offline
- Pridružio: 25 Maj 2005
- Poruke: 175
|
Napisano: 19 Apr 2020 12:53
Pomogle ste mi nekoliko puta.Sada imam problem u tome sto mi se promeni jezik tastrature.Po defoltu je Srpski lat, i neki put kada iskljucim pa ponovo ukljucim PC predje na engleski.Kada iskljucim PC on se normalno iskljuci ,ali je posle dovoljno da pritisnem misa i on pocinje da ucitava sistem.I kada je PC isklucen a ukljucim laptop koji je vezan na ruter WIFI vezom Pc se upalikada se laptop konektuje sa ruterom.Inace je PC povezan kablom sa ruterom.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020
Ran by Tamara (administrator) on TAMARA-PC (19-04-2020 13:30:26)
Running from C:\Users\Tamara\Desktop
Loaded Profiles: Tamara (Available Profiles: Tamara)
Platform: Windows 10 Home Version 1903 18362.778 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\BizniSOFT\DataBase\bin\mysqld-nt.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Autodata Limited) [File not signed] C:\Program Files (x86)\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe <12>
(cFos Software GmbH -> cFos Software GmbH) C:\Program Files\ASRock\XFast LAN\cfosspeed.exe
(cFos Software GmbH -> cFos Software GmbH) C:\Program Files\ASRock\XFast LAN\spd.exe
(DEVGURU Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\UnrealCEFSubProcess.exe
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Foxit Software Incorporated -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe
(Foxit Software Incorporated -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-0\NisSrv.exe
(newVision Bytes) [File not signed] C:\newVision Bytes\PVP Gold\tcpguard.exe
(newVision Bytes) [File not signed] C:\newVision Bytes\PVP Gold\tcpsrv.exe
(Opera Software AS -> Opera Software) C:\Users\Tamara\AppData\Local\Programs\Opera\assistant\browser_assistant.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Samsung Electronics CO., LTD. -> ) C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(Softland SRL -> Microsoft) C:\Program Files\Softland\novaPDF 9\Server\novapdfs.exe
(The Firebird Project) [File not signed] C:\newVision Bytes\PVP Gold\rdbms\bin\fbguard.exe
(The Firebird Project) [File not signed] C:\newVision Bytes\PVP Gold\rdbms\bin\fbserver.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [XFast LAN] => C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [2088872 2015-09-10] (cFos Software GmbH -> cFos Software GmbH)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [FireBird SQL Server] => C:\newVision Bytes\PVP Gold\rdbms\bin\fbguard.exe [65536 2020-03-03] (The Firebird Project) [File not signed]
HKLM-x32\...\Run: [newVision Bytes PVP Gold TCP/IP Server Guardian] => C:\newVision Bytes\PVP Gold\tcpguard.exe [92160 2020-03-03] (newVision Bytes) [File not signed]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [646160 2019-12-11] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\Run: [Opera Browser Assistant] => C:\Users\Tamara\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3024920 2020-04-08] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [31740816 2020-04-16] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe [1993360 2020-04-11] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\80.1.7.92\Installer\chrmstp.exe [2020-04-14] (Brave Software, Inc.) [File not signed]
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.113\Installer\chrmstp.exe [2020-04-16] (Google LLC -> Google LLC)
Startup: C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PowerReg Scheduler.exe [2018-06-03] () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {342B901B-776F-4545-A3C4-98FA0D17C59A} - System32\Tasks\cFos\Registration Tasks\Open Browser => c:\windows\system32\launchwinapp.exe "hxxp://www.cfos.de/en/traffic-shaping/calibration.htm?reg-10.10.2238-asrock&tsa="
Task: {492BB666-CE05-41C1-A8EB-EECC4E724B34} - System32\Tasks\doPDF 9 Telemetry => C:\Program Files\Softland\novaPDF 9\Driver\GoogleAnalytics.exe [52016 2018-12-11] (Softland SRL -> )
Task: {548AAB0E-A972-4B07-9795-9DD88ADA2B73} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe [480272 2020-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {680143B4-2F2F-44BF-8283-F39B7BD04AE8} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-01-19] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {6A66803C-AAB0-4E38-8125-5C70563A1EE8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe [480272 2020-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6E6AE6DF-4BAA-4C1E-BD8E-E488C44F45ED} - System32\Tasks\Opera scheduled Autoupdate 1530187297 => C:\Users\Tamara\AppData\Local\Programs\Opera\launcher.exe [1538584 2020-04-08] (Opera Software AS -> Opera Software)
Task: {759F125F-FA43-48DE-AF33-047582A5A108} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe [480272 2020-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7E6A96FF-C7D3-4847-A6F5-96119E0F61E3} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {8709845B-AD6B-4ACA-BF45-EF780A943774} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-11-25] (Google Inc -> Google Inc.)
Task: {95CC1217-A9C2-460E-8D0B-CE0287A12077} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {9CF22438-12CA-4B01-B0EF-D85DA28D5423} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-01-19] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {A809B11A-52FA-4294-A38B-D4C5A9AD41E8} - System32\Tasks\Opera scheduled assistant Autoupdate 1547198288 => C:\Users\Tamara\AppData\Local\Programs\Opera\launcher.exe [1538584 2020-04-08] (Opera Software AS -> Opera Software)
Task: {C0003DB7-511E-458C-837E-CE6E37EF16F6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C487790C-0919-4873-8135-F32A2DDA2EC5} - System32\Tasks\Core Temp Autostart Tamara => C:\Program Files\Core Temp\Core Temp.exe [998488 2019-01-08] (ALCPU -> ALCPU)
Task: {CC0DBD62-3FE6-4E8B-9DFB-9EBD08D2BECF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-11-25] (Google Inc -> Google Inc.)
Task: {CDE388E7-30EA-407A-95A3-40F450E0C097} - System32\Tasks\doPDF 9 Update => C:\Program Files\Softland\novaPDF 9\Driver\UpdateApplication.exe [101168 2018-12-11] (Softland SRL -> )
Task: {D5F9CB0F-7367-4718-9D62-54D92233FD61} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DFF3C33C-82BE-460E-A310-793CA9776FD1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MpCmdRun.exe [480272 2020-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E615074E-954A-454F-B049-37C0118C051A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
Task: {EC453CE8-CDAE-4AFF-8BFA-0EA212769152} - System32\Tasks\ProtonVPN Update => C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [60736 2020-03-11] (ProtonVPN AG -> )
Task: {EDF93ADF-5E45-4FB2-9E6F-8BB5B99C930E} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{65078bd7-a801-4383-a3a7-099a44ec970d}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{d066d6b7-3071-4897-a228-a25d4c8385a9}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.gmx.com/start?src=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49
HKU\S-1-5-21-58988072-87738606-1469498150-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.gmx.com/start?src=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49
SearchScopes: HKLM -> DefaultScope {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49&q={searchTerms}
SearchScopes: HKLM -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49&q={searchTerms}
SearchScopes: HKLM-x32 -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49&q={searchTerms}
SearchScopes: HKU\S-1-5-21-58988072-87738606-1469498150-1000 -> DefaultScope {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49&q={searchTerms}
SearchScopes: HKU\S-1-5-21-58988072-87738606-1469498150-1000 -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=rs&p_tsrc=301ssg01&p_w=y1w49&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-04-08] (McAfee, LLC -> McAfee, LLC)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2019-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\ssv.dll [2020-04-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Foxit PhantomPDF Create PDF ToolBar Helper -> {A5DD10F7-5ABB-4EEF-B4C8-6748D44DAF2A} -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2016-11-14] (Foxit Software Incorporated -> )
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-04-08] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-04-09] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM-x32 - Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2016-11-14] (Foxit Software Incorporated -> )
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: tt97aykc.default
FF DefaultProfile: 250iqg5v.default
FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Waterfox\Profiles\tt97aykc.default [2020-04-18]
FF Homepage: Waterfox\Profiles\tt97aykc.default -> hxxps://www.google.rs/?gws_rd=cr,ssl&dcr=0&ei=qgA8WrDYEcLTkwWkq66IDg
FF Notifications: Waterfox\Profiles\tt97aykc.default -> hxxps://lichess.org; hxxps://rementoolsr.club
FF Extension: (uBlock Origin) - C:\Users\Tamara\AppData\Roaming\Waterfox\Profiles\tt97aykc.default\Extensions\uBlock0@raymondhill.net.xpi [2019-03-14]
FF Extension: (minerBlock) - C:\Users\Tamara\AppData\Roaming\Waterfox\Profiles\tt97aykc.default\Extensions\xd4rker@gmail.com.xpi [2019-02-04]
FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\Tamara\AppData\Roaming\Waterfox\Profiles\tt97aykc.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2019-12-04]
FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\250iqg5v.default [2020-04-19]
FF Homepage: Mozilla\Firefox\Profiles\250iqg5v.default -> hxxps://encrypted.google.com
FF Extension: (Avira Browser Safety) - C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\250iqg5v.default\Extensions\abs@avira.com.xpi [2020-04-02]
FF Extension: (Hotfix for Firefox bug 1548973 (armagaddon 2.0) mitigation) - C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\250iqg5v.default\features\{bc012758-0c04-47ae-a6d4-6c1d460d7f28}\hotfix-bug-1548973@mozilla.org.xpi [2020-04-02] [Legacy]
FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\6wy2eqw6.default-1513701630796 [2020-03-03]
FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\695xecpx.default-1513701642246 [2020-03-03]
FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\yo28dtlc.default-1513701650563 [2020-03-03]
FF Extension: (Firefox ESR configurer for OLDJAWS screen reader ) - C:\Program Files (x86)\Mozilla Firefox\browser\features\jaws-esr@mozilla.org.xpi [2020-04-09] [Legacy] [not signed]
FF HKLM\...\Firefox\Extensions: [FFExtnHTML2PDF@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF Extension: (Foxit PDF Creator) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2016-11-14] [Legacy]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-04-08] [UpdateUrl:hxxps://www.siteadvisor.com/waffinstall/update.json]
FF HKLM-x32\...\Firefox\Extensions: [FFExtnHTML2PDF@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-10] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-10] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-10] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-10] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2017-12-01] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\dtplugin\npDeployJava1.dll [2020-04-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.241.2 -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\plugin2\npjp2.dll [2020-04-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-09-12] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2020-01-19] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2020-01-19] (Brave Software, Inc. -> BraveSoftware Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default [2020-04-18]
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee&type=E210US91215G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Extension: (Slides) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-24]
CHR Extension: (YouTube) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-24]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-03-06]
CHR Extension: (Sheets) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2020-03-30]
CHR Extension: (Avira Browser Safety) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2020-03-30]
CHR Extension: (Google Docs Offline) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-30]
CHR Extension: (Pinterest Save Button) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2020-03-30]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-11-22]
CHR Extension: (Gmail) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-13]
CHR Extension: (Chrome Media Router) - C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-06]
CHR Profile: C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-04-18]
CHR Profile: C:\Users\Tamara\AppData\Local\Google\Chrome\User Data\System Profile [2020-04-18]
CHR HKLM\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2016-11-10]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKU\S-1-5-21-58988072-87738606-1469498150-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2016-11-10]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [255472 2015-12-17] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137584 2014-09-19] (Advanced Micro Devices, Inc. -> )
R2 Autodata Limited License Service; C:\Program Files (x86)\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe [72704 2019-02-04] (Autodata Limited) [File not signed]
R2 BizniSOFT; C:\Program Files (x86)\BizniSOFT\DataBase\my.ini [1516 2020-02-10] () [File not signed]
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-01-19] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320 2020-01-19] (Brave Software, Inc. -> BraveSoftware Inc.)
R2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [726952 2015-09-10] (cFos Software GmbH -> cFos Software GmbH)
R2 FoxitPhantomService; C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe [1659592 2016-11-15] (Foxit Software Incorporated -> Foxit Software Inc.)
R2 FoxitReaderService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659456 2017-12-12] (Foxit Software Incorporated -> Foxit Software Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-03-10] (Malwarebytes Inc -> Malwarebytes)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913640 2020-04-08] (McAfee, LLC -> McAfee, LLC)
R2 NovaPdf9Server; C:\Program Files\Softland\novaPDF 9\Server\novapdfs.exe [53552 2018-12-11] (Softland SRL -> Microsoft)
S3 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [101696 2020-03-11] (ProtonVPN AG -> )
S3 ProtonVPN Update Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [60736 2020-03-11] (ProtonVPN AG -> )
R2 SamsungUPDUtilSvc; C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe [118576 2014-11-26] (Samsung Electronics CO., LTD. -> )
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2019-09-24] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
R2 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -> DEVGURU Co., LTD.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\NisSrv.exe [3294680 2020-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-0\MsMpEng.exe [103168 2020-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [21648880 2015-12-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [674288 2015-12-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R2 AODDriver4.3.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [60104 2014-09-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R0 AsrRamDisk; C:\WINDOWS\System32\drivers\AsrRamDisk.sys [40200 2013-05-09] (ASROCK Incorporation -> ASRock Inc.)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [118848 2016-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2019-09-18] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [136040 2019-09-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 eusk2par; C:\WINDOWS\system32\Drivers\eusk2par-amd64.sys [32336 2008-12-18] (Aladdin Knowledge Systems LTD -> Aladdin Knowledge Systems Ltd.)
R3 L1C; C:\WINDOWS\System32\drivers\L1C62x64.sys [129224 2013-07-18] (Qualcomm Atheros -> Qualcomm Atheros Co., Ltd.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-04-15] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-04-18] (Malwarebytes Inc -> Malwarebytes)
S3 ProtonVPNSplitTunnel; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.SplitTunnelDriver.sys [31584 2020-01-15] (Microsoft Windows Hardware Compatibility Publisher -> Proton Technologies AG)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166760 2019-09-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [44976 2020-01-15] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R3 tpfilter; C:\WINDOWS\System32\drivers\tpfilter.sys [25928 2015-10-30] (BYD precision manufacture company -> TP Microelectronic)
R1 vmkbd3; C:\WINDOWS\system32\DRIVERS\vmkbd.sys [52288 2016-11-12] (VMware, Inc. -> VMware, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45960 2020-03-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [391392 2020-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-03-26] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ===================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-19 13:30 - 2020-04-19 13:33 - 000034056 _____ C:\Users\Tamara\Desktop\FRST.txt
2020-04-19 13:26 - 2020-04-19 13:26 - 002281984 _____ (Farbar) C:\Users\Tamara\Desktop\FRST64 (1).exe
2020-04-18 18:40 - 2020-04-18 18:40 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-04-18 17:03 - 2020-04-18 18:41 - 000007601 _____ C:\Users\Tamara\AppData\Local\Resmon.ResmonCfg
2020-04-18 13:30 - 2020-04-18 13:33 - 000616460 _____ C:\WINDOWS\Minidump\041820-41015-01.dmp
2020-04-18 13:30 - 2020-04-18 13:30 - 473766429 _____ C:\WINDOWS\MEMORY.DMP
2020-04-18 12:32 - 2020-04-18 12:32 - 000000000 ____D C:\Users\Tamara\AppData\LocalLow\Oracle
2020-04-17 13:44 - 2020-04-17 13:44 - 000000000 ____D C:\Users\Tamara\Downloads\UWT4
2020-04-17 13:41 - 2020-04-17 13:41 - 000214243 _____ C:\Users\Tamara\Downloads\UWT4.zip
2020-04-15 11:20 - 2020-04-15 11:20 - 000214496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-04-15 03:19 - 2020-04-15 03:19 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 022636544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 019812864 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 018027520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 007756800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 007017472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 005910016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 004611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 004129624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 003512320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 002951832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 002180408 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 001870408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 001545216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 001397576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 001310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 001077064 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 001013000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 001008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000983040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 000775696 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000686080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2020-04-15 03:19 - 2020-04-15 03:19 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2020-04-15 03:19 - 2020-04-15 03:19 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000420152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasrad.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2020-04-15 03:19 - 2020-04-15 03:19 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-04-15 03:19 - 2020-04-15 03:19 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasacct.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumapi.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iaspolcy.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ias.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000021520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-04-15 03:19 - 2020-04-15 03:19 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-04-15 03:18 - 2020-04-15 03:18 - 014818816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 006523048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 005040640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 004563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 003802624 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 003753472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 003547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 002800128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 002767928 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 002086656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001999960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-04-15 03:18 - 2020-04-15 03:18 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001726264 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001665216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001646048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001512832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 001484384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001477112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 001261808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001243648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000811320 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000759272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000673704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000673464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000628616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000618296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 000538160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000515600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000513576 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000510792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000487784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-04-15 03:18 - 2020-04-15 03:18 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpr.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000277864 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000268008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000259776 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000147696 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000123952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000089336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3api.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3msm.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000066624 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000058880 _____ C:\WINDOWS\system32\runexehelper.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000050544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000033080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys
2020-04-15 03:18 - 2020-04-15 03:18 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wksprtPS.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2020-04-15 03:18 - 2020-04-15 03:18 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-04-15 03:18 - 2020-04-15 03:18 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 017790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 007849216 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 003587384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 003109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 002717184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 002453504 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 002131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 002126144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 002114560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001960448 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001719808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001656904 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001612800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001603584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 001427456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001378528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001263856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001136128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001127424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000915192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000684560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000437560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000339304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000297272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000231912 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000151352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000127280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000059192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcProxyStubs.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-04-15 03:17 - 2020-04-15 03:17 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2020-04-15 03:17 - 2020-04-15 03:17 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-04-15 03:17 - 2020-04-15 03:17 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2020-04-15 02:48 - 2020-04-15 02:49 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-04-15 02:48 - 2020-04-15 02:49 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-04-14 21:04 - 2010-06-02 04:55 - 000527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2020-04-14 21:04 - 2010-06-02 04:55 - 000518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2020-04-14 21:04 - 2010-06-02 04:55 - 000077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2020-04-14 21:04 - 2010-06-02 04:55 - 000074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2020-04-14 21:04 - 2010-05-26 11:41 - 002526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2020-04-14 21:04 - 2010-05-26 11:41 - 002401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2020-04-14 21:04 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2020-04-14 21:04 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2020-04-14 21:04 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2020-04-14 21:04 - 2010-05-26 11:41 - 000276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2020-04-14 21:04 - 2010-02-04 10:01 - 000024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2020-04-14 21:04 - 2010-02-04 10:01 - 000022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2020-04-14 21:04 - 2007-04-04 18:54 - 000107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2020-04-14 20:58 - 2020-04-14 20:58 - 000000000 ____D C:\Users\Tamara\AppData\Local\UnrealEngineLauncher
2020-04-14 20:58 - 2020-04-14 20:58 - 000000000 ____D C:\Users\Tamara\AppData\Local\UnrealEngine
2020-04-14 20:58 - 2020-04-14 20:58 - 000000000 ____D C:\Users\Tamara\AppData\Local\EpicGamesLauncher
2020-04-14 20:58 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2020-04-14 20:58 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2020-04-14 20:58 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2020-04-14 20:58 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2020-04-14 20:58 - 2007-04-04 18:53 - 000081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2020-04-14 20:57 - 2020-04-14 20:57 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2020-04-14 20:57 - 2020-04-14 20:57 - 000001258 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2020-04-14 20:57 - 2020-04-14 20:57 - 000001258 _____ C:\ProgramData\Desktop\Epic Games Launcher.lnk
2020-04-14 20:56 - 2020-04-14 21:06 - 000000000 ____D C:\ProgramData\Epic
2020-04-14 20:56 - 2020-04-14 20:56 - 000000000 ____D C:\Program Files (x86)\Epic Games
2020-04-14 20:55 - 2020-04-14 20:55 - 044081152 _____ C:\Users\Tamara\Downloads\EpicInstaller-10.15.2-fortnite.msi
2020-04-14 10:32 - 2020-04-14 10:32 - 000023950 _____ C:\Users\Tamara\Downloads\IPTV-Sports-List-M3u-All-Channels-11-04-2020.zip
2020-04-14 10:27 - 2020-04-14 10:27 - 002951819 _____ C:\Users\Tamara\Downloads\IPTV-World-M3U-All-Channels-List-11-04-2020 (1).zip
2020-04-14 08:07 - 2020-04-14 08:07 - 000794830 _____ C:\Users\Tamara\Downloads\PPDG 1S - KORISNI KO UPUTSTVO ZA OBVEZNIKE 01.11.2017. (2).pdf
2020-04-13 12:07 - 2020-04-13 12:07 - 006329413 _____ C:\Users\Tamara\Downloads\11606_2019_priru__nik_za_primenu_jedinstvenog_kodeksa___ifara_za_unosenje_i_sifriranje_podataka_u_evidncijama_u_oblasti_rada.pdf
2020-04-13 10:40 - 2020-04-13 10:40 - 000794830 _____ C:\Users\Tamara\Downloads\PPDG 1S - KORISNI KO UPUTSTVO ZA OBVEZNIKE 01.11.2017. (1).pdf
2020-04-13 10:05 - 2020-04-13 10:05 - 000070581 _____ C:\Users\Tamara\Downloads\bilans_stanja_bilans_uspeha_i_statisticki_aneks_za_privredna_lica.pdf
2020-04-13 10:01 - 2020-04-13 10:01 - 000355202 _____ C:\Users\Tamara\Downloads\_10660101-01.pdf
2020-04-12 00:31 - 2020-04-12 00:31 - 000243777 _____ C:\Users\Tamara\Downloads\Proizvodnja jakih alkoholnih pića.html
2020-04-11 23:55 - 2020-04-11 23:55 - 002951819 _____ C:\Users\Tamara\Downloads\IPTV-World-M3U-All-Channels-List-11-04-2020.zip
2020-04-11 08:14 - 2020-04-11 08:24 - 000008703 _____ C:\Users\Tamara\Downloads\2Channels_user-agent.m3u
2020-04-11 08:14 - 2020-04-11 08:03 - 001225879 _____ C:\Users\Tamara\Downloads\tv_channels_Italo123.m3u
2020-04-11 08:14 - 2020-04-11 08:00 - 000609442 _____ C:\Users\Tamara\Downloads\tv_channels_OM1qxKIalX.m3u
2020-04-11 08:14 - 2020-04-11 07:59 - 000495100 _____ C:\Users\Tamara\Downloads\tv_channels_StevenD2020.m3u
2020-04-11 08:14 - 2020-04-11 07:57 - 002628992 _____ C:\Users\Tamara\Downloads\tv_channels_reda2020.m3u
2020-04-11 08:14 - 2020-04-11 07:53 - 002584416 _____ C:\Users\Tamara\Downloads\tv_channels_erwin.m3u
2020-04-11 08:14 - 2020-04-11 07:46 - 000870521 _____ C:\Users\Tamara\Downloads\tv_channels_Abi123.m3u
2020-04-11 08:14 - 2020-04-11 07:36 - 000888280 _____ C:\Users\Tamara\Downloads\tv_channels_123456.m3u
2020-04-11 08:14 - 2020-04-11 07:36 - 000858920 _____ C:\Users\Tamara\Downloads\tv_channels_50845.m3u
2020-04-11 08:14 - 2020-04-11 07:35 - 001428001 _____ C:\Users\Tamara\Downloads\tv_channels_Canela1.m3u
2020-04-11 08:14 - 2020-04-11 07:33 - 000283911 _____ C:\Users\Tamara\Downloads\tv_channels_sousa.m3u
2020-04-11 08:14 - 2020-04-11 07:30 - 000977080 _____ C:\Users\Tamara\Downloads\tv_channels_Anderson123.m3u
2020-04-11 08:14 - 2020-04-11 07:29 - 001241881 _____ C:\Users\Tamara\Downloads\jessicatv.site.m3u
2020-04-11 08:14 - 2020-04-11 07:28 - 000020251 _____ C:\Users\Tamara\Downloads\tv_channels_MarVeLassandxmen.m3u
2020-04-11 08:14 - 2020-04-11 07:24 - 000489954 _____ C:\Users\Tamara\Downloads\tv_channels_SPGy9SSX9y.m3u
2020-04-11 08:14 - 2020-04-11 07:24 - 000006047 _____ C:\Users\Tamara\Downloads\tv_channels_Galaxy.m3u
2020-04-11 08:14 - 2020-04-11 07:18 - 001481828 _____ C:\Users\Tamara\Downloads\tv_channels_IPTVPRO22VODS22.m3u
2020-04-11 08:14 - 2020-04-10 14:22 - 003667284 _____ C:\Users\Tamara\Downloads\tv_channels_dreamtvfilms2145.m3u
2020-04-11 08:14 - 2020-04-10 14:05 - 001339306 _____ C:\Users\Tamara\Downloads\tv_channels_Vinicius123.m3u
2020-04-11 08:14 - 2020-04-10 13:41 - 001143316 _____ C:\Users\Tamara\Downloads\tv_channels_1020304050.m3u
2020-04-11 08:14 - 2020-04-10 13:38 - 001567230 _____ C:\Users\Tamara\Downloads\tv_channels_alvaro22.m3u
2020-04-11 08:14 - 2020-04-10 13:37 - 000790231 _____ C:\Users\Tamara\Downloads\tv_channels_kUYO84YoUr.m3u
2020-04-11 08:14 - 2020-04-10 13:34 - 000563284 _____ C:\Users\Tamara\Downloads\tv_channels_sergio.m3u
2020-04-11 08:14 - 2020-04-05 22:31 - 000020664 _____ C:\Users\Tamara\Downloads\tv_channels_mariuszpusz81@gmail.com.m3u
2020-04-11 06:29 - 2020-04-14 10:30 - 001241881 _____ C:\Users\Tamara\Desktop\jessicatv.site.m3u
2020-04-10 16:02 - 2020-04-10 18:48 - 000000000 ____D C:\Users\Tamara\Desktop\plate 2019
2020-04-09 17:32 - 2020-04-09 17:32 - 003809280 _____ C:\Users\Tamara\Downloads\TrustEdgeID_x64.msi
2020-04-09 17:22 - 2020-04-09 17:22 - 000000000 ____D C:\Users\Tamara\AppData\Roaming\Sun
2020-04-09 17:22 - 2020-04-09 17:22 - 000000000 ____D C:\Users\Tamara\AppData\LocalLow\Sun
2020-04-09 17:21 - 2020-04-09 17:21 - 000114232 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2020-04-09 17:21 - 2020-04-09 17:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2020-04-09 17:21 - 2020-04-09 17:21 - 000000000 ____D C:\Program Files (x86)\Java
2020-04-09 17:18 - 2020-04-09 17:18 - 002066976 _____ (Oracle Corporation) C:\Users\Tamara\Downloads\JavaSetup8u241.exe
2020-04-09 16:50 - 2020-04-13 09:58 - 000000000 ____D C:\Users\Tamara\Desktop\за Ивану
2020-04-08 08:08 - 2020-04-09 15:07 - 000125440 ____H C:\Users\Tamara\Downloads\~WRL0001.tmp
2020-04-08 08:07 - 2020-04-08 08:07 - 000039781 _____ C:\Users\Tamara\Downloads\14165_prilog_01_-_zahtev_za_u__e____e_u_finansiranju_programa_pripravnika_za_nezaposlena_lica__sa_srednjim_nivoom_kvalifikacija.zip
2020-04-07 15:27 - 2020-04-07 15:27 - 000733643 _____ C:\Users\Tamara\Downloads\Prilog 01 - Nacin popunjavanja blanko trasirane menice.pdf
2020-04-07 11:48 - 2020-04-07 11:48 - 000000000 ____D C:\Users\Tamara\.cache
2020-04-06 07:25 - 2020-04-06 07:23 - 000144890 _____ C:\Users\Tamara\Downloads\hit2.m3u
2020-04-05 23:13 - 2020-04-11 08:09 - 003163896 _____ C:\Users\Tamara\Downloads\tv_channels_bel.m3u
2020-04-05 23:13 - 2020-04-05 22:34 - 000165425 _____ C:\Users\Tamara\Downloads\3khurana899.m3u
2020-04-05 23:13 - 2020-04-05 22:22 - 000255926 _____ C:\Users\Tamara\Downloads\tv_channels_bbjt6s9f8.m3u
2020-04-04 20:57 - 2020-04-04 20:58 - 002036073 _____ C:\Users\Tamara\Downloads\289049_582128230_128mm.mp4
2020-04-04 15:27 - 2020-04-04 15:41 - 016886528 _____ C:\Users\Tamara\Downloads\uradi.sam.hr.veljaca.ozujak.2020.pdf
2020-04-04 14:26 - 2020-04-18 16:00 - 000000000 ____D C:\Users\Tamara\AppData\Local\CrashDumps
2020-04-03 23:50 - 2020-04-03 23:51 - 001986068 _____ C:\Users\Tamara\Downloads\Biznis_i_Finansije_-_Mart_-_dodatak.pdf
2020-04-03 23:47 - 2020-04-03 23:48 - 003218436 _____ C:\Users\Tamara\Downloads\Biznis_i_Finansije_-_Mart.pdf
2020-04-03 23:42 - 2020-04-04 00:19 - 045170564 _____ C:\Users\Tamara\Downloads\sk11.19.rar
2020-04-02 10:45 - 2020-04-02 10:45 - 000343040 _____ C:\Users\Tamara\Downloads\service.subtitles.titlovi-com-official-master.zip
2020-04-01 14:00 - 2020-04-01 14:00 - 000413543 _____ C:\Users\Tamara\Downloads\r46_srpski_13077.pdf
2020-04-01 10:37 - 2020-04-01 10:37 - 000001322 _____ C:\Users\Public\Desktop\GnuCash.lnk
2020-04-01 10:37 - 2020-04-01 10:37 - 000001322 _____ C:\ProgramData\Desktop\GnuCash.lnk
2020-04-01 10:29 - 2020-04-01 10:31 - 190747003 _____ (GnuCash Development Team ) C:\Users\Tamara\Downloads\gnucash-3.8.setup.exe
2020-03-30 02:09 - 2020-04-01 16:07 - 000000023 _____ C:\Users\Tamara\Desktop\pesme.txt
2020-03-30 01:54 - 2020-03-30 01:54 - 001274857 _____ C:\Users\Tamara\Downloads\gnucash-3.8.sr.po.txt
2020-03-30 01:51 - 2020-03-30 01:51 - 000000218 _____ C:\Users\Tamara\AppData\Local\recently-used.xbel
2020-03-30 01:42 - 2020-03-30 01:42 - 000004327 _____ C:\Users\Tamara\Documents\environment.txt
2020-03-30 01:23 - 2020-03-30 01:24 - 172933401 _____ (GnuCash Development Team ) C:\Users\Tamara\Downloads\gnucash-3.9.setup.exe
2020-03-28 23:59 - 2020-03-28 22:25 - 000056624 _____ C:\Users\Tamara\Downloads\tv_channels_849158144598455.m3u
2020-03-28 23:59 - 2020-03-26 20:04 - 000621673 _____ C:\Users\Tamara\Downloads\tv_channels_Nightmare1988.m3u
2020-03-27 15:05 - 2020-03-27 15:05 - 001193016 _____ (Akeo Consulting) C:\Users\Tamara\Downloads\rufus-3.9.exe
2020-03-27 15:00 - 2019-11-17 03:12 - 000000000 ____D C:\Users\Tamara\Downloads\Windows 10 Pro X64 3in1 OEM ESD MULTi-7 NOV 2019 {Gen2}
2020-03-27 14:41 - 2020-03-27 14:54 - 1976249336 _____ C:\Users\Tamara\Downloads\Windows 10 Pro X64 3in1 OEM ESD MULTi-7 NOV 2019 {Gen2}.part2.rar
2020-03-27 14:18 - 2020-03-27 14:33 - 2252800000 _____ C:\Users\Tamara\Downloads\Windows 10 Pro X64 3in1 OEM ESD MULTi-7 NOV 2019 {Gen2}.part1.rar
2020-03-25 17:00 - 2020-03-25 17:00 - 036898560 _____ C:\Users\Tamara\Downloads\413534826-Z-Knezevic-27-mart-1941.pdf
2020-03-25 15:52 - 2020-04-11 09:46 - 000025167 _____ C:\Users\Tamara\Downloads\7-IPTV Sports Free M3u Channels.m3u
2020-03-25 14:59 - 2020-03-25 14:59 - 001051010 _____ C:\Users\Tamara\Downloads\- -1.pdf
2020-03-25 12:57 - 2020-03-25 12:57 - 000000000 ____D C:\Users\Tamara\Desktop\2020-03-25
2020-03-25 11:20 - 2020-03-25 16:44 - 000000000 ____D C:\Users\Tamara\Desktop\za bokita
2020-03-25 11:19 - 2020-03-25 11:19 - 000044987 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД2.pdf
2020-03-25 11:19 - 2020-03-25 11:19 - 000044874 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД3.pdf
2020-03-25 11:17 - 2020-03-25 11:17 - 000045131 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД.pdf
2020-03-25 11:17 - 2020-03-25 11:17 - 000036172 _____ C:\Users\Tamara\Downloads\html2pdf.zip
2020-03-24 23:25 - 2020-03-24 23:25 - 000066598 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД3 (2).htm
2020-03-24 23:15 - 2015-08-07 13:57 - 000634880 _____ C:\Users\Tamara\Downloads\2 Ucenici.mdb
2020-03-24 23:15 - 2015-07-28 21:02 - 000057479 _____ C:\Users\Tamara\Desktop\2 Ucenici 0607.xlsx
2020-03-24 23:14 - 2020-03-24 23:14 - 000077830 _____ C:\Users\Tamara\Downloads\Materijal.rar
2020-03-24 21:41 - 2020-03-24 19:39 - 000025676 _____ C:\Users\Tamara\Downloads\2hatmyx.m3u
2020-03-24 12:59 - 2020-03-24 12:59 - 000073740 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД2.htm
2020-03-24 12:57 - 2020-03-24 12:57 - 000074006 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД.htm
2020-03-24 12:57 - 2020-03-24 12:57 - 000066598 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД3.htm
2020-03-24 12:57 - 2020-03-24 12:57 - 000066598 _____ C:\Users\Tamara\Downloads\Пореска управа - еПорези ППП-ПД3 (1).htm
2020-03-24 11:51 - 2020-04-09 22:10 - 000000000 ____D C:\Users\Tamara\Desktop\zahtev sa biznis planom 2020 težezaposlivi
2020-03-24 01:20 - 2020-03-24 01:20 - 000000000 ____D C:\Program Files\wkhtmltopdf
2020-03-24 01:19 - 2020-03-24 01:19 - 027700822 _____ C:\Users\Tamara\Downloads\wkhtmltox-0.12.5-1.msvc2015-win64.exe
2020-03-23 22:17 - 2020-03-23 22:17 - 000240224 _____ C:\Users\Tamara\Downloads\obave tenje o pla anju sa pozivom na BOP-PIB.pdf
2020-03-21 22:32 - 2020-03-21 22:32 - 000039073 _____ C:\Users\Tamara\Downloads\Spisak objekata za rad nedeljom od 04 do 07-2.xlsx
2020-03-21 13:01 - 2020-03-21 13:01 - 179450234 _____ C:\Users\Tamara\Downloads\BiserStrip11-SZ.zip
2020-03-21 12:58 - 2020-03-21 12:58 - 014421375 _____ C:\Users\Tamara\Downloads\Biser Strip 13 (rescan)(Mikos & folpi)(SZ).cbr.002
2020-03-21 12:57 - 2020-03-21 13:04 - 199229440 _____ C:\Users\Tamara\Downloads\Biser Strip 13 (rescan)(Mikos & folpi)(SZ).cbr.001
2020-03-21 12:46 - 2020-03-21 12:52 - 178708542 _____ C:\Users\Tamara\Downloads\Biser Strip 10 (rescan)(300dpi)(debeli bizon & folpi)(SZ).cbr
2020-03-21 12:46 - 2020-03-21 12:51 - 139567369 _____ C:\Users\Tamara\Downloads\Biser Strip 09 - Mek Koj - Bitka na Litl Big Hornu (bizon & MickRC).cbr
2020-03-21 12:45 - 2020-03-21 12:52 - 192391592 _____ C:\Users\Tamara\Downloads\Biser Strip 07 (rescan)(300dpi)(debeli bizon & folpi)(SZ).cbr
2020-03-21 12:45 - 2020-03-21 12:52 - 190441568 _____ C:\Users\Tamara\Downloads\Biser Strip 08 (rescan)(300dpi)(debeli bizon & folpi).cbr
2020-03-21 12:44 - 2020-03-21 12:51 - 181669225 _____ C:\Users\Tamara\Downloads\Biser Strip 06 (rescan)(300dpi)(debeli bizon & folpi).cbr
2020-03-21 12:44 - 2020-03-21 12:44 - 210697440 _____ C:\Users\Tamara\Downloads\BiserStrip05-SZ.zip
2020-03-21 12:31 - 2020-03-21 12:35 - 175951354 _____ C:\Users\Tamara\Downloads\Biser Strip 04 (rescan)(300dpi)(debeli bizon & folpi).cbr
2020-03-21 12:25 - 2020-03-21 12:26 - 032634247 _____ C:\Users\Tamara\Downloads\Otkrice sveta u stripu br. 04.pdf
2020-03-21 12:17 - 2020-03-21 12:22 - 191594149 _____ C:\Users\Tamara\Downloads\Biser Strip 03 (rescan)(300dpi)(debeli bizon & folpi)(SZ).cbr
2020-03-21 12:12 - 2020-03-21 12:16 - 188493623 _____ C:\Users\Tamara\Downloads\Biser Strip 02 (rescan)(300dpi)(debeli bizon & folpi)(SZ).cbr
2020-03-21 12:02 - 2020-03-21 12:06 - 180643487 _____ C:\Users\Tamara\Downloads\Biser Strip 01 (rescan)(debeli bizon & folpi)(SZ).cbr
2020-03-20 17:13 - 2020-03-20 19:13 - 000000000 ____D C:\Users\Tamara\Downloads\lms
2020-03-20 11:02 - 2020-03-20 11:02 - 000000000 ____D C:\ProgramData\ProtonVPN
2020-03-20 11:01 - 2020-03-21 13:19 - 000000000 ____D C:\Users\Tamara\AppData\Local\ProtonVPN
2020-03-20 11:01 - 2020-03-20 11:01 - 000003760 _____ C:\WINDOWS\system32\Tasks\ProtonVPN Update
2020-03-20 11:00 - 2020-03-20 11:00 - 000001230 _____ C:\Users\Public\Desktop\ProtonVPN.lnk
2020-03-20 11:00 - 2020-03-20 11:00 - 000001230 _____ C:\ProgramData\Desktop\ProtonVPN.lnk
2020-03-20 11:00 - 2020-03-20 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProtonVPN
2020-03-20 10:59 - 2020-03-20 11:00 - 000000000 ____D C:\Program Files (x86)\Proton Technologies
2020-03-20 10:58 - 2020-03-20 10:58 - 014456408 _____ (Proton Technologies AG) C:\Users\Tamara\Downloads\ProtonVPN_win_v1.13.4.exe
2020-03-20 10:48 - 2020-03-20 10:48 - 004335648 _____ C:\Users\Tamara\Downloads\openvpn-install-2.4.8-I602-Win10.exe
2020-03-20 08:19 - 2020-03-20 08:25 - 445644800 _____ C:\Users\Tamara\Downloads\Unconfirmed 372023.crdownload
2020-03-20 01:52 - 2020-03-20 02:15 - 027867401 _____ C:\Users\Tamara\Downloads\nin.06.02.2020.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-04-19 13:32 - 2020-01-19 14:12 - 000000000 ____D C:\FRST
2020-04-19 13:24 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-19 12:44 - 2019-09-18 08:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-04-18 21:49 - 2019-01-11 12:44 - 000000000 ____D C:\Users\Tamara\Downloads\opera autoupdate
2020-04-18 18:40 - 2019-09-18 09:09 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-04-18 18:39 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-04-18 18:39 - 2016-11-24 22:04 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2020-04-18 18:27 - 2016-11-25 05:54 - 000000000 ____D C:\Users\Tamara\AppData\LocalLow\Mozilla
2020-04-18 16:07 - 2020-01-11 20:22 - 000000000 ____D C:\Users\Tamara\AppData\LocalLow\IGDump
2020-04-18 13:52 - 2019-09-18 08:52 - 000000000 ____D C:\Users\Tamara
2020-04-18 13:33 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-04-18 13:30 - 2019-12-11 08:40 - 000000000 ____D C:\WINDOWS\Minidump
2020-04-18 12:29 - 2020-02-10 17:15 - 000000000 ____D C:\VFOXTEMP
2020-04-18 01:18 - 2019-09-18 09:09 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-58988072-87738606-1469498150-1000
2020-04-18 01:18 - 2019-09-18 08:52 - 000002362 _____ C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-04-18 01:18 - 2016-11-25 03:57 - 000000000 ___RD C:\Users\Tamara\OneDrive
2020-04-18 00:28 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-18 00:28 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-04-17 13:48 - 2017-07-31 16:21 - 000000000 ____D C:\Users\Tamara\AppData\Roaming\Kodi
2020-04-17 13:09 - 2018-05-04 06:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-04-16 07:08 - 2017-11-09 08:41 - 000000000 ____D C:\Users\Tamara\AppData\Roaming\vlc
2020-04-16 01:19 - 2016-12-05 02:13 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-15 13:59 - 2019-09-18 09:09 - 000004182 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1530187297
2020-04-15 13:59 - 2018-06-28 14:01 - 000001398 _____ C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2020-04-15 11:25 - 2019-09-18 09:02 - 000840852 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-04-15 11:20 - 2019-09-18 08:44 - 000532440 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-04-15 11:19 - 2020-02-22 12:23 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-04-15 09:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-04-15 09:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-04-15 09:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-04-15 09:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-04-15 09:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-04-15 09:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-04-15 03:36 - 2018-02-20 18:56 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2020-04-15 03:35 - 2016-07-16 13:47 - 000000240 _____ C:\WINDOWS\win.ini
2020-04-15 03:27 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-04-14 22:37 - 2018-01-10 01:36 - 000000000 ____D C:\Users\Tamara\AppData\Local\Packages
2020-04-14 21:54 - 2020-01-20 14:24 - 000002418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2020-04-14 21:54 - 2020-01-20 14:24 - 000002377 _____ C:\Users\Public\Desktop\Brave.lnk
2020-04-14 21:54 - 2020-01-20 14:24 - 000002377 _____ C:\ProgramData\Desktop\Brave.lnk
2020-04-14 21:05 - 2018-06-03 12:01 - 000000000 ____D C:\Users\Tamara\AppData\Local\D3DSCache
2020-04-14 21:03 - 2016-11-25 06:04 - 000000000 ____D C:\ProgramData\Package Cache
2020-04-12 00:31 - 2019-01-18 23:38 - 000000000 ____D C:\Users\Tamara\Downloads\Proizvodnja jakih alkoholnih pića_files
2020-04-11 09:56 - 2020-01-22 05:00 - 000011629 _____ C:\Users\Tamara\Downloads\6-IPTV Sports All Channels List.m3u
2020-04-11 09:44 - 2020-01-22 05:00 - 000025167 _____ C:\Users\Tamara\Downloads\5-IPTV Sports List M3u Channels.m3u
2020-04-11 09:33 - 2020-01-22 05:00 - 000063904 _____ C:\Users\Tamara\Downloads\4-IPTV Sports All Channels List.m3u
2020-04-11 09:31 - 2020-03-06 02:01 - 000064016 _____ C:\Users\Tamara\Downloads\2-IPTV Sports PlayList M3u Channels.m3u
2020-04-10 19:48 - 2020-01-11 20:14 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2020-04-09 19:57 - 2020-02-22 12:26 - 000000045 _____ C:\Users\Tamara\eporezi_proxy.conf
2020-04-09 17:33 - 2020-02-22 15:23 - 000000000 ____D C:\Program Files\NetSeT
2020-04-09 17:14 - 2018-03-09 00:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2020-04-09 17:13 - 2020-02-22 12:23 - 000001224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-04-08 15:49 - 2019-09-18 09:09 - 000004438 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1547198288
2020-04-06 07:11 - 2020-01-24 01:02 - 000248929 _____ C:\Users\Tamara\Downloads\1BLACKTV.m3u
2020-04-06 07:09 - 2020-01-24 01:02 - 000035180 _____ C:\Users\Tamara\Downloads\3Tv_Channels.m3u
2020-04-05 22:28 - 2020-01-24 01:03 - 000362499 _____ C:\Users\Tamara\Downloads\tv_channels_test.m3u
2020-04-03 11:15 - 2018-05-02 10:31 - 000001980 _____ C:\Users\Tamara\Desktop\New Text Document (2).txt
2020-04-02 10:42 - 2016-11-25 06:04 - 000744808 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-04-01 10:36 - 2019-01-14 18:59 - 000000000 ____D C:\Program Files (x86)\gnucash
2020-03-29 15:43 - 2020-01-22 05:00 - 000035078 _____ C:\Users\Tamara\Downloads\1-IPTV Sports Free M3u Channels.m3u
2020-03-27 16:19 - 2016-11-24 23:18 - 000000258 __RSH C:\ProgramData\ntuser.pol
2020-03-26 09:19 - 2018-02-26 22:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-03-25 15:23 - 2020-02-07 12:14 - 000013532 _____ C:\Users\Tamara\Downloads\2LOCAL.m3u
2020-03-25 11:39 - 2017-12-20 21:55 - 000000000 ____D C:\Program Files\Waterfox
2020-03-24 23:17 - 2020-02-20 12:34 - 000577536 _____ C:\Users\Tamara\Documents\škola.accdb
2020-03-24 21:36 - 2020-01-27 22:13 - 000001896 _____ C:\Users\Tamara\Downloads\gnsportfrshtf1.m3u
2020-03-21 02:12 - 2019-09-18 09:09 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-21 02:12 - 2019-09-18 09:09 - 000003296 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-20 19:00 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2020-03-20 11:01 - 2019-09-15 15:09 - 000000000 ____D C:\Program Files\OpenVPN
==================== Files in the root of some directories ========
2017-06-13 12:51 - 2017-06-13 12:51 - 000000000 ____H () C:\Users\Tamara\AppData\Local\BITBEBA.tmp
2016-11-25 05:29 - 2016-11-25 05:29 - 000000000 _____ () C:\Users\Tamara\AppData\Local\Driver_AR8171Present.flag
2020-03-30 01:51 - 2020-03-30 01:51 - 000000218 _____ () C:\Users\Tamara\AppData\Local\recently-used.xbel
2020-04-18 17:03 - 2020-04-18 18:41 - 000007601 _____ () C:\Users\Tamara\AppData\Local\Resmon.ResmonCfg
2017-08-16 20:04 - 2017-08-16 20:04 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{1530E956-456E-4668-B3A1-AE010DC3107E}
2017-06-13 12:51 - 2017-06-13 12:51 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{18784784-C99F-4698-BD68-6BE157ABE616}
2017-05-30 01:22 - 2017-05-30 01:22 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{8268C9F2-AA80-40A2-B24B-5D4532C59105}
2017-09-08 04:54 - 2017-09-08 04:54 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{8B3FAB37-FD82-4264-86A4-D5EA0851CE06}
2017-06-19 06:30 - 2017-06-19 06:30 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{9C601C49-3E3A-487F-88B1-19722CD14C97}
2017-05-24 22:17 - 2017-05-24 22:23 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{A34C5095-D551-49FD-92EF-D30D5A1F9EF6}
2017-09-08 16:11 - 2017-09-08 16:11 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{A35E549A-4BBE-4E86-9146-25B2B8D0EABF}
2016-12-09 02:23 - 2016-12-09 02:27 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{A8933934-980F-4293-B4CF-788B7EFA4944}
2017-11-06 20:18 - 2017-11-06 20:24 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{BFB22CAE-C4DF-4E6C-8A7D-D17DA065D6AD}
2017-03-25 13:14 - 2017-03-25 13:14 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{E5362E82-F398-403E-977D-15B36A1DF9A7}
2017-10-07 22:49 - 2017-10-07 22:55 - 000000000 _____ () C:\Users\Tamara\AppData\Local\{F682E836-EA3F-472E-8C0F-68FFD6C1C765}
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Dopuna: 19 Apr 2020 12:56
mycity.rs/must-login.png
Inace ocistio sam ga cclinerom i malvarebytesom.
Dopuna: 19 Apr 2020 13:00
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2020
Ran by Tamara (19-04-2020 13:36:13)
Running from C:\Users\Tamara\Desktop
Windows 10 Home Version 1903 18362.778 (X64) (2019-09-18 07:10:29)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-58988072-87738606-1469498150-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-58988072-87738606-1469498150-503 - Limited - Disabled)
Guest (S-1-5-21-58988072-87738606-1469498150-501 - Limited - Disabled)
Tamara (S-1-5-21-58988072-87738606-1469498150-1000 - Administrator - Enabled) => C:\Users\Tamara
WDAGUtilityAccount (S-1-5-21-58988072-87738606-1469498150-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Abcsoft LD version 11.5.4 (HKLM-x32\...\{31DC3C75-38E8-4D8B-B325-5A6F031D76A5}_is1) (Version: 11.5.4 - Abcsoft agencija)
Abcsoft_fpdemo version 20.14 (HKLM-x32\...\{FB2369FD-AFFF-4ECC-9931-AD91F9243054}_is1) (Version: 20.14 - Abcsoft agencija, Inc.)
AcGasSynchro (HKLM-x32\...\Ac Gas Synchro 1.14.1.0_is1) (Version: - )
AcGasSynchro 7.2.0.1 (HKLM-x32\...\Ac Gas Synchro 7.2.0.1_is1) (Version: - )
Agencijsko poslovanje verzija 17.01.01 (HKLM-x32\...\{4719E88F-2D0C-434C-A1C6-E8766065F9DD}_is1) (Version: 17.01.01 - Softek)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD OverDrive (HKLM-x32\...\{EEB605FD-C5F5-4946-90F3-D65C604A9187}) (Version: 4.3.1.0698 - Advanced Micro Devices, Inc.)
AR8171 Driver Installation (HKLM-x32\...\{1E672F6A-B698-48A2-AE8C-427F97AF8F0E}) (Version: 1.0.0.32 - Rivet Networks)
AR8171 Drivers (HKLM\...\{C9CCB016-67E4-4872-AFD0-E3EE69B7CBFE}) (Version: 1.0.0.32 - Rivet Networks) Hidden
Aurora DVD Copy 3.1.2 (HKLM-x32\...\Aurora DVD Copy_is1) (Version: - Aurora software, Inc.)
Awesome Duplicate Photo Finder v. 1.1 (HKLM-x32\...\Awesome Duplicate Photo Finder_is1) (Version: - Duplicate-Finder.com)
Backup and Sync from Google (HKLM\...\{FE296942-D2D3-4149-8895-60655FE4CFDE}) (Version: 3.49.9800.0000 - Google, Inc.)
Battle Realms Complete (HKLM-x32\...\GOGPACKBATTLEREALMS_is1) (Version: 2.0.0.9 - GOG.com)
Battle Realms Demo (HKLM-x32\...\{61D6D0CD-3EC3-4240-8895-DF63C40B607E}) (Version: 0.99.0000 - Liquid Entertainment)
Betternet for Windows 5.3.0.433 (HKLM-x32\...\{2E77104D-96E1-4A9C-86F2-C7CF9CA03A4B}) (Version: 5.3.0.433 - Betternet Technologies Inc.)
BizniSOFT 9.0 (HKLM-x32\...\BizniSOFT) (Version: 9.0 - DP Products Beograd)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 80.1.7.92 - Brave Software Inc)
CCleaner (HKLM\...\CCleaner) (Version: 5.58 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.6795 - CDBurnerXP)
Čitač elektronske lične karte (64-bitni) (HKLM\...\{234E6183-3310-4A84-86B2-A2E88CB7E815}) (Version: 1.2.4 - MUP RS)
CitacSaobracajne (HKLM-x32\...\{9F5D4E08-CB47-4C68-AE28-8B34126FBF57}) (Version: 1.0.2 - MUPRS)
Core Temp 1.13 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.13 - ALCPU)
CPUID CPU-Z 1.88 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.88 - CPUID, Inc.)
darktable (HKLM\...\darktable) (Version: 2.6.3 - the darktable project)
Delphi DS150E (New VCI) (HKLM-x32\...\Delphi DS150E (New VCI)) (Version: - )
doPDF (HKLM\...\{C996DC84-DF02-4BEB-AC90-FF1763CA958A}) (Version: 9.6.245 - Softland) Hidden
doPDF 9 (HKLM-x32\...\{28a02a85-e915-4917-a94c-15ad1fffd783}) (Version: 9.6.245 - Softland)
doPDF 9 add-in for Microsoft Office (x64) (HKLM\...\{0577E074-5DED-4854-B5A5-15BA1324DE7F}) (Version: 9.6.245 - Softland)
doPDF 9 add-in for Microsoft Office (x86) (HKLM-x32\...\{53953BD7-9FD9-4843-8310-640E59B2970F}) (Version: 9.6.245 - Softland)
doPDF 9 Printer Driver (HKLM\...\{646FE4C1-CE92-4143-9AA6-88D25C4DE2ED}) (Version: 9.6.245 - Softland)
Dramin RMP system (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\796246f130d93963) (Version: 4.0.0.489 - Dramin)
Epic Games Launcher (HKLM-x32\...\{1D4EB18B-0FEE-444E-B4D1-6F2CFBC363E6}) (Version: 1.1.267.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ePorezi verzija 1.2.2 (HKLM-x32\...\{1DEDDEDF-4E0B-4E32-BEFD-8DD1EF96C93D}_is1) (Version: 1.2.2 - PURS)
Foxit PhantomPDF Standard (HKLM-x32\...\{C7B253D2-AB12-11E6-9C58-000C2992F709}) (Version: 8.1.1.1115 - Foxit Software Inc.)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.0.1.1049 - Foxit Software Inc.)
FreeCommander XE (HKLM-x32\...\FreeCommander XE_is1) (Version: - Marek Jasinski)
GMX - Enhanced by Google (HKLM-x32\...\{1B48F388-4BC8-2208-FA48-52882AC88108}) (Version: - )
GnuCash 3.8 (HKLM-x32\...\GnuCash_is1) (Version: - GnuCash Development Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 81.0.4044.113 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden
Horizont 1.16.105 (HKLM-x32\...\{C848E819-699C-4FCB-B439-E5DA964E3A3B}_is1) (Version: - HORIZONT DOO)
Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
K-Lite Codec Pack 7.0.0 (Standard) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.0.0 - )
Kodi (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\Kodi) (Version: - XBMC Foundation)
KZOČitač 2.0 (HKLM\...\{82AEF456-943F-4772-AA75-B09A11782FC9}}_is1) (Version: - RFZO)
Landi srl - LES01E (HKLM-x32\...\{F994D581-41A7-48ED-85C0-C27189895E4E}) (Version: 1.0.1.0 - A.E.B. srl)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LibreOffice 5.4.5.1 (HKLM\...\{7E33997B-06D8-4637-8794-5A0049237308}) (Version: 5.4.5.1 - The Document Foundation)
Lovato Easy Fast 1.5.6 SS (HKLM-x32\...\{314334D5-C293-4C7A-A8EC-90312599423B}) (Version: 1.5.6 - )
Lovato Easy Fast 1.7.7 E (HKLM-x32\...\{27E520E6-1626-4CBE-BFB0-335F0008AAA4}) (Version: 1.7.7 - Lovato Gas SpA)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.90 - McAfee, LLC.)
Microsoft .NET Core SDK 2.1.401 (x64) (HKLM-x32\...\{e18db24f-856f-47ad-b4c5-c5e01505c943}) (Version: 2.1.401 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 SDK (HKLM-x32\...\{F42C96C1-746B-442A-B58C-9F0FD5F3AB8A}) (Version: 4.7.03081 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 Targeting Pack (ENU) (HKLM-x32\...\{B517DBD3-B542-4FC8-9957-FFB2C3E65D1D}) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 Targeting Pack (HKLM-x32\...\{1784A8CD-F7FE-47E2-A87D-1F31E7242D0D}) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\OneDriveSetup.exe) (Version: 19.232.1124.0012 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\...\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 60.9.0 ESR (x86 en-US) (HKLM-x32\...\Mozilla Firefox 60.9.0 ESR (x86 en-US)) (Version: 60.9.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 60.9.0.7183 - Mozilla)
Opera Stable 67.0.3575.137 (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\Opera 67.0.3575.137) (Version: 67.0.3575.137 - Opera Software)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: - )
ProtonVPN (HKLM-x32\...\{B351FE8E-8AA4-4E66-91C2-2082C21F9086}) (Version: 1.13.4 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.13.4) (Version: 1.13.4 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{C23BCE3A-FD25-48BA-948E-2CE94576F983}) (Version: 1.0.1 - ProtonVPN AG)
PVP Gold (HKLM-x32\...\PVP Gold) (Version: 4.0 - newVision Bytes)
Python 3.6.4 (32-bit) (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\{9218130b-5ad0-4cf7-82be-6993cfd6cb84}) (Version: 3.6.4150.0 - Python Software Foundation)
Python 3.6.4 Core Interpreter (32-bit) (HKLM-x32\...\{D188614B-E656-4EF1-9F5A-23559EBE8F5A}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Development Libraries (32-bit) (HKLM-x32\...\{C3797E33-967D-4687-8F1A-9DE771A00125}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Documentation (32-bit) (HKLM-x32\...\{E09874D3-E898-4AB6-B043-EE24DF786088}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Executables (32-bit) (HKLM-x32\...\{47A75DB9-F3F5-4697-9261-DBA5162DBB9E}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 pip Bootstrap (32-bit) (HKLM-x32\...\{54142B43-2FA5-4BBA-BF03-27C10EB50C1E}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Standard Library (32-bit) (HKLM-x32\...\{2832768E-9BCA-4421-950C-7186B3BDFC45}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Tcl/Tk Support (32-bit) (HKLM-x32\...\{20888FA1-8127-42E3-969F-9BF93245AC83}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Test Suite (32-bit) (HKLM-x32\...\{D14FB2FA-51B2-415C-93BF-5053102235EE}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python 3.6.4 Utility Scripts (32-bit) (HKLM-x32\...\{D0730E44-E519-4F39-B926-E2FC0449D67C}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{B42FF40A-60D4-4096-AC47-C86153D72797}) (Version: 3.6.6196.0 - Python Software Foundation)
Samsung Universal Print Driver 2 (HKLM-x32\...\Samsung Universal Print Driver 2) (Version: 2.50.06.00 - Samsung Electronics Co., Ltd.)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.7.17.0 - Samsung Electronics Co., Ltd.)
Screamer Radio (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\Screamer) (Version: 1.7265.31862 - Steamcore)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.19114.7 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.19114.7 - Samsung Electronics Co., Ltd.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Stag 200 Easy version 0.5.5.7843 (HKLM-x32\...\{1610BD17-C54F-4CA1-93A6-52D77577B217}_is1) (Version: 0.5.5.7843 - )
STAG Tuning 1.2.0.16 (HKLM\...\{8C5A5F4B-93DB-4C2C-ABC6-C8EE714E0895}_is1) (Version: 1.2.0.16 - AC SA)
Tixati (HKLM-x32\...\tixati) (Version: - )
Tolerance Data (HKLM-x32\...\Tolerance Data) (Version: 2009.2 - )
TrustEdgeID 2.0.2 BETA1 (64-bit) (HKLM\...\{F4C7BF75-61F4-4044-ACE7-A3C27E23ADF2}) (Version: 2.0.2 - NetSeT Global Solutions d.o.o.)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM-x32\...\{B7AFAF92-D1C8-49A0-B34A-B5DAF9C9D5C6}) (Version: 1.9.0.0 - Microsoft Corporation) Hidden
Viber (HKLM-x32\...\{AD5EAA38-330E-4A25-9801-908A4FF01EA1}) (Version: 10.4.0.54 - Viber Media S.a.r.l) Hidden
Viber (HKU\S-1-5-21-58988072-87738606-1469498150-1000\...\{1028bcfc-43a7-4198-98b5-7a75dbccdae2}) (Version: 10.4.0.54 - Viber Media S.a.r.l)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN)
VueScan x64 (HKLM\...\VueScan x64) (Version: 9.6.37 - Hamrick Software)
Waterfox Classic 56.3 (x64 en-US) (HKLM\...\Waterfox Classic 56.3 (x64 en-US)) (Version: 56.3 - Waterfox Ltd)
Web Client Services for Health Card - Client version 1.3.2.0 (64-bit) (HKLM\...\{CD89E48E-0E1E-4181-B670-E2185B465ACA}) (Version: 1.3.2.0 - NetSeT Global Solutions d.o.o.)
wkhtmltox 0.12.5-1 (HKLM\...\wkhtmltopdf) (Version: - )
XAMPP 1.8.1 (HKLM-x32\...\xampp) (Version: - )
XFast LAN v10.10 (HKLM\...\XFast LAN) (Version: 10.10 - cFos Software GmbH, Bonn)
YACReader 9.5.0 (HKLM\...\YACReader_is1) (Version: - )
Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.8.5.0_x86__kgqvnymyfvs32 [2020-04-08] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.166.400.0_x86__kgqvnymyfvs32 [2020-04-18] (king.com)
Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_4.9.0.6_x86__h6adky7gbf63m [2020-03-12] (Gameloft SE)
Duolingo - Learn Languages for Free -> C:\Program Files\WindowsApps\D5EA27B7.Duolingo-LearnLanguagesforFree_2017.112.1.0_x64__yx6k7tf7xvsea [2019-01-11] (Duolingo Inc.)
Kodi -> C:\Program Files\WindowsApps\XBMCFoundation.Kodi_18.6.500.0_x64__4n2hpmxwrvr6p [2020-03-07] (XBMC Foundation)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_4.7.1.1_x86__h6adky7gbf63m [2020-04-15] (Gameloft SE)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-25] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.4030.0_x64__8wekyb3d8bbwe [2020-04-16] (Microsoft Studios) [MS Ad]
MSN Weather -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
MY LITTLE PONY - Friendship is Magic -> C:\Program Files\WindowsApps\GAMELOFTSA.MyLittlePony_1.8.6.6_x86__0pp20fcewvvtj [2019-05-09] (GAMELOFT SA)
MyIPTV Player -> C:\Program Files\WindowsApps\41879VbfnetApps.MyIPTVPlayer_3.90.2.0_x64__7casf8sqhfy78 [2019-11-30] (Vbfnet Apps) [MS Ad]
Paket za lokalni interfejs za srpski -> C:\Program Files\WindowsApps\Microsoft.LanguageExperiencePacksr-Latn-RS_18362.17.47.0_neutral__8wekyb3d8bbwe [2020-04-16] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-11-07] (Microsoft Corporation)
Springtime Animals -> C:\Program Files\WindowsApps\Microsoft.SpringtimeAnimals_1.0.0.0_neutral__8wekyb3d8bbwe [2019-05-17] (Microsoft Corporation)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-08] (Twitter Inc.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-58988072-87738606-1469498150-1000_Classes\CLSID\{2a3c2bf2-193f-4aa3-ab75-ffc62ddaef44}\InprocServer32 -> C:\WINDOWS\system32\dfshim.dll (Microsoft Windows -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2016-11-14] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-01-11] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2016-11-14] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2017-12-11] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-01-11] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
WMI:subscription\__FilterToConsumerBinding->\\.\root\subscription:ActiveScriptEventConsumer.Name=\"ASEC\"",Filter="\\.\root\subscription:__EventFilter.Name=\"EventFilter sethomePage2\":: <==== ATTENTION
WMI:subscription\__TimerInstruction->SethomePage Interval Timer:: <==== ATTENTION
WMI:subscription\__IntervalTimerInstruction->SethomePage Interval Timer:: <==== ATTENTION
WMI:subscription\__EventFilter->EventFilter sethomePage2::[Query => Select * From __timerevent Where TimerId = "SethomePage Interval Timer"] <==== ATTENTION
Shortcut: C:\Users\Tamara\Desktop\NexU-APR.lnk -> C:\NexU-APR\NexU-Startup.bat ()
ShortcutWithArgument: C:\Users\Tamara\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\e2f3576b7abb043d\Brave.lnk -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc.) -> --profile-directory=Default
==================== Loaded Modules (Whitelisted) =============
2020-04-14 20:59 - 2020-04-14 20:59 - 098275328 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll
2020-04-14 20:59 - 2020-04-14 20:59 - 000092672 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll
2020-04-14 20:59 - 2020-04-14 20:59 - 003922432 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll
2014-02-11 06:08 - 2014-02-11 06:08 - 000817152 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2015-11-04 16:43 - 2015-11-04 16:43 - 000214528 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2015-11-04 16:43 - 2015-11-04 16:43 - 000102400 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2014-02-11 06:08 - 2014-02-11 06:08 - 003650560 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\04857798788f559615cd9bd00ee6ab62\A4.Foundation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\def3d7394f89b2f846f2b4c57bf41b35\AEM.Actions.CCAA.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\ce4af52667c3a090937b2a72dacf1f3c\AEM.Plugin.EEU.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\5ca3611e39ad15650804502c62794411\AEM.Plugin.Hotkeys.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.4adf1574#\29f21e7bdb64a260001a89a9a61c9728\AEM.Plugin.Audio.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\4b81b367a99c87a6de76b8a6a5c7e153\AEM.Plugin.DPPE.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\1f13e3e46765479e1481db96f8c1c76a\AEM.Plugin.Source.Kit.Server.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\55de16f92d40e40adb46a4f07bb4b2cd\AEM.Plugin.WinMessages.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\d7d415bf0213ee3af7cd00457b76abcf\AEM.Plugin.REG.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\95b5b5ca1cadbec8e8e53ef2db612c4e\AEM.Plugin.GD.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\c44d1c825dfe57865ed46c3b396b3f5e\AEM.Server.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\217bd0cf2319def990d9b44a06b4337a\AEM.Server.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\51adad9a886b53fbeb5fe32b323a356b\APM.Foundation.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\aa0e4cb41e725f9f8915e3083c521d1b\ATICCCom.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\03b4b0d2008a527e28145fbf2a61d18d\CCC.Implementation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.2042675f#\1e7f2470ea20832ac0d2817aebc285b4\CLI.Aspect.CPUPStates.Fuel.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\4364b6e5c5a7f54ceef39e3b1682b12d\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\47dad210ddea0afd2591aba135a05d01\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\e96caef92e5f29a3443038ab99edfc1a\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\5bcc1a6d7b573fa59a3cb68ee6910310\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\fed1f5c388036958d676f2ebece6fd8c\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\c3a799870cc0a02deccc966e87100f9d\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\9a625807a53d861a3d2a372f5c979e25\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000152576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4ede500c#\ad49ff0cd654766da93335957c4d6175\CLI.Aspect.DPPE.Fuel.Dashboard.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\15d0904bdee36b0815768264a7e2c62a\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\583977d0ce6a002149a43122f7708c7c\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000111616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.5a772e69#\c64c6b8c3412a92265d0383af1c5f550\CLI.Aspect.Fets.Fuel.Dashboard.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.648b65fc#\d8ef32add38b79f91a0d27e0a278692a\CLI.Aspect.WiFi.Fuel.Dashboard.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\8e29973c043dcb79a64624acf674073a\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\1dc363b2cc56c93d8e16bfcbf149df10\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\94e9813925163fb56c46af8e5a07c973\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\6be447610e7c93e1e8af6899cc30bbec\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\2bb50438bb1395bda4df97bc7b8b56bb\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\02e427e7b5c2335a1ca1cb491e503c65\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\0bf72241b1faf5b6d60b37a577cfc24e\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\af2411903f0de29fc73b307e9dbd091b\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\a54fb747e018047778604982fdf567aa\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\1aed3e551f53e4173171456bccd7e573\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\9bb9968b730d6f40478e0690442877b4\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\cc1109d5751a341e95b75ccbb3c991d8\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\a7c4a92d8a6a0a3b70b6f9bcb51e0701\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000023552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c2a2b491#\075e907169e662ad8ee3aaed2a251bee\CLI.Aspect.WiFi.Fuel.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\5f3c6f44c20ce52767faac074173b13c\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\d0246cf70e616022ede51d33ac7e75e8\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000081408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.caa5cc64#\18c81922131b4e783094833e75ad84ec\CLI.Aspect.Fets.Fuel.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 001315840 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d7e090dc#\37daeba828ed0130c4fad0678ce2ec41\CLI.Aspect.User.Fuel.Dashboard.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\846116b6a67d0375936707e9a1be5fe0\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\46605bc7e834bb48efcc1a74dc9ec276\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\f80b963d1e5ef4887bd3694ef828bebc\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\c7f75f561b22f5ca3f810e2979b29b66\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.efd83192#\13cf792b8e7c880d38343501ecf3400b\CLI.Aspect.CPUPStates.Fuel.Shared.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f45bd021#\8591d8a0a6ee2aeae9c4e139a72a662f\CLI.Aspect.DPPE.Fuel.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\f6449064f653c81bf0f61503a1d34195\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\9e080db32601ceaef53acb63063680da\CLI.Caste.A4.Runtime.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\65c310c7102c249997b5daf8d2cd9bf6\CLI.Caste.A4.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\900da8236dee4375bd85cc9113e93546\CLI.Caste.A4.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\890960d5bfb84f991e49753603dfab0b\CLI.Caste.Fuel.Shared.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\506b4850791916b3502d3298b9b4553d\CLI.Caste.Fuel.Runtime.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\5ee6212ae9c56ba0a5e415c2e60ba1e0\CLI.Caste.Fuel.Dashboard.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\47aefa89123ca5daf16cd1586eafa6cb\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\efca106b5659510335d96b1aebf9c33c\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\7bd4e2d2df782126e25d711f32081505\CLI.Caste.Graphics.Dashboard.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\7a219a9b0a77336e1026c05379fe8c9b\CLI.Caste.HydraVision.Runtime.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\9f4c6b40dbac62b77724eaec901ada7e\CLI.Caste.HydraVision.Shared.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\0cebfa2933e2dc36ae0d27ef1bb36ae3\CLI.Caste.HydraVision.Dashboard.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\96970cc5443613e93c56326e1771d38a\CLI.Caste.Platform.Shared.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\ca1b4a2dbebfe7de20a2893ca1d2a4f0\CLI.Caste.Platform.Runtime.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\ad15b7ef1cf6568e0e6370578ec8e3a0\CLI.Caste.Platform.Dashboard.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000350720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combinee84f0351#\f6016b6e67c9a122d1bfa520ed4b2afc\CLI.Combined.Fusion.Aspects.Runtime.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\b57f10c0713beb859f1e7a3d72363619\CLI.Component.Runtime.Shared.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\16ed9dc5d3acb87cf73cd35e823e2344\CLI.Component.Systemtray.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\7fee8daa3326a58814c7e99840eee983\CLI.Component.Dashboard.ProfileManager2.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\f338ea207c7ebc93688b73611b11a7a6\CLI.Component.Runtime.Shared.Private.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\8261c7c6dee0d78d37083db8ec955b9c\CLI.Component.Runtime.Extension.EEU.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\99734e1ee6dbb9f83e1eb0be2b20770b\CLI.Component.Dashboard.Shared.Private.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\dbd6a713b407b3c7cf5f2339da33f9a2\CLI.Component.Client.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\ad72e8870ac99be615dba851ab2dda88\CLI.Component.Dashboard.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\37ee2c27e46e4e73086db3dae2314569\CLI.Foundation.Private.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\e595365791f86999237d462d6aeb89cd\CLI.Foundation.XManifest.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\6635efe5afa217fb4af9f7c4329c72d9\CLI.Foundation.CoreAudioAPI.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\5c0efc7ee41341debf4e7c37214ff975\CLI.Foundation.Client.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\dbb50c736e249700630242603330f4ea\CLI.Foundation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\69a7b1e256398fcecd09f4ab3dd0e1d1\DEM.Foundation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\571b42e88db9ffce76755328ccf9b54f\DEM.Graphics.I0601.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\adc2bdce9ae508c1ea037f454f630576\DEM.Graphics.ni.dll
2020-02-14 08:32 - 2020-02-14 08:32 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\dfa839a41b8b64f13ccfad2ed654cc2e\Fuel.Foundation.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\57ffe95ba281f0ff3b2a6652746d8393\LOG.Foundation.Implementation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\f658b8fdf11718c69ca6d924a813e4db\LOG.Foundation.Private.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\5f19771a1969222ae9305168b04006ea\LOG.Foundation.Implementation.Private.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\b2655421ce141af774f210046ac71e68\LOG.Foundation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\31051445b929b832c52dc7bffd55f197\MOM.Foundation.ni.dll
2020-02-14 08:34 - 2020-02-14 08:34 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\c3ae2f5eaaaf76a2af7d31898c9e26a8\MOM.Implementation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\299aaec5286c93b895550c2035f97af6\NEWAEM.Foundation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\cbc5be88a06e262f7a928dfeb72c2fdd\ADL.Foundation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\e4c53190ef1387ca7c94afce4e976c80\APM.Server.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\8f479a0a15de60f86b71b6a649096e4d\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\73bbfb25fe4970e372ae194d8a4432f5\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\cca6eb879dc8d33ce89db37cc934368f\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\d62c31658c65f9f456e202c318df5cb5\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 001159680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\14586f5a429f0a79e54c3c45206b2a2d\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\8123a787ee6bd2e7031f5720b90c2c3e\CLI.Component.Client.Shared.Private.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\b75274dd03b47bf96954cfa5de909f5d\CLI.Component.Runtime.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\da811b556032ff78a24a96f18b493ec6\CLI.Component.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\ba92abd516849356ef3706053dfe0aca\DEM.Graphics.I0706.ni.dll
2020-02-14 01:11 - 2020-02-14 01:11 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\863f85f65b0d531ef6f9f0da129ab0f3\DEM.Graphics.I0709.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\b2c01ff958fb1b60defaac55bf102b84\DEM.Graphics.I0712.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\f20f72bf76227cf0a30e0803f5c8daf3\DEM.Graphics.I0804.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\5019f51edf283c59ca92f1f55b464381\DEM.Graphics.I0805.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\926fe494071a7c534cfaedefb0848b38\DEM.Graphics.I0812.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\33f13ab6c5152d7730241d98051587f5\DEM.Graphics.I0906.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\3a55d73b4aca78a2971b556db0231f83\DEM.Graphics.I0912.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\cc39c165dad3ce13788db374a17f25b1\DEM.Graphics.I1010.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\3425ce9d9a67582be38adb9f1f4ac673\Localization.Foundation.Private.ni.dll
2020-02-14 08:34 - 2020-02-14 08:34 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\d88b73f715413258c24dba856382c7be\ResourceManagement.Foundation.Implementation.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\b60040796c15249c260ccdf3fdba8dc1\ResourceManagement.Foundation.Private.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\a2319d0e93b2f140fffe8ad87b01e73a\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\82ebc162df071caa15b93de812a5280b\CLI.Caste.Graphics.Shared.ni.dll
2020-02-14 08:33 - 2020-02-14 08:33 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\d7be80650142fc5a1cd7ae1a3b9687e0\CLI.Caste.Graphics.Runtime.ni.dll
2016-11-24 23:12 - 2016-10-04 16:51 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2020-03-03 21:59 - 2020-03-03 21:59 - 000401462 _____ (Microsoft Corporation) [File not signed] C:\newVision Bytes\PVP Gold\rdbms\bin\MSVCP60.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 000335360 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\983c1b51aa798515f8922993d6fd25fd\Microsoft.WindowsAPICodePack.ni.dll
2020-02-14 01:10 - 2020-02-14 01:10 - 002546688 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\ecc49f4a505fe677bcbc2f40d3ba6c51\Microsoft.WindowsAPICodePack.Shell.ni.dll
2018-12-11 14:53 - 2018-12-11 14:53 - 000018944 _____ (Softland) [File not signed] C:\WINDOWS\System32\novamn9.dll
2020-04-14 20:59 - 2020-04-14 20:59 - 000547840 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll
2020-03-03 21:59 - 2020-03-03 21:59 - 000356448 _____ (The Firebird Project) [File not signed] C:\newVision Bytes\PVP Gold\rdbms\bin\fbclient.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer trusted/restricted ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-07-16 13:47 - 2018-12-09 11:09 - 000013474 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 gf.tools.avast.com
127.0.0.1 pair.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 id.avast.com
127.0.0.1 v4618535.iavs9x.u.avast.com
127.0.0.1 v4618535.ivps9x.u.avast.com
127.0.0.1 v4618535.ivps9tiny.u.avast.com
127.0.0.1 v4618535.vpsnitro.u.avast.com
127.0.0.1 v4618535.vpsnitrotiny.u.avast.com
127.0.0.1 v4618535.iavs5x.u.avast.com
127.0.0.1 v7.stats.avast.com
127.0.0.1 v7.stats.avast.com
127.0.0.1 v7event.stats.avast.com
127.0.0.1 sm00.avast.com
127.0.0.1 submit5.avast.com
127.0.0.1 geoip.avast.com
127.0.0.1 w9448963.iavs9x.u.avast.com
127.0.0.1 w9448963.ivps9x.u.avast.com
127.0.0.1 w9448963.ivps9tiny.u.avast.com
127.0.0.1 w9448963.vpsnitro.u.avast.com
127.0.0.1 w9448963.vpsnitrotiny.u.avast.com
127.0.0.1 w9448963.iavs5x.u.avast.com
127.0.0.1 v7.stats.avast.com
127.0.0.1 v7.stats.avast.com
127.0.0.1 v7event.stats.avast.com
127.0.0.1 sm00.avast.com
127.0.0.1 submit5.avast.com
127.0.0.1 geoip.avast.com
There are 332 more lines.
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04182020184026281\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04182020184027093\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-58988072-87738606-1469498150-1000\Control Panel\Desktop\\Wallpaper -> D:\slike\2016-02-14\2015-07-02\005.JPG
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is disabled.
Network Binding:
=============
Ethernet: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)
Ethernet 3: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E7EBB6B0-0315-4F35-8768-75E12AF18CE8}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe (Tixati Software Inc. -> Tixati Software Inc.)
FirewallRules: [TCP Query User{7CA7AF4D-DEF3-4B44-AFED-06AC1B64939A}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe (Tixati Software Inc. -> Tixati Software Inc.)
FirewallRules: [{017FC0D4-556B-44F9-A239-5FFB1646AC33}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4F351B5F-4E5A-4FAE-8B83-12F04BA7C426}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9067F84A-669D-43BA-BC5F-7CB30475EEA9}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BDA841E7-C154-4D1F-8555-34C3F5E65E31}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{929BF910-A73A-40C3-B317-CBD1E7FE11A6}C:\program files\core temp\core temp.exe] => (Block) C:\program files\core temp\core temp.exe (ALCPU -> ALCPU)
FirewallRules: [TCP Query User{C3D59F7B-CE88-4170-823B-F41259D67D91}C:\program files\core temp\core temp.exe] => (Block) C:\program files\core temp\core temp.exe (ALCPU -> ALCPU)
FirewallRules: [UDP Query User{9917F0EF-AF60-47BF-A442-DD0ABA304B15}C:\program files (x86)\liquid entertainment\battle realms demo\battle_realms_f.exe] => (Allow) C:\program files (x86)\liquid entertainment\battle realms demo\battle_realms_f.exe () [File not signed]
FirewallRules: [TCP Query User{E14FED86-772E-4B38-AF62-D9DD8B0A71E8}C:\program files (x86)\liquid entertainment\battle realms demo\battle_realms_f.exe] => (Allow) C:\program files (x86)\liquid entertainment\battle realms demo\battle_realms_f.exe () [File not signed]
FirewallRules: [UDP Query User{B381ACAB-3381-4AF3-9FCB-610FF6CB8236}C:\program files\core temp\core temp.exe] => (Block) C:\program files\core temp\core temp.exe (ALCPU -> ALCPU)
FirewallRules: [TCP Query User{ACD1C1C0-2AB6-4AD1-83EB-6891B768C314}C:\program files\core temp\core temp.exe] => (Block) C:\program files\core temp\core temp.exe (ALCPU -> ALCPU)
FirewallRules: [{C12E44AC-AFE6-485B-AE9E-1C2A2802F65C}] => (Allow) C:\Program Files\VueScan\vuescan.exe (Hamrick Software -> Hamrick Software)
FirewallRules: [{43305375-8AE9-4B45-B0C9-19925377A019}] => (Allow) C:\Program Files\VueScan\vuescan.exe (Hamrick Software -> Hamrick Software)
FirewallRules: [UDP Query User{7DA8C01E-7AAF-4177-8819-550DE8AC7B7F}C:\program files\yacreader\yacreaderlibrary.exe] => (Allow) C:\program files\yacreader\yacreaderlibrary.exe () [File not signed]
FirewallRules: [TCP Query User{74E0BDA4-C8BB-475B-B96F-9D9768404A20}C:\program files\yacreader\yacreaderlibrary.exe] => (Allow) C:\program files\yacreader\yacreaderlibrary.exe () [File not signed]
FirewallRules: [{73ED731C-8ECE-443B-9AE5-DECF22039007}] => (Allow) LPort=8501
FirewallRules: [{E9DC1424-08DB-4C5D-B679-893607E55CEE}] => (Allow) LPort=8501
FirewallRules: [UDP Query User{62CB6471-ADC2-4A70-8FC0-3CCA2A8BC4E3}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{2466ABBF-BD49-4369-85B2-77802C1335A2}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{5ACBF375-8A0E-455E-AD4D-CFD111D909BC}C:\program files\tixati\tixati.exe] => (Block) C:\program files\tixati\tixati.exe (Tixati Software Inc. -> Tixati Software Inc.)
FirewallRules: [TCP Query User{4D57C73E-5BB9-4C94-BA75-6E9D2034CEF6}C:\program files\tixati\tixati.exe] => (Block) C:\program files\tixati\tixati.exe (Tixati Software Inc. -> Tixati Software Inc.)
FirewallRules: [{2B4F35EE-7148-46CC-8FD9-78B4836060C4}] => (Allow) C:\Program Files\Waterfox\waterfox.exe (Waterfox Limited -> Mozilla Corporation)
FirewallRules: [{5EDF5D95-A3C1-45A5-897B-4EC4BC4A98B7}] => (Allow) C:\Program Files\Waterfox\waterfox.exe (Waterfox Limited -> Mozilla Corporation)
FirewallRules: [{8345CAC3-7B9A-4835-9FDB-80D003E734D6}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{E5A0FA3E-3BC0-4641-9A0C-9E2BA0342EDF}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{5942A080-1831-4BC3-A6DC-E849CBB49D6E}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{F0A68AED-3AA3-4032-B160-0FBE0725AB5A}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{998078DB-AC17-4478-B1D9-12D1355BB221}] => (Allow) C:\WINDOWS\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{2DB612D0-A31A-4494-A453-E09C1BD11CAA}C:\program files (x86)\kodi\kodi.exe] => (Block) C:\program files (x86)\kodi\kodi.exe (XBMC-Foundation) [File not signed]
FirewallRules: [TCP Query User{215D31E9-ADEF-457D-AB18-095E16D62522}C:\program files (x86)\kodi\kodi.exe] => (Block) C:\program files (x86)\kodi\kodi.exe (XBMC-Foundation) [File not signed]
FirewallRules: [UDP Query User{53D4FE7F-71B7-4274-B610-F4959099F88F}C:\program files (x86)\kodi\kodi.exe] => (Block) C:\program files (x86)\kodi\kodi.exe (XBMC-Foundation) [File not signed]
FirewallRules: [TCP Query User{A64C66CE-4C37-404D-8C90-3D9E3CA861F5}C:\program files (x86)\kodi\kodi.exe] => (Block) C:\program files (x86)\kodi\kodi.exe (XBMC-Foundation) [File not signed]
FirewallRules: [{D298746C-7F15-4166-8403-901EF9E772CA}] => (Allow) C:\WINDOWS\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{2F8DB9A8-6AB4-4F6E-A08F-84DEB925E4E8}] => (Allow) C:\WINDOWS\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{1F15BA66-16FC-4485-8125-6FB373EA3E3B}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9BDC15B7-89C1-4A5A-A454-0F1FD18E4F45}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D64805CF-563A-4EFE-9112-75E3799D2988}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E39F5781-7F0B-45F2-8E56-C1505D3FED4B}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5C97156D-B475-46F2-9562-D8507E8A45D5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{97455A7F-28B8-4D04-B75A-F7E838733D2D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B68140EA-5984-46BC-94CD-74C3ADF0C8B1}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Print Driver 2\PrinterSelector\SUPDApp.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
FirewallRules: [{17841CA3-5828-4BBE-A98F-65B33D555C81}] => (Allow) C:\Program Files\Waterfox\waterfox.exe (Waterfox Limited -> Mozilla Corporation)
FirewallRules: [{622697EC-3784-4E89-A4B7-53CB290FCF29}] => (Allow) C:\Program Files\Waterfox\waterfox.exe (Waterfox Limited -> Mozilla Corporation)
FirewallRules: [{405754A7-1FBE-4F40-9383-3B26BA0EF718}] => (Allow) C:\Users\Tamara\AppData\Local\Programs\Opera\67.0.3575.115\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{1D23F883-F79F-4C2D-8453-46DE2583B5A2}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{AA65EAED-B09C-4586-81FE-5712BE1C159C}] => (Allow) C:\Users\Tamara\AppData\Local\Programs\Opera\67.0.3575.137\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{81F4C2D2-C832-499B-B6DD-F4EFB2577A02}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
30-03-2020 21:01:14 Scheduled Checkpoint
09-04-2020 12:59:46 Scheduled Checkpoint
15-04-2020 02:48:13 Windows Update
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (04/19/2020 12:52:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Microsoft.Photos.exe version 2020.19111.24110.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 1b50
Start Time: 01d615bccd23ad77
Termination Time: 4294967295
Application Path: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Report Id: f910d138-9888-4710-9f92-d7a52d505e99
Faulting package full name: Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe
Faulting package-relative application ID: App
Hang type: Quiesce
Error: (04/19/2020 12:07:37 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2840,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/19/2020 10:13:17 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1992,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/19/2020 08:51:13 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6880,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/19/2020 06:30:07 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9588,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/19/2020 03:10:03 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6352,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/18/2020 10:16:49 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7708,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/18/2020 09:50:21 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2724,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
System errors:
=============
Error: (04/18/2020 01:33:28 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: The computer has rebooted from a bugcheck. The bugcheck was: 0x00000050 (0xffffbc08633ae000, 0x0000000000000000, 0xfffff8041793ce90, 0x0000000000000000). A dump was saved in: C:\WINDOWS\MEMORY.DMP. Report Id: 7cda7ec3-5d75-4f44-8b08-edb39031d05b.
Error: (04/18/2020 01:30:18 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 1:22:58 PM on 4/18/2020 was unexpected.
Error: (04/18/2020 01:22:58 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 1:04:29 PM on 4/18/2020 was unexpected.
Error: (04/18/2020 12:30:12 PM) (Source: DCOM) (EventID: 10000) (User: Tamara-PC)
Description: Unable to start a DCOM Server: {0358B920-0AC7-461F-98F4-58E32CD89148}. The error:
"2147942767"
Happened while starting this command:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
Error: (04/18/2020 12:24:29 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 12:20:20 PM on 4/18/2020 was unexpected.
Error: (04/16/2020 12:43:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The cFosSpeed System Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 0 milliseconds: Restart the service.
Error: (04/15/2020 11:20:51 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The FoxitReaderService service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Error: (04/15/2020 11:20:51 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (45000 milliseconds) while waiting for the FoxitReaderService service to connect.
Windows Defender:
===================================
Date: 2020-04-19 03:21:52.333
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {3858CD25-A6FB-46C8-A57F-BABF081D8B27}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2020-04-16 13:31:24.669
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {FFFB2620-07E4-4581-8EFB-9283E25766C8}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2020-04-04 14:23:29.833
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {3DCB9D69-8605-4371-BA56-E0E98CD3C003}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2020-03-27 13:58:53.829
Description:
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {5E330197-8DA0-4194-BF13-DCE63925F398}
Scan Type: Antimalware
Scan Parameters: Quick Scan
CodeIntegrity:
===================================
Date: 2020-04-14 21:13:03.013
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 21:13:03.007
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 21:13:02.999
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 09:28:54.274
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 09:28:54.266
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 09:28:54.244
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 09:26:23.352
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-04-14 09:26:23.344
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive\googledrivesync64.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. P1.10 09/06/2013
Motherboard: ASRock FM2A88X Extreme4+
Processor: AMD A8-5600K APU with Radeon(tm) HD Graphics
Percentage of memory in use: 79%
Total physical RAM: 3503.2 MB
Available physical RAM: 719.86 MB
Total Virtual: 8371.81 MB
Available Virtual: 3276.46 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:469.47 GB) (Free:108.52 GB) NTFS
Drive d: (New Volume) (Fixed) (Total:195.31 GB) (Free:19.3 GB) NTFS
Drive e: (New Volume) (Fixed) (Total:266.54 GB) (Free:172.99 GB) NTFS
Drive h: () (Fixed) (Total:0.2 GB) (Free:0.05 GB) NTFS ==>[system with boot components (obtained from drive)]
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 7E350A23)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=469.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=266.5 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=195.3 GB) - (Type=0F Extended)
==================== End of Addition.txt =======================
|