42 | 000,000,000 | ---D | C] -- C:\ProgramData\RogueKiller
[2024.02.29 19:02:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
[2024.02.29 19:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\RogueKiller
[2024.02.29 18:58:41 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Roaming\HD Tune Pro
[2024.02.29 12:24:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Sophos
[2024.02.29 12:24:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
[2024.02.29 12:23:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sophos
[2024.02.29 12:10:37 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\CrashDumps
[2024.02.29 11:02:00 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\Malwarebytes
[2024.02.29 11:01:17 | 000,239,576 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbamswissarmy.sys
[2024.02.29 11:00:59 | 000,021,480 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\MbamElam.sys
[2024.02.29 11:00:36 | 000,158,640 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbae64.sys
[2024.02.29 10:58:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2024.02.29 10:58:47 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes
[2024.02.29 10:47:42 | 008,797,968 | ---- | C] (Malwarebytes) -- C:\Users\mastr\Desktop\adwcleaner(1).exe
[2024.02.29 10:47:27 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2024.02.29 10:47:05 | 000,000,000 | ---D | C] -- C:\Users\mastr\AppData\Local\Adobe
[2024.02.29 10:05:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Piriform
[2024.02.29 09:57:13 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2024.02.29 09:49:55 | 000,000,000 | ---D | C] -- C:\Users\mastr\Desktop\Čištění
[2024.02.28 22:18:16 | 000,765,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fveapi.dll
[2024.02.28 22:18:16 | 000,367,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fveapibase.dll
[2024.02.28 22:18:14 | 000,095,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpfve.sys
[2024.02.28 22:18:13 | 000,991,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapi.dll
[2024.02.28 22:18:13 | 000,734,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXService.dll
[2024.02.28 22:18:13 | 000,438,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapibase.dll
[2024.02.28 22:18:04 | 000,951,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quickassist.exe
[2024.02.28 22:18:04 | 000,944,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspaint.exe
[2024.02.28 22:18:04 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\quickassist.exe
[2024.02.28 22:18:04 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe
[2024.02.28 22:17:48 | 002,256,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVDECOD.DLL
[2024.02.28 22:17:48 | 000,961,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DolbyDecMFT.dll
[2024.02.28 22:17:46 | 002,340,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msmpeg2vdec.dll
[2024.02.28 22:17:45 | 000,991,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmkvsrcsnk.dll
[2024.02.28 22:17:44 | 003,658,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2024.02.28 22:17:44 | 001,888,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmp4srcsnk.dll
[2024.02.28 22:17:44 | 001,328,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetsrc.dll
[2024.02.28 22:17:43 | 000,539,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf.dll
[2024.02.28 22:17:41 | 024,271,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Hydrogen.dll
[2024.02.28 22:17:39 | 018,767,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HologramWorld.dll
[2024.02.28 22:17:39 | 002,524,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVDECOD.DLL
[2024.02.28 22:17:39 | 002,454,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVCORE.DLL
[2024.02.28 22:17:39 | 000,424,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSAudDecMFT.dll
[2024.02.28 22:17:38 | 004,309,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
[2024.02.28 22:17:38 | 001,257,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmkvsrcsnk.dll
[2024.02.28 22:17:37 | 002,120,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmp4srcsnk.dll
[2024.02.28 22:17:37 | 001,957,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
[2024.02.28 22:17:37 | 001,817,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetsrc.dll
[2024.02.28 22:17:36 | 000,532,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll
[2024.02.28 22:17:36 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\provplatformdesktop.dll
[2024.02.28 22:17:35 | 001,061,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2024.02.28 22:17:35 | 000,408,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CPFilters.dll
[2024.02.28 22:17:34 | 001,538,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
[2024.02.28 22:17:34 | 001,439,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmc.exe
[2024.02.28 22:17:34 | 001,345,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
[2024.02.28 22:17:34 | 000,627,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbc32.dll
[2024.02.28 22:17:34 | 000,354,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsensorgroup.dll
[2024.02.28 22:17:34 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FrameServerClient.dll
[2024.02.28 22:17:33 | 000,673,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlsrv32.dll
[2024.02.28 22:17:31 | 000,839,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
[2024.02.28 22:17:31 | 000,805,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
[2024.02.28 22:17:29 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxclu.dll
[2024.02.28 22:17:29 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcuiu.dll
[2024.02.28 22:17:29 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sud.dll
[2024.02.28 22:17:29 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtfwd.dll
[2024.02.28 22:17:28 | 000,888,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCRecvSrc.dll
[2024.02.28 22:17:28 | 000,731,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcprx.dll
[2024.02.28 22:17:28 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adsnt.dll
[2024.02.28 22:17:28 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xolehlp.dll
[2024.02.28 22:17:28 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcspoffln.dll
[2024.02.28 22:17:23 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wslapi.dll
[2024.02.28 22:17:23 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Clipboard.dll
[2024.02.28 22:17:23 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provplatformdesktop.dll
[2024.02.28 22:17:22 | 001,298,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstsc.exe
[2024.02.28 22:17:22 | 000,520,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CPFilters.dll
[2024.02.28 22:17:22 | 000,419,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SIHClient.exe
[2024.02.28 22:17:21 | 002,024,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
[2024.02.28 22:17:21 | 001,762,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
[2024.02.28 22:17:20 | 000,988,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FrameServer.dll
[2024.02.28 22:17:20 | 000,522,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systemreset.exe
[2024.02.28 22:17:20 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FrameServerClient.dll
[2024.02.28 22:17:20 | 000,414,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsensorgroup.dll
[2024.02.28 22:17:20 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ResetEngOnline.dll
[2024.02.28 22:17:20 | 000,150,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Profile.HardwareId.dll
[2024.02.28 22:17:20 | 000,102,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FsIso.exe
[2024.02.28 22:17:19 | 001,953,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmc.exe
[2024.02.28 22:17:19 | 000,763,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlsrv32.dll
[2024.02.28 22:17:19 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbc32.dll
[2024.02.28 22:17:19 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\rmcast.sys
[2024.02.28 22:17:19 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshrm.dll
[2024.02.28 22:17:15 | 001,234,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
[2024.02.28 22:17:15 | 000,944,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
[2024.02.28 22:17:05 | 026,269,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
[2024.02.28 22:17:05 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtfwd.dll
[2024.02.28 22:17:04 | 001,650,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtctm.dll
[2024.02.28 22:17:04 | 000,466,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxclu.dll
[2024.02.28 22:17:04 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcuiu.dll
[2024.02.28 22:17:04 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sud.dll
[2024.02.28 22:17:04 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtclog.dll
[2024.02.28 22:17:04 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wecutil.exe
[2024.02.28 22:17:04 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xolehlp.dll
[2024.02.28 22:17:04 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wecapi.dll
[2024.02.28 22:17:04 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcspoffln.dll
[2024.02.28 22:17:03 | 001,157,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipUp.exe
[2024.02.28 22:17:03 | 001,090,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MCRecvSrc.dll
[2024.02.28 22:17:03 | 001,028,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CBDHSvc.dll
[2024.02.28 22:17:03 | 000,914,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcprx.dll
[2024.02.28 22:17:03 | 000,399,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adsnt.dll
[2024.02.28 22:17:03 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DAFESCL.dll
[2024.02.28 22:17:02 | 000,678,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\computecore.dll
[2024.02.28 22:17:00 | 001,321,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
[2024.02.28 22:17:00 | 000,615,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
[2024.02.28 22:17:00 | 000,310,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\skci.dll
[2024.02.28 22:17:00 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CodeIntegrityAggregator.dll
[2024.02.28 22:16:59 | 000,923,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\securekernel.exe
[2024.02.28 22:16:59 | 000,700,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcIsoCtnr.dll
[2024.02.28 22:16:59 | 000,481,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcIso.exe
[2024.02.28 22:16:59 | 000,420,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave.dll
[2024.02.28 22:16:59 | 000,415,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave_secure.dll
[2024.02.28 22:16:58 | 001,859,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2024.02.28 22:16:58 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SmartcardCredentialProvider.dll
[2024.02.28 22:16:57 | 001,831,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsservices.dll
[2024.02.28 22:16:57 | 000,963,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsPrint.dll
[2024.02.28 22:16:57 | 000,963,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.Workflow.dll
[2024.02.28 22:16:57 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintWorkflowService.dll
[2024.02.28 22:16:57 | 000,343,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rastls.dll
[2024.02.28 22:16:57 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Print.PrintSupport.Source.dll
[2024.02.28 22:16:57 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Print.Workflow.Source.dll
[2024.02.28 22:16:57 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.Workflow.Native.dll
[2024.02.28 22:16:56 | 000,622,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmIndexer.dll
[2024.02.28 22:16:56 | 000,379,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll
[2024.02.28 22:16:56 | 000,356,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll
[2024.02.28 22:16:56 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\newdev.dll
[2024.02.28 22:16:56 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MicrosoftAccountTokenProvider.dll
[2024.02.28 22:16:56 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netjoin.dll
[2024.02.28 22:16:56 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drvsetup.dll
[2024.02.28 22:16:54 | 001,454,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
[2024.02.28 22:16:54 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BitLockerCsp.dll
[2024.02.28 22:16:54 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edpnotify.exe
[2024.02.28 22:16:53 | 000,417,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Faultrep.dll
[2024.02.28 22:16:53 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wincredui.dll
[2024.02.28 22:16:53 | 000,159,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WerFaultSecure.exe
[2024.02.28 22:16:53 | 000,021,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WerEnc.dll
[2024.02.28 22:16:52 | 001,494,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbghelp.dll
[2024.02.28 22:16:52 | 000,708,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wer.dll
[2024.02.28 22:16:52 | 000,489,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WerFault.exe
[2024.02.28 22:16:52 | 000,208,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wermgr.exe
[2024.02.28 22:16:52 | 000,196,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\weretw.dll
[2024.02.28 22:16:52 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneSettingsClient.dll
[2024.02.28 22:16:52 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dtdump.exe
[2024.02.28 22:16:52 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\devrtl.dll
[2024.02.28 22:16:52 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\werdiagcontroller.dll
[2024.02.28 22:16:52 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diagnosticdataquery.dll
[2024.02.28 22:16:51 | 000,243,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinesam.dll
[2024.02.28 22:16:50 | 000,762,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2024.02.28 22:16:50 | 000,454,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppResolver.dll
[2024.02.28 22:16:50 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PCShellCommonProxyStub.dll
[2024.02.28 22:16:49 | 000,295,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtapi.dll
[2024.02.28 22:16:49 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wups.dll

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 18:13

[2024.02.28 22:16:48 | 000,354,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptngc.dll
[2024.02.28 22:16:48 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ngcksp.dll
[2024.02.28 22:16:47 | 000,532,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ngccredprov.dll
[2024.02.28 22:16:47 | 000,165,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DXCore.dll
[2024.02.28 22:16:33 | 001,464,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3D12Core.dll
[2024.02.28 22:16:33 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CapabilityAccessManagerClient.dll
[2024.02.28 22:16:33 | 000,098,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3D12.dll
[2024.02.28 22:16:33 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Diagnostics.TraceReporting.PlatformDiagnosticActions.dll
[2024.02.28 22:16:33 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Diagnostics.Telemetry.PlatformTelemetryClient.dll
[2024.02.28 22:16:31 | 002,902,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\esent.dll
[2024.02.28 22:16:31 | 001,700,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll
[2024.02.28 22:16:31 | 000,887,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicenseManager.dll
[2024.02.28 22:16:31 | 000,801,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll
[2024.02.28 22:16:31 | 000,234,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2024.02.28 22:16:30 | 002,433,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapRouter.dll
[2024.02.28 22:16:30 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webauthn.dll
[2024.02.28 22:16:29 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthBroker.dll
[2024.02.28 22:16:28 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadauthhelper.dll
[2024.02.28 22:16:27 | 002,745,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2024.02.28 22:16:27 | 001,378,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdprt.dll
[2024.02.28 22:16:27 | 000,299,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExecModelClient.dll
[2024.02.28 22:16:27 | 000,158,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadWamExtension.dll
[2024.02.28 22:16:26 | 000,212,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxApplicabilityEngine.dll
[2024.02.28 22:16:26 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncobjapi.dll
[2024.02.28 22:16:25 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\framedynos.dll
[2024.02.28 22:16:25 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fde.dll
[2024.02.28 22:16:25 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LaunchWinApp.exe
[2024.02.28 22:16:23 | 001,337,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContentDeliveryManager.Utilities.dll
[2024.02.28 22:16:23 | 000,763,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FlightSettings.dll
[2024.02.28 22:16:23 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AutomaticAppSignInPolicy.dll
[2024.02.28 22:16:22 | 000,333,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LsaIso.exe
[2024.02.28 22:16:22 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngctasks.dll
[2024.02.28 22:16:22 | 000,213,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fde.dll
[2024.02.28 22:16:22 | 000,070,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iumcrypt.dll
[2024.02.28 22:16:21 | 000,845,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsm.dll
[2024.02.28 22:16:21 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LaunchWinApp.exe
[2024.02.28 22:16:20 | 002,844,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsservices.dll
[2024.02.28 22:16:20 | 000,627,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uxtheme.dll
[2024.02.28 22:16:20 | 000,506,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rascustom.dll
[2024.02.28 22:16:20 | 000,426,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rastls.dll
[2024.02.28 22:16:20 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rtutils.dll
[2024.02.28 22:16:19 | 001,251,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.Workflow.dll
[2024.02.28 22:16:19 | 000,463,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintWorkflowService.dll
[2024.02.28 22:16:19 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Print.PrintSupport.Source.dll
[2024.02.28 22:16:19 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvinst.exe
[2024.02.28 22:16:19 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvsetup.dll
[2024.02.28 22:16:19 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Print.Workflow.Source.dll
[2024.02.28 22:16:19 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.Workflow.Native.dll
[2024.02.28 22:16:19 | 000,013,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\6bea57fb-8dfb-4177-9ae8-42e8b3529933_RuntimeDeviceInstall.dll
[2024.02.28 22:16:18 | 004,674,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupapi.dll
[2024.02.28 22:16:18 | 000,312,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\newdev.dll
[2024.02.28 22:16:17 | 001,380,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.Handlers.dll
[2024.02.28 22:16:17 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netjoin.dll
[2024.02.28 22:16:16 | 000,827,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmIndexer.dll
[2024.02.28 22:16:16 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AxInstUI.exe
[2024.02.28 22:16:15 | 000,495,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.LockScreen.dll
[2024.02.28 22:16:15 | 000,457,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll
[2024.02.28 22:16:15 | 000,311,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\laps.dll
[2024.02.28 22:16:15 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hlink.dll
[2024.02.28 22:16:14 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFrameworkInternalPS.dll
[2024.02.28 22:16:14 | 000,041,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFrameworkPS.dll
[2024.02.28 22:16:13 | 002,034,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFramework.dll
[2024.02.28 22:16:13 | 001,715,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2024.02.28 22:16:05 | 001,125,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32full.dll
[2024.02.28 22:16:05 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BitLockerCsp.dll
[2024.02.28 22:16:05 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceMetadataRetrievalClient.dll
[2024.02.28 22:16:05 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edpnotify.exe
[2024.02.28 22:16:03 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\coredpus.dll
[2024.02.28 22:16:03 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wincredui.dll
[2024.02.28 22:16:02 | 000,826,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartcardCredentialProvider.dll
[2024.02.28 22:16:02 | 000,608,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppcext.dll
[2024.02.28 22:16:02 | 000,572,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SppExtComObj.Exe
[2024.02.28 22:16:01 | 002,352,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2024.02.28 22:16:00 | 000,906,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogon.exe
[2024.02.28 22:16:00 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.CloudStore.Schema.DesktopShell.dll
[2024.02.28 22:16:00 | 000,525,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll
[2024.02.28 22:16:00 | 000,460,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnrGidsHandler.dll
[2024.02.28 22:16:00 | 000,189,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imm32.dll
[2024.02.28 22:15:58 | 003,115,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
[2024.02.28 22:15:56 | 002,029,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll
[2024.02.28 22:15:56 | 000,577,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WerFault.exe
[2024.02.28 22:15:56 | 000,496,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Faultrep.dll
[2024.02.28 22:15:56 | 000,179,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WerFaultSecure.exe
[2024.02.28 22:15:56 | 000,126,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kdnet.dll
[2024.02.28 22:15:56 | 000,025,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WerEnc.dll
[2024.02.28 22:15:55 | 003,893,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll
[2024.02.28 22:15:55 | 000,890,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wer.dll
[2024.02.28 22:15:55 | 000,254,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\weretw.dll
[2024.02.28 22:15:55 | 000,237,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wermgr.exe
[2024.02.28 22:15:55 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\utcutil.dll
[2024.02.28 22:15:55 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagnosticdataquery.dll
[2024.02.28 22:15:55 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werdiagcontroller.dll
[2024.02.28 22:15:54 | 000,305,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cfgmgr32.dll
[2024.02.28 22:15:54 | 000,195,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devobj.dll
[2024.02.28 22:15:54 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneSettingsClient.dll
[2024.02.28 22:15:54 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devrtl.dll
[2024.02.28 22:15:53 | 000,945,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ci.dll
[2024.02.28 22:15:53 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wldap32.dll
[2024.02.28 22:15:53 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authz.dll
[2024.02.28 22:15:53 | 000,182,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wldp.dll
[2024.02.28 22:15:53 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KdsCli.dll
[2024.02.28 22:15:52 | 001,972,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcomp.dll
[2024.02.28 22:15:52 | 000,827,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
[2024.02.28 22:15:52 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmredir.dll
[2024.02.28 22:15:50 | 000,390,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppLockerCSP.dll
[2024.02.28 22:15:50 | 000,157,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srpapi.dll
[2024.02.28 22:15:50 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appidtel.exe
[2024.02.28 22:15:50 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\applockerfltr.sys
[2024.02.28 22:15:49 | 002,176,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
[2024.02.28 22:15:49 | 000,623,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
[2024.02.28 22:15:49 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Win32CompatibilityAppraiserCSP.dll
[2024.02.28 22:15:48 | 000,349,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Cortana.dll
[2024.02.28 22:15:47 | 000,536,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Activities.dll
[2024.02.28 22:15:46 | 006,872,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.pcshell.dll
[2024.02.28 22:15:46 | 000,521,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsAdminFlows.exe
[2024.02.28 22:15:46 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PCShellCommonProxyStub.dll
[2024.02.28 22:15:36 | 000,583,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppResolver.dll
[2024.02.28 22:15:35 | 001,193,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
[2024.02.28 22:15:35 | 000,962,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
[2024.02.28 22:15:35 | 000,650,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotifyIcon.exe
[2024.02.28 22:15:35 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UpdateDeploymentProvider.dll
[2024.02.28 22:15:35 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups.dll
[2024.02.28 22:15:35 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsUpdateElevatedInstaller.exe
[2024.02.28 22:15:34 | 001,789,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MoUsoCoreWorker.exe
[2024.02.28 22:15:34 | 000,698,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
[2024.02.28 22:15:34 | 000,634,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe
[2024.02.28 22:15:33 | 001,413,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocoreworker.exe
[2024.02.28 22:15:33 | 000,570,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usosvc.dll
[2024.02.28 22:15:33 | 000,405,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtapi.dll
[2024.02.28 22:15:32 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanagerprecheck.dll
[2024.02.28 22:15:32 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cimfs.dll
[2024.02.28 22:15:29 | 001,698,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\user32.dll
[2024.02.28 22:15:25 | 000,650,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnprv.dll
[2024.02.28 22:15:25 | 000,415,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll
[2024.02.28 22:15:24 | 001,019,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll
[2024.02.28 22:15:23 | 003,323,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\esent.dll
[2024.02.28 22:15:23 | 002,326,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll
[2024.02.28 22:15:23 | 001,087,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManager.dll
[2024.02.28 22:15:23 | 000,349,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PushToInstall.dll
[2024.02.28 22:15:23 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2024.02.28 22:15:22 | 003,182,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapRouter.dll
[2024.02.28 22:15:22 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webauthn.dll
[2024.02.28 22:15:21 | 001,132,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
[2024.02.28 22:15:20 | 000,163,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32.dll
[2024.02.28 22:15:02 | 000,949,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcsvc.dll
[2024.02.28 22:15:02 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
[2024.02.28 22:15:02 | 000,791,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnrSvc.dll
[2024.02.28 22:15:02 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcrecovery.dll
[2024.02.28 22:15:02 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcpopkeysrv.dll
[2024.02.28 22:15:02 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcksp.dll
[2024.02.28 22:15:01 | 001,855,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3D12Core.dll
[2024.02.28 22:15:01 | 000,683,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngccredprov.dll
[2024.02.28 22:15:01 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnr.dll
[2024.02.28 22:15:01 | 000,467,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptngc.dll
[2024.02.28 22:15:01 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_CapabilityAccess.dll
[2024.02.28 22:15:01 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CapabilityAccessManagerClient.dll
[2024.02.28 22:15:01 | 000,222,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DXCore.dll
[2024.02.28 22:15:01 | 000,136,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3D12.dll
[2024.02.28 22:15:00 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CapabilityAccessManager.dll
[2024.02.28 22:15:00 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Diagnostics.TraceReporting.PlatformDiagnosticActions.dll
[2024.02.28 22:15:00 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Diagnostics.Telemetry.PlatformTelemetryClient.dll
[2024.02.28 22:14:58 | 003,062,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2024.02.28 22:14:58 | 002,377,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\smartscreen.exe
[2024.02.28 22:14:58 | 002,257,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2024.02.28 22:14:58 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthBroker.dll
[2024.02.28 22:14:57 | 003,423,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2024.02.28 22:14:57 | 001,093,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadcloudap.dll
[2024.02.28 22:14:57 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadauthhelper.dll
[2024.02.28 22:14:57 | 000,304,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountTokenProvider.dll
[2024.02.28 22:14:53 | 000,395,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExecModelClient.dll
[2024.02.28 22:14:53 | 000,206,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadWamExtension.dll
[2024.02.28 22:14:51 | 000,266,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxApplicabilityEngine.dll
[2024.02.28 22:14:50 | 001,768,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdprt.dll
[2024.02.28 22:14:50 | 000,614,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdpsvc.dll
[2024.02.28 22:14:50 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdpusersvc.dll
[2024.02.28 22:14:49 | 000,533,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wow64win.dll
[2024.02.28 22:14:48 | 000,287,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.AppDefaults.dll
[2024.02.28 22:14:48 | 000,146,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.ShellCommon.Broker.dll
[2024.02.28 22:14:47 | 000,447,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_WorkAccess.dll
[2024.02.28 22:14:47 | 000,228,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_SIUF.dll
[2024.02.28 22:14:47 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UtcDecoderHost.exe
[2024.02.28 22:14:47 | 000,129,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apisetschema.dll
[2024.02.28 22:14:46 | 001,065,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Signals.dll
[2024.02.28 22:14:46 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Flights.dll
[2024.02.28 22:14:46 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncobjapi.dll
[2024.02.28 22:14:46 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AutomaticAppSignInPolicy.dll
[2024.02.28 22:14:45 | 001,869,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcDesktopMonSvc.dll
[2024.02.28 22:14:45 | 000,653,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winspool.drv
[2024.02.28 22:14:45 | 000,353,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\framedynos.dll
[2024.02.28 22:14:45 | 000,258,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcTok.exe
[2024.02.28 22:14:44 | 001,043,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcRefreshTask.dll
[2024.02.28 22:14:44 | 000,951,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FlightSettings.dll
[2024.02.28 22:14:44 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceDirectoryClient.dll
[2024.02.28 22:14:44 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DdcAntiTheftApi.dll
[2024.02.28 22:14:44 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DdcComImplementationsDesktop.dll
[2024.02.28 22:14:44 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DdcClaimsApi.dll
[2024.02.28 22:14:43 | 001,793,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContentDeliveryManager.Utilities.dll
[2024.02.28 22:14:42 | 001,049,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XblAuthManager.dll
[2024.02.28 22:14:42 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\winnat.sys
[2024.02.28 22:14:42 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ManageCI.dll
[2024.02.28 22:14:41 | 000,642,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\Vid.sys
[2024.02.28 22:14:41 | 000,259,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\tpm.sys
[2024.02.28 22:14:41 | 000,030,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vmbuspipe.dll
[2024.02.28 22:14:40 | 000,649,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2024.02.28 22:14:40 | 000,621,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2024.02.28 22:14:38 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\xinputhid.sys
[1 C:\*.tmp files -> C:\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2024.03.03 17:07:16 | 000,942,285 | ---- | M] () -- C:\WINDOWS\ZAM.krnl.trace
[2024.03.03 16:02:48 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2024.03.03 10:33:45 | 000,022,719 | ---- | M] () -- C:\Users\mastr\Desktop\Výstřižek.PNG
[2024.03.03 10:23:02 | 1456,250,880 | -HS- | M] () -- C:\hiberfil.sys
[2024.03.03 00:59:58 | 000,078,400 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2024.03.03 00:59:40 | 000,200,104 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\farflt.sys
[2024.03.03 00:59:31 | 000,188,784 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mwac.sys
[2024.03.03 00:59:26 | 000,223,296 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\MbamChameleon.sys
[2024.03.03 00:58:44 | 000,054,208 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\truesight.sys
[2024.03.03 00:58:31 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2024.03.03 00:57:34 | 000,065,536 | ---- | M] () -- C:\WINDOWS\psp_storage.bin
[2024.03.02 21:09:24 | 000,002,068 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Acrobat.lnk
[2024.03.02 16:46:02 | 000,001,086 | ---- | M] () -- C:\Users\Public\Desktop\Revo Uninstaller.lnk
[2024.03.02 16:32:41 | 000,002,267 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2024.03.01 07:31:44 | 000,000,841 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\etc\hosts
[2024.03.01 04:28:55 | 000,436,144 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2024.03.01 03:43:23 | 004,436,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
[2024.03.01 03:43:15 | 005,039,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdp.dll
[2024.03.01 03:43:15 | 000,726,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2024.03.01 03:42:37 | 003,560,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll
[2024.03.01 03:42:37 | 002,521,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msmpeg2vdec.dll
[2024.03.01 03:42:37 | 001,136,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DolbyDecMFT.dll
[2024.03.01 03:42:36 | 004,798,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll
[2024.03.01 03:42:36 | 001,353,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmpeg2srcsnk.dll
[2024.03.01 03:42:34 | 007,240,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2024.03.01 03:42:34 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tsgqec.dll
[2024.03.01 03:42:33 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iemigplugin.dll
[2024.03.01 03:42:32 | 000,562,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript9diag.dll
[2024.03.01 03:42:31 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IndexedDbLegacy.dll
[2024.03.01 03:42:29 | 019,867,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2024.03.01 03:42:27 | 000,446,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2024.03.01 03:42:26 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MiracastReceiverExt.dll
[2024.03.01 03:42:11 | 008,395,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2024.03.01 03:42:11 | 000,071,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tsgqec.dll
[2024.03.01 03:42:11 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MemoryDiagnostic.dll
[2024.03.01 03:42:10 | 000,545,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IESettingSync.exe
[2024.03.01 03:42:10 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iemigplugin.dll
[2024.03.01 03:42:08 | 004,886,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2024.03.01 03:42:08 | 000,714,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9diag.dll
[2024.03.01 03:42:07 | 000,237,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IndexedDbLegacy.dll
[2024.03.01 03:42:04 | 000,563,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2024.03.01 03:42:04 | 000,263,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
[2024.03.01 03:42:04 | 000,101,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4ushowIE.exe
[2024.03.01 03:42:04 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MiracastReceiverExt.dll
[2024.03.01 03:42:04 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iesetup.dll
[2024.03.01 03:42:04 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iernonce.dll
[2024.03.01 03:42:03 | 000,180,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAppInstaller.exe
[2024.03.01 03:42:03 | 000,113,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseDesktopAppMgmtCSP.dll
[2024.03.01 03:42:02 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EDPCleanup.exe
[2024.03.01 03:42:02 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edpcsp.dll
[2024.03.01 03:42:00 | 001,572,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
[2024.03.01 03:42:00 | 001,301,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
[2024.03.01 03:42:00 | 000,817,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcblaunch.exe
[2024.03.01 03:42:00 | 000,224,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcbloader.dll
[2024.03.01 03:42:00 | 000,012,742 | ---- | M] () -- C:\WINDOWS\SysNative\DrtmAuthTxt.wim
[2024.03.01 03:41:59 | 000,311,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UnifiedConsent.dll
[2024.03.01 03:41:59 | 000,000,862 | ---- | M] () -- C:\WINDOWS\SysWow64\DesktopSpotlightToastIcon_Dark.png
[2024.03.01 03:41:59 | 000,000,818 | ---- | M] () -- C:\WINDOWS\SysWow64\DesktopSpotlightToastIcon_Light.png
[2024.03.01 03:41:58 | 000,332,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AboveLockAppHost.dll
[2024.03.01 03:41:58 | 000,282,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockScreenData.dll
[2024.03.01 03:41:58 | 000,114,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OpenWith.exe
[2024.03.01 03:41:57 | 008,896,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
[2024.03.01 03:41:57 | 000,402,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
[2024.03.01 03:41:57 | 000,265,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
[2024.03.01 03:41:56 | 000,932,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gdi32full.dll
[2024.03.01 03:41:56 | 000,812,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Internal.Management.dll
[2024.03.01 03:41:56 | 000,759,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmenrollengine.dll
[2024.03.01 03:41:56 | 000,175,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\omadmapi.dll
[2024.03.01 03:41:56 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\enrollmentapi.dll
[2024.03.01 03:41:56 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DMAlertListener.ProxyStub.dll
[2024.03.01 03:41:55 | 000,676,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe
[2024.03.01 03:41:55 | 000,533,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\policymanager.dll
[2024.03.01 03:41:55 | 000,390,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmcmnutils.dll
[2024.03.01 03:41:55 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\enterpriseresourcemanager.dll
[2024.03.01 03:41:55 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdmlocalmanagement.dll
[2024.03.01 03:41:54 | 002,632,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\combase.dll
[2024.03.01 03:41:54 | 000,900,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinTypes.dll
[2024.03.01 03:41:54 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wincorlib.dll
[2024.03.01 03:41:54 | 000,147,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wldp.dll
[2024.03.01 03:41:54 | 000,099,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontsub.dll
[2024.03.01 03:41:53 | 001,354,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2024.03.01 03:41:53 | 001,277,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2024.03.01 03:41:53 | 000,966,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Taskmgr.exe
[2024.03.01 03:41:53 | 000,407,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\catsrvut.dll
[2024.03.01 03:41:53 | 000,338,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdmregistration.dll
[2024.03.01 03:41:53 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LaunchTM.exe
[2024.03.01 03:41:52 | 002,750,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
[2024.03.01 03:41:52 | 000,508,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
[2024.03.01 03:41:52 | 000,330,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32k.sys
[2024.03.01 03:41:52 | 000,094,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32u.dll
[2024.03.01 03:41:51 | 003,936,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneCoreUAPCommonProxyStub.dll
[2024.03.01 03:41:51 | 001,645,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.appcore.dll
[2024.03.01 03:41:50 | 001,103,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll
[2024.03.01 03:41:50 | 000,779,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Services.TargetedContent.dll
[2024.03.01 03:41:50 | 000,343,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FWPUCLNT.DLL
[2024.03.01 03:41:50 | 000,142,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\profext.dll
[2024.03.01 03:41:49 | 006,413,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
[2024.03.01 03:41:49 | 000,788,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
[2024.03.01 03:41:48 | 001,877,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InstallService.dll
[2024.03.01 03:41:48 | 000,198,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InstallServiceTasks.dll
[2024.03.01 03:41:47 | 001,333,760 | ---- | M] () -- C:\WINDOWS\SysWow64\TextInputMethodFormatter.dll
[2024.03.01 03:41:47 | 000,755,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TextInputFramework.dll
[2024.03.01 03:41:47 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
[2024.03.01 03:41:47 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EditBufferTestHook.dll
[2024.03.01 03:41:47 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WordBreakers.dll
[2024.03.01 03:41:46 | 001,290,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadtb.dll
[2024.03.01 03:41:46 | 001,029,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CloudExperienceHostCommon.dll
[2024.03.01 03:41:46 | 000,658,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActivationManager.dll
[2024.03.01 03:41:46 | 000,631,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Gaming.Input.dll
[2024.03.01 03:41:46 | 000,294,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
[2024.03.01 03:41:46 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XInputUap.dll
[2024.03.01 03:41:45 | 014,746,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2024.03.01 03:41:43 | 004,753,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2024.03.01 03:41:42 | 001,242,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2024.03.01 03:41:42 | 001,000,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll
[2024.03.01 03:41:42 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tbauth.dll
[2024.03.01 03:41:42 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBrokerCookies.exe
[2024.03.01 03:41:41 | 000,650,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicensingWinRT.dll
[2024.03.01 03:41:41 | 000,394,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themeui.dll
[2024.03.01 03:41:40 | 004,936,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
[2024.03.01 03:41:40 | 000,455,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ShellCommonCommonProxyStub.dll
[2024.03.01 03:41:40 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imageres.dll
[2024.03.01 03:41:39 | 000,942,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmCoreProvisioning.dll
[2024.03.01 03:41:39 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secproc.dll
[2024.03.01 03:41:39 | 000,348,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemSettings.DataModel.dll
[2024.03.01 03:41:39 | 000,271,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncSettings.dll
[2024.03.01 03:41:39 | 000,019,530 | ---- | M] () -- C:\WINDOWS\SysWow64\IntegratedServicesRegionPolicySet.json
[2024.03.01 03:41:39 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmCertResources.dll
[2024.03.01 03:41:38 | 006,197,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2024.03.01 03:41:38 | 002,821,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windowsudk.shellcommon.dll
[2024.03.01 03:41:37 | 000,484,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themeui.dll
[2024.03.01 03:41:37 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IppCommon.dll
[2024.03.01 03:41:37 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IppCommonProxy.dll
[2024.03.01 03:41:36 | 003,566,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll
[2024.03.01 03:41:36 | 001,645,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\APMon.dll
[2024.03.01 03:41:27 | 001,207,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplyTrustOffline.exe
[2024.03.01 03:41:27 | 000,528,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncsi.dll
[2024.03.01 03:41:27 | 000,294,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeveloperOptionsSettingsHandlers.dll
[2024.03.01 03:41:27 | 000,205,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkDesktopSettings.dll
[2024.03.01 03:41:27 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CustomInstallExec.exe
[2024.03.01 03:41:26 | 001,776,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.desktop.dll
[2024.03.01 03:41:26 | 000,210,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXApplicabilityBlob.dll
[2024.03.01 03:41:25 | 003,928,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2024.03.01 03:41:25 | 002,495,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.onecore.dll
[2024.03.01 03:41:24 | 000,548,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinREAgent.dll
[2024.03.01 03:41:24 | 000,382,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
[2024.03.01 03:41:23 | 000,448,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
[2024.03.01 03:41:23 | 000,431,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockScreenData.dll
[2024.03.01 03:41:23 | 000,419,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AboveLockAppHost.dll
[2024.03.01 03:41:23 | 000,333,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msIso.dll
[2024.03.01 03:41:22 | 002,145,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MdmDiagnostics.dll
[2024.03.01 03:41:22 | 000,134,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpapi.dll
[2024.03.01 03:41:21 | 001,130,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Management.dll
[2024.03.01 03:41:21 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmmigrator.dll
[2024.03.01 03:41:21 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2024.03.01 03:41:21 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMAlertListener.ProxyStub.dll
[2024.03.01 03:41:20 | 002,632,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll
[2024.03.01 03:41:20 | 000,961,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenrollengine.dll
[2024.03.01 03:41:20 | 000,472,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmclient.exe
[2024.03.01 03:41:20 | 000,373,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenterprisediagnostics.dll
[2024.03.01 03:41:20 | 000,225,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmapi.dll
[2024.03.01 03:41:20 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterpriseresourcemanager.dll
[2024.03.01 03:41:20 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmlocalmanagement.dll
[2024.03.01 03:41:19 | 000,648,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanager.dll
[2024.03.01 03:41:19 | 000,486,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcmnutils.dll
[2024.03.01 03:41:19 | 000,317,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMPushRouterCore.dll
[2024.03.01 03:41:19 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmwappushsvc.dll
[2024.03.01 03:41:18 | 000,990,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcsvc.dll
[2024.03.01 03:41:18 | 000,713,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\configmanager2.dll
[2024.03.01 03:41:18 | 000,189,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcertinst.exe
[2024.03.01 03:41:18 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\declaredconfiguration.dll
[2024.03.01 03:41:17 | 001,787,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppobjs.dll
[2024.03.01 03:41:17 | 000,766,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicensingWinRT.dll
[2024.03.01 03:41:17 | 000,483,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceEnroller.exe
[2024.03.01 03:41:16 | 000,000,862 | ---- | M] () -- C:\WINDOWS\SysNative\DesktopSpotlightToastIcon_Dark.png
[2024.03.01 03:41:16 | 000,000,818 | ---- | M] () -- C:\WINDOWS\SysNative\DesktopSpotlightToastIcon_Light.png
[2024.03.01 03:41:14 | 001,486,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usermgr.dll
[2024.03.01 03:41:14 | 000,133,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OpenWith.exe
[2024.03.01 03:41:13 | 001,127,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctf.dll
[2024.03.01 03:41:13 | 000,828,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontdrvhost.exe
[2024.03.01 03:41:13 | 000,126,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontsub.dll
[2024.03.01 03:41:13 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dciman32.dll
[2024.03.01 03:41:13 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpk.dll
[2024.03.01 03:41:12 | 000,503,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\FWPKCLNT.SYS
[2024.03.01 03:41:11 | 001,199,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcrt4.dll
[2024.03.01 03:41:10 | 000,613,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\netio.sys
[2024.03.01 03:41:09 | 010,862,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2024.03.01 03:41:05 | 001,675,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2024.03.01 03:41:05 | 000,940,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2024.03.01 03:41:05 | 000,279,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinesam.dll
[2024.03.01 03:41:05 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samlib.dll
[2024.03.01 03:41:05 | 000,136,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinelsa.dll
[2024.03.01 03:41:04 | 003,499,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
[2024.03.01 03:41:04 | 001,400,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinTypes.dll
[2024.03.01 03:41:04 | 000,437,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wincorlib.dll
[2024.03.01 03:41:03 | 001,700,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsvcs.dll
[2024.03.01 03:41:03 | 001,400,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
[2024.03.01 03:41:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\catsrvut.dll
[2024.03.01 03:41:03 | 000,503,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\cldflt.sys
[2024.03.01 03:41:02 | 001,837,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
[2024.03.01 03:41:02 | 001,570,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
[2024.03.01 03:41:02 | 001,206,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
[2024.03.01 03:41:01 | 001,214,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Taskmgr.exe
[2024.03.01 03:41:01 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LaunchTM.exe
[2024.03.01 03:40:59 | 000,231,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputCloudStore.dll
[2024.03.01 03:40:58 | 000,306,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_ManagePhone.dll
[2024.03.01 03:40:57 | 000,866,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Language.dll
[2024.03.01 03:40:56 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_ContentDeliveryManager.dll
[2024.03.01 03:40:53 | 001,125,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShellAppRuntime.exe
[2024.03.01 03:40:50 | 004,009,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsThresholdAdminFlowUI.dll
[2024.03.01 03:40:50 | 000,591,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsEnvironment.Desktop.dll
[2024.03.01 03:40:50 | 000,066,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2024.03.01 03:40:50 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups2.dll
[2024.03.01 03:40:49 | 001,892,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll
[2024.03.01 03:40:49 | 000,621,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseAppMgmtSvc.dll
[2024.03.01 03:40:48 | 000,425,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmregistration.dll
[2024.03.01 03:40:47 | 003,791,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2024.03.01 03:40:47 | 000,780,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.immersiveshell.serviceprovider.dll
[2024.03.01 03:40:47 | 000,133,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32u.dll
[2024.03.01 03:40:46 | 001,188,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Services.TargetedContent.dll
[2024.03.01 03:40:39 | 001,507,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
[2024.03.01 03:40:39 | 001,402,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll
[2024.03.01 03:40:38 | 000,503,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FWPUCLNT.DLL
[2024.03.01 03:40:38 | 000,181,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wfplwfs.sys
[2024.03.01 03:40:37 | 008,026,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2024.03.01 03:40:37 | 001,059,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
[2024.03.01 03:40:37 | 000,177,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profext.dll
[2024.03.01 03:40:36 | 000,320,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll
[2024.03.01 03:40:36 | 000,246,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallServiceTasks.dll
[2024.03.01 03:40:35 | 002,479,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallService.dll
[2024.03.01 03:40:35 | 002,250,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ISM.dll
[2024.03.01 03:40:34 | 002,260,480 | ---- | M] () -- C:\WINDOWS\SysNative\TextInputMethodFormatter.dll
[2024.03.01 03:40:34 | 001,042,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Core.TextInput.dll
[2024.03.01 03:40:34 | 001,016,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TextInputFramework.dll
[2024.03.01 03:40:34 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputLocaleManager.dll
[2024.03.01 03:40:34 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WordBreakers.dll
[2024.03.01 03:40:33 | 004,734,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
[2024.03.01 03:40:33 | 002,979,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2024.03.01 03:40:33 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EditBufferTestHook.dll
[2024.03.01 03:40:32 | 003,751,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeContent.dll
[2024.03.01 03:40:32 | 002,866,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2024.03.01 03:40:32 | 000,526,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\domgmt.dll
[2024.03.01 03:40:32 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DafDnsSd.dll
[2024.03.01 03:40:31 | 002,112,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll
[2024.03.01 03:40:31 | 001,538,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dosvc.dll
[2024.03.01 03:40:31 | 000,902,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms2.sys
[2024.03.01 03:40:31 | 000,456,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys
[2024.03.01 03:40:31 | 000,267,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdd.dll
[2024.03.01 03:40:30 | 008,252,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneCoreUAPCommonProxyStub.dll
[2024.03.01 03:40:29 | 001,206,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudExperienceHostCommon.dll
[2024.03.01 03:40:29 | 000,803,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActivationManager.dll
[2024.03.01 03:40:28 | 001,533,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2024.03.01 03:40:28 | 001,145,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
[2024.03.01 03:40:28 | 000,617,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cloudAP.dll
[2024.03.01 03:40:28 | 000,075,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tbauth.dll
[2024.03.01 03:40:28 | 000,053,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GameInputSvc.exe
[2024.03.01 03:40:28 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBrokerCookies.exe
[2024.03.01 03:40:27 | 001,634,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadtb.dll
[2024.03.01 03:40:27 | 000,916,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Gaming.Input.dll
[2024.03.01 03:40:27 | 000,386,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GameInputInbox.dll
[2024.03.01 03:40:27 | 000,110,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GameInput.dll
[2024.03.01 03:40:27 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XInputUap.dll
[2024.03.01 03:40:26 | 017,532,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2024.03.01 03:40:26 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Resources.Common.dll
[2024.03.01 03:40:23 | 010,347,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
[2024.03.01 03:40:23 | 002,484,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.CloudStore.dll
[2024.03.01 03:40:22 | 005,802,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StartTileData.dll
[2024.03.01 03:40:22 | 000,162,304 | ---- | M] () -- C:\WINDOWS\SysNative\DataStoreCacheDumpTool.exe
[2024.03.01 03:40:21 | 000,851,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.CloudStore.Schema.Shell.dll
[2024.03.01 03:40:21 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\readCloudDataSettings.exe
[2024.03.01 03:40:18 | 000,912,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShellCommonCommonProxyStub.dll
[2024.03.01 03:40:17 | 001,175,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usbmon.dll
[2024.03.01 03:40:17 | 001,071,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NaturalLanguage6.dll
[2024.03.01 03:40:17 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localui.dll
[2024.03.01 03:40:16 | 005,608,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2024.03.01 03:40:16 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imageres.dll
[2024.03.01 03:40:15 | 001,172,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmCoreProvisioning.dll
[2024.03.01 03:40:15 | 000,807,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_StorageSense.dll
[2024.03.01 03:40:15 | 000,713,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\advapi32.dll
[2024.03.01 03:40:15 | 000,461,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.DataModel.dll
[2024.03.01 03:40:15 | 000,325,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmTasks.dll
[2024.03.01 03:40:15 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmCertResources.dll
[2024.03.01 03:40:14 | 001,338,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2024.03.01 03:40:14 | 001,281,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2024.03.01 03:40:14 | 000,378,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncSettings.dll
[2024.03.01 03:40:14 | 000,206,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsBroker.exe
[2024.03.01 03:40:14 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrinterCleanupTask.dll
[2024.03.01 03:40:14 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FaxPrinterInstaller.dll
[2024.03.01 03:40:14 | 000,019,530 | ---- | M] () -- C:\WINDOWS\SysNative\IntegratedServicesRegionPolicySet.json
[2024.03.01 03:40:13 | 000,725,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storport.sys
[2024.03.01 03:40:13 | 000,158,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAgent.exe
[2024.03.01 03:40:13 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RjvMDMConfig.dll
[2024.03.01 03:40:12 | 000,860,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.Service.dll
[2024.03.01 03:40:12 | 000,763,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudRestoreLauncher.dll
[2024.03.01 03:40:12 | 000,518,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MitigationClient.dll
[2024.03.01 03:40:12 | 000,300,544 | ---- | M] () -- C:\WINDOWS\SysNative\Windows.Management.InprocObjects.dll
[2024.03.01 03:40:12 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.System.UserProfile.dll
[2024.03.01 03:40:12 | 000,200,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autopilot.dll
[2024.03.01 03:40:12 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.ModernDeployment.ConfigProviders.dll
[2024.03.01 03:40:12 | 000,071,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll

Uživatelský avatar
Slegr
Level 3
Level 3
Příspěvky: 402
Registrován: září 07
Pohlaví: Muž
Stav:
Offline

Re: Zasekaný notebook

Příspěvekod Slegr » 03 bře 2024 18:13

[2024.03.01 03:40:12 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UCPDMgr.exe
[2024.03.01 03:40:12 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UCPD.sys
[2024.03.01 03:40:12 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autopilotdiag.dll
[2024.03.01 03:40:11 | 003,015,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintConfig.dll
[2024.03.01 03:40:11 | 001,580,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
[2024.03.01 03:40:11 | 000,412,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fcon.dll
[2024.03.01 03:40:11 | 000,354,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wosc.dll
[2024.03.01 03:40:07 | 000,340,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\xboxgip.sys
[2024.03.01 03:40:07 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\devauthe.sys
[2024.02.29 20:35:56 | 000,001,336 | ---- | M] () -- C:\Users\Public\Desktop\Zemana AntiMalware.lnk
[2024.02.29 20:35:47 | 000,232,792 | ---- | M] (Copyright 2018.) -- C:\WINDOWS\SysNative\drivers\amsdk.sys
[2024.02.29 19:46:19 | 000,001,835 | ---- | M] () -- C:\Users\mastr\Desktop\CrystalDiskInfo.lnk
[2024.02.29 19:02:40 | 000,000,906 | ---- | M] () -- C:\Users\Public\Desktop\RogueKiller.lnk
[2024.02.29 17:20:06 | 000,002,281 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Edge.lnk
[2024.02.29 12:24:03 | 000,002,775 | ---- | M] () -- C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
[2024.02.29 11:01:29 | 000,002,088 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes.lnk
[2024.02.29 11:01:17 | 000,239,576 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbamswissarmy.sys
[2024.02.29 10:59:46 | 000,158,640 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbae64.sys
[2024.02.29 10:59:37 | 000,021,480 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\MbamElam.sys
[2024.02.29 10:47:42 | 008,797,968 | ---- | M] (Malwarebytes) -- C:\Users\mastr\Desktop\adwcleaner(1).exe
[2024.02.29 10:12:09 | 000,000,666 | ---- | M] () -- C:\WINDOWS\tasks\CCleanerCrashReporting.job
[2024.02.29 02:39:30 | 001,605,602 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2024.02.29 02:39:30 | 000,683,426 | ---- | M] () -- C:\WINDOWS\SysNative\perfh005.dat
[2024.02.29 02:39:30 | 000,666,132 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2024.02.29 02:39:30 | 000,137,206 | ---- | M] () -- C:\WINDOWS\SysNative\perfc005.dat
[2024.02.29 02:39:30 | 000,125,490 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2024.02.28 22:18:16 | 000,765,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fveapi.dll
[2024.02.28 22:18:16 | 000,367,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fveapibase.dll
[2024.02.28 22:18:14 | 000,095,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpfve.sys
[2024.02.28 22:18:13 | 000,991,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapi.dll
[2024.02.28 22:18:13 | 000,734,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXService.dll
[2024.02.28 22:18:13 | 000,438,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapibase.dll
[2024.02.28 22:18:05 | 000,763,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\quickassist.exe
[2024.02.28 22:18:04 | 000,951,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quickassist.exe
[2024.02.28 22:18:04 | 000,944,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspaint.exe
[2024.02.28 22:18:04 | 000,200,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe
[2024.02.28 22:17:48 | 002,256,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVDECOD.DLL
[2024.02.28 22:17:48 | 000,961,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DolbyDecMFT.dll
[2024.02.28 22:17:47 | 002,340,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msmpeg2vdec.dll
[2024.02.28 22:17:46 | 000,991,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmkvsrcsnk.dll
[2024.02.28 22:17:45 | 003,658,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2024.02.28 22:17:44 | 001,888,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmp4srcsnk.dll
[2024.02.28 22:17:44 | 001,328,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetsrc.dll
[2024.02.28 22:17:43 | 024,271,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Hydrogen.dll
[2024.02.28 22:17:43 | 000,539,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf.dll
[2024.02.28 22:17:41 | 018,767,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HologramWorld.dll
[2024.02.28 22:17:39 | 002,524,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVDECOD.DLL
[2024.02.28 22:17:39 | 002,454,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVCORE.DLL
[2024.02.28 22:17:39 | 000,424,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSAudDecMFT.dll
[2024.02.28 22:17:38 | 004,309,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
[2024.02.28 22:17:38 | 001,817,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetsrc.dll
[2024.02.28 22:17:38 | 001,257,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmkvsrcsnk.dll
[2024.02.28 22:17:37 | 002,120,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmp4srcsnk.dll
[2024.02.28 22:17:37 | 001,957,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
[2024.02.28 22:17:36 | 000,532,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll
[2024.02.28 22:17:36 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\provplatformdesktop.dll
[2024.02.28 22:17:35 | 001,345,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
[2024.02.28 22:17:35 | 001,061,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2024.02.28 22:17:35 | 000,408,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CPFilters.dll
[2024.02.28 22:17:34 | 001,538,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
[2024.02.28 22:17:34 | 001,439,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmc.exe
[2024.02.28 22:17:34 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbc32.dll
[2024.02.28 22:17:34 | 000,354,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsensorgroup.dll
[2024.02.28 22:17:34 | 000,344,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FrameServerClient.dll
[2024.02.28 22:17:33 | 000,673,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlsrv32.dll
[2024.02.28 22:17:31 | 000,839,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
[2024.02.28 22:17:31 | 000,805,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
[2024.02.28 22:17:29 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxclu.dll
[2024.02.28 22:17:29 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcuiu.dll
[2024.02.28 22:17:29 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sud.dll
[2024.02.28 22:17:29 | 000,098,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtfwd.dll
[2024.02.28 22:17:28 | 000,888,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCRecvSrc.dll
[2024.02.28 22:17:28 | 000,731,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcprx.dll
[2024.02.28 22:17:28 | 000,313,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adsnt.dll
[2024.02.28 22:17:28 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xolehlp.dll
[2024.02.28 22:17:28 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcspoffln.dll
[2024.02.28 22:17:23 | 000,289,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wslapi.dll
[2024.02.28 22:17:23 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Clipboard.dll
[2024.02.28 22:17:23 | 000,203,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provplatformdesktop.dll
[2024.02.28 22:17:22 | 001,298,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstsc.exe
[2024.02.28 22:17:22 | 000,520,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CPFilters.dll
[2024.02.28 22:17:22 | 000,419,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SIHClient.exe
[2024.02.28 22:17:21 | 002,024,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
[2024.02.28 22:17:21 | 001,762,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
[2024.02.28 22:17:20 | 001,953,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmc.exe
[2024.02.28 22:17:20 | 000,988,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FrameServer.dll
[2024.02.28 22:17:20 | 000,522,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systemreset.exe
[2024.02.28 22:17:20 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FrameServerClient.dll
[2024.02.28 22:17:20 | 000,414,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsensorgroup.dll
[2024.02.28 22:17:20 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ResetEngOnline.dll
[2024.02.28 22:17:20 | 000,150,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Profile.HardwareId.dll
[2024.02.28 22:17:20 | 000,102,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FsIso.exe
[2024.02.28 22:17:19 | 000,763,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlsrv32.dll
[2024.02.28 22:17:19 | 000,757,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbc32.dll
[2024.02.28 22:17:19 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\rmcast.sys
[2024.02.28 22:17:19 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshrm.dll
[2024.02.28 22:17:15 | 001,234,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
[2024.02.28 22:17:15 | 000,944,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
[2024.02.28 22:17:07 | 026,269,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
[2024.02.28 22:17:05 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtfwd.dll
[2024.02.28 22:17:04 | 001,650,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtctm.dll
[2024.02.28 22:17:04 | 000,914,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcprx.dll
[2024.02.28 22:17:04 | 000,466,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxclu.dll
[2024.02.28 22:17:04 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcuiu.dll
[2024.02.28 22:17:04 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sud.dll
[2024.02.28 22:17:04 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtclog.dll
[2024.02.28 22:17:04 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wecutil.exe
[2024.02.28 22:17:04 | 000,098,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xolehlp.dll
[2024.02.28 22:17:04 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wecapi.dll
[2024.02.28 22:17:04 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcspoffln.dll
[2024.02.28 22:17:03 | 001,157,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipUp.exe
[2024.02.28 22:17:03 | 001,090,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MCRecvSrc.dll
[2024.02.28 22:17:03 | 001,028,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CBDHSvc.dll
[2024.02.28 22:17:03 | 000,678,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\computecore.dll
[2024.02.28 22:17:03 | 000,399,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adsnt.dll
[2024.02.28 22:17:03 | 000,254,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DAFESCL.dll
[2024.02.28 22:17:00 | 001,321,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
[2024.02.28 22:17:00 | 000,615,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
[2024.02.28 22:17:00 | 000,310,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\skci.dll
[2024.02.28 22:17:00 | 000,174,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CodeIntegrityAggregator.dll
[2024.02.28 22:16:59 | 000,923,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\securekernel.exe
[2024.02.28 22:16:59 | 000,700,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcIsoCtnr.dll
[2024.02.28 22:16:59 | 000,481,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcIso.exe
[2024.02.28 22:16:59 | 000,420,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave.dll
[2024.02.28 22:16:59 | 000,415,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SgrmEnclave_secure.dll
[2024.02.28 22:16:58 | 001,859,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2024.02.28 22:16:58 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SmartcardCredentialProvider.dll
[2024.02.28 22:16:57 | 001,831,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsservices.dll
[2024.02.28 22:16:57 | 000,963,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsPrint.dll
[2024.02.28 22:16:57 | 000,963,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.Workflow.dll
[2024.02.28 22:16:57 | 000,372,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintWorkflowService.dll
[2024.02.28 22:16:57 | 000,343,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rastls.dll
[2024.02.28 22:16:57 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Print.PrintSupport.Source.dll
[2024.02.28 22:16:57 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Print.Workflow.Source.dll
[2024.02.28 22:16:57 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.Workflow.Native.dll
[2024.02.28 22:16:56 | 000,622,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmIndexer.dll
[2024.02.28 22:16:56 | 000,379,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll
[2024.02.28 22:16:56 | 000,356,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll
[2024.02.28 22:16:56 | 000,236,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\newdev.dll
[2024.02.28 22:16:56 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MicrosoftAccountTokenProvider.dll
[2024.02.28 22:16:56 | 000,160,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netjoin.dll
[2024.02.28 22:16:56 | 000,134,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drvsetup.dll
[2024.02.28 22:16:54 | 001,454,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
[2024.02.28 22:16:54 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BitLockerCsp.dll
[2024.02.28 22:16:54 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edpnotify.exe
[2024.02.28 22:16:53 | 000,417,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Faultrep.dll
[2024.02.28 22:16:53 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wincredui.dll
[2024.02.28 22:16:53 | 000,159,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WerFaultSecure.exe
[2024.02.28 22:16:53 | 000,021,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WerEnc.dll
[2024.02.28 22:16:52 | 001,494,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbghelp.dll
[2024.02.28 22:16:52 | 000,708,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wer.dll
[2024.02.28 22:16:52 | 000,489,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WerFault.exe
[2024.02.28 22:16:52 | 000,208,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wermgr.exe
[2024.02.28 22:16:52 | 000,196,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\weretw.dll
[2024.02.28 22:16:52 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneSettingsClient.dll
[2024.02.28 22:16:52 | 000,100,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dtdump.exe
[2024.02.28 22:16:52 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\devrtl.dll
[2024.02.28 22:16:52 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\werdiagcontroller.dll
[2024.02.28 22:16:52 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diagnosticdataquery.dll
[2024.02.28 22:16:51 | 000,243,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinesam.dll
[2024.02.28 22:16:50 | 000,762,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2024.02.28 22:16:50 | 000,454,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppResolver.dll
[2024.02.28 22:16:50 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PCShellCommonProxyStub.dll
[2024.02.28 22:16:49 | 000,295,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtapi.dll
[2024.02.28 22:16:49 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wups.dll
[2024.02.28 22:16:48 | 000,354,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptngc.dll
[2024.02.28 22:16:48 | 000,109,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ngcksp.dll
[2024.02.28 22:16:47 | 000,532,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ngccredprov.dll
[2024.02.28 22:16:47 | 000,165,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DXCore.dll
[2024.02.28 22:16:33 | 001,464,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3D12Core.dll
[2024.02.28 22:16:33 | 000,171,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CapabilityAccessManagerClient.dll
[2024.02.28 22:16:33 | 000,098,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3D12.dll
[2024.02.28 22:16:33 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Diagnostics.TraceReporting.PlatformDiagnosticActions.dll
[2024.02.28 22:16:33 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Diagnostics.Telemetry.PlatformTelemetryClient.dll
[2024.02.28 22:16:31 | 002,902,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\esent.dll
[2024.02.28 22:16:31 | 001,700,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll
[2024.02.28 22:16:31 | 000,887,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicenseManager.dll
[2024.02.28 22:16:31 | 000,801,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll
[2024.02.28 22:16:31 | 000,234,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2024.02.28 22:16:30 | 002,433,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapRouter.dll
[2024.02.28 22:16:30 | 000,416,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webauthn.dll
[2024.02.28 22:16:29 | 000,168,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthBroker.dll
[2024.02.28 22:16:28 | 002,745,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2024.02.28 22:16:28 | 000,342,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadauthhelper.dll
[2024.02.28 22:16:27 | 001,378,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdprt.dll
[2024.02.28 22:16:27 | 000,299,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExecModelClient.dll
[2024.02.28 22:16:27 | 000,158,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadWamExtension.dll
[2024.02.28 22:16:26 | 000,212,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxApplicabilityEngine.dll
[2024.02.28 22:16:26 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncobjapi.dll
[2024.02.28 22:16:25 | 000,267,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\framedynos.dll
[2024.02.28 22:16:25 | 000,160,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fde.dll
[2024.02.28 22:16:25 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LaunchWinApp.exe
[2024.02.28 22:16:23 | 001,337,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContentDeliveryManager.Utilities.dll
[2024.02.28 22:16:23 | 000,763,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FlightSettings.dll
[2024.02.28 22:16:23 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AutomaticAppSignInPolicy.dll
[2024.02.28 22:16:22 | 000,333,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LsaIso.exe
[2024.02.28 22:16:22 | 000,278,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngctasks.dll
[2024.02.28 22:16:22 | 000,213,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fde.dll
[2024.02.28 22:16:22 | 000,070,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iumcrypt.dll
[2024.02.28 22:16:21 | 000,845,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsm.dll
[2024.02.28 22:16:21 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LaunchWinApp.exe
[2024.02.28 22:16:20 | 002,844,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsservices.dll
[2024.02.28 22:16:20 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uxtheme.dll
[2024.02.28 22:16:20 | 000,506,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rascustom.dll
[2024.02.28 22:16:20 | 000,426,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rastls.dll
[2024.02.28 22:16:20 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rtutils.dll
[2024.02.28 22:16:19 | 001,251,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.Workflow.dll
[2024.02.28 22:16:19 | 000,463,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintWorkflowService.dll
[2024.02.28 22:16:19 | 000,380,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Print.PrintSupport.Source.dll
[2024.02.28 22:16:19 | 000,332,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvinst.exe
[2024.02.28 22:16:19 | 000,172,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvsetup.dll
[2024.02.28 22:16:19 | 000,093,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Print.Workflow.Source.dll
[2024.02.28 22:16:19 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.Workflow.Native.dll
[2024.02.28 22:16:19 | 000,013,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\6bea57fb-8dfb-4177-9ae8-42e8b3529933_RuntimeDeviceInstall.dll
[2024.02.28 22:16:18 | 004,674,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupapi.dll
[2024.02.28 22:16:18 | 001,380,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.Handlers.dll
[2024.02.28 22:16:18 | 000,312,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\newdev.dll
[2024.02.28 22:16:17 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netjoin.dll
[2024.02.28 22:16:16 | 000,827,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmIndexer.dll
[2024.02.28 22:16:16 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AxInstUI.exe
[2024.02.28 22:16:15 | 000,495,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.LockScreen.dll
[2024.02.28 22:16:15 | 000,457,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll
[2024.02.28 22:16:15 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\laps.dll
[2024.02.28 22:16:15 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hlink.dll
[2024.02.28 22:16:14 | 002,034,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFramework.dll
[2024.02.28 22:16:14 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFrameworkInternalPS.dll
[2024.02.28 22:16:14 | 000,041,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationFrameworkPS.dll
[2024.02.28 22:16:13 | 001,715,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2024.02.28 22:16:05 | 001,125,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32full.dll
[2024.02.28 22:16:05 | 000,272,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BitLockerCsp.dll
[2024.02.28 22:16:05 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceMetadataRetrievalClient.dll
[2024.02.28 22:16:05 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edpnotify.exe
[2024.02.28 22:16:03 | 000,296,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\coredpus.dll
[2024.02.28 22:16:03 | 000,217,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wincredui.dll
[2024.02.28 22:16:02 | 000,826,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartcardCredentialProvider.dll
[2024.02.28 22:16:02 | 000,608,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppcext.dll
[2024.02.28 22:16:02 | 000,572,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SppExtComObj.Exe
[2024.02.28 22:16:01 | 002,352,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2024.02.28 22:16:00 | 000,906,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogon.exe
[2024.02.28 22:16:00 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.CloudStore.Schema.DesktopShell.dll
[2024.02.28 22:16:00 | 000,525,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll
[2024.02.28 22:16:00 | 000,460,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnrGidsHandler.dll
[2024.02.28 22:16:00 | 000,189,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imm32.dll
[2024.02.28 22:15:59 | 003,115,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
[2024.02.28 22:15:57 | 002,029,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll
[2024.02.28 22:15:56 | 000,577,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WerFault.exe
[2024.02.28 22:15:56 | 000,496,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Faultrep.dll
[2024.02.28 22:15:56 | 000,237,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wermgr.exe
[2024.02.28 22:15:56 | 000,179,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WerFaultSecure.exe
[2024.02.28 22:15:56 | 000,126,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kdnet.dll
[2024.02.28 22:15:56 | 000,025,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WerEnc.dll
[2024.02.28 22:15:55 | 003,893,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll
[2024.02.28 22:15:55 | 000,890,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wer.dll
[2024.02.28 22:15:55 | 000,254,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\weretw.dll
[2024.02.28 22:15:55 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\utcutil.dll
[2024.02.28 22:15:55 | 000,061,440 | ---- | M] () -- C:\WINDOWS\SysNative\runexehelper.exe
[2024.02.28 22:15:55 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagnosticdataquery.dll
[2024.02.28 22:15:55 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werdiagcontroller.dll
[2024.02.28 22:15:54 | 000,305,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cfgmgr32.dll
[2024.02.28 22:15:54 | 000,195,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devobj.dll
[2024.02.28 22:15:54 | 000,182,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneSettingsClient.dll
[2024.02.28 22:15:54 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devrtl.dll
[2024.02.28 22:15:53 | 000,945,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ci.dll
[2024.02.28 22:15:53 | 000,363,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wldap32.dll
[2024.02.28 22:15:53 | 000,300,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authz.dll
[2024.02.28 22:15:53 | 000,182,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wldp.dll
[2024.02.28 22:15:53 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KdsCli.dll
[2024.02.28 22:15:52 | 001,972,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcomp.dll
[2024.02.28 22:15:52 | 000,827,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
[2024.02.28 22:15:52 | 000,168,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmredir.dll
[2024.02.28 22:15:50 | 000,390,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppLockerCSP.dll
[2024.02.28 22:15:50 | 000,157,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srpapi.dll
[2024.02.28 22:15:50 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appidtel.exe
[2024.02.28 22:15:50 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\applockerfltr.sys
[2024.02.28 22:15:49 | 002,176,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
[2024.02.28 22:15:49 | 000,623,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
[2024.02.28 22:15:49 | 000,214,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Win32CompatibilityAppraiserCSP.dll
[2024.02.28 22:15:48 | 000,349,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Cortana.dll
[2024.02.28 22:15:48 | 000,104,448 | ---- | M] () -- C:\WINDOWS\SysNative\CloudExperienceHostRedirection.dll
[2024.02.28 22:15:47 | 000,536,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Activities.dll
[2024.02.28 22:15:46 | 006,872,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.pcshell.dll
[2024.02.28 22:15:46 | 000,521,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsAdminFlows.exe
[2024.02.28 22:15:46 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PCShellCommonProxyStub.dll
[2024.02.28 22:15:36 | 000,583,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppResolver.dll
[2024.02.28 22:15:36 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UpdateDeploymentProvider.dll
[2024.02.28 22:15:35 | 001,193,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
[2024.02.28 22:15:35 | 000,962,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
[2024.02.28 22:15:35 | 000,650,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotifyIcon.exe
[2024.02.28 22:15:35 | 000,085,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups.dll
[2024.02.28 22:15:35 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsUpdateElevatedInstaller.exe
[2024.02.28 22:15:34 | 001,789,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MoUsoCoreWorker.exe
[2024.02.28 22:15:34 | 001,413,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocoreworker.exe
[2024.02.28 22:15:34 | 000,698,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
[2024.02.28 22:15:34 | 000,634,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe
[2024.02.28 22:15:33 | 000,570,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usosvc.dll
[2024.02.28 22:15:33 | 000,405,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtapi.dll
[2024.02.28 22:15:32 | 000,290,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanagerprecheck.dll
[2024.02.28 22:15:32 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cimfs.dll
[2024.02.28 22:15:32 | 000,098,304 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\cimfs.sys
[2024.02.28 22:15:29 | 001,698,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\user32.dll
[2024.02.28 22:15:26 | 000,650,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnprv.dll
[2024.02.28 22:15:25 | 000,415,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll
[2024.02.28 22:15:24 | 003,323,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\esent.dll
[2024.02.28 22:15:24 | 001,019,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll
[2024.02.28 22:15:23 | 002,326,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll
[2024.02.28 22:15:23 | 001,087,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManager.dll
[2024.02.28 22:15:23 | 000,349,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PushToInstall.dll
[2024.02.28 22:15:23 | 000,322,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2024.02.28 22:15:22 | 003,182,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapRouter.dll
[2024.02.28 22:15:22 | 001,132,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
[2024.02.28 22:15:22 | 000,527,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webauthn.dll
[2024.02.28 22:15:20 | 000,163,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32.dll
[2024.02.28 22:15:02 | 000,949,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcsvc.dll
[2024.02.28 22:15:02 | 000,847,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
[2024.02.28 22:15:02 | 000,791,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnrSvc.dll
[2024.02.28 22:15:02 | 000,467,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptngc.dll
[2024.02.28 22:15:02 | 000,283,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcrecovery.dll
[2024.02.28 22:15:02 | 000,273,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcpopkeysrv.dll
[2024.02.28 22:15:02 | 000,141,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcksp.dll
[2024.02.28 22:15:01 | 001,855,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3D12Core.dll
[2024.02.28 22:15:01 | 000,683,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngccredprov.dll
[2024.02.28 22:15:01 | 000,573,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnr.dll
[2024.02.28 22:15:01 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_CapabilityAccess.dll
[2024.02.28 22:15:01 | 000,251,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CapabilityAccessManagerClient.dll
[2024.02.28 22:15:01 | 000,222,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DXCore.dll
[2024.02.28 22:15:01 | 000,136,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3D12.dll
[2024.02.28 22:15:00 | 000,404,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CapabilityAccessManager.dll
[2024.02.28 22:15:00 | 000,107,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Diagnostics.TraceReporting.PlatformDiagnosticActions.dll
[2024.02.28 22:15:00 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Diagnostics.Telemetry.PlatformTelemetryClient.dll
[2024.02.28 22:14:58 | 003,062,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2024.02.28 22:14:58 | 002,377,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\smartscreen.exe
[2024.02.28 22:14:58 | 002,257,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2024.02.28 22:14:58 | 000,223,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthBroker.dll
[2024.02.28 22:14:57 | 003,423,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2024.02.28 22:14:57 | 001,093,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadcloudap.dll
[2024.02.28 22:14:57 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadauthhelper.dll
[2024.02.28 22:14:57 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountTokenProvider.dll
[2024.02.28 22:14:53 | 000,395,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExecModelClient.dll
[2024.02.28 22:14:53 | 000,225,280 | ---- | M] () -- C:\WINDOWS\SysNative\CloudIdWxhExtension.dll
[2024.02.28 22:14:53 | 000,206,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadWamExtension.dll
[2024.02.28 22:14:51 | 000,266,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxApplicabilityEngine.dll
[2024.02.28 22:14:50 | 001,768,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdprt.dll
[2024.02.28 22:14:50 | 000,614,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdpsvc.dll
[2024.02.28 22:14:50 | 000,509,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdpusersvc.dll
[2024.02.28 22:14:49 | 000,533,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wow64win.dll
[2024.02.28 22:14:48 | 000,287,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.AppDefaults.dll
[2024.02.28 22:14:48 | 000,146,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.ShellCommon.Broker.dll
[2024.02.28 22:14:47 | 000,447,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_WorkAccess.dll
[2024.02.28 22:14:47 | 000,321,536 | ---- | M] () -- C:\WINDOWS\SysNative\AggregatorHost.exe
[2024.02.28 22:14:47 | 000,228,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_SIUF.dll
[2024.02.28 22:14:47 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UtcDecoderHost.exe
[2024.02.28 22:14:47 | 000,129,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apisetschema.dll
[2024.02.28 22:14:46 | 001,065,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Signals.dll
[2024.02.28 22:14:46 | 000,497,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Flights.dll
[2024.02.28 22:14:46 | 000,075,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncobjapi.dll
[2024.02.28 22:14:46 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AutomaticAppSignInPolicy.dll
[2024.02.28 22:14:45 | 001,869,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcDesktopMonSvc.dll
[2024.02.28 22:14:45 | 001,043,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcRefreshTask.dll
[2024.02.28 22:14:45 | 000,653,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winspool.drv
[2024.02.28 22:14:45 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\framedynos.dll
[2024.02.28 22:14:45 | 000,258,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcTok.exe
[2024.02.28 22:14:44 | 000,951,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FlightSettings.dll
[2024.02.28 22:14:44 | 000,321,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceDirectoryClient.dll
[2024.02.28 22:14:44 | 000,094,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DdcAntiTheftApi.dll
[2024.02.28 22:14:44 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DdcComImplementationsDesktop.dll
[2024.02.28 22:14:44 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DdcClaimsApi.dll
[2024.02.28 22:14:43 | 001,793,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContentDeliveryManager.Utilities.dll
[2024.02.28 22:14:43 | 001,049,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XblAuthManager.dll
[2024.02.28 22:14:42 | 000,266,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\winnat.sys
[2024.02.28 22:14:42 | 000,233,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ManageCI.dll
[2024.02.28 22:14:41 | 000,642,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\Vid.sys
[2024.02.28 22:14:41 | 000,621,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2024.02.28 22:14:41 | 000,259,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\tpm.sys
[2024.02.28 22:14:41 | 000,143,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\UsbXhciCompanion.dll
[2024.02.28 22:14:41 | 000,030,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vmbuspipe.dll
[2024.02.28 22:14:40 | 000,649,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2024.02.28 22:14:38 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\xinputhid.sys
[2024.02.28 21:21:55 | 000,105,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdNisDrv.sys
[2024.02.28 21:21:54 | 000,608,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdFilter.sys
[2024.02.28 21:21:54 | 000,260,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdDevFlt.sys
[2024.02.28 21:21:54 | 000,021,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdBoot.sys
[1 C:\*.tmp files -> C:\*.tmp -> ]

========== Files Created - No Company Name ==========

[2024.03.03 10:33:44 | 000,022,719 | ---- | C] () -- C:\Users\mastr\Desktop\Výstřižek.PNG
[2024.03.03 00:58:44 | 000,054,208 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\truesight.sys
[2024.03.02 16:46:02 | 000,001,086 | ---- | C] () -- C:\Users\Public\Desktop\Revo Uninstaller.lnk
[2024.03.01 08:50:41 | 000,024,064 | ---- | C] () -- C:\WINDOWS\zoek-delete.exe
[2024.03.01 03:42:00 | 000,012,742 | ---- | C] () -- C:\WINDOWS\SysNative\DrtmAuthTxt.wim
[2024.03.01 03:41:59 | 000,000,862 | ---- | C] () -- C:\WINDOWS\SysWow64\DesktopSpotlightToastIcon_Dark.png
[2024.03.01 03:41:59 | 000,000,818 | ---- | C] () -- C:\WINDOWS\SysWow64\DesktopSpotlightToastIcon_Light.png
[2024.03.01 03:41:47 | 001,333,760 | ---- | C] () -- C:\WINDOWS\SysWow64\TextInputMethodFormatter.dll
[2024.03.01 03:41:39 | 000,019,530 | ---- | C] () -- C:\WINDOWS\SysWow64\IntegratedServicesRegionPolicySet.json
[2024.03.01 03:41:16 | 000,000,862 | ---- | C] () -- C:\WINDOWS\SysNative\DesktopSpotlightToastIcon_Dark.png
[2024.03.01 03:41:16 | 000,000,818 | ---- | C] () -- C:\WINDOWS\SysNative\DesktopSpotlightToastIcon_Light.png
[2024.03.01 03:40:33 | 002,260,480 | ---- | C] () -- C:\WINDOWS\SysNative\TextInputMethodFormatter.dll
[2024.03.01 03:40:22 | 000,162,304 | ---- | C] () -- C:\WINDOWS\SysNative\DataStoreCacheDumpTool.exe
[2024.03.01 03:40:14 | 000,019,530 | ---- | C] () -- C:\WINDOWS\SysNative\IntegratedServicesRegionPolicySet.json
[2024.03.01 03:40:12 | 000,300,544 | ---- | C] () -- C:\WINDOWS\SysNative\Windows.Management.InprocObjects.dll
[2024.02.29 20:35:56 | 000,001,336 | ---- | C] () -- C:\Users\Public\Desktop\Zemana AntiMalware.lnk
[2024.02.29 20:35:53 | 000,941,812 | ---- | C] () -- C:\WINDOWS\ZAM.krnl.trace
[2024.02.29 19:46:19 | 000,001,835 | ---- | C] () -- C:\Users\mastr\Desktop\CrystalDiskInfo.lnk
[2024.02.29 19:02:40 | 000,000,906 | ---- | C] () -- C:\Users\Public\Desktop\RogueKiller.lnk
[2024.02.29 12:24:03 | 000,002,775 | ---- | C] () -- C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
[2024.02.29 11:01:29 | 000,002,100 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
[2024.02.29 11:01:29 | 000,002,088 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes.lnk
[2024.02.29 09:57:43 | 000,000,666 | ---- | C] () -- C:\WINDOWS\tasks\CCleanerCrashReporting.job
[2024.02.28 22:15:55 | 000,061,440 | ---- | C] () -- C:\WINDOWS\SysNative\runexehelper.exe
[2024.02.28 22:15:48 | 000,104,448 | ---- | C] () -- C:\WINDOWS\SysNative\CloudExperienceHostRedirection.dll
[2024.02.28 22:15:32 | 000,098,304 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\cimfs.sys
[2024.02.28 22:14:53 | 000,225,280 | ---- | C] () -- C:\WINDOWS\SysNative\CloudIdWxhExtension.dll
[2024.02.28 22:14:47 | 000,321,536 | ---- | C] () -- C:\WINDOWS\SysNative\AggregatorHost.exe
[2024.02.01 17:41:22 | 000,053,760 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2024.02.01 17:41:15 | 000,018,944 | ---- | C] () -- C:\WINDOWS\SysWow64\WsdProviderUtil.dll
[2024.02.01 17:35:03 | 000,048,552 | ---- | C] () -- C:\WINDOWS\SysWow64\umpdc.dll
[2024.02.01 17:34:54 | 000,469,624 | ---- | C] () -- C:\WINDOWS\SysWow64\WindowManagementAPI.dll
[2024.02.01 17:34:30 | 000,235,520 | ---- | C] () -- C:\WINDOWS\SysWow64\HeatCore.dll
[2024.02.01 17:34:29 | 000,613,680 | ---- | C] () -- C:\WINDOWS\SysWow64\TextShaping.dll
[2024.02.01 17:33:39 | 000,318,976 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Internal.UI.Shell.WindowTabManager.dll
[2024.02.01 17:33:13 | 000,224,256 | ---- | C] () -- C:\WINDOWS\SysWow64\TpmTool.exe
[2024.02.01 17:32:43 | 000,240,640 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreMas.dll
[2024.02.01 17:32:41 | 000,330,752 | ---- | C] () -- C:\WINDOWS\SysWow64\ssdm.dll
[2024.02.01 17:32:40 | 000,010,752 | ---- | C] () -- C:\WINDOWS\SysWow64\agentactivationruntimestarter.exe

========== ZeroAccess Check ==========


[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2024.03.01 03:40:37 | 008,026,048 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2024.03.01 03:41:49 | 006,413,000 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2024.02.01 17:23:02 | 001,075,200 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2024.02.01 17:33:46 | 000,803,840 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2019.12.07 10:08:19 | 000,514,560 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2022.08.07 17:49:04 | 000,000,000 | ---D | M] -- C:\Users\mastr\AppData\Roaming\Canon
[2023.10.18 16:25:46 | 000,000,000 | ---D | M] -- C:\Users\mastr\AppData\Roaming\com.adobe.dunamis
[2020.08.20 21:27:45 | 000,000,000 | ---D | M] -- C:\Users\mastr\AppData\Roaming\DAEMON Tools Ultra
[2024.02.29 18:58:41 | 000,000,000 | ---D | M] -- C:\Users\mastr\AppData\Roaming\HD Tune Pro
[2020.08.20 21:02:18 | 000,000,000 | ---D | M] -- C:\Users\mastr\AppData\Roaming\TeamViewer

========== Purity Check ==========



< End of report >


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 31 hostů