Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 27.07.2019 19:13:11 - Run 3
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\czpio\Desktop
- 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
- Internet Explorer (Version = 9.11.17134.0)
- Locale: 00000415 | Country: Polska | Language: PLK | Date Format: dd.MM.yyyy
- 7,94 Gb Total Physical Memory | 4,75 Gb Available Physical Memory | 59,87% Memory free
- 13,19 Gb Paging File | 7,57 Gb Available in Paging File | 57,40% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 118,23 Gb Total Space | 21,29 Gb Free Space | 18,01% Space Free | Partition Type: NTFS
- Drive D: | 931,51 Gb Total Space | 530,84 Gb Free Space | 56,99% Space Free | Partition Type: NTFS
- Computer Name: DESKTOP-Q8K5R4L | User Name: czpio | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - File not found --
- PRC - [2019.07.24 07:37:30 | 000,943,240 | ---- | M] (Razer Inc.) -- C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
- PRC - [2019.07.24 07:37:30 | 000,447,080 | ---- | M] (Razer Inc.) -- C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
- PRC - [2019.07.17 12:42:00 | 000,601,784 | ---- | M] (Razer Inc.) -- C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
- PRC - [2019.07.14 14:13:45 | 001,098,728 | ---- | M] (Blizzard Entertainment) -- D:\Wow\Battle.net\Battle.net.exe
- PRC - [2019.07.12 09:23:32 | 003,206,448 | ---- | M] (Electronic Arts) -- D:\Origin\OriginWebHelperService.exe
- PRC - [2019.07.04 10:54:37 | 000,662,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\fontdrvhost.exe
- PRC - [2019.07.02 18:32:26 | 025,591,712 | ---- | M] (Spotify Ltd) -- C:\Users\czpio\AppData\Roaming\Spotify\Spotify.exe
- PRC - [2019.06.25 10:19:58 | 005,209,064 | ---- | M] (Blizzard Entertainment) -- C:\ProgramData\Battle.net\Agent\Agent.6732\Agent.exe
- PRC - [2019.05.22 23:51:24 | 000,782,136 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- PRC - [2019.05.22 15:40:08 | 029,784,376 | ---- | M] (Node.js) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
- PRC - [2019.03.07 16:26:10 | 081,780,056 | ---- | M] (Discord Inc.) -- C:\Users\czpio\AppData\Local\Discord\app-0.0.305\Discord.exe
- PRC - [2019.02.27 18:35:08 | 000,782,136 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- PRC - [2018.12.10 05:42:50 | 001,623,040 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\TSMApplication.exe
- PRC - [2018.10.06 10:38:28 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
- PRC - [2018.10.05 10:43:58 | 000,206,472 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
- PRC - [2018.03.29 10:38:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\czpio\Desktop\OTL.exe
- PRC - [2015.07.10 23:40:08 | 000,223,520 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- PRC - [2015.07.10 23:38:00 | 000,415,520 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- PRC - [2015.05.19 09:11:00 | 000,335,872 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - [2019.07.26 15:35:45 | 001,660,216 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_hook\discord_hook.node
- MOD - [2019.07.26 15:35:45 | 000,701,776 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_voice\openh264-1.7.0-win32.dll
- MOD - [2019.07.26 15:35:43 | 018,494,264 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_voice\discord_voice.node
- MOD - [2019.07.14 14:14:08 | 000,540,336 | ---- | M] () -- D:\Wow\Battle.net\Battle.net.11266\ortp.dll
- MOD - [2019.07.14 14:14:06 | 003,841,536 | ---- | M] () -- D:\Wow\Battle.net\Battle.net.11266\libGLESv2.dll
- MOD - [2019.07.14 14:14:05 | 085,602,816 | ---- | M] () -- D:\Wow\Battle.net\Battle.net.11266\libcef.dll
- MOD - [2019.07.14 14:14:05 | 000,089,600 | ---- | M] () -- D:\Wow\Battle.net\Battle.net.11266\libEGL.dll
- MOD - [2019.07.12 12:20:46 | 000,524,288 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\310e9c764d542a0ed2861f2f457e2d2e\UIAutomationTypes.ni.dll
- MOD - [2019.07.12 12:20:45 | 008,269,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data\44d79b409065a360ae428c35ad7100c0\System.Data.ni.dll
- MOD - [2019.07.12 12:20:42 | 000,809,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\5b3b59f5ba40c4f5b051138a585ebc0b\System.ServiceModel.Internals.ni.dll
- MOD - [2019.07.12 12:20:42 | 000,124,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\a34714dcfd689737a8f41aac24de4237\SMDiagnostics.ni.dll
- MOD - [2019.07.12 12:20:41 | 019,974,656 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\f10791c9c62db9419f36f4b686e999f3\System.ServiceModel.ni.dll
- MOD - [2019.07.12 12:20:32 | 013,740,544 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\52b6626c09f8324495dd1a649245eb93\System.Windows.Forms.ni.dll
- MOD - [2019.07.12 12:20:32 | 000,231,424 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\e73d6462144b3c257dd995d18d2c7f47\System.ServiceProcess.ni.dll
- MOD - [2019.07.10 08:03:07 | 000,396,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\4e201ad5b3539dcdf17b48411dca66ee\System.Xml.Linq.ni.dll
- MOD - [2019.07.10 08:03:06 | 002,036,224 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xaml\e2f24f6d5c2784482bd76fac04b3f4b1\System.Xaml.ni.dll
- MOD - [2019.07.10 08:03:05 | 002,850,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\fbd781e499af30f6fb8c60e55b0a8444\System.Runtime.Serialization.ni.dll
- MOD - [2019.07.10 08:03:03 | 001,020,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\83b90395202cdc5e35bf7313ccfd6c6d\System.Configuration.ni.dll
- MOD - [2019.07.10 08:03:03 | 000,536,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\03b0242c372a18c11063c7bc7a8f3260\PresentationFramework.Aero2.ni.dll
- MOD - [2019.07.10 08:03:02 | 019,948,544 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\8b6e4920bff6de399a4aa8c794ecf8c6\PresentationFramework.ni.dll
- MOD - [2019.07.10 08:02:53 | 012,233,216 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PresentationCore\ecb7ab83d2ee39873e32dbf34b969e6d\PresentationCore.ni.dll
- MOD - [2019.07.10 08:02:48 | 004,176,896 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\WindowsBase\23177e3af32b235f1e67311281870b24\WindowsBase.ni.dll
- MOD - [2019.07.10 08:02:46 | 008,246,272 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\a75f76d27d3466ffe857031450faca13\System.Core.ni.dll
- MOD - [2019.07.02 18:32:26 | 093,477,792 | ---- | M] () -- C:\Users\czpio\AppData\Roaming\Spotify\libcef.dll
- MOD - [2019.07.02 18:32:26 | 004,718,496 | ---- | M] () -- C:\Users\czpio\AppData\Roaming\Spotify\libglesv2.dll
- MOD - [2019.07.02 18:32:26 | 000,118,176 | ---- | M] () -- C:\Users\czpio\AppData\Roaming\Spotify\libegl.dll
- MOD - [2019.06.13 09:30:26 | 000,144,112 | ---- | M] () -- C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
- MOD - [2019.06.12 15:37:39 | 001,784,632 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_overlay2\discord_overlay2.node
- MOD - [2019.05.23 11:35:19 | 001,180,672 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\3184edf58e171f59fa5d36eb110815bb\System.Management.ni.dll
- MOD - [2019.05.22 15:40:09 | 003,762,216 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
- MOD - [2019.05.22 15:40:08 | 002,239,528 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSDKAPINode.node
- MOD - [2019.05.22 15:40:08 | 001,272,872 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node
- MOD - [2019.05.22 15:40:08 | 000,712,048 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvShadowPlayAPINode.node
- MOD - [2019.05.22 15:40:08 | 000,590,648 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
- MOD - [2019.05.22 15:40:08 | 000,534,840 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvBackendAPINode.node
- MOD - [2019.05.22 15:40:08 | 000,530,416 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
- MOD - [2019.05.22 15:40:08 | 000,523,248 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvABHubAPI.node
- MOD - [2019.05.22 15:40:08 | 000,502,768 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameStreamAPINode.node
- MOD - [2019.05.22 15:40:08 | 000,471,920 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
- MOD - [2019.05.22 15:40:08 | 000,454,456 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvUtil.node
- MOD - [2019.05.22 15:40:08 | 000,420,848 | ---- | M] () -- \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
- MOD - [2019.05.16 10:09:46 | 000,274,432 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Numerics\84ef438af1e40cd00638af0f214170c3\System.Numerics.ni.dll
- MOD - [2019.05.16 10:09:35 | 001,646,592 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Drawing\8175b99ae4976023c6a5cdf95f7d73c4\System.Drawing.ni.dll
- MOD - [2019.05.16 10:09:31 | 007,589,376 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\d965c30c53468c92ec77b1694a33214b\System.Xml.ni.dll
- MOD - [2019.05.16 10:09:03 | 010,552,832 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\898c4d39831f90a1288b65041277a311\System.ni.dll
- MOD - [2019.04.11 03:45:28 | 020,551,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\a5a47e8e5e2880adecca43eb928673f1\mscorlib.ni.dll
- MOD - [2019.03.12 20:36:58 | 001,297,752 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_vigilante\discord_vigilante.node
- MOD - [2019.03.12 20:36:57 | 002,947,416 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_contact_import\discord_contact_import.node
- MOD - [2019.03.12 20:36:57 | 001,282,904 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_modules\discord_modules.node
- MOD - [2019.03.12 20:36:55 | 022,420,312 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_dispatch\discord_dispatch.node
- MOD - [2019.03.12 20:36:45 | 010,158,936 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_cloudsync\discord_cloudsync.node
- MOD - [2019.03.12 20:36:41 | 001,754,456 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_game_utils\discord_game_utils.node
- MOD - [2019.03.12 20:36:35 | 001,711,448 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_utils\discord_utils.node
- MOD - [2019.03.12 20:36:35 | 000,837,464 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_spellcheck\node_modules\spellchecker\build\Release\spellchecker.node
- MOD - [2019.03.12 20:36:34 | 002,672,984 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_spellcheck\node_modules\cld\build\Release\cld.node
- MOD - [2019.03.12 20:36:34 | 000,479,064 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_spellcheck\node_modules\keyboard-layout\build\Release\keyboard-layout-manager.node
- MOD - [2019.03.12 20:36:33 | 000,553,816 | ---- | M] () -- \\?\C:\Users\czpio\AppData\Roaming\discord\0.0.305\modules\discord_erlpack\discord_erlpack.node
- MOD - [2019.03.07 16:26:14 | 002,269,528 | ---- | M] () -- C:\Users\czpio\AppData\Local\Discord\app-0.0.305\swiftshader\libglesv2.dll
- MOD - [2019.03.07 16:26:14 | 000,132,952 | ---- | M] () -- C:\Users\czpio\AppData\Local\Discord\app-0.0.305\swiftshader\libegl.dll
- MOD - [2019.03.07 16:26:10 | 002,000,216 | ---- | M] () -- C:\Users\czpio\AppData\Local\Discord\app-0.0.305\ffmpeg.dll
- MOD - [2019.02.27 18:35:02 | 001,032,912 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
- MOD - [2018.12.10 05:42:50 | 001,623,040 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\TSMApplication.exe
- MOD - [2018.04.12 01:34:47 | 000,364,200 | ---- | M] () -- C:\Windows\SysWOW64\InputHost.dll
- MOD - [2015.12.16 00:18:48 | 000,039,424 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\psutil._psutil_windows.pyd
- MOD - [2015.10.25 05:43:26 | 004,101,120 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\PyQt5.QtWidgets.pyd
- MOD - [2015.10.25 05:36:22 | 002,002,944 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\PyQt5.QtGui.pyd
- MOD - [2015.10.25 05:32:44 | 001,861,120 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\PyQt5.QtCore.pyd
- MOD - [2015.10.25 05:00:26 | 000,075,264 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\sip.pyd
- MOD - [2015.02.24 23:44:18 | 000,783,360 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\_hashlib.pyd
- MOD - [2015.02.24 23:43:36 | 000,084,992 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\_ctypes.pyd
- MOD - [2015.02.24 23:43:34 | 000,009,728 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\select.pyd
- MOD - [2015.02.24 23:43:24 | 000,053,760 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\_bz2.pyd
- MOD - [2015.02.24 23:43:20 | 000,758,784 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\unicodedata.pyd
- MOD - [2015.02.24 23:43:20 | 000,137,216 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\_lzma.pyd
- MOD - [2015.02.24 23:43:18 | 000,047,104 | ---- | M] () -- D:\TSM\TradeSkillMaster Application\app\_socket.pyd
- [color=#E56717]========== Services (SafeList) ==========[/color]
- SRV:[b]64bit:[/b] - [2019.07.04 06:25:01 | 003,401,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
- SRV:[b]64bit:[/b] - [2019.07.04 06:24:31 | 000,153,600 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\dssvc.dll -- (DsSvc)
- SRV:[b]64bit:[/b] - [2019.07.04 06:21:43 | 001,220,608 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Unistore.dll -- (UnistoreSvc)
- SRV:[b]64bit:[/b] - [2019.06.13 09:46:09 | 000,713,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SharedRealitySvc.dll -- (SharedRealitySvc)
- SRV:[b]64bit:[/b] - [2019.06.13 08:44:39 | 001,033,696 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ClipSVC.dll -- (ClipSVC)
- SRV:[b]64bit:[/b] - [2019.06.13 08:10:04 | 001,400,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TokenBroker.dll -- (TokenBroker)
- SRV:[b]64bit:[/b] - [2019.06.11 11:37:42 | 000,363,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\rempl\sedsvc.exe -- (sedsvc)
- SRV:[b]64bit:[/b] - [2019.06.07 12:40:47 | 001,364,992 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\bcastdvruserservice.dll -- (BcastDVRUserService)
- SRV:[b]64bit:[/b] - [2019.06.07 07:18:57 | 000,686,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
- SRV:[b]64bit:[/b] - [2019.05.22 23:51:24 | 000,782,136 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe -- (NVDisplay.ContainerLocalSystem)
- SRV:[b]64bit:[/b] - [2019.05.22 15:40:07 | 000,782,136 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe -- (NvTelemetryContainer)
- SRV:[b]64bit:[/b] - [2019.05.17 07:33:56 | 003,091,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
- SRV:[b]64bit:[/b] - [2019.05.17 07:33:39 | 001,487,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\InstallService.dll -- (InstallService)
- SRV:[b]64bit:[/b] - [2019.05.17 07:31:35 | 001,027,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\usermgr.dll -- (UserManager)
- SRV:[b]64bit:[/b] - [2019.05.17 07:31:23 | 001,383,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\usocore.dll -- (UsoSvc)
- SRV:[b]64bit:[/b] - [2019.05.03 08:00:17 | 000,090,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe -- (diagnosticshub.standardcollector.service)
- SRV:[b]64bit:[/b] - [2019.05.03 07:56:29 | 000,773,632 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
- SRV:[b]64bit:[/b] - [2019.04.19 06:36:47 | 000,827,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Windows.Internal.Management.dll -- (DmEnrollmentSvc)
- SRV:[b]64bit:[/b] - [2019.04.19 06:35:53 | 001,458,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dosvc.dll -- (DoSvc)
- SRV:[b]64bit:[/b] - [2019.04.19 06:35:22 | 000,784,896 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ngcsvc.dll -- (NgcSvc)
- SRV:[b]64bit:[/b] - [2019.03.14 09:50:42 | 000,847,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
- SRV:[b]64bit:[/b] - [2019.03.14 09:50:38 | 000,947,200 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
- SRV:[b]64bit:[/b] - [2019.02.27 18:35:08 | 000,782,136 | ---- | M] (NVIDIA Corporation) [On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -- (NvContainerNetworkService)
- SRV:[b]64bit:[/b] - [2019.02.27 18:35:08 | 000,782,136 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -- (NvContainerLocalSystem)
- SRV:[b]64bit:[/b] - [2019.02.16 09:27:02 | 001,364,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lpasvc.dll -- (wlpasvc)
- SRV:[b]64bit:[/b] - [2019.02.06 04:25:27 | 000,507,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\svchost.exe -- (WpnUserService_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (PrintWorkflowUserSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (DevicesFlowUserSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (DevicePickerUserSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\svchost.exe -- (CDPUserSvc_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (BluetoothUserService_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:39:42 | 000,085,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svchost.exe -- (BcastDVRUserService_2e5de15)
- SRV:[b]64bit:[/b] - [2019.01.09 07:22:57 | 000,392,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WaaSMedicSvc.dll -- (WaaSMedicSvc)
- SRV:[b]64bit:[/b] - [2019.01.09 07:22:42 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\CapabilityAccessManager.dll -- (camsvc)
- SRV:[b]64bit:[/b] - [2019.01.01 08:42:29 | 002,247,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
- SRV:[b]64bit:[/b] - [2018.12.08 10:04:40 | 000,885,760 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CoreMessaging.dll -- (CoreMessagingRegistrar)
- SRV:[b]64bit:[/b] - [2018.12.08 09:36:32 | 000,356,352 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dusmsvc.dll -- (DusmSvc)
- SRV:[b]64bit:[/b] - [2018.12.08 09:36:23 | 000,153,600 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\RMapi.dll -- (RmSvc)
- SRV:[b]64bit:[/b] - [2018.11.09 04:20:34 | 000,092,160 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\tzautoupdate.dll -- (tzautoupdate)
- SRV:[b]64bit:[/b] - [2018.11.09 04:20:24 | 000,399,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\BthAvctpSvc.dll -- (BthAvctpSvc)
- SRV:[b]64bit:[/b] - [2018.11.09 04:18:30 | 000,514,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BTAGService.dll -- (BTAGService)
- SRV:[b]64bit:[/b] - [2018.11.09 04:16:04 | 000,308,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll -- (EntAppSvc)
- SRV:[b]64bit:[/b] - [2018.11.01 08:59:14 | 000,241,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tetheringservice.dll -- (icssvc)
- SRV:[b]64bit:[/b] - [2018.11.01 08:57:53 | 000,835,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\PhoneService.dll -- (PhoneSvc)
- SRV:[b]64bit:[/b] - [2018.11.01 08:57:04 | 000,281,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
- SRV:[b]64bit:[/b] - [2018.10.21 09:14:53 | 000,632,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cdpsvc.dll -- (CDPSvc)
- SRV:[b]64bit:[/b] - [2018.10.21 09:14:29 | 000,453,632 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\cdpusersvc.dll -- (CDPUserSvc)
- SRV:[b]64bit:[/b] - [2018.10.05 10:43:58 | 000,206,472 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe -- (LogiRegistryService)
- SRV:[b]64bit:[/b] - [2018.09.08 05:24:26 | 000,463,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
- SRV:[b]64bit:[/b] - [2018.08.03 05:41:01 | 000,061,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hvhostsvc.dll -- (HvHost)
- SRV:[b]64bit:[/b] - [2018.07.14 06:23:08 | 000,760,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SecurityHealthService.exe -- (SecurityHealthService)
- SRV:[b]64bit:[/b] - [2018.07.14 05:54:10 | 000,262,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\PushToInstall.dll -- (PushToInstall)
- SRV:[b]64bit:[/b] - [2018.07.14 05:53:02 | 000,681,984 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WFDSConMgrSvc.dll -- (WFDSConMgrSvc)
- SRV:[b]64bit:[/b] - [2018.07.06 08:58:32 | 000,091,136 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\moshost.dll -- (MapsBroker)
- SRV:[b]64bit:[/b] - [2018.06.15 06:41:49 | 000,235,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
- SRV:[b]64bit:[/b] - [2018.06.08 18:06:33 | 000,976,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Spectrum.exe -- (spectrum)
- SRV:[b]64bit:[/b] - [2018.06.08 11:29:32 | 004,970,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\Windows.StateRepository.dll -- (StateRepository)
- SRV:[b]64bit:[/b] - [2018.06.08 10:59:09 | 000,673,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FrameServer.dll -- (FrameServer)
- SRV:[b]64bit:[/b] - [2018.06.08 10:56:37 | 000,858,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FlightSettings.dll -- (wisvc)
- SRV:[b]64bit:[/b] - [2018.06.08 10:55:04 | 000,667,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
- SRV:[b]64bit:[/b] - [2018.05.20 13:31:30 | 001,456,640 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WpcDesktopMonSvc.dll -- (WpcMonSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:35:21 | 000,681,984 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\RDXService.dll -- (RetailDemo)
- SRV:[b]64bit:[/b] - [2018.04.12 01:35:21 | 000,427,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WalletService.dll -- (WalletService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:35:21 | 000,400,896 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Windows.Devices.Picker.dll -- (DevicePickerUserSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,824,832 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NaturalAuth.dll -- (NaturalAuthentication)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,590,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SmsRouterSvc.dll -- (SmsRouter)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,121,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:41 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:40 | 000,013,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:39 | 000,219,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DiagSvc.dll -- (diagsvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:38 | 000,671,744 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:37 | 000,303,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\TieringEngineService.exe -- (TieringEngineService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:37 | 000,198,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:34 | 001,273,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorDataService.exe -- (SensorDataService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:33 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\PrintWorkflowService.dll -- (PrintWorkflowUserSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:25 | 000,058,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:24 | 000,081,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:24 | 000,027,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:23 | 000,167,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,335,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NetSetupSvc.dll -- (NetSetupSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,089,088 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:19 | 000,750,080 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\DevicesFlowBroker.dll -- (DevicesFlowUserSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:19 | 000,195,584 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\Windows.SharedPC.AccountManager.dll -- (shpamsvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,712,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorService.dll -- (SensorService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,057,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dmwappushsvc.dll -- (dmwappushservice)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,023,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 001,495,040 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\UserDataService.dll -- (UserDataSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,582,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NgcCtnrSvc.dll -- (NgcCtnrSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,345,600 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,280,576 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wpnservice.dll -- (WpnService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\PimIndexMaintenance.dll -- (PimIndexMaintenanceSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,176,128 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBrokerSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,096,768 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\WpnUserService.dll -- (WpnUserService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,058,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\xboxgipsvc.dll -- (XboxGipSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,044,544 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lfsvc.dll -- (lfsvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 001,248,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SEMgrSvc.dll -- (SEMgrSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,376,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,048,640 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\LicenseManagerSvc.dll -- (LicenseManager)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:10 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DevQueryBroker.dll -- (DevQueryBroker)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 001,308,672 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblGameSave.dll -- (XblGameSave)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,167,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\embeddedmodesvc.dll -- (embeddedmode)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GraphicsPerfSvc.dll -- (GraphicsPerfSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,059,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\xbgmsvc.exe -- (xbgm)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:08 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Windows.WARP.JITService.dll -- (WarpJITSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:07 | 001,115,648 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\XblAuthManager.dll -- (XblAuthManager)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:06 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AJRouter.dll -- (AJRouter)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 001,148,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XboxNetApiSvc.dll -- (XboxNetApiSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,411,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vac.dll -- (VacSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,199,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\LanguageOverlayServer.dll -- (LxpSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,163,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SgrmBroker.exe -- (SgrmBroker)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,052,224 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\MessagingService.dll -- (MessagingService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:02 | 000,464,384 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Microsoft.Bluetooth.UserService.dll -- (BluetoothUserService)
- SRV:[b]64bit:[/b] - [2018.04.12 01:34:02 | 000,063,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ipxlatcfg.dll -- (IpxlatCfgSvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 002,197,408 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,309,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvcext.dll -- (vmicvss)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,309,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvcext.dll -- (vmicrdv)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvmsession)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
- SRV:[b]64bit:[/b] - [2018.04.12 01:33:47 | 003,441,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
- SRV:[b]64bit:[/b] - [2018.04.10 23:05:00 | 000,324,608 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\APHostService.dll -- (OneSyncSvc)
- SRV:[b]64bit:[/b] - [2018.03.10 20:20:00 | 000,495,616 | ---- | M] () [Disabled | Stopped] -- C:\Windows\SysNative\OpenSSH\ssh-agent.exe -- (ssh-agent)
- SRV:[b]64bit:[/b] - [2017.04.24 09:55:52 | 001,471,168 | ---- | M] (Disc Soft Ltd) [On_Demand | Stopped] -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe -- (Disc Soft Lite Bus Service)
- SRV:[b]64bit:[/b] - [2015.05.22 01:24:00 | 000,881,152 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
- SRV - [2019.07.26 15:38:30 | 002,552,416 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\NisSrv.exe -- (WdNisSvc)
- SRV - [2019.07.26 15:38:30 | 000,108,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\MsMpEng.exe -- (WinDefend)
- SRV - [2019.07.24 07:37:30 | 000,943,240 | ---- | M] (Razer Inc.) [Auto | Running] -- C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe -- (Razer Chroma SDK Service)
- SRV - [2019.07.24 07:37:30 | 000,447,080 | ---- | M] (Razer Inc.) [Auto | Running] -- C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe -- (Razer Chroma SDK Server)
- SRV - [2019.07.17 09:27:52 | 001,695,008 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
- SRV - [2019.07.13 01:11:51 | 001,098,224 | ---- | M] (Google LLC) [On_Demand | Stopped] -- C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.142\elevation_service.exe -- (GoogleChromeElevationService)
- SRV - [2019.07.12 09:23:32 | 003,206,448 | ---- | M] (Electronic Arts) [Auto | Running] -- D:\Origin\OriginWebHelperService.exe -- (Origin Web Helper Service)
- SRV - [2019.07.12 09:23:26 | 002,332,464 | ---- | M] (Electronic Arts) [On_Demand | Stopped] -- D:\Origin\OriginClientService.exe -- (Origin Client Service)
- SRV - [2019.07.09 19:08:05 | 000,335,416 | ---- | M] (Adobe) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
- SRV - [2019.07.04 06:18:19 | 000,965,632 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\Unistore.dll -- (UnistoreSvc)
- SRV - [2019.06.13 06:44:26 | 001,003,008 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\TokenBroker.dll -- (TokenBroker)
- SRV - [2019.05.17 08:19:08 | 001,110,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\InstallService.dll -- (InstallService)
- SRV - [2019.04.19 06:38:40 | 000,593,408 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Windows.Internal.Management.dll -- (DmEnrollmentSvc)
- SRV - [2018.12.09 18:14:42 | 000,781,440 | ---- | M] (EasyAntiCheat Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe -- (EasyAntiCheat)
- SRV - [2018.12.08 09:45:30 | 000,567,256 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\CoreMessaging.dll -- (CoreMessagingRegistrar)
- SRV - [2018.10.06 10:38:28 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
- SRV - [2018.08.15 07:36:47 | 007,212,480 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\BattlEye\BEService.exe -- (BEService)
- SRV - [2018.06.08 11:09:43 | 004,469,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\Windows.StateRepository.dll -- (StateRepository)
- SRV - [2018.06.08 10:54:26 | 000,729,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\FlightSettings.dll -- (wisvc)
- SRV - [2018.04.12 01:35:22 | 000,312,832 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\Windows.Devices.Picker.dll -- (DevicePickerUserSvc)
- SRV - [2018.04.12 01:34:57 | 000,138,240 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\PrintWorkflowService.dll -- (PrintWorkflowUserSvc)
- SRV - [2018.04.12 01:34:45 | 000,072,192 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysWOW64\tzautoupdate.dll -- (tzautoupdate)
- SRV - [2018.04.12 01:34:45 | 000,020,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
- SRV - [2018.04.12 01:33:47 | 003,441,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
- SRV - [2017.07.12 20:29:01 | 000,175,560 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
- SRV - [2017.05.10 03:17:00 | 007,770,888 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
- SRV - [2015.07.10 23:40:08 | 000,223,520 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
- SRV - [2015.07.10 23:38:00 | 000,415,520 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
- SRV - [2015.05.19 09:11:04 | 000,007,680 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe -- (isaHelperSvc)
- SRV - [2015.05.19 09:11:00 | 000,335,872 | ---- | M] (Intel Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe -- (Intel(R)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV:[b]64bit:[/b] - [2019.07.26 15:38:30 | 000,344,288 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\wd\WdFilter.sys -- (WdFilter)
- DRV:[b]64bit:[/b] - [2019.07.26 15:38:30 | 000,054,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wd\WdNisDrv.sys -- (WdNisDrv)
- DRV:[b]64bit:[/b] - [2019.07.26 15:38:30 | 000,047,496 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\wd\WdBoot.sys -- (WdBoot)
- DRV:[b]64bit:[/b] - [2019.06.07 07:58:50 | 000,076,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hvservice.sys -- (hvservice)
- DRV:[b]64bit:[/b] - [2019.06.07 07:57:00 | 000,383,504 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
- DRV:[b]64bit:[/b] - [2019.05.23 18:22:12 | 021,836,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\nv_dispi.inf_amd64_b49751b9038af669\nvlddmkm.sys -- (nvlddmkm)
- DRV:[b]64bit:[/b] - [2019.05.17 09:07:32 | 000,105,272 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
- DRV:[b]64bit:[/b] - [2019.05.17 07:36:02 | 000,228,864 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winnat.sys -- (WinNat)
- DRV:[b]64bit:[/b] - [2019.05.17 07:33:34 | 000,787,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdiWiFi.sys -- (wdiwifi)
- DRV:[b]64bit:[/b] - [2019.05.10 17:13:10 | 000,030,336 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
- DRV:[b]64bit:[/b] - [2019.05.06 07:35:31 | 000,228,608 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
- DRV:[b]64bit:[/b] - [2019.05.03 08:43:05 | 000,177,128 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
- DRV:[b]64bit:[/b] - [2019.05.03 08:32:10 | 000,164,664 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
- DRV:[b]64bit:[/b] - [2019.04.17 06:44:20 | 000,075,600 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvhci.sys -- (nvvhci)
- DRV:[b]64bit:[/b] - [2019.03.19 07:42:20 | 000,069,840 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
- DRV:[b]64bit:[/b] - [2019.03.14 16:33:58 | 000,082,432 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\storqosflt.sys -- (storqosflt)
- DRV:[b]64bit:[/b] - [2019.03.14 10:57:04 | 000,611,640 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
- DRV:[b]64bit:[/b] - [2019.03.14 10:28:15 | 000,152,072 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\wcifs.sys -- (wcifs)
- DRV:[b]64bit:[/b] - [2019.03.14 09:55:51 | 000,414,720 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\cldflt.sys -- (CldFlt)
- DRV:[b]64bit:[/b] - [2019.03.06 11:04:46 | 000,945,464 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refsv1.sys -- (ReFSv1)
- DRV:[b]64bit:[/b] - [2019.03.06 11:03:04 | 001,921,848 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refs.sys -- (ReFS)
- DRV:[b]64bit:[/b] - [2019.01.09 07:42:08 | 000,092,704 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bindflt.sys -- (bindflt)
- DRV:[b]64bit:[/b] - [2018.12.08 10:04:38 | 000,058,168 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iorate.sys -- (iorate)
- DRV:[b]64bit:[/b] - [2018.12.08 09:38:30 | 000,083,456 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wcnfs.sys -- (wcnfs)
- DRV:[b]64bit:[/b] - [2018.12.08 09:36:56 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mmcss.sys -- (MMCSS)
- DRV:[b]64bit:[/b] - [2018.11.09 04:49:37 | 000,565,048 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
- DRV:[b]64bit:[/b] - [2018.11.09 04:21:11 | 000,112,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
- DRV:[b]64bit:[/b] - [2018.10.21 09:19:52 | 000,036,352 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhf.sys -- (vhf)
- DRV:[b]64bit:[/b] - [2018.10.05 10:44:14 | 000,067,736 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGJoyXlCore.sys -- (LGJoyXlCore)
- DRV:[b]64bit:[/b] - [2018.10.05 10:44:14 | 000,036,496 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGBusEnum.sys -- (LGBusEnum)
- DRV:[b]64bit:[/b] - [2018.10.05 10:44:14 | 000,026,008 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGVirHid.sys -- (LGVirHid)
- DRV:[b]64bit:[/b] - [2018.08.09 06:55:01 | 000,230,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
- DRV:[b]64bit:[/b] - [2018.08.03 05:47:12 | 000,128,920 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\scmbus.sys -- (scmbus)
- DRV:[b]64bit:[/b] - [2018.08.03 05:40:48 | 000,228,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ucx01000.sys -- (Ucx01000)
- DRV:[b]64bit:[/b] - [2018.08.03 05:39:58 | 000,075,160 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
- DRV:[b]64bit:[/b] - [2018.08.03 05:17:05 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgid.sys -- (vmgid)
- DRV:[b]64bit:[/b] - [2018.06.15 09:10:52 | 000,048,544 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storufs.sys -- (storufs)
- DRV:[b]64bit:[/b] - [2018.06.15 07:08:14 | 000,072,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRT.sys -- (WindowsTrustedRT)
- DRV:[b]64bit:[/b] - [2018.06.15 06:44:07 | 000,295,424 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xboxgip.sys -- (xboxgip)
- DRV:[b]64bit:[/b] - [2018.06.08 12:31:08 | 000,029,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
- DRV:[b]64bit:[/b] - [2018.04.12 17:53:58 | 000,037,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
- DRV:[b]64bit:[/b] - [2018.04.12 17:53:57 | 000,057,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpatialGraphFilter.sys -- (SpatialGraphFilter)
- DRV:[b]64bit:[/b] - [2018.04.12 17:53:55 | 000,030,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:43 | 000,119,808 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\irda.sys -- (irda)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:40 | 000,091,544 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:40 | 000,060,320 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bam.sys -- (bam)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,128,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,084,480 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,039,424 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\afunix.sys -- (afunix)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:32 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:28 | 000,254,464 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:25 | 000,088,472 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,175,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NetAdapterCx.sys -- (NetAdapterCx)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:22 | 000,034,208 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:20 | 000,217,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:20 | 000,209,816 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\drivers\wof.sys -- (Wof)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:19 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\applockerfltr.sys -- (applockerfltr)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:15 | 000,021,408 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdmCompanionFilter.sys -- (WdmCompanionFilter)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,282,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufx01000.sys -- (Ufx01000)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,154,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,152,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmTcpciCx.sys -- (UcmTcpciCx0101)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,128,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmCx.sys -- (UcmCx0101)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,075,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,067,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urscx01000.sys -- (UrsCx01000)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,039,328 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\cnghwassist.sys -- (cnghwassist)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IndirectKmd.sys -- (IndirectKmd)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshwnclx.sys -- (HwNClx0101)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:14 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,169,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,082,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:12 | 000,055,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,128,000 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,063,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SgrmAgent.sys -- (SgrmAgent)
- DRV:[b]64bit:[/b] - [2018.04.12 01:34:04 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\gpuenergydrv.sys -- (GpuEnergyDrv)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:58 | 000,030,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,140,192 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,127,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,055,808 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\filecrypt.sys -- (FileCrypt)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Udecx.sys -- (UdeCx)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,039,840 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\ramdisk.sys -- (Ramdisk)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:54 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ipt.sys -- (IPT)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,434,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,287,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,099,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb22.sys -- (xusb22)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,097,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmUcsi.sys -- (UcmUcsi)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,054,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,050,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,050,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidinterrupt.sys -- (hidinterrupt)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xinputhid.sys -- (xinputhid)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,039,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\buttonconverter.sys -- (buttonconverter)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,026,112 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:52 | 000,018,472 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys -- (WindowsTrustedRTProxy)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,144,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufxsynopsys.sys -- (ufxsynopsys)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,098,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UfxChipidea.sys -- (UfxChipidea)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,029,088 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urschipidea.sys -- (UrsChipidea)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,028,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urssynopsys.sys -- (UrsSynopsys)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:51 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\genericusbfn.sys -- (genericusbfn)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 001,836,952 | ---- | M] (Chelsio Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\cht4vx64.sys -- (cht4vbd)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,885,144 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAVC.sys -- (iaStorAVC)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,842,648 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mlx4_bus.sys -- (mlx4_bus)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,526,232 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ibbus.sys -- (ibbus)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,505,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mausbhost.sys -- (mausbhost)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,321,432 | ---- | M] (Chelsio Communications) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\cht4sx64.sys -- (cht4iscsi)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,305,560 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,197,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc.sys -- (netvsc)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,156,056 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,108,952 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndfltr.sys -- (ndfltr)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,105,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pmem.sys -- (pmem)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,104,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvdimm.sys -- (nvdimm)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,079,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,072,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,064,920 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winverbs.sys -- (WinVerbs)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,064,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,061,848 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas3i.sys -- (percsas3i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,058,776 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas2i.sys -- (percsas2i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,056,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mausbip.sys -- (mausbip)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,047,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,038,304 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bttflt.sys -- (bttflt)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,033,184 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\hvcrash.sys -- (hvcrash)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,033,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SDFRd.sys -- (SDFRd)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,032,152 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winmad.sys -- (WinMad)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,031,128 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,028,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,018,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\swenum.inf_amd64_ea7b19c04e7a8136\swenum.sys -- (swenum)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,016,288 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\volume.sys -- (volume)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:49 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 003,419,032 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 001,135,520 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,533,912 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,259,480 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,145,816 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\ItSas35i.sys -- (ItSas35i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,128,408 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3i.sys -- (LSI_SAS3i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,124,312 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2i.sys -- (LSI_SAS2i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,123,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\capimg.sys -- (CapImg)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,107,416 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,104,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rhproxy.sys -- (rhproxy)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,083,360 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,082,848 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,082,328 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\megasas35i.sys -- (megasas35i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,075,160 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\MegaSas2i.sys -- (megasas2i)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,064,408 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,063,904 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,038,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,027,032 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,020,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AcpiDev.sys -- (AcpiDev)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pnpmem.sys -- (PNPMEM)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:48 | 000,009,728 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,174,592 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C_BXT_P.sys -- (iaLPSS2i_I2C_BXT_P)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,171,520 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C.sys -- (iaLPSS2i_I2C)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,118,680 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,113,152 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,091,648 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iai2c.sys -- (iai2c)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,088,576 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_BXT_P.sys -- (iaLPSS2i_GPIO2_BXT_P)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,079,360 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2.sys -- (iaLPSS2i_GPIO2)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,060,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CAD.sys -- (CAD)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys -- (CompositeBus)
- DRV:[b]64bit:[/b] - [2018.04.12 01:33:45 | 000,036,864 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iagpio.sys -- (iagpio)
- DRV:[b]64bit:[/b] - [2017.06.15 17:20:27 | 000,047,672 | ---- | M] (Disc Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtliteusbbus.sys -- (dtliteusbbus)
- DRV:[b]64bit:[/b] - [2017.06.15 17:20:22 | 000,030,264 | ---- | M] (Disc Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtlitescsibus.sys -- (dtlitescsibus)
- DRV:[b]64bit:[/b] - [2017.05.18 22:17:30 | 000,166,288 | ---- | M] (Samsung Electronics Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm)
- DRV:[b]64bit:[/b] - [2017.05.18 22:17:28 | 000,131,984 | ---- | M] (Samsung Electronics Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus)
- DRV:[b]64bit:[/b] - [2016.10.30 14:44:46 | 000,204,824 | ---- | M] (Razer Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rzudd.sys -- (rzudd)
- DRV:[b]64bit:[/b] - [2016.10.30 14:44:40 | 000,048,144 | ---- | M] (Razer Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rzmpos.sys -- (rzmpos)
- DRV:[b]64bit:[/b] - [2016.10.30 14:41:22 | 000,052,240 | ---- | M] (Razer Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rzendpt.sys -- (rzendpt)
- DRV:[b]64bit:[/b] - [2015.07.07 20:45:12 | 000,184,608 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverW8x64.sys -- (MEIx64)
- DRV:[b]64bit:[/b] - [2015.06.22 05:42:30 | 001,455,552 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
- DRV:[b]64bit:[/b] - [2015.06.21 22:13:48 | 000,014,184 | ---- | M] (Logitech) [Kernel | Auto | Running] -- C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\LgCoreTemp.sys -- (LGCoreTemp)
- DRV:[b]64bit:[/b] - [2015.05.29 04:14:22 | 000,886,528 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rt640x64.sys -- (rt640x64)
- DRV:[b]64bit:[/b] - [2010.04.06 19:33:10 | 000,030,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btnetBus.sys -- (btnetBUs)
- DRV:[b]64bit:[/b] - [2010.04.06 19:32:48 | 000,027,016 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IvtBtBus.sys -- (IvtBtBUs)
- DRV:[b]64bit:[/b] - [2010.04.06 19:32:46 | 000,023,944 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BtHidBus.sys -- (BtHidBus)
- DRV - [2019.07.20 16:50:18 | 000,058,120 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3432F20F-B53E-40D5-A9FA-1131E42319A4}\MpKsl6e12c681.sys -- (MpKsl6e12c681)
- DRV - [2019.05.23 18:22:12 | 021,836,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b49751b9038af669\nvlddmkm.sys -- (nvlddmkm)
- DRV - [2019.02.21 10:54:24 | 000,163,644 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | Auto | Stopped] -- C:\Windows\SysWOW64\drivers\SECDRV.SYS -- (SecDrv)
- DRV - [2018.04.12 01:34:58 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\afunix.sys -- (afunix)
- DRV - [2018.04.12 01:33:49 | 000,018,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_ea7b19c04e7a8136\swenum.sys -- (swenum)
- DRV - [2018.04.12 01:33:45 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_bcb89b3386563bd7\CompositeBus.sys -- (CompositeBus)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {8B291E72-FA25-4C05-876F-F8666F245780}
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{8B291E72-FA25-4C05-876F-F8666F245780}: "URL" = http://www.x-kom.pl
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
- IE - HKLM\..\SearchScopes,DefaultScope = {8B291E72-FA25-4C05-876F-F8666F245780}
- IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKLM\..\SearchScopes\{8B291E72-FA25-4C05-876F-F8666F245780}: "URL" = http://www.x-kom.pl
- IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
- IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
- IE - HKU\S-1-5-21-2494736131-166126135-3829581492-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.x-kom.pl
- IE - HKU\S-1-5-21-2494736131-166126135-3829581492-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
- IE - HKU\S-1-5-21-2494736131-166126135-3829581492-1002\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
- IE - HKU\S-1-5-21-2494736131-166126135-3829581492-1002\..\SearchScopes,DefaultScope = {8B291E72-FA25-4C05-876F-F8666F245780}
- IE - HKU\S-1-5-21-2494736131-166126135-3829581492-1002\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
- IE - HKU\S-1-5-21-2494736131-166126135-3829581492-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..browser.search.countryCode: "PL"
- FF - prefs.js..browser.search.region: "PL"
- FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:54.0.1
- FF - user.js - File not found
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll (Google LLC)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll (Google LLC)
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 54.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 54.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
- FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 54.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
- FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 54.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
- [2017.07.12 20:11:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\czpio\AppData\Roaming\mozilla\Extensions
- [2017.07.12 20:29:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
- [2019.05.02 10:13:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\updated\browser\extensions
- O1 HOSTS File: ([2016.07.16 13:45:37 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
- O4:[b]64bit:[/b] - HKLM..\Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.)
- O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
- O4:[b]64bit:[/b] - HKLM..\Run: [SecurityHealth] C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Corporation)
- O4:[b]64bit:[/b] - HKLM..\Run: [XboxStat] C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe (Microsoft Corporation)
- O4:[b]64bit:[/b] - HKLM..\Run: [XMouseButtonControl] C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe (Highresolution Enterprises)
- O4 - HKLM..\Run: [] File not found
- O4 - HKLM..\Run: [Razer Synapse] C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Razer Inc.)
- O4 - HKU\S-1-5-19..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
- O4 - HKU\S-1-5-20..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" File not found
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [DAEMON Tools Lite Automount] C:\Program Files\DAEMON Tools Lite\DTAgent.exe (Disc Soft Ltd)
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [Discord] C:\Users\czpio\AppData\Local\Discord\app-0.0.305\Discord.exe (Discord Inc.)
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [EpicGamesLauncher] "D:\Fortnite\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent File not found
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [Gaijin.Net Agent] C:\Users\czpio\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe (Gaijin Entertainment)
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
- O4 - HKU\S-1-5-21-2494736131-166126135-3829581492-1002..\Run: [Spotify] C:\Users\czpio\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd)
- O4 - HKU\S-1-5-19..\RunOnce: [WAB Migrate] C:\Program Files (x86)\Windows Mail\wab.exe (Microsoft Corporation)
- O4 - HKU\S-1-5-20..\RunOnce: [WAB Migrate] C:\Program Files (x86)\Windows Mail\wab.exe (Microsoft Corporation)
- O4 - Startup: C:\Users\czpio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk = C:\Users\czpio\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc.)
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableFullTrustStartupTasks = 2
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUwpStartupTasks = 2
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportFullTrustStartupTasks = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportUwpStartupTasks = 1
- O13[b]64bit:[/b] - gopher Prefix: missing
- O13 - gopher Prefix: missing
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.100.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3e0ad316-6032-4127-8c93-f27bd0af7a07}: DhcpNameServer = 192.168.100.1
- O18:[b]64bit:[/b] - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
- O18:[b]64bit:[/b] - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
- O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
- O18 - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
- O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O32 - HKLM CDRom: AutoRun - 1
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
- O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
- O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2019.07.24 07:37:30 | 000,129,672 | ---- | C] (Razer Inc.) -- C:\WINDOWS\SysNative\RzChromaSDK64.dll
- [2019.07.24 07:37:30 | 000,111,240 | ---- | C] (Razer Inc.) -- C:\WINDOWS\SysWow64\RzChromaSDK.dll
- [2019.07.23 21:06:06 | 000,000,000 | ---D | C] -- C:\Users\czpio\AppData\Roaming\Blitz-helpers
- [2019.07.14 14:28:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Destiny 2
- [2019.07.09 19:17:25 | 001,003,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
- [2019.07.09 19:17:25 | 000,916,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
- [2019.07.09 19:17:25 | 000,681,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll
- [2019.07.09 19:17:25 | 000,607,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TextInputFramework.dll
- [2019.07.09 19:17:25 | 000,433,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
- [2019.07.09 19:17:25 | 000,322,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe
- [2019.07.09 19:17:24 | 006,586,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
- [2019.07.09 19:17:24 | 005,657,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
- [2019.07.09 19:17:24 | 004,847,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll
- [2019.07.09 19:17:24 | 004,718,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.pcshell.dll
- [2019.07.09 19:17:24 | 001,175,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
- [2019.07.09 19:17:24 | 000,330,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptprov.dll
- [2019.07.09 19:17:24 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptprov.dll
- [2019.07.09 19:17:23 | 007,519,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
- [2019.07.09 19:17:21 | 006,570,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
- [2019.07.09 19:17:20 | 003,554,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputService.dll
- [2019.07.09 19:17:20 | 002,899,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
- [2019.07.09 19:17:20 | 002,406,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AcGenral.dll
- [2019.07.09 19:17:20 | 001,626,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll
- [2019.07.09 19:17:20 | 001,427,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxPackaging.dll
- [2019.07.09 19:17:20 | 001,130,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msvproc.dll
- [2019.07.09 19:17:20 | 000,871,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.BackgroundMediaPlayback.dll
- [2019.07.09 19:17:20 | 000,849,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Playback.MediaPlayer.dll
- [2019.07.09 19:17:20 | 000,755,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Core.TextInput.dll
- [2019.07.09 19:17:20 | 000,677,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HeadTrackerStorage.dll
- [2019.07.09 19:17:20 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.BackgroundMediaPlayback.dll
- [2019.07.09 19:17:20 | 000,646,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Playback.BackgroundMediaPlayer.dll
- [2019.07.09 19:17:20 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Playback.MediaPlayer.dll
- [2019.07.09 19:17:20 | 000,582,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
- [2019.07.09 19:17:20 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TDLMigration.dll
- [2019.07.09 19:17:20 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dssvc.dll
- [2019.07.09 19:17:20 | 000,137,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputLocaleManager.dll
- [2019.07.09 19:17:20 | 000,130,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rmclient.dll
- [2019.07.09 19:17:20 | 000,101,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rmclient.dll
- [2019.07.09 19:17:19 | 004,771,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
- [2019.07.09 19:17:19 | 001,566,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxPackaging.dll
- [2019.07.09 19:17:19 | 001,549,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
- [2019.07.09 19:17:19 | 000,624,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PsmServiceExtHost.dll
- [2019.07.09 19:17:19 | 000,362,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.ApplicationData.dll
- [2019.07.09 19:17:19 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AcGenral.dll
- [2019.07.09 19:17:18 | 003,318,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
- [2019.07.09 19:17:18 | 000,869,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Playback.BackgroundMediaPlayer.dll
- [2019.07.09 19:17:17 | 025,857,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
- [2019.07.09 19:17:17 | 001,098,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvproc.dll
- [2019.07.09 19:17:17 | 001,076,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdpcore.dll
- [2019.07.09 19:17:16 | 008,627,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
- [2019.07.09 19:17:16 | 007,990,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
- [2019.07.09 19:17:16 | 002,571,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
- [2019.07.09 19:17:16 | 000,767,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
- [2019.07.09 19:17:10 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcpopkeysrv.dll
- [2019.07.09 19:17:08 | 000,662,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe
- [2019.07.09 19:17:07 | 022,017,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
- [2019.07.09 19:17:07 | 003,202,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll
- [2019.07.09 19:17:07 | 002,546,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UpdateAgent.dll
- [2019.07.09 19:17:07 | 000,790,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontdrvhost.exe
- [2019.07.09 19:17:06 | 001,721,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
- [2019.07.09 19:17:05 | 009,084,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
- [2019.07.09 19:17:05 | 000,604,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\securekernel.exe
- [2019.07.09 19:17:05 | 000,545,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hal.dll
- [2019.07.09 19:17:04 | 007,589,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
- [2019.07.09 19:17:04 | 007,436,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
- [2019.07.09 19:17:03 | 005,625,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StartTileData.dll
- [2019.07.09 19:17:03 | 001,400,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
- [2019.07.09 19:17:03 | 000,922,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
- [2019.07.09 19:17:02 | 001,616,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppobjs.dll
- [2019.07.09 19:17:02 | 001,376,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ole32.dll
- [2019.07.09 19:17:02 | 001,328,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpx.dll
- [2019.07.09 19:17:02 | 001,217,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcore.dll
- [2019.07.09 19:17:02 | 000,251,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppwinob.dll
- [2019.07.09 19:17:01 | 006,044,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
- [2019.07.09 19:17:01 | 005,784,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
- [2019.07.09 19:17:01 | 000,953,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
- [2019.07.09 19:17:01 | 000,723,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ci.dll
- [2019.07.09 19:17:01 | 000,287,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.ApplicationData.dll
- [2019.07.09 19:17:01 | 000,194,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\skci.dll
- [2019.07.09 19:17:00 | 004,861,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
- [2019.07.09 19:17:00 | 004,385,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeContent.dll
- [2019.07.09 19:17:00 | 003,614,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
- [2019.07.09 19:17:00 | 003,292,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
- [2019.07.09 19:16:59 | 004,038,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
- [2019.07.09 19:16:59 | 002,882,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
- [2019.07.09 19:16:59 | 001,127,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nettrace.dll
- [2019.07.09 19:16:59 | 000,951,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppcext.dll
- [2019.07.09 19:16:59 | 000,785,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pkeyhelper.dll
- [2019.07.09 19:16:59 | 000,766,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicensingWinRT.dll
- [2019.07.09 19:16:59 | 000,713,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedRealitySvc.dll
- [2019.07.09 19:16:59 | 000,660,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicensingWinRT.dll
- [2019.07.09 19:16:59 | 000,622,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tdh.dll
- [2019.07.09 19:16:59 | 000,566,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\phoneactivate.exe
- [2019.07.09 19:16:59 | 000,523,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenrollengine.dll
- [2019.07.09 19:16:59 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmenrollengine.dll
- [2019.07.09 19:16:59 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
- [2019.07.09 19:16:59 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\enrollmentapi.dll
- [2019.07.09 19:16:59 | 000,137,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcrypt.dll
- [2019.07.09 19:16:58 | 003,700,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
- [2019.07.09 19:16:58 | 003,401,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
- [2019.07.09 19:16:58 | 000,765,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tdh.dll
- [2019.07.09 19:16:58 | 000,761,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshwfp.dll
- [2019.07.09 19:16:58 | 000,740,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aeinv.dll
- [2019.07.09 19:16:58 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshwfp.dll
- [2019.07.09 19:16:58 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nltest.exe
- [2019.07.09 19:16:58 | 000,513,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepic.dll
- [2019.07.09 19:16:58 | 000,356,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcryptprimitives.dll
- [2019.07.09 19:16:57 | 002,871,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
- [2019.07.09 19:16:57 | 002,479,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\combase.dll
- [2019.07.09 19:16:57 | 002,370,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WebRuntimeManager.dll
- [2019.07.09 19:16:57 | 001,219,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
- [2019.07.09 19:16:57 | 001,035,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplyTrustOffline.exe
- [2019.07.09 19:16:57 | 000,896,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sppcext.dll
- [2019.07.09 19:16:57 | 000,810,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\generaltel.dll
- [2019.07.09 19:16:57 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Notifications.dll
- [2019.07.09 19:16:57 | 000,415,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aepic.dll
- [2019.07.09 19:16:56 | 002,166,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
- [2019.07.09 19:16:56 | 001,027,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
- [2019.07.09 19:16:56 | 000,900,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\slui.exe
- [2019.07.09 19:16:56 | 000,767,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppcommdlg.dll
- [2019.07.09 19:16:56 | 000,637,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devinv.dll
- [2019.07.09 19:16:56 | 000,462,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdedit.exe
- [2019.07.09 19:16:56 | 000,164,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompatTelRunner.exe
- [2019.07.09 19:16:56 | 000,093,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wldp.dll
- [2019.07.09 19:16:56 | 000,080,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wldp.dll
- [2019.07.09 19:16:56 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offreg.dll
- [2019.07.09 19:16:56 | 000,071,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32appinventorycsp.dll
- [2019.07.09 19:16:55 | 002,176,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.onecore.dll
- [2019.07.09 19:16:55 | 001,631,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32full.dll
- [2019.07.09 19:16:55 | 001,471,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
- [2019.07.09 19:16:55 | 001,453,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gdi32full.dll
- [2019.07.09 19:16:55 | 001,215,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationController.dll
- [2019.07.09 19:16:55 | 001,033,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipSVC.dll
- [2019.07.09 19:16:55 | 000,808,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
- [2019.07.09 19:16:55 | 000,511,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcntel.dll
- [2019.07.09 19:16:55 | 000,464,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\invagent.dll
- [2019.07.09 19:16:55 | 000,324,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
- [2019.07.09 19:16:55 | 000,310,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wc_storage.dll
- [2019.07.09 19:16:55 | 000,236,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EditionUpgradeManagerObj.dll
- [2019.07.09 19:16:55 | 000,221,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EditionUpgradeManagerObj.dll
- [2019.07.09 19:16:55 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EditionUpgradeHelper.dll
- [2019.07.09 19:16:54 | 001,663,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
- [2019.07.09 19:16:54 | 001,561,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.desktop.dll
- [2019.07.09 19:16:54 | 001,459,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
- [2019.07.09 19:16:54 | 001,339,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TaskFlowDataEngine.dll
- [2019.07.09 19:16:54 | 001,260,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
- [2019.07.09 19:16:54 | 001,141,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
- [2019.07.09 19:16:54 | 001,063,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
- [2019.07.09 19:16:54 | 001,048,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Shell.Broker.dll
- [2019.07.09 19:16:54 | 000,986,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncHost.exe
- [2019.07.09 19:16:54 | 000,983,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
- [2019.07.09 19:16:54 | 000,894,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
- [2019.07.09 19:16:54 | 000,776,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wer.dll
- [2019.07.09 19:16:54 | 000,734,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
- [2019.07.09 19:16:54 | 000,608,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
- [2019.07.09 19:16:54 | 000,567,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\daxexec.dll
- [2019.07.09 19:16:54 | 000,559,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
- [2019.07.09 19:16:54 | 000,532,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QuietHours.dll
- [2019.07.09 19:16:54 | 000,510,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanager.dll
- [2019.07.09 19:16:54 | 000,506,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
- [2019.07.09 19:16:54 | 000,493,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcryptprimitives.dll
- [2019.07.09 19:16:54 | 000,115,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kdnet.dll
- [2019.07.09 19:16:53 | 001,609,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
- [2019.07.09 19:16:53 | 001,220,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Unistore.dll
- [2019.07.09 19:16:53 | 001,076,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efscore.dll
- [2019.07.09 19:16:53 | 000,832,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncHost.exe
- [2019.07.09 19:16:53 | 000,665,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wer.dll
- [2019.07.09 19:16:53 | 000,568,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcblaunch.exe
- [2019.07.09 19:16:53 | 000,544,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
- [2019.07.09 19:16:53 | 000,443,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\policymanager.dll
- [2019.07.09 19:16:53 | 000,392,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
- [2019.07.09 19:16:53 | 000,361,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceEnroller.exe
- [2019.07.09 19:16:53 | 000,302,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CXHProvisioningServer.dll
- [2019.07.09 19:16:53 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offreg.dll
- [2019.07.09 19:16:52 | 000,965,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Unistore.dll
- [2019.07.09 19:16:52 | 000,713,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVideoDSP.dll
- [2019.07.09 19:16:52 | 000,581,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSVideoDSP.dll
- [2019.07.09 19:16:52 | 000,578,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
- [2019.07.09 19:16:52 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rastls.dll
- [2019.07.09 19:16:52 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpclip.exe
- [2019.07.09 19:16:52 | 000,416,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanapi.dll
- [2019.07.09 19:16:52 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
- [2019.07.09 19:16:52 | 000,328,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanapi.dll
- [2019.07.09 19:16:52 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
- [2019.07.09 19:16:52 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsbas.dll
- [2019.07.09 19:16:52 | 000,209,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wermgr.exe
- [2019.07.09 19:16:52 | 000,191,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wermgr.exe
- [2019.07.09 19:16:52 | 000,146,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicensingUI.exe
- [2019.07.09 19:16:52 | 000,134,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvloader.dll
- [2019.07.09 19:16:52 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\profext.dll
- [2019.07.09 19:16:52 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NotificationControllerPS.dll
- [2019.07.09 19:16:52 | 000,094,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
- [2019.07.09 19:16:52 | 000,091,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpfve.sys
- [2019.07.09 19:16:52 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBrokerUI.dll
- [2019.07.09 19:16:52 | 000,036,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCensus.exe
- [2019.07.09 19:16:51 | 000,450,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rastls.dll
- [2019.07.09 19:16:51 | 000,409,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanmsm.dll
- [2019.07.09 19:16:51 | 000,394,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputSwitch.dll
- [2019.07.09 19:16:51 | 000,371,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputSwitch.dll
- [2019.07.09 19:16:51 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
- [2019.07.09 19:16:51 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DesktopSwitcherDataModel.dll
- [2019.07.09 19:16:51 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
- [2019.07.09 19:16:51 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmvdsitf.dll
- [2019.07.09 19:16:51 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmvdsitf.dll
- [2019.07.09 19:16:51 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmmigrator.dll
- [2019.07.09 19:16:51 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\splwow64.exe
- [2019.07.09 19:16:51 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxSysprep.dll
- [2019.07.09 19:16:51 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profext.dll
- [2019.07.09 19:16:51 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RjvMDMConfig.dll
- [2019.07.09 19:16:51 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAgent.exe
- [2019.07.09 19:16:51 | 000,101,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\changepk.exe
- [2019.07.09 19:16:51 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSReset.exe
- [2019.07.09 19:16:51 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KdsCli.dll
- [2019.07.09 19:16:51 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmTasks.dll
- [2019.07.09 19:16:51 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UpgradeResultsUI.exe
- [2019.07.09 19:16:51 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBrokerUI.dll
- [2019.07.09 19:16:51 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\werdiagcontroller.dll
- [4 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> ]
- [4 C:\Users\czpio\AppData\Local\*.tmp files -> C:\Users\czpio\AppData\Local\*.tmp -> ]
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2019.07.27 17:40:00 | 3411,111,936 | -HS- | M] () -- C:\hiberfil.sys
- [2019.07.27 17:40:00 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
- [2019.07.26 22:56:25 | 000,055,046 | ---- | M] () -- C:\Users\czpio\Desktop\zeg.jpg
- [2019.07.26 18:20:17 | 001,763,504 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
- [2019.07.26 18:20:17 | 000,782,334 | ---- | M] () -- C:\WINDOWS\SysNative\perfh015.dat
- [2019.07.26 18:20:17 | 000,699,762 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
- [2019.07.26 18:20:17 | 000,151,496 | ---- | M] () -- C:\WINDOWS\SysNative\perfc015.dat
- [2019.07.26 18:20:17 | 000,132,702 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
- [2019.07.26 18:11:23 | 016,777,216 | -HS- | M] () -- C:\swapfile.sys
- [2019.07.26 15:38:30 | 000,344,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdFilter.sys
- [2019.07.26 15:38:30 | 000,054,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdNisDrv.sys
- [2019.07.26 15:38:30 | 000,047,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wd\WdBoot.sys
- [2019.07.25 16:08:54 | 000,002,226 | ---- | M] () -- C:\Users\czpio\Desktop\Blitz.lnk
- [2019.07.24 07:37:30 | 000,129,672 | ---- | M] (Razer Inc.) -- C:\WINDOWS\SysNative\RzChromaSDK64.dll
- [2019.07.24 07:37:30 | 000,111,240 | ---- | M] (Razer Inc.) -- C:\WINDOWS\SysWow64\RzChromaSDK.dll
- [2019.07.14 14:28:10 | 000,000,487 | ---- | M] () -- C:\Users\Public\Desktop\Destiny 2.lnk
- [2019.07.10 08:00:38 | 000,234,616 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
- [2019.07.04 11:43:27 | 000,094,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
- [2019.07.04 11:40:51 | 000,790,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontdrvhost.exe
- [2019.07.04 11:40:33 | 001,631,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32full.dll
- [2019.07.04 11:40:32 | 001,616,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppobjs.dll
- [2019.07.04 11:22:58 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\splwow64.exe
- [2019.07.04 11:22:43 | 000,128,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxSysprep.dll
- [2019.07.04 11:21:11 | 008,627,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
- [2019.07.04 11:20:08 | 001,609,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
- [2019.07.04 11:19:44 | 000,420,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpclip.exe
- [2019.07.04 11:18:59 | 003,614,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
- [2019.07.04 11:18:11 | 001,663,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
- [2019.07.04 10:56:04 | 001,453,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gdi32full.dll
- [2019.07.04 10:54:37 | 000,662,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe
- [2019.07.04 10:41:01 | 007,990,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
- [2019.07.04 10:37:57 | 002,882,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
- [2019.07.04 10:36:56 | 001,471,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
- [2019.07.04 07:00:29 | 001,035,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplyTrustOffline.exe
- [2019.07.04 06:58:29 | 001,328,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpx.dll
- [2019.07.04 06:58:09 | 001,219,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
- [2019.07.04 06:58:06 | 000,416,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanapi.dll
- [2019.07.04 06:57:57 | 001,027,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
- [2019.07.04 06:57:57 | 000,568,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcblaunch.exe
- [2019.07.04 06:57:57 | 000,194,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\skci.dll
- [2019.07.04 06:57:57 | 000,134,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvloader.dll
- [2019.07.04 06:57:18 | 000,362,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.ApplicationData.dll
- [2019.07.04 06:57:16 | 000,986,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncHost.exe
- [2019.07.04 06:57:15 | 000,776,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wer.dll
- [2019.07.04 06:57:14 | 000,723,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ci.dll
- [2019.07.04 06:57:13 | 000,209,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wermgr.exe
- [2019.07.04 06:57:05 | 003,292,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
- [2019.07.04 06:57:03 | 000,137,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcrypt.dll
- [2019.07.04 06:57:00 | 000,091,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpfve.sys
- [2019.07.04 06:56:32 | 007,436,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
- [2019.07.04 06:56:32 | 000,493,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcryptprimitives.dll
- [2019.07.04 06:56:27 | 009,084,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
- [2019.07.04 06:56:26 | 007,519,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
- [2019.07.04 06:56:26 | 002,571,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
- [2019.07.04 06:56:21 | 001,141,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
- [2019.07.04 06:56:21 | 000,983,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
- [2019.07.04 06:56:20 | 001,566,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxPackaging.dll
- [2019.07.04 06:56:20 | 000,734,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
- [2019.07.04 06:56:13 | 000,713,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVideoDSP.dll
- [2019.07.04 06:56:10 | 001,459,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
- [2019.07.04 06:56:10 | 001,260,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
- [2019.07.04 06:56:10 | 000,767,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
- [2019.07.04 06:56:05 | 000,604,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\securekernel.exe
- [2019.07.04 06:56:03 | 000,115,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kdnet.dll
- [2019.07.04 06:43:21 | 000,191,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wermgr.exe
- [2019.07.04 06:43:17 | 000,287,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.ApplicationData.dll
- [2019.07.04 06:43:03 | 000,832,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncHost.exe
- [2019.07.04 06:43:02 | 000,328,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanapi.dll
- [2019.07.04 06:43:01 | 000,665,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wer.dll
- [2019.07.04 06:42:46 | 002,479,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\combase.dll
- [2019.07.04 06:42:13 | 006,044,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
- [2019.07.04 06:42:13 | 000,356,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcryptprimitives.dll
- [2019.07.04 06:42:07 | 001,427,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxPackaging.dll
- [2019.07.04 06:42:03 | 006,570,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
- [2019.07.04 06:41:58 | 000,559,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
- [2019.07.04 06:37:42 | 025,857,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
- [2019.07.04 06:33:43 | 022,017,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
- [2019.07.04 06:26:50 | 000,310,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wc_storage.dll
- [2019.07.04 06:26:46 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmTasks.dll
- [2019.07.04 06:26:18 | 004,385,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeContent.dll
- [2019.07.04 06:25:57 | 000,295,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TDLMigration.dll
- [2019.07.04 06:25:34 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offreg.dll
- [2019.07.04 06:25:22 | 007,589,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
- [2019.07.04 06:25:07 | 004,861,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
- [2019.07.04 06:25:01 | 003,401,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
- [2019.07.04 06:24:31 | 000,153,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dssvc.dll
- [2019.07.04 06:24:16 | 000,462,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdedit.exe
- [2019.07.04 06:24:11 | 000,567,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\daxexec.dll
- [2019.07.04 06:23:05 | 001,217,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcore.dll
- [2019.07.04 06:22:48 | 001,549,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
- [2019.07.04 06:22:47 | 002,176,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.onecore.dll
- [2019.07.04 06:22:28 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\werdiagcontroller.dll
- [2019.07.04 06:22:18 | 001,175,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
- [2019.07.04 06:22:01 | 001,561,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.desktop.dll
- [2019.07.04 06:22:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\profext.dll
- [2019.07.04 06:21:45 | 000,124,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profext.dll
- [2019.07.04 06:21:43 | 001,220,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Unistore.dll
- [2019.07.04 06:21:39 | 005,784,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
- [2019.07.04 06:21:39 | 003,202,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll
- [2019.07.04 06:21:33 | 000,324,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
- [2019.07.04 06:21:09 | 002,166,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
- [2019.07.04 06:21:02 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offreg.dll
- [2019.07.04 06:20:53 | 000,392,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
- [2019.07.04 06:20:38 | 000,330,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptprov.dll
- [2019.07.04 06:20:14 | 000,544,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
- [2019.07.04 06:19:21 | 000,230,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
- [2019.07.04 06:18:53 | 000,953,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
- [2019.07.04 06:18:44 | 001,076,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdpcore.dll
- [2019.07.04 06:18:19 | 000,965,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Unistore.dll
- [2019.07.04 06:18:14 | 000,275,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptprov.dll
- [2019.07.04 05:01:57 | 000,001,312 | ---- | M] () -- C:\WINDOWS\SysNative\tcbres.wim
- [4 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> ]
- [4 C:\Users\czpio\AppData\Local\*.tmp files -> C:\Users\czpio\AppData\Local\*.tmp -> ]
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2019.07.26 22:56:24 | 000,055,046 | ---- | C] () -- C:\Users\czpio\Desktop\zeg.jpg
- [2019.07.14 14:28:10 | 000,000,487 | ---- | C] () -- C:\Users\Public\Desktop\Destiny 2.lnk
- [2019.07.09 19:16:51 | 000,001,312 | ---- | C] () -- C:\WINDOWS\SysNative\tcbres.wim
- [2019.05.30 17:37:38 | 000,870,304 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-999-0-0-0.dll
- [2019.05.30 17:37:38 | 000,870,304 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1.dll
- [2019.05.30 17:37:38 | 000,260,512 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-999-0-0-0.exe
- [2019.05.30 17:37:38 | 000,260,512 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo.exe
- [2019.05.30 17:37:37 | 000,541,904 | ---- | C] () -- C:\WINDOWS\SysWow64\nvofapi.dll
- [2019.03.06 16:21:58 | 118,768,230 | ---- | C] () -- C:\Users\czpio\Razer Synapse Tournament Drivers 20190306_1521.exe
- [2019.02.21 10:49:25 | 000,000,042 | ---- | C] () -- C:\WINDOWS\nfsc_patch.ini
- [2018.10.06 10:38:28 | 000,280,904 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
- [2018.10.06 10:38:28 | 000,075,136 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrA.exe
- [2018.06.13 19:47:18 | 002,841,312 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Mirage.dll
- [2018.06.13 19:47:06 | 000,018,716 | ---- | C] () -- C:\WINDOWS\SysWow64\srms-apr.dat
- [2018.05.24 22:09:05 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
- [2018.04.12 01:38:34 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
- [2018.04.12 01:38:34 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
- [2018.04.12 01:34:55 | 000,518,144 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
- [2018.04.12 01:34:50 | 000,054,272 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
- [2018.04.12 01:34:49 | 000,002,404 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
- [2018.04.12 01:34:47 | 000,364,200 | ---- | C] () -- C:\WINDOWS\SysWow64\InputHost.dll
- [2018.04.12 01:34:46 | 003,575,808 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.Analysis.dll
- [2018.04.12 01:34:46 | 000,025,600 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.WARP.JITService.exe
- [2018.04.12 01:34:45 | 000,329,216 | ---- | C] () -- C:\WINDOWS\SysWow64\ssdm.dll
- [2018.04.12 01:34:45 | 000,223,232 | ---- | C] () -- C:\WINDOWS\SysWow64\HeatCore.dll
- [2018.04.12 01:34:45 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
- [2018.04.12 01:34:45 | 000,111,616 | ---- | C] () -- C:\WINDOWS\SysWow64\WindowsDefaultHeatProcessor.dll
- [2018.04.12 01:34:45 | 000,055,808 | ---- | C] () -- C:\WINDOWS\SysWow64\xboxgipsynthetic.dll
- [2018.04.12 01:34:36 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
- [2018.04.12 01:34:30 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
- [2018.03.15 14:25:47 | 000,000,616 | ---- | C] () -- C:\WINDOWS\eReg.dat
- [2018.02.15 19:07:50 | 000,000,000 | ---- | C] () -- C:\Users\czpio\AppData\Roaming\FC29FA0894FE.ini
- [2017.10.15 10:10:19 | 000,000,001 | ---- | C] () -- C:\WINDOWS\SysWow64\SI.bin
- [2017.06.12 15:36:02 | 000,000,000 | ---- | C] () -- C:\ProgramData\DP45977C.lfl
- [color=#E56717]========== ZeroAccess Check ==========[/color]
- [2018.10.06 10:37:58 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
- [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
- [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
- "" = C:\Windows\SysNative\windows.storage.dll -- [2019.07.04 06:56:32 | 007,436,536 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- "" = %SystemRoot%\system32\windows.storage.dll -- [2019.07.04 06:42:13 | 006,044,008 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2018.04.12 01:34:40 | 000,973,312 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
- "" = %systemroot%\system32\wbem\fastprox.dll -- [2018.04.12 01:34:55 | 000,785,408 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
- "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2018.04.12 01:34:40 | 000,524,288 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Both
- [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
- [color=#E56717]========== LOP Check ==========[/color]
- [2017.06.12 19:21:53 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\.mono
- [2017.06.12 19:13:26 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Battle.net
- [2017.08.14 17:20:12 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Beat Hazard
- [2019.07.25 16:54:00 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Blitz
- [2019.07.25 16:10:01 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Blitz-helpers
- [2018.11.09 15:10:22 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Bungie
- [2017.07.13 20:29:50 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Championify
- [2017.11.16 19:54:51 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Cheat Happens
- [2018.02.14 13:35:51 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Crystal Dynamics
- [2017.08.25 18:55:22 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\DAEMON Tools Lite
- [2019.07.26 15:35:42 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\discord
- [2017.11.23 20:19:16 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Doublefine
- [2019.02.05 08:35:15 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\EasyAntiCheat
- [2019.04.16 21:55:58 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\foobar2000
- [2019.04.23 13:37:22 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Frontier Developments
- [2019.07.26 21:21:34 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\GG
- [2018.01.11 21:22:26 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Glador
- [2018.04.18 10:07:40 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\HearthstoneDeckTracker
- [2017.10.01 08:02:43 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Highresolution Enterprises
- [2017.11.16 20:48:09 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Infinity
- [2019.04.25 11:03:18 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Klei
- [2017.07.19 19:43:46 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Notepad++
- [2018.11.17 12:45:16 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\OpenFM
- [2019.05.13 16:23:19 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Origin
- [2017.06.12 14:58:59 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Riot Games
- [2018.02.15 19:07:33 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Rise.Of.The.Tomb.Raider.20.Years.Celebration.Edition+13DLC.Repack
- [2018.09.11 16:57:13 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\shadowrealm
- [2018.02.12 12:31:36 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\SpiderOT
- [2019.07.27 19:18:24 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Spotify
- [2018.04.21 21:07:51 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Tibia
- [2019.02.03 10:03:23 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\TradeSkillMaster
- [2017.10.12 10:40:23 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Trine1
- [2018.05.01 14:43:09 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\TS3Client
- [2019.07.27 08:25:12 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Twitch
- [2018.11.07 18:51:04 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Ubisoft
- [2019.04.21 21:15:29 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Uprt
- [2019.04.13 16:51:25 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Vertical_Drop_Heroes_HD
- [2018.01.03 21:35:57 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Vesteris
- [2018.11.18 15:07:10 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\WeMod
- [2018.04.27 19:14:48 | 000,000,000 | ---D | M] -- C:\Users\czpio\AppData\Roaming\Xavato
- [color=#E56717]========== Purity Check ==========[/color]
- [color=#E56717]========== Alternate Data Streams ==========[/color]
- @Alternate Data Stream - 16 bytes -> C:\Users\czpio\AppData\Local\Temp:$DATAβ
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement